security-review · default
One repository pass. Findings with evidence.
Repository findings, evidence and the full trace.
Limited beta · read-only GitHub access
Choose repositories for the read-only GitHub app, then select a workflow and profile. Each review runs in a single-use sandbox.
security-review · defaultOne repository pass. Findings with evidence.
goal-security-reviewThreat model → parallel goals → two independent judges.
Both workflows are public at github.com/midkernel/playbooks. More about workflows →
No sample report is published yet.
| profile | models | default time per stage | credits | use it for |
|---|---|---|---|---|
low | a fast model | up to 30 min | 10 | pull requests, triage |
balanced | a stronger model | up to 1 h | 25 | repository reviews |
max | the strongest model | up to 2 h | 50 | releases, audits |
Fixed credits per run. Default time limits apply to each stage; adjustable before starting.
The repository stays in the sandbox during the run. Reports, logs and artifacts persist. Access, retention and data use →
A fixed whole number of credits per profile, shown before you start: low 10, balanced 25, max 50. 1 credit is $1. See pricing.
We don't keep a copy of your repository. Each run clones it into a fresh sandbox that ends with the run. The report and the run log — which can include excerpts of files the workflow read — are kept for 90 days; you can ask us to delete them sooner. Details on the trust page.
Commercial models chosen per profile and recorded on every run: a fast model on low, stronger models on balanced and max.
A file in a public repository: metadata that names the workflow plus instructions that tell the agents how to review. The two you can run today — security-review and goal-security-review — are open source at github.com/midkernel/playbooks. Read one before you run it.
Not yet. The platform is designed so an API can start runs from a pipeline. Continuous runs on every pull request, with comments, are further out. Write to hello@midkernel.com if you want that workflow.