Repository navigation
Home
Codna — repository intelligence for agents: Understand. Fix. Evolve. Codna maps a repository before it spends a token, then reviews pull requests, fixes bugs, and proves which scanner findings are reachable. The same codna command runs on your machine, in the GitHub Action, and behind the GitHub App. Source: thyn-ai/codna-cli (Apache-2.0). Product docs: docs.codna.ai.
Runs on your machine or your cloud. Your code never leaves without your key.
| I want to… | Start here |
|---|---|
| Use Codna inside Cursor / Claude (MCP) | Getting Started → MCP Server |
Use the CLI (triage, fix, review, secure) |
Getting Started → docs.codna.ai/reference/cli |
| Understand the trust boundary (mirror, in-wheel runtime, BYOK) | Architecture → Security |
| Report a bug or contribute | Contributing → Security |
| Releases & registries (auto-release, PyPI, MCP Registry) | Versioning & Releases |
Stuck? Check the FAQ, then GitHub Issues.
pip install "codna[mcp]" # or: pipx install "codna[mcp]" · uv tool install "codna[mcp]"
codna login # free community license (device authorization) — fully offline thereafter
codna mcp # serve MCP over stdio
codna mcp install --client cursor # optional: write the client config for you (or --client claude)Python 3.12–3.13, git on your PATH. Nothing else to install: no Node, Bun, Docker, or server — the agent runtime ships inside the wheel.
Five tools, each returning JSON: codna_triage (deterministic repo map, 0 LLM tokens), codna_secure (SARIF reachability, read-only, 0 tokens), codna_recall (on-device semantic + lexical code memory), codna_fix (root-cause and plan a fix; open_pr=true opens a real PR), codna_report_bug (file to thyn-ai/feedback). Plus a codna://capabilities resource and a fix_bug prompt. Full table: MCP Server.
Introspection (initialize/tools/list) needs no credentials. Executing any of the five tools requires the one-time free community login (codna login — device authorization, free community license) — fully offline thereafter. codna_fix additionally needs a provider key (BYOK, e.g. ANTHROPIC_API_KEY or codna key set anthropic).
This repo is a mirror of the Codna CLI package inside the private product repo, synced out on every change. The open package you can read is the full client plane — CLI, MCP server, memory layer, policy engine; the agent runtime it drives ships inside the wheel as staged binaries (the on-device memory engine comes from the signed Telys runtime bundle, never from this repo's source). Licensing runs on the shared platform: codna login performs an RFC 8628 device authorization and stores the resulting account key locally (environment first, then the OS keychain) — its presence alone gates execution, offline by design. LLM work is BYOK: your provider key lives in the OS keychain, and fix/review send one issue-specific evidence bundle to the provider you chose — not the repository. Full picture: Architecture.
- Repo: thyn-ai/codna-cli (current: 0.2.86) · PyPI:
codna - MCP Registry:
io.github.thyn-ai/codna - Website: codna.ai · Docs: docs.codna.ai · Feedback: thyn-ai/feedback
thyn-ai/codna-cli · Issues · PyPI · MCP Registry · Security · docs.codna.ai
Built by the Algenta team · Apache-2.0
Start here
Concepts
Project
Repository
Registries & docs