Qodex
Qodex is an autonomous QA and security engineering platform that runs API, UI, security and AI-backed code reviews against real applications and pull requests. Its central proposition is execution-backed review: it produces evidence such as failing requests, responses and screenshots rather than only commenting on diffs.
At a Glance
- Software engineering teams
- QA and test-automation teams
- Application-security teams
- Startups and scale-ups shipping AI-generated code
- +2 more
AI Tools by Qodex
(1)OpenQodex
Local Open Source AI Code Review
Discussions
No discussions yet
Be the first to start a discussion about Qodex
Latest News
OpenQodex changelog records a release covering docs, README, community files, GitHub Action and pre-commit hook.
Qodex published Free AI Code Review in 2026, describing its free pull-request review offer and a one-year-free Codex-account campaign.
Qodex published AI Agent Testing: A Practical Guide to Evals, covering task success, tool use, plans, safety, cost and regression testing.
Qodex published AI Penetration Testing: What Works in 2026, positioning its security-testing approach alongside human-signed penetration tests.
Products & Services
Reviews every pull request against real test runs, reads the diff and repository context, reports actionable bugs with evidence, and can provide a merge recommendation.
Generates and runs API scenarios from OpenAPI specifications, Postman collections, spreadsheets and existing tests; supports HTTP and GraphQL, multi-step flows and auth profiles on higher plans.
Runs browser scenarios against the real application using Playwright-style execution, natural-language steps and screenshots; paid plans add a UI Pages catalog.
Continuous hostile-mode testing aligned with OWASP, including SQL injection, XSS, SSRF, IDOR/BOLA and authentication-bypass probes, with failing request/response/screenshot evidence.
Market Position
Qodex positions itself against diff-only AI code reviewers such as CodeRabbit and against API/UI automation platforms such as Postman, mabl, QA Wolf, Momentic, Testsigma, testRigor and Katalon. Its differentiator is combining pull-request review with actual API/UI/security execution and evidence from the running application; OpenQodex is the local, open-source alternative while the hosted Qodex product adds team memory, dashboards and merge gates.
Leadership
Founders
Siddhant Mohan
Co-founder and CEO. His public profile describes him as a two-time founder and says he previously founded Nyxion.ai; it also lists a prior CTO role at AlmaConnect.
Shreya Srivastava
Co-founder and COO. Public company/industry profiles identify her as Qodex's co-founder and COO; her Qodex author profile identifies her as a technical writer, and LinkedIn search results associate her with GL Bajaj Institute of Technology and Management.
Executive Team
Siddhant Mohan
Co-founder and CEO
Previously founded Nyxion.ai and held a CTO role at AlmaConnect.
Shreya Srivastava
Co-founder and COO
Co-founder/COO of Qodex; also publishes Qodex technical content and is associated publicly with GL Bajaj Institute of Technology and Management.
Founding Story
Qodex was started to address the gap between rapidly increasing AI-generated code and the manual review, QA and security processes that still have to validate it. The initial vision was an autonomous agent that discovers or imports test knowledge, creates runnable scenarios, executes them against real applications, and turns production failures into durable regression coverage.
Business Model
Revenue Model
Subscription SaaS priced per project/month for hosted continuous testing and PR review, with usage limits by plan; additional Startup test runs are billed at $20 per 1,000 beyond the included 10,000 monthly runs. OpenQodex is free and uses the customer's own Claude Code or Codex plan.
Pricing Tiers
One GitHub repository; up to 25 scenarios and 100 test runs/month; one concurrent AI chat/test run; community support.
Up to 10 repositories; up to 200 scenarios and 10,000 runs/month; continuous PR/deploy testing, full API/UI/security features, integrations and priority email support.
Unlimited scenarios, runs and environments; high concurrency; SSO/SAML, RBAC, audit logs, advanced compliance, data redaction, mTLS, webhooks/API access and SLAs.
Target Markets
- Software engineering teams
- QA and test-automation teams
- Application-security teams
- Startups and scale-ups shipping AI-generated code
- API-first and SaaS companies
- Enterprise engineering organizations needing CI/CD governance
- Testing AI-generated code before merge
- Continuous API regression testing
- Browser/UI regression testing
- API security and authorization testing
- QA and security coverage for teams shipping frequently
- Turning production incidents into regression scenarios
- Factors.ai
- Rippling
- Matchbook
- Mavim