Input
A URL, Git repository, API spec, or your own requirements/docs.
Analysis engine
Detects language, framework, and structure; comprehends the codebase and generates tests grounded in your inputs.
Isolated sandbox execution
Generated tests compile and run in dedicated, ephemeral sandboxes — destroyed after each run, with restricted network access.
SHA-256 evidence chain
Every test case, execution, and result is linked into a tamper-evident, canonical-JSON audit trail.
Report & verdict
A confidence-scored verdict plus exportable evidence reports (JSON / HTML / PDF).
Per-tenant storage
Results and artifacts are isolated per tenant with row-level security; source code is not stored permanently.
A model-routing layer sits alongside the analysis and execution engines, selecting between base models and (on the Scale tier) your per-tenant fine-tuned adapter per operation.
Isolation & data handling
See the Security page for the full controls list.