MergeAttest
Decide what AI-assisted code may merge.
Govern AI-assisted pull requests before merge with authorship evidence, policy checks, approval records, and audit-ready review packets.
Free during early access — at least the first six months. Paid expansion planned after launch.
The problem
AI agents now write a meaningful share of production code, but most teams can't answer the questions that follow: which agent touched this PR, who accepted the risk, and where is the evidence?
The approach
MergeAttest sits at the merge gate. It attributes every AI contribution, scores risk deterministically, checks repository policy, records human approvals, and assembles an audit-ready packet for every pull request — governance, not another comment stream.
What's inside
Built in, not bolted on.
Per-agent AI attribution
AI authorship ledger
Deterministic risk scoring
Missing-test detection
Repository policy rules
Human approval records
Audit-ready review packets
Optional BYOK AI review