Menu Close
Sourcery
☆☆☆☆☆
Code Generation & Assistants (171)

Sourcery Verified Tool

AI code review and security scanning for GitHub, GitLab, and popular IDEs, with pull-request summaries, inline feedback, and custom rules.

Last Update: August 18, 2026

Visit Tool

Starting price Free + from $12/mo

Tool Information

Sourcery is an AI code-review platform that checks pull requests for bugs, security issues, maintainability problems, and team-specific standards. It works with GitHub, GitLab, GitHub Enterprise Server, self-hosted GitLab, and IDEs including VS Code, Cursor, Windsurf, and JetBrains products.

The Open Source plan is free for public repositories. Pro currently costs $12 per seat per month and adds private-repository reviews, change summaries and diagrams, line-by-line comments, custom review rules, and limited security scanning; Team costs $24 per seat per month and adds analytics, higher limits, daily scans, and bring-your-own-LLM support. New accounts receive a two-week private-project trial, and annual billing is discounted.

Automated review can find useful issues quickly, but it does not understand every product requirement or runtime condition. Teams should validate suggestions with tests and human review, tune noisy rules, protect repository permissions, and use self-hosting or approved model endpoints when organizational policy requires tighter code control.

F.A.Q (17)

Sourcery is an AI code-review and security platform that reviews pull requests, comments on code, summarizes changes, and scans repositories for several classes of risk.

Yes for public open-source repositories. Private-project access begins with a two-week trial and then requires Pro, Team, or Enterprise.

The official pricing page currently lists Pro at $12 per seat per month and Team at $24 per seat per month, with custom Enterprise pricing.

Yes. New accounts receive a two-week trial for using Sourcery with private projects.

It supports GitHub, GitLab, GitHub Enterprise Server, and self-hosted GitLab.

Official documentation lists VS Code, Cursor, Windsurf, and JetBrains IDEs.

It can post a summary, status check, inline suggestions, bug findings, security findings, and feedback based on configured review rules.

Yes. Its security stack covers secrets, static application security testing, infrastructure as code, dependencies, and licenses, with limits that vary by plan.

Yes. Pro and higher plans list custom review rules for coding standards and team-specific expectations.

Yes. The current product says AI review works across more than 30 programming languages, although some traditional rules remain language-specific.

Yes. Supported IDE extensions let developers review and apply suggestions while working locally.

The pricing FAQ says Sourcery does not store code or messages; hosted analysis still sends data through its service and selected model providers under stated retention controls.

Yes, but full self-hosting is an Enterprise capability and requires contacting the company.

Bring-your-own-LLM support is listed on the Team plan. Confirm supported endpoints and deployment requirements with Sourcery.

Yes. The official FAQ says users can cancel or downgrade at any time and retain access through the paid period.

Yes. The official pricing FAQ currently states that annual billing saves 20% compared with monthly billing.

No. It accelerates routine review and security checks, but architecture, requirements, behavior, and risk decisions still need human judgment and automated tests.

Pros and Cons

Pros

  • Free for open-source repositories
  • Reviews pull requests automatically
  • Inline code-review comments
  • Pull-request summaries
  • Generated change diagrams
  • Finds potential bugs
  • Flags security issues
  • Scans for exposed secrets
  • Static application security testing
  • Infrastructure-as-code scanning
  • Dependency and license checks
  • Supports more than 30 programming languages
  • GitHub integration
  • GitLab integration
  • GitHub Enterprise Server support
  • Self-hosted GitLab support
  • VS Code integration
  • Cursor integration
  • Windsurf integration
  • JetBrains IDE integration
  • Custom review rules
  • Learns from review feedback
  • Repository analytics on Team
  • Daily security scans on Team
  • Bring your own LLM on Team
  • Enterprise self-hosting option
  • API access for security findings
  • Two-week trial for private projects
  • Annual billing discount
  • Seats can be assigned selectively

Cons

  • Private repositories require a paid plan after the trial
  • Pro is priced per assigned developer seat
  • Free use is limited to public open-source repositories
  • Open Source security scans are limited to three repositories
  • Pro security scans are limited to ten repositories
  • Biweekly scans on lower tiers may miss newly introduced risks between runs
  • Daily security scanning requires Team
  • AI comments can include false positives
  • Suggested changes still require tests and human review
  • Repository access requires careful permission management
  • Code may pass through Sourcery and approved model-provider systems in hosted configurations
  • Team-specific standards require rule configuration
  • Large pull requests can produce more review noise
  • IDE and repository features differ by integration
  • Self-hosting is reserved for Enterprise
  • Security scanning does not replace penetration testing
  • Automatic fixes can alter behavior if accepted without review

Reviews

You must be logged in to submit a review.

No reviews yet. Be the first to review!

Quick actions
Visit Tool