Skip to Content
Introduction

Welcome to CodeStax

CodeStax is an AI-powered code security platform that helps development teams find and fix vulnerabilities before they reach production.

How CodeStax Works

What CodeStax Does

CodeStax combines multiple security scanning engines with AI-powered analysis to provide comprehensive code security coverage:

Key Features

FeatureDescription
Smart & Deep ScansChoose between fast scans for frequent checks or thorough scans for release preparation
AI RemediationGet AI-generated fix suggestions with code examples for every vulnerability
CVSS/EPSS ScoringIndustry-standard vulnerability scoring with real-time exploit prediction
Vulnerability CorrelationAutomatic deduplication of findings detected by multiple scanners
Multi-Provider SupportWorks with GitHub and Bitbucket repositories
PDF ReportsGenerate compliance-ready reports (SOC 2, ISO 27001)
Team ManagementRole-based access control with organization workspaces
CI/CD IntegrationAPI keys and webhooks for automated security in your pipeline

Supported Scanners

ScannerTypeWhat It Finds
SAST EngineSASTOWASP Top 10, CWE vulnerabilities across 30+ languages
SCA EngineSCAKnown CVEs in dependencies across 9 ecosystems
Secrets EngineSecretsAPI keys, passwords, tokens, private keys
IaC EngineIaCMisconfigurations in Terraform, K8s, CloudFormation
Container EngineContainerDockerfile best practices and security issues
Code Quality EngineLintingCode quality, security patterns, and static analysis

Quick Start

Get started in under 5 minutes:

Need Help?

  • Browse this documentation for detailed guides
  • Check the FAQ for common questions
  • Contact support at support@codestax.co