If you use monorepo mode on DeepSource, this one's for you: SCA support just landed.
Each sub-repo gets its own Dependencies tab. Vulnerabilities scoped to the packages that sub-project actually uses, not the noise from elsewhere in the monorepo.
The AI code review platform for fast-moving teams and their agents.
Joined June 2018
- DeepSource AI Review now scores higher on the OpenSSF CVE Benchmark. Most importantly, we're seeing 4%+ gain on the F1 score. This means we're catching more real vulnerabilities without introducing a single false positive. Our precision hit 100% (zero false positives across 83
- Introducing, DeepSource's MCP Server. This bring all of DeepSource natively in your AI agent. For instance, you can automate fixing code review issues in your PRs with DeepSource + Claude Code 👇
- New: AI Review is now available on DeepSource Enterprise Server, with support for BYOK. This brings state-of-the-art AI code review and code security to self-hosted environments without your code passing through DeepSource Cloud or any third-party endpoint.
- Studies suggest that most orgs take ~6mo on average to fix CVEs, but attackers exploit new CVEs in <5 days. DeepSource's new continuous CVE monitoring helps security teams change that. Our SCA engine now monitors vulnerability databases every hour. When a new CVE matches a

