CodeRabbit home page
Search...
⌘K
Signup
Signup
Search...
Navigation
Supported tools
OSV-Scanner
Documentation
Blog
Changelog
Discord
Get started
Introduction
Quickstart
Add CodeRabbit to your repository
Overview
Supported Git platforms
Add organizations
Set permissions
Review pull requests
Overview
Control and manage code reviews
Generate improvements
Code review troubleshooting
CodeRabbit Chat
Analyze & improve your code
Create and resolve issues
Integrate issue tracking
Issue Chat
Create issues
Linked Issues
IDE extensions
Review local changes
Install the VSCode extension
Use the VSCode extension
Use with self-hosted CodeRabbit
Configure the VSCode extension
Uninstall the VSCode extension
Configure
Overview
Organization preferences
Repository preferences
Add a configuration file
Initial configuration guide
Knowledge base
Integrate MCP servers
Review instructions
Linters & security analysis tools
Manage your account
Manage your subscription
Role based access
Generate reports
Overview
Schedule reports
Generate reports on demand
Customize reports
Best practices
Setup best practices
Code review best practices
Reference
CodeRabbit API
Code review commands
Configuration reference
Configuration file template
Supported tools
List of supported tools
actionlint
Biome
Brakeman
Buf
Checkmake
Checkov
CircleCI
Clippy
Cppcheck
detekt
Dotenv Linter
ESLint
Flake8
Gitleaks
golangci-lint
Hadolint
HTMLHint
LanguageTool
Luacheck
markdownlint
OSV-Scanner
Oxlint
PHPCS
PHPMD
PHPStan
Pipeline Failure Remediation
PMD
Prisma Lint
Pylint
Regal
RuboCop
Ruff
Semgrep
ShellCheck
Shopify CLI
SQLFluff
SwiftLint
Caching
Resources
Get support
Self-host CodeRabbit
Why CodeRabbit?
FAQs
Early Access Program
Future development
On this page
Configuration
Links
Supported tools
OSV-Scanner
Guide to using the OSV-Scanner tool with CodeRabbit’s AI code reviews.
OSV-Scanner
is Google’s vulnerability scanner that identifies vulnerabilities in your project’s dependencies using the
OSV.dev
database.
Configuration
OSV-Scanner requires an
osv-scanner.toml
configuration file to run.
CodeRabbit will only run OSV-Scanner if your repository contains an
osv-scanner.toml
configuration file.
Links
OSV-Scanner GitHub Repository
OSV-Scanner Documentation
OSV.dev Database
markdownlint
Oxlint
Assistant
Responses are generated using AI and may contain mistakes.