Skip to main content

AI governance platform — policy enforcement for AI-assisted development. Four enforcement layers (IDE, MCP, Git hooks, PR Gate), 1,200+ detection rules, 24 compliance frameworks, 15 languages.

Project description

MergeGuide

AI Velocity. Enterprise Governance.

MergeGuide is the AI governance platform for enterprise development. We embed policy enforcement directly into the tools developers already use — IDE, AI assistants, Git hooks, and pull requests — so organizations get both AI velocity and enterprise governance.

Why MergeGuide

AI coding assistants now generate nearly half the code in files where they're active. That velocity is extraordinary — and it's creating a governance problem that traditional security tools were never designed to solve.

MergeGuide is the third option between "allow AI freely and accept the risk" and "restrict AI and fall behind." Governance that enables AI rather than restricting it.

Four Enforcement Layers

MergeGuide validates every code change — whether written by humans or AI — against your organization's security and compliance policies across four graduated layers:

  1. IDE — Real-time detection rule feedback as code is written (VS Code extension)
  2. MCP — Policy injection into AI assistants before code is generated (Model Context Protocol)
  3. Git Hooks — Pre-commit validation before code leaves the developer's machine
  4. PR Gate — Server-side enforcement at merge with tamper-evident evidence artifacts

Each layer shifts detection left for earlier, cheaper remediation. Violations caught in the IDE cost seconds to fix. The same violation caught at PR Gate costs a full review cycle.

Key Capabilities

  • 739 detection rules across 15+ programming languages
  • 18+ compliance frameworks including SOC 2, HIPAA, PCI-DSS, NIST SSDF, OWASP ASVS, EU AI Act, and more
  • Tamper-evident evidence — SHA-256 hashed artifacts for every evaluation
  • 4 SCM platforms — GitHub, GitLab, Bitbucket, Azure DevOps
  • OSCAL export — integrate with GRC platforms (Vanta, Drata, and more)
  • SBOM generation — CycloneDX 1.5 + SPDX 2.3

Installation

VS Code Extension

Search "MergeGuide" in the VS Code Extensions panel, or visit the VS Code Marketplace.

MCP Server (for AI assistants)

npx @mergeguide/mcp-server

Git Hooks

pip install mergeguide
mergeguide hooks install

PR Gate

Install the MergeGuide GitHub App or configure webhooks for GitLab, Bitbucket, or Azure DevOps in the dashboard.

Getting Started

  1. Sign up at portal.mergeguide.ai
  2. Connect your repositories
  3. Install the enforcement layers you need
  4. Run your first policy check in under 5 minutes

Pricing

Tier Price Description
Free $0 739 detection rules, 1 repo, 50 PR Gate evals/month
Pro $29/month 20 repos, 1,000 evals, evidence export
Team $39/seat/month 2-9 seats, compliance reports, SSO, SBOM
Business Contact Sales 10-49 seats, OSCAL export, SCIM, custom roles
Enterprise Contact Sales 50+ seats, OSCAL webhook, dedicated CSM

Links

License

MIT

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

mergeguide-2.0.0.tar.gz (460.2 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

mergeguide-2.0.0-py3-none-any.whl (627.2 kB view details)

Uploaded Python 3

File details

Details for the file mergeguide-2.0.0.tar.gz.

File metadata

  • Download URL: mergeguide-2.0.0.tar.gz
  • Upload date:
  • Size: 460.2 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.3

File hashes

Hashes for mergeguide-2.0.0.tar.gz
Algorithm Hash digest
SHA256 7d272711f127ef0ae901451a494db6ef55cc3f1eae3892ce832ee0154d11b1c1
MD5 6cc8bcc6c3900e303a7dc8697384c6bd
BLAKE2b-256 0e3e926426645e8e9b5194f85daa4a4b13e5ba081acb622cee0e92dd4b0ec2b2

See more details on using hashes here.

File details

Details for the file mergeguide-2.0.0-py3-none-any.whl.

File metadata

  • Download URL: mergeguide-2.0.0-py3-none-any.whl
  • Upload date:
  • Size: 627.2 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.12.3

File hashes

Hashes for mergeguide-2.0.0-py3-none-any.whl
Algorithm Hash digest
SHA256 e28fb5905cf577436b1ef2b1932aff9d912a892468f00cab8cdc3b9e66e93dbd
MD5 18ff2dc5ec9f2e7e9fc8c4fff1cb385b
BLAKE2b-256 c63828f5b71683fb91bd6742e5b42ab0ce767ff9b88a94b1399ace8d360559fa

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page