Skip to main content

AI governance platform — policy enforcement for AI-assisted development. Four enforcement layers (IDE, MCP, Git hooks, PR Gate), 1,200+ detection rules, 24 compliance frameworks, 15 languages.

Project description

MergeGuide

AI Velocity. Enterprise Governance.

MergeGuide is the AI governance platform for enterprise development. We embed policy enforcement directly into the tools developers already use — IDE, AI assistants, Git hooks, and pull requests — so organizations get both AI velocity and enterprise governance.

Why MergeGuide

AI coding assistants now generate nearly half the code in files where they're active. That velocity is extraordinary — and it's creating a governance problem that traditional security tools were never designed to solve.

MergeGuide is the third option between "allow AI freely and accept the risk" and "restrict AI and fall behind." Governance that enables AI rather than restricting it.

Four Enforcement Layers

MergeGuide validates every code change — whether written by humans or AI — against your organization's security and compliance policies across four graduated layers:

  1. IDE — Real-time detection rule feedback as code is written (VS Code extension)
  2. MCP — Policy injection into AI assistants before code is generated (Model Context Protocol)
  3. Git Hooks — Pre-commit validation before code leaves the developer's machine
  4. PR Gate — Server-side enforcement at merge with tamper-evident evidence artifacts

Each layer shifts detection left for earlier, cheaper remediation. Violations caught in the IDE cost seconds to fix. The same violation caught at PR Gate costs a full review cycle.

Key Capabilities

  • 739 detection rules across 15+ programming languages
  • 18+ compliance frameworks including SOC 2, HIPAA, PCI-DSS, NIST SSDF, OWASP ASVS, EU AI Act, and more
  • Tamper-evident evidence — SHA-256 hashed artifacts for every evaluation
  • 4 SCM platforms — GitHub, GitLab, Bitbucket, Azure DevOps
  • OSCAL export — integrate with GRC platforms (Vanta, Drata, and more)
  • SBOM generation — CycloneDX 1.5 + SPDX 2.3

Installation

VS Code Extension

Search "MergeGuide" in the VS Code Extensions panel, or visit the VS Code Marketplace.

MCP Server (for AI assistants)

npx @mergeguide/mcp-server

Git Hooks

pip install mergeguide
mergeguide hooks install

PR Gate

Install the MergeGuide GitHub App or configure webhooks for GitLab, Bitbucket, or Azure DevOps in the dashboard.

Getting Started

  1. Sign up at portal.mergeguide.ai
  2. Connect your repositories
  3. Install the enforcement layers you need
  4. Run your first policy check in under 5 minutes

Pricing

Tier Price Description
Free $0 739 detection rules, 1 repo, 50 PR Gate evals/month
Pro $29/month 20 repos, 1,000 evals, evidence export
Team $39/seat/month 2-9 seats, compliance reports, SSO, SBOM
Business Contact Sales 10-49 seats, OSCAL export, SCIM, custom roles
Enterprise Contact Sales 50+ seats, OSCAL webhook, dedicated CSM

Links

License

MIT

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

mergeguide-2.1.2rc1.tar.gz (628.5 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

mergeguide-2.1.2rc1-py3-none-any.whl (831.4 kB view details)

Uploaded Python 3

File details

Details for the file mergeguide-2.1.2rc1.tar.gz.

File metadata

  • Download URL: mergeguide-2.1.2rc1.tar.gz
  • Upload date:
  • Size: 628.5 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.14.3

File hashes

Hashes for mergeguide-2.1.2rc1.tar.gz
Algorithm Hash digest
SHA256 15b5bbb0335ca0fbf89c5416068d8afe0164c1be02e8844a9f39851e5efe845f
MD5 042759f55d4a44ce3215a570e5849272
BLAKE2b-256 7a6a623c89176529e382f5cfac7cc17f0929b49cedb7f77867a59a8552af0988

See more details on using hashes here.

File details

Details for the file mergeguide-2.1.2rc1-py3-none-any.whl.

File metadata

  • Download URL: mergeguide-2.1.2rc1-py3-none-any.whl
  • Upload date:
  • Size: 831.4 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.14.3

File hashes

Hashes for mergeguide-2.1.2rc1-py3-none-any.whl
Algorithm Hash digest
SHA256 f23cdbda5f8bb7268315baa92ae63a97d022b3b9d2a2243218568f8ac1719a27
MD5 dda07f5729e3b4a70ddb2dd3667fc2e9
BLAKE2b-256 8ab6c4dbe84936f4e6a62c6114fec548d79f8aff12f303d0567190bf4789ef33

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page