Codna CLI — understand, fix, evolve. Public mirror of the codna package on PyPI (cli/ of thyn-ai/codna), including the codna mcp MCP server.
- ✓Open-source license (Apache-2.0)
- ✓Actively maintained (<30d)
- ✓Clear description
- ✓Topics declared
- ✓Documented (README)
claude mcp add codna-cli -- python -m codna{
"mcpServers": {
"codna-cli": {
"command": "python",
"args": ["-m", "codna"]
}
}
}MCP Servers overview
# Codna <!-- mcp-name: io.github.thyn-ai/codna --> **Understand. Fix. Evolve.** Agents read your code. Codna understands it. Codna maps a repository before it spends a token. It then reviews pull requests, fixes bugs and proves which scanner findings are reachable. The same `codna` command runs on your machine, in the GitHub Action and behind the GitHub App. Runs on your machine or your cloud. Your code never leaves without your key. ## Install ```bash pip install codna # or: pipx install codna · uv tool install codna codna --version ``` Python 3.12–3.13. Wheels for macOS on Apple silicon and Linux x86_64. `git` on your `PATH`. Nothing else to install: no Node, Bun, Docker or server. The agent runtime ships inside the wheel. Local commands need no Codna key. `fix` and `review` use your own model provider key, stored in the OS keychain and never printed: ```bash codna key set anthropic # also: openai, gemini, google, groq, mistral, openrouter, xai, cursor ``` ## Commands ```bash codna triage . --issue "checkout total is wrong" # suspect files. Deterministic. 0 LLM tokens. codna review . --pr 123 --post # findings with a verdict on the pull request codna fix . --tests --apply --max-iterations 3 # patch, re-run your tests, re-fix until green codna fix <git url> --ref <sha> --issue "…" --open-pr # push a branch and open a pull request codna secure . --from-sarif results.sarif # which scanner findings are reachable. 0 LLM tokens. ``` `codna fix` prints the root cause, the impacted symbols, the blast radius, its confidence and a regression risk. `--open-pr` needs a git URL and a GitHub write token. `codna review` posts one inline comment per finding with severity, category and a suggestion block, and an Approve when the diff is clean at medium and high. `codna secure` reads SARIF 2.1.0 from CodeQL, Semgrep, Snyk, Trivy or any other scanner. Other commands: `init`, `status`, `doctor`, `login`, `key`, `impact`, `memory export`, `report`. Full reference: [docs.codna.ai/reference/cli](https://docs.codna.ai/reference/cli). ## MCP server Run Codna as a [Model Context Protocol](https://modelcontextprotocol.io) server over stdio — the same engine the CLI uses, inside Cursor, Claude Desktop, or your own agent: ```bash pipx install "codna[mcp]" # or: pip install "codna[mcp]" codna mcp # serve over stdio codna mcp install --client cursor # optional: write the client config for you (or --client claude) ``` Five tools, each returning JSON; a failure comes back as `codna_<tool> error: …` text and never crashes the server: | Tool | What it does | Needs | | --- | --- | --- | | `codna_triage` | Understand a repo and locate the code relevant to an issue. Deterministic, 0 LLM tokens. | free `codna login` | | `codna_secure` | Prove which SARIF scanner findings (CodeQL, Semgrep, Snyk, Trivy) are reachable. Read-only, 0 LLM tokens. | free `codna login` | | `codna_recall` | Recall code from local on-device memory — semantic + lexical search, fully offline. | free `codna login` (which also installs the on-device runtime) | | `codna_fix` | Root-cause and plan a fix (read-only by default); with `open_pr=true` pushes a branch and opens a real PR. | free `codna login` + provider key (BYOK; + `GITHUB_TOKEN` for `open_pr=true`) | | `codna_report_bug` | File a bug, feature, or question to thyn-ai/feedback. | free `codna login` + `GITHUB_TOKEN` (else returns a pre-filled URL) | Introspection (`initialize`/`tools/list`) needs no credentials. Executing any of the five tools requires the one-time free community login (`codna login` — device authorization, free community license) — fully offline thereafter. `codna_fix` additionally needs a provider key (BYOK, e.g. `ANTHROPIC_API_KEY`); `codna_report_bug` needs `GITHUB_TOKEN` or it returns a pre-filled issue URL; `codna_recall` additionally uses the on-device memory runtime that the same `codna login` installs. Full reference: [docs.codna.ai/guides/mcp](https://docs.codna.ai/guides/mcp). ## Code memory Code memory and recall run on your machine after a one-time free `codna login` (device authorization), which also installs the signed on-device runtime. From then on, recall runs fully offline: no key, no network calls. The optional `codna[memory]` extra adds the on-device semantic reranker; without it, recall ranks lexically. ## What leaves your machine - Repository mapping, triage, recall and `impact` run offline. No model is involved. - `fix` and `review` send one issue-specific evidence bundle to the provider you chose, under your key. Not the repository. - Secret redaction is always on and cannot be turned off. - `privacy.egress: fail-closed` in `codna.yaml` refuses to run tests without network denial and skips registry lookups during review. - Source distributions exclude runtime binaries, keys, `.env` files and logs. ## Links - Homepage: https://codna.ai - Documentation: https://docs.codna.ai - Source (public mirror): https://github.com/thyn-ai/codna-cli - Security: https://codna.ai/security
What people ask about codna-cli
What is thyn-ai/codna-cli?
+
thyn-ai/codna-cli is mcp servers for the Claude AI ecosystem. Codna CLI — understand, fix, evolve. Public mirror of the codna package on PyPI (cli/ of thyn-ai/codna), including the codna mcp MCP server. It has 0 GitHub stars and its last recorded update is dated 2026-09-24.
How do I install codna-cli?
+
You can install codna-cli by cloning the repository (https://github.com/thyn-ai/codna-cli) or following the README instructions on GitHub. ClaudeWave also provides quick install blocks on this page.
Is thyn-ai/codna-cli safe to use?
+
Our security agent has analyzed thyn-ai/codna-cli and assigned a Trust Score of 95/100 (tier: Verified). See the full breakdown of passed checks and flags on this page.
Who maintains thyn-ai/codna-cli?
+
thyn-ai/codna-cli is maintained by thyn-ai. The last recorded GitHub activity is dated 2026-09-24, with 0 open issues.
Are there alternatives to codna-cli?
+
Yes. On ClaudeWave you can browse similar mcp servers at /categories/mcp, sorted by popularity or recent activity.
Deploy codna-cli to your cloud
Ship this repo to production in minutes. Each platform spins up its own environment with editable env vars.
Maintain this repo? Add a badge to your README
Drop the badge into your GitHub README to show it's tracked on ClaudeWave. Each badge links back to this page and reflects the live Trust Score.
[](https://claudewave.com/repo/thyn-ai-codna-cli)<a href="https://claudewave.com/repo/thyn-ai-codna-cli"><img src="https://claudewave.com/api/badge/thyn-ai-codna-cli" alt="Featured on ClaudeWave: thyn-ai/codna-cli" width="320" height="64" /></a>More MCP Servers
Fair-code workflow automation platform with native AI capabilities. Combine visual building with custom code, self-host or cloud, 400+ integrations.
User-friendly AI Interface (Supports Ollama, OpenAI API, ...)
An open-source AI agent that brings the power of Gemini directly into your terminal.
Real-time global intelligence dashboard. AI-powered news aggregation, geopolitical monitoring, and infrastructure tracking in a unified situational awareness interface
🕷️ An adaptive Web Scraping framework that handles everything from a single request to a full-scale crawl! Don't be shy, join here: https://discord.gg/EMgGbDceNQ and follow here for daily tips and tricks: https://x.com/Scrapling_dev
The fastest path to AI-powered full stack observability, even for lean teams.