FAQ
General
What is Helio Audit?
Helio Audit is an AI engineering intelligence platform that unifies code review, security, quality, compliance-related signals, and repository insights, and enhances findings with AI explanations and remediation guidance.
See Introduction.
Who should use Helio Audit?
Software engineers, DevOps and platform engineers, security engineers, and engineering leaders who need consistent Pull Request Reviews and a shared view of Repository risk.
How is Helio Audit different from a traditional code review tool?
Helio Audit combines automated analysis with AI-powered insights across security, architecture, and maintainability—not only human discussion of diffs or syntax checks—and correlates signals that are often split across many scanners.
AI Reviews
Does Helio Audit review Pull Requests?
Yes. Helio Audit provides AI Pull Request Review, AI Change Review, Security Pull Request Review, and assistance with Pull Request comment resolutions.
See AI Reviews.
Does Helio Audit only look at Pull Request diffs?
Pull Request Reviews focus on newly introduced changes. Helio Audit also supports whole-branch and repository-level analysis so existing debt can be found and prioritized.
Where do developers see feedback?
In Pull Requests on the Git provider, in IDE extensions, and through CLI workflows for local or staged changes.
Integrations
Does Helio Audit support GitHub?
Yes. See GitHub integration.
Does Helio Audit support GitLab?
Yes. See GitLab integration.
Does Helio Audit support Bitbucket?
Yes. See Bitbucket integration.
Does Helio Audit work with CI/CD?
Yes. Helio Audit integrates with CI/CD tools in your stack, including GitHub Actions and Jenkins. Pipeline-specific setup follows your installation materials.
Security
What security analysis does Helio Audit provide?
Application security, secrets detection, dependency security, and infrastructure security, plus security-focused Pull Request Review. See Security.
Does Helio Audit detect secrets?
Yes. It scans for API keys, passwords, tokens, certificates, and cloud credentials, with validation intended to reduce false positives. See Secrets detection.
Does Helio Audit help with dependencies and IaC?
Yes. Dependency security identifies vulnerable packages; infrastructure security analyzes Terraform, Kubernetes, Dockerfiles, Helm, and CloudFormation for misconfigurations.
Deployment
Can I self-host Helio Audit?
Yes. Helio Audit is designed for self-hosted and enterprise deployment so source code can remain under Organizational control. See Self-hosting overview.
Which deployment targets are supported?
Docker, Docker Compose, Kubernetes, Linux hosts, and major cloud providers including AWS, Azure, GCP, and Hetzner. See Installation.
Where are install commands documented?
Use the commands, manifests, and environment variables shipped with your Helio Audit release artifacts.
Policies and standards
What are Policies?
Policies encode Organization standards that shape Reviews and findings across Repositories. See Policies.