15 checks. Zero config. Full report in 5 seconds. The only code quality tool with LLM readiness analysis — built for how software is made in 2026.
npx @vibecodeqa/cli
npx @vibecodeqa/cli — auto-detects your stack, runs 15 checks, opens the report.
A-F grade with transparent weighted scoring. Every issue shows file, line, rule, and how to fix it.
Each run compares to the previous one. See score deltas, new issues, and what you fixed.
Every dimension of code quality, scored 0-100 with research-backed methodology
Project structure, lint (Biome/ESLint auto-detected), TypeScript types, type safety (as any counts), code standards (naming, file size, code smells, strict mode).
Cognitive complexity per function (McCabe, 1976), copy-paste duplication detection, documentation coverage (README quality + JSDoc on exports).
6 sub-dimensions: testing pyramid layers, pass/fail execution, statement/branch/line/function coverage, file pairing, assertion density vs mock ratio, Playwright/Cypress detection.
Static import graph analysis: circular dependencies, god modules (>50% fan-in), orphan files, high fan-out coupling. Auto-generated SVG architecture diagram.
13 secret patterns (AWS, GitHub, Stripe, OpenAI keys). 15 CWE-mapped vulnerability patterns (XSS, injection, prototype pollution, SSRF). Dependency audit + outdated checks.
Confusion Index — naming ambiguity that causes AI to edit the wrong code. Context Locality — file self-containment for LLM comprehension. Research: GPT-4o drops 28.6% with ambiguous names.
The CLI is open source and always free. Pro adds hosted dashboards and team features.
Weights are visible. Every point of your score is explained.
Join developers who use VibeCode QA to catch bugs, reduce complexity, and keep their AI-assisted code clean.
npx @vibecodeqa/cli