← News

Qodo 3.0 PR Triage UI listing pull requests with priority, blast radius, and SLA metrics

1 Oct 2026

Qodo

Qodo 3.0 puts quality control inside the agentic software factory

Qodo said it released Qodo 3.0, expanding its AI code quality and governance platform so enterprises building agentic software factories can connect agent workflows to codebase knowledge, architectural standards, and governance — including PR Triage that groups related pull requests into work packages.

Agents can open pull requests faster than people can review them. Qodo 3.0 is the control layer the company is selling: standards inside the agent’s workspace, triage that packs related pull requests together, and a map of where a change will hurt, so the factory does not outrun the review.

On Thursday, 1 October 2026, Qodo said it released Qodo 3.0, the next generation of its AI Code Quality and Governance Platform. The GlobeNewswire page is titled “Qodo 3.0 Brings Enterprise-Grade Quality Control to Agentic Software Development.” The line under the headline says the new capabilities extend Qodo across the agentic software development lifecycle, from code generation and review to software architecture and governance. The page stamps October 01, 2026, 09:00 ET, which is 9:00 a.m. Eastern. The dateline is New York. The source line is Qodo. A software development lifecycle, often shortened to SDLC, is the path from writing code to shipping it. Agentic, in this release, means software agents do more of that work. An agent is a program that can take a next step, not only answer in a chat. A software factory, in Qodo’s phrase, is a company setup that runs those agents across that path. Those lines are the wire’s.

What the opening says is going wrong. As companies build factories that orchestrate agents across that path, the release says many of them are struggling to keep quality and governance at the pace agents now produce code. Orchestrate means coordinate. The release cites a recent industry study: 91 percent of engineering leaders fear being at risk of losing control of their codebase, and governance and visibility are cited as the top risk at almost 30 percent. Ninety-one percent is about 9 in 10. Almost 30 percent is a bit under 1 in 3. A codebase is the company’s code, taken together. Governance, here, is the rules for what is allowed. Visibility is being able to see what the agents did. Those two figures are the study’s, as the release cites them. They are not a count Qodo measured for this product. Those lines are the release’s.

How Qodo says 3.0 answers that. The release says Qodo 3.0 injects quality controls throughout the agentic SDLC, guided by a Wisdom Base. The Wisdom Base, as the release describes it, gives agents a continuously updated understanding of an organization’s codebase, standards, architecture, and pull-request history. A standard is a rule for how code should be written. Architecture is how the pieces of the system fit together. A pull request, often shortened to PR, is a proposed code change waiting for someone to review it. Continuously updated means the picture of that code is supposed to change as the code changes, rather than sitting in a document that goes stale. Those lines are the wire’s.

Itamar Friedman, chief executive and co-founder, is quoted on the release. “Every enterprise will build its software factory around its own systems, tools, and ways of working,” he said. “That factory becomes trustworthy when agents can draw on the organization’s accumulated knowledge and operate within its standards.” An enterprise, here, is a company large enough to have its own engineering rules. Accumulated knowledge is what the company has already decided, in its code and in its past reviews. That quotation is his, in the release.

Quality before a pull request exists, as the release states it. Qodo 3.0 embeds quality into code generation by surfacing an organization’s coding standards into an agent’s workspace, and by running Qodo’s review engine on code before it is committed. Code generation is the agent writing the code. A workspace is the place the agent is working. Committed means saved into the project’s history. The review engine is Qodo’s checker. The company blog says the Agentic Toolbox is how a coding agent retrieves the relevant Qodo rules and codebase context while it works, the same guidance the company says it uses during pull-request and editor review. The blog says a team can opt in to importing guidelines from selected repositories, turning them into Qodo rules alongside conventions a tool called Rule Miner has found. A repository is one project’s store of code. A convention is a habit the code already follows. The blog says an agent can have local changes reviewed, address the findings, and ask for another review before it opens a pull request, so problems are caught while the work is still taking shape. Those lines are Qodo’s. The release does not print a count of issues this step has caught.

What happens once the pull requests arrive. The release says PR Triage groups an agent’s pull requests into a single work package, so a reviewer can see everything the task touches and how that package ranks against other work. A work package is that group: related changes treated as one job. A reviewer can claim the package, which the release says establishes ownership and prevents a second person from reviewing the same work. The company blog says PR Triage is available in Research Preview. A research preview is a limited release, for teams trying the feature, while the company says it will keep expanding it from how those teams use it. The blog says the grouping runs across repositories and across Git providers. Git is the system that stores the code history. A provider, here, is the product that hosts it, such as GitHub. Opening a work package, the blog says, brings four things together. Blast radius is the areas of the codebase the change could affect. Review difficulty is how much effort the review is likely to take. Time waiting is how long the work has been open. Review order is the sequence for working through the pull requests in the package. The blog says prioritization surfaces important findings, blocked work, and overdue reviews. A tech lead can sort by priority, by SLA, or by age, and can switch to a board view. An SLA, a service-level agreement, is a time target for how soon the review should be done. Claiming, the blog says, lets teammates see who has the package, which cuts duplicate reviews and makes a handoff easier. For a deeper pass, the blog says Qodo can write a brief for a coding agent such as Claude Code or Codex. The brief carries the relationships among the pull requests, the blast radius, and the review order, so that agent can review the change as a whole. The queue, the blog says, follows the team’s pull-request activity, so there is no separate board to maintain by hand. Those lines are Qodo’s. The wire describes the work package and the claim. The Research Preview label, the four fields, the sorts, and the brief are on the company blog.

The map. The release says governance and codebase quality can be monitored and risk-assessed with the Qodo Software Map. The map automatically maps an organization’s repositories, calculates the blast radius of a proposed change, and surfaces quality issues as a heat map across the architecture. A heat map, here, is a view that marks where the problems are concentrated, the way a weather map marks heat. The company blog says the map shows how repositories and services connect, stays current as pull requests change the system, and supplies the context for the blast radius in PR Triage. A service, in that sentence, is a piece of the system that other pieces call. The blog says a tech lead can look at what sits downstream of a change, and that an engineering leader gets a shared view of how the system fits together. Downstream means the parts that depend on the thing that changed. Those lines are Qodo’s. The release does not print a count of repositories on a named customer’s map.

Where the code lives, as the release states it. Qodo 3.0 adds Gerrit alongside GitHub, GitLab, Bitbucket, and Azure DevOps. Gerrit is a code-review system many large engineering teams already use. The company blog calls that git-provider parity: the same review, the same standards, and the same PR Triage experience on each of those five. The release also says the platform supports a full on-premises or air-gapped deployment, with the Context Engine and the Agentic Toolbox inside the perimeter. On-premises means the software runs on machines the customer controls. Air-gapped means that network is not connected to the public internet. The perimeter is that boundary. The Context Engine is the part that holds the understanding of the codebase. The blog says the whole platform, including those two pieces, runs inside the customer’s environment, so the codebase understanding stays inside the perimeter along with the review. The release says open-source model support includes Nemotron, so review can run on models hosted inside a customer’s own infrastructure. The blog names that model NVIDIA Nemotron and says a customer runs it through their own model gateway. A model gateway is the door those review calls pass through. Open source, here, means the model’s weights can be run on the customer’s machines rather than only on a vendor’s. Those lines are Qodo’s. The release does not print a price for the on-premises install, and it does not name a customer running it.

What leaders can see, as the blog states it. Qodo 3.0 adds an analytics dashboard in the Qodo portal. The blog says it shows findings, fix rates, and unresolved issues across teams and repositories, and that a person can open the pull requests and the findings behind a number. A finding is an issue the review caught. A fix rate is the share of those issues that got fixed. The blog says the dashboard uses activity already captured in the connected development workflow, so there is no separate reporting process to run. It also says guided onboarding helps a team connect a Git provider, pick a review configuration, and start with the Agentic Toolbox. A recommended preset is a starting setup. The blog says a team can refine it on real work. Those lines are the blog’s. The blog does not print a finding count or a fix rate for a named team.

Who the about box says Qodo is, and the money line. Qodo calls itself an AI code quality and governance platform, built to turn high-velocity code generation into high-quality software, and it calls that trust and governance infrastructure for enterprise engineering teams. The box says Qodo provides context engineering and a multi-agent review system that draws on full-repository signals, including codebase history and prior pull-request decisions, to give feedback that is more accurate, explainable, and actionable, while reducing noise and enforcing the organization’s own standards. Context engineering, in that sentence, is the work of giving the model the right surrounding code and rules. Multi-agent means more than one agent takes part in the review. Explainable means a person can see why the comment was made. The box says the company was founded in 2022 and has raised $120 million. That $120 million is money raised to date. The release does not announce a new round. The backers named are Qumra Capital, Maor Ventures, Phoenix Venture Capital, S Ventures, Square Peg, Susa Ventures, TLV Partners, Vine Ventures, and angel investors including executives from OpenAI, Meta, Shopify, and Snyk. An angel investor is a person investing their own money. Those company names are where some of those angels work, as the about box states it. The release does not say OpenAI, Meta, Shopify, or Snyk is a Qodo customer. Media inquiries go to Ashley Hayford at Scratch Marketing + Media for Qodo, qodo@scratchmm.com. The release does not print a price.

The picture is the Qodo 3.0 PR Triage screen, a frame from the product walkthrough on the launch blog. The header reads PR Triage. The list shows pull requests with priority, blast radius, and SLA. A filter sits open beside the list. The rows, the priority marks, and the blast-radius labels are on that screen. The release does not say they are a named customer’s queue. The screen does not print a calendar date. It is the product UI.

In plain terms, Qodo said on Thursday that Qodo 3.0 is the quality layer for companies whose agents are writing code. Standards are supposed to show up in the agent’s workspace, and Qodo’s checker is supposed to run before the code is committed. Related pull requests are grouped into a work package a reviewer can claim. The company blog says that triage is in Research Preview, and that each package shows blast radius, review difficulty, time waiting, and a review order. A Software Map is supposed to show which repositories a change can affect, and to mark quality issues across the architecture. Gerrit joins GitHub, GitLab, Bitbucket, and Azure DevOps. The platform can run on the customer’s own machines, including on a network cut off from the public internet, and review can use NVIDIA Nemotron there. The 91 percent figure is an industry study, as the release cites it. The $120 million is money raised to date, not a new round. The release does not name a customer, and it does not print a price.

RELATED

ONLINE…

Comments

guidelines

Loading…

Loading…

Sources