osfeed.dev
Projects/tirth8205 / code-review-graph

code-review-graph

Code review context and dependency analysis over MCP

Get it on GitHub
Unclaimed

Written by @iluxav from the project's code and releases, not by its maintainers. Last updated for v2.3.9 (2026-09-18), so it may lag behind newer releases.

Are you @tirth8205?Claim it, and your coding agent keeps it current with each release
v2.3.9 · 36 things you can do 38 changes to know before upgrading
Follow GitHub

Review code changes with affected callers, dependencies and test gaps, and explore the same code graph through MCP, the CLI or visualizations.

What you can do with code-review-graph

Review changed code together with affected callers, dependencies and test gaps.

Since v1.6.2
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Find callers, callees, imports and tests for indexed code symbols.

Since v1.6.2
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Keep a code graph updated as source files change.

Since v1.6.2
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Search code entities by meaning using optional local vector embeddings.

Since v1.6.2
Good to know

Optional local or cloud embedding dependencies are needed. Cloud providers receive source-derived content; ranking can miss module-pattern names.

Explore a searchable HTML code graph with collapsible files and relationship filters.

Since v1.6.2
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Configure a coding client's MCP connection with an install command and preview its changes.

Since v1.7.2
Good to know

Requires a supported coding client; restart the client after configuring it.

Trace code relationships in Vue single-file components and Solidity contracts.

Since v1.8.4
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Find functions, classes or files exceeding a chosen line-count threshold.

Since v1.8.4
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Show all 36

Explore the code graph and navigate callers and callees inside VS Code.

Since v1.8.4
Good to know

Requires a separately built/installed extension 0.3.0 accepting schema 13; older published extension builds reject v2.3.9 graphs.

Trace call chains from entry points and inspect the flows affected by a change.

Since v2.0.0
Good to know

Entry-point detection is strongest in Python; JavaScript and Go flow detection has documented gaps.

Inspect related-code communities and coupling warnings in an architecture overview.

Since v2.0.0
Good to know

Leiden clustering uses optional community dependencies; file grouping is a fallback.

Preview symbol renames and identify dead-code candidates and refactoring suggestions.

Since v2.0.0
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Generate a Markdown wiki describing a repository's code communities.

Since v2.0.0
Good to know

Optional LLM summaries require the wiki extra and Ollama.

Register repositories and search their code graphs together.

Since v2.0.0
Good to know

Each repository needs its own indexed graph.

Include Dart, Scala, R and Perl source in the code graph.

Since v2.0.0
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Include Python, R and SQL notebook cells from Jupyter and Databricks in code analysis.

Since v2.3.2
Good to know

Supported cells and exported notebooks only; static extraction does not execute notebooks.

Trace functions, calls and imports in Lua and Roblox Luau source.

Since v2.3.2
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Trace functions and relationships in Elixir, Objective-C and shell scripts.

Since v2.3.2
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Include Zig, PowerShell, Julia and Svelte source in code review graphs.

Since v2.3.2
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Find highly connected symbols, chokepoints, test gaps and cross-community connections.

Since v2.3.2
Good to know

Uses static graph analysis; suggested review questions are not proof of defects.

Export a code graph for Gephi, Neo4j, Obsidian or an SVG viewer.

Since v2.3.2
Good to know

Exports may contain absolute paths and source-structure metadata.

Compare code graph snapshots to see added or removed nodes, edges and communities.

Since v2.3.2
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Persist code questions and answers as Markdown for later graph ingestion.

Since v2.3.2
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Include Nix, Verilog/SystemVerilog, SQL, ReScript and GDScript source in the graph.

Since v2.3.3
Good to know

Requires an indexed repository; static relationships do not establish runtime behavior.

Trace Spring injection, Temporal workflow calls and Kafka producer-consumer relationships.

Since v2.3.3
Good to know

Static source evidence is required; runtime wiring may not be resolved.

Analyze changed code in an SVN working copy.

Since v2.3.3
Good to know

Requires SVN and a supported working copy.

Expose selected graph tools over Streamable HTTP as an alternative to stdio MCP.

Since v2.3.3
Good to know

Requires an MCP client supporting the chosen transport.

Keep registered repository graphs updated through a supervised watch daemon.

Since v2.3.3
Good to know

Requires accessible local repositories; daemon health does not establish graph completeness.

Compare full and graph-filtered review context in a CLI panel and verify estimated tokens.

Since v2.3.5
Good to know

Savings are estimates against a full-context baseline, not guaranteed savings over an agent's own search; verification uses cl100k_base.

Post an automatically updated pull-request comment with risky functions, affected flows and test gaps.

Since v2.3.6
Good to know

Requires GitHub Actions configuration and appropriate token permissions; graph-derived risk is not proof of a defect.

Index an additional language through a repository languages.toml file without forking the tool.

Since v2.3.6
Good to know

Requires a grammar bundled in tree-sitter-language-pack; built-in languages cannot be overridden.

Query relationships, search symbols, inspect impact and find dead-code candidates from the command line.

Since v2.3.7
Good to know

Requires a built graph; dead-code results are candidates because static analysis can miss runtime uses.

Trace Terraform/OpenTofu resources and Ansible tasks, roles and dependencies.

Since v2.3.7
Good to know

Terraform relationships are bounded to parsed module files; ordinary YAML is excluded.

Inspect namespaces, types, members and supported relationships in VB.NET source.

Since v2.3.7
Good to know

Bounded structural parsing; overloads share one symbol and ambiguous same-file targets remain unresolved.

Remove installed graph integrations while preserving unrelated client configuration.

Since v2.3.7
Good to know

Requires a Git or SVN working tree; dry-run and data/config retention options are available.

Remove files, directories or glob matches from a graph without rebuilding the entire repository.

Since v2.3.8
Good to know

`forget` repairs affected graph structures; `--dry-run` previews selected files.

Before you upgrade code-review-graph

Newest first
v2.3.9

Keyword search matches quoted tokens with prefixes, tries AND before OR, and preserves explicit phrases; migration backfills docstrings and camelCase name tokens.

Behavior changedAffects: Users of keyword graph search.
Read the evidence
v2.3.9

Branch references resolve to their merge base with `HEAD`; commit IDs and revision expressions remain literal, with ref fallback if a shallow clone cannot find the merge base.

Behavior changedAffects: Review and impact queries comparing divergent branches.
Read the evidence
Show 35 older
v2.3.9

Parse failures return `status: partial`, identify affected files and preserve their old rows; the CLI warns on stderr.

Behavior changedAffects: Consumers of build/update results and users relying on graph freshness.
Read the evidence
v2.3.9

Before the first v2.3.9 graph open, back up important databases or rebuild them. Automatic schema 9→13 migration is not resumable; rolling back to v2.3.8 requires a rebuild.

Action requiredAffects: Users upgrading existing graph databases or planning rollback.
Read the evidence
v2.3.9

Build and install the separately packaged extension 0.3.0 for schema 13. Older extension builds reject the migrated database; upgrading the CLI does not update the extension.

Action requiredAffects: VS Code Code Graph panel users upgrading the Python package.
Read the evidence
v2.3.9

Run `code-review-graph build` once after upgrading to apply parser fixes to unchanged files; `update` alone skips their hashes. Search migration backfills without this rebuild.

Action requiredAffects: Users upgrading an already indexed repository.
Read the evidence
v2.3.9

Re-run `code-review-graph install` to replace generated pre-commit hooks. Linked-worktree checks now default off; set `CRG_HOOK_WORKTREES=1` to retain them.

Action requiredAffects: Users of generated pre-commit hooks, especially linked Git worktrees.
Read the evidence
v2.3.9

Change discovery gets `CRG_DISCOVERY_TIMEOUT` (default 5 seconds per Git command) and errors on timeout instead of returning a false all-clear.

Behavior changedAffects: Review workflows discovering changed files through Git.
Read the evidence
v2.3.9

Potentially blocking MCP tools run off the event loop; `CRG_TOOL_TIMEOUT` bounds read-only tools but does not cancel writing tools.

Behavior changedAffects: MCP clients on either HTTP or stdio transport.
Read the evidence
v2.3.8

Empty relationship, impact and semantic-search results carry a bounded `confidence` explanation for indexing gaps, staleness or known static-analysis limitations.

Behavior changedAffects: Consumers interpreting empty MCP results.
Read the evidence
v2.3.8

Re-run `code-review-graph install` to refresh generated instruction blocks; manually edited sections are preserved and reported.

Action requiredInferredAffects: Users who want existing generated instructions updated.
Read the evidence
v2.3.8

Upgrade the `google-embeddings` extra when using Gemini; it now installs `google-genai` in place of `google-generativeai`.

Action requiredInferredAffects: Gemini users upgrading without refreshing optional dependencies.
Read the evidence
v2.3.6

Correct unknown embedding provider names to a supported provider; invalid names now error instead of silently falling back to local embeddings.

Action requiredAffects: Configurations with misspelled or unsupported embedding providers.
Read the evidence
v2.3.5

Leiden community detection uses `CRG_LEIDEN_SEED=42` by default, making repeated grouping reproducible on the same graph; the environment variable selects another seed.

Behavior changedAffects: Users rebuilding Leiden communities or comparing their IDs and sizes.
Read the evidence
v2.3.3

Update proxy allow-lists matching `code-review-graph/2.1.0` to accept the current versioned cloud-embedding User-Agent.

Action requiredAffects: Cloud embedding deployments with version-specific proxy allow-lists.
Read the evidence
v2.3.2

Automatic aggregation groups large graphs by community or file; smaller graphs retain visible functions and edges rather than collapsing at 300 nodes.

Behavior changedAffects: Users opening generated HTML visualizations.
Read the evidence
v2.3.2

Install a separately repackaged compatible extension for newer schemas or VS Code 1.115; upgrading the Python package alone does not update the extension.

Action requiredAffects: Users of the separate VS Code extension.
Read the evidence
v1.6.2

Generated data moves to `.code-review-graph/graph.db` and `.code-review-graph/graph.html`; the legacy root database migrates automatically.

Behavior changedAffects: Users of generated database and HTML files.
Read the evidence
code-review-graph release history 11
v2.3.9

Explore a bounded neighborhood or shortest path instead of drawing an entire repository.

Details

Adds seeded graph views and scoped cross-repository search; keyword queries gain token-based matching. The release changes branch comparison, partial-update reporting, hook defaults and the graph database schema.

Install code-review-graph 2.3.9 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Improved: Explore a searchable HTML code graph with collapsib…Improved: Register repositories and search their code graphs…Improved: Find callers, callees, imports and tests for indexe…Behavior changed: Find callers, callees, imports and tests for indexe…Behavior changed: Review changed code together with affected callers,…Improved: Review changed code together with affected callers,…Behavior changed: Review changed code together with affected callers,…Behavior changed: Keep a code graph updated as source files change.Now works: Keep a code graph updated as source files change.Action requiredAction required: Explore the code graph and navigate callers and cal…Action required: Find callers, callees, imports and tests for indexe…Action required: Keep a code graph updated as source files change.Behavior changed: Review changed code together with affected callers,…Behavior changed: Expose selected graph tools over Streamable HTTP as…Behavior changed: Keep registered repository graphs updated through a…Now works: Configure a coding client's MCP connection with an…Behavior changed: Post an automatically updated pull-request comment…

Seeded by @iluxav with Codex

Read the evidence
v2.3.8

Keep watched graphs updating after directory replacement or symlinked-root access.

Details

Repairs watch registration, root normalization and watcher health reporting. Adds selective file removal, single-platform uninstall and clearer explanations for empty queries.

Install code-review-graph 2.3.8 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Added: Remove files, directories or glob matches from a gr…Now works: Keep a code graph updated as source files change.Improved: Keep registered repository graphs updated through a…Behavior changed: Find callers, callees, imports and tests for indexe…Behavior changed: Review changed code together with affected callers,…Action required: Keep a code graph updated as source files change.Action required / inferred: Configure a coding client's MCP connection with an…Improved: Remove installed graph integrations while preservin…Improved: Search code entities by meaning using optional loca…Action required / inferred: Search code entities by meaning using optional loca…Now works: Explore a searchable HTML code graph with collapsib…Behavior changed: Explore a searchable HTML code graph with collapsib…Now works: Find callers, callees, imports and tests for indexe…

Seeded by @iluxav with Codex

Read the evidence
v2.3.7

Query code relationships and review impact directly from command-line workflows.

Details

Adds dedicated graph CLI commands, Terraform and Ansible analysis, and integration cleanup. Review results gain transitive test relationships, optional churn and provenance.

Install code-review-graph 2.3.7 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Added: Query relationships, search symbols, inspect impact…Added: Trace Terraform/OpenTofu resources and Ansible task…Added: Inspect namespaces, types, members and supported re…Added: Remove installed graph integrations while preservin…Improved: Trace Spring injection, Temporal workflow calls and…Improved: Review changed code together with affected callers,…Now works: Find callers, callees, imports and tests for indexe…Now works: Keep a code graph updated as source files change.Improved: Export a code graph for Gephi, Neo4j, Obsidian or a…Improved: Search code entities by meaning using optional loca…Improved: Configure a coding client's MCP connection with an…

Seeded by @iluxav with Codex

Read the evidence
v2.3.6

Post risk-scored pull-request reviews from a GitHub Action.

Details

Adds a composite action with sticky review comments and repository-configured custom language parsing. Windows change detection and hook placement in worktrees are fixed.

Install code-review-graph 2.3.6 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Added: Post an automatically updated pull-request comment…Added: Index an additional language through a repository l…Now works: Review changed code together with affected callers,…Now works: Keep registered repository graphs updated through a…Now works: Keep a code graph updated as source files change.Action required: Search code entities by meaning using optional loca…

Seeded by @iluxav with Codex

Read the evidence
v2.3.5
with v2.3.4

See how much review context the graph returns and verify its token estimate.

Details

Brief change and update commands show a Token Savings panel with a category breakdown; `--verify` checks it against cl100k_base. Architecture output becomes compact by default.

Install code-review-graph 2.3.5 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Added: Compare full and graph-filtered review context in a…Improved: Search code entities by meaning using optional loca…Now works: Search code entities by meaning using optional loca…Behavior changed: Inspect related-code communities and coupling warni…Behavior changed: Review changed code together with affected callers,…Now works: Find callers, callees, imports and tests for indexe…Now works: Keep a code graph updated as source files change.Now works: Analyze changed code in an SVN working copy.Behavior changed: Inspect related-code communities and coupling warni…Action required / inferred

Seeded by @iluxav with Codex

Read the evidence
v2.3.3

Review framework-connected code with Spring, Temporal and Kafka relationships.

Details

Adds framework-aware relationships, additional languages, SVN analysis and HTTP MCP transport. Windows subprocess handling, hook preservation and CLI post-processing are repaired.

Install code-review-graph 2.3.3 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Added: Include Nix, Verilog/SystemVerilog, SQL, ReScript a…Added: Trace Spring injection, Temporal workflow calls and…Added: Analyze changed code in an SVN working copy.Added: Expose selected graph tools over Streamable HTTP as…Added: Keep registered repository graphs updated through a…Improved: Configure a coding client's MCP connection with an…Action required: Configure a coding client's MCP connection with an…Now works: Configure a coding client's MCP connection with an…Improved: Search code entities by meaning using optional loca…Action required / inferred: Search code entities by meaning using optional loca…Action requiredNow works: Keep a code graph updated as source files change.Improved: Explore a searchable HTML code graph with collapsib…Action required: Explore the code graph and navigate callers and cal…Now works: Find callers, callees, imports and tests for indexe…Now works: Configure a coding client's MCP connection with an…

Seeded by @iluxav with Codex

Read the evidence
v2.3.2
with v2.1.0, v2.2.0, v2.2.1, v2.2.2, vscode-v0.2.1, v2.2.3, v2.2.3.1, v2.2.4, v2.3.0, v2.3.1

Find architectural hotspots and unexplained connections before reviewing a change.

Details

Adds graph-analysis queries, bounded traversal, graph exports and notebook parsing. The grouped releases also add compact MCP responses, configurable indexing, more languages and installation targets, and fixes for hooks and repository selection.

Install code-review-graph 2.3.2 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Added: Include Python, R and SQL notebook cells from Jupyt…Added: Trace functions, calls and imports in Lua and Roblo…Added: Trace functions and relationships in Elixir, Object…Added: Include Zig, PowerShell, Julia and Svelte source in…Added: Find highly connected symbols, chokepoints, test ga…Added: Export a code graph for Gephi, Neo4j, Obsidian or a…Added: Compare code graph snapshots to see added or remove…Added: Persist code questions and answers as Markdown for…Improved: Configure a coding client's MCP connection with an…Behavior changed / inferred: Configure a coding client's MCP connection with an…Action required: Configure a coding client's MCP connection with an…Now works: Configure a coding client's MCP connection with an…Improved: Review changed code together with affected callers,…Now works: Find callers, callees, imports and tests for indexe…Improved: Keep a code graph updated as source files change.Now works: Keep a code graph updated as source files change.Behavior changed: Keep a code graph updated as source files change.Now works: Find callers, callees, imports and tests for indexe…Now works: Generate a Markdown wiki describing a repository's…Improved: Preview symbol renames and identify dead-code candi…Behavior changed: Explore a searchable HTML code graph with collapsib…Behavior changed: Search code entities by meaning using optional loca…Action required: Explore the code graph and navigate callers and cal…

Seeded by @iluxav with Codex

Read the evidence
v2.0.0

Trace execution flows from entry points to understand a change's wider effects.

Details

Adds flow and architecture queries, risk-scored changes, rename planning, Markdown wiki generation and cross-repository search. More coding clients and source languages are supported.

Install code-review-graph 2.0.0 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Added: Trace call chains from entry points and inspect the…Added: Inspect related-code communities and coupling warni…Added: Preview symbol renames and identify dead-code candi…Added: Generate a Markdown wiki describing a repository's…Added: Register repositories and search their code graphs…Added: Include Dart, Scala, R and Perl source in the code…Improved / inferred: Configure a coding client's MCP connection with an…Improved: Search code entities by meaning using optional loca…Improved: Review changed code together with affected callers,…Now works / inferred: Keep a code graph updated as source files change.

Seeded by @iluxav with Codex

Read the evidence
v1.8.4
with v1.8.0, v1.8.1, v1.8.2

Include Vue components and Solidity contracts in code relationship queries.

Details

This group adds Vue and Solidity parsing, size-threshold queries and VS Code navigation. It repairs C# parsing and adds explicit impact-result limits.

Install code-review-graph 1.8.4 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Added: Trace code relationships in Vue single-file compone…Added: Find functions, classes or files exceeding a chosen…Added: Explore the code graph and navigate callers and cal…Now works: Find callers, callees, imports and tests for indexe…Behavior changed: Find callers, callees, imports and tests for indexe…Behavior changed: Review changed code together with affected callers,…Behavior changed: Keep a code graph updated as source files change.

Seeded by @iluxav with Codex

Read the evidence
v1.7.2
with v1.6.3, v1.6.4, v1.7.1

Keep watch-mode updates running on Python 3.10 and 3.11.

Details

Watch mode fixes SQLite use from background threads, and full builds remove deleted-file data. The install command can preview configuration changes.

Install code-review-graph 1.7.2 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Now works: Keep a code graph updated as source files change.Added: Configure a coding client's MCP connection with an…Behavior changed

Seeded by @iluxav with Codex

Read the evidence
v1.6.2
First release
with v1.0.0, v1.1.0, v1.3.0, v1.5.0

Review a change together with the callers, dependencies and tests it may affect.

Details

Build a local graph and retrieve review context through MCP; watch mode maintains it as files change. The grouped releases add semantic search, searchable HTML visualization and Python 3.10 support.

Install code-review-graph 1.6.2 with pip; requires Python 3.10+. Optional integrations have separate dependencies.

Added: Review changed code together with affected callers,…Added: Find callers, callees, imports and tests for indexe…Added: Keep a code graph updated as source files change.Added: Search code entities by meaning using optional loca…Added: Explore a searchable HTML code graph with collapsib…Now works: Keep a code graph updated as source files change.Now works: Find callers, callees, imports and tests for indexe…Behavior changed

Seeded by @iluxav with Codex

Read the evidence