FAQ
Is PatchCraft really free to start? +
Yes. Get 1 free vulnerability scan per month to evaluate the product. Pro plan is $99/month for unlimited scans, unlimited repos, and unlimited auto-fix PRs.
How is PatchCraft different from Snyk or Dependabot? +
Flat pricing ($99/mo unlimited), automatic fix PRs that actually merge, and <10% false positive rate vs 60-80% industry average. No alert fatigue.
Is my source code safe? +
We only read dependency manifests (package.json, requirements.txt). Your code never leaves your repo. All fixes are pushed to separate branches for your review.
What if an auto-fix breaks something? +
Fixes are tested in an isolated environment before PR creation. PRs go to separate branches so you review and merge at your own pace. Rollback is one click.
What languages/ecosystems do you support? +
NPM/JavaScript is live now. PyPI (Python) and Go modules coming in Q2 2026. Support for more ecosystems added quarterly based on demand.
Can PatchCraft auto-merge fixes? +
No — by design. You always review and merge. We create the PRs, you control what ships. Safety first.
What if I have multiple repositories? +
Pro plan supports unlimited repos for $99/month flat. Scan your entire org, no per-repo charges or hidden fees.
How accurate are the vulnerability scans? +
Powered by the GitHub Advisory Database with real CVE data. Our validation pipeline maintains <10% false positive rate, compared to 60-80% industry standard.