How it works
From repository files to useful answers.
RepoMind combines code retrieval, repository relationships, and AI reasoning to help developers navigate unfamiliar software.
Repository connections are in development. This page describes how they are designed to work.
01
Connect and index.
- Access repository files with the permissions you grant, and nothing more.
- Exclude generated, vendored and sensitive-looking files.
- Extract file contents and metadata.
- Identify symbols and the references between them.
- Build searchable representations of each file and its relationships.
02
Retrieve relevant context.
Your question is matched against code, symbols and the reference graph. Instead of sending a whole repository to a model, RepoMind selects the few files and line ranges that matter, plus the files directly connected to them.
03
Generate a grounded explanation.
The model receives the selected code with paths and line numbers and is asked to cite what it relies on. Answers separate direct evidence, which you can see in the cited lines, from inference, which goes beyond them. Select any citation to open the lines it points to.
04
Explore and refine.
Investigations are rarely one question. Ask a follow-up, open a referenced file, inspect the functions it calls, and narrow down until you have what you need. Each step keeps the context of the last.
- How does checkout calculate the amount?
- server/checkout.ts L11–14
- calculateTotals → server/cart.ts L33–39
- Which tests cover a discount?
- None. tests/cart.test.ts covers the zero-discount case only.
The simplest architecture that works.
Six parts, one database. Select a part to see what it does. This is the planned design for the first release.
Repository connector
Fetches repository contents with the narrowest permission the code host offers. Credentials stay server-side and can be revoked by disconnecting.
Security and privacy principles.
These are the principles repository connections are being built to. RepoMind holds no security certifications today, and we will not claim any until they are earned.
- Least-privilege access
- Read-only scopes, requested per repository rather than per account.
- Credentials stay server-side
- Tokens will be stored encrypted and never sent to the browser or to the model.
- Clear access controls
- You choose which repositories are connected and who in a workspace can query them.
- Disconnect any time
- Disconnecting a repository will revoke access and schedule its index for deletion.
- Defined retention
- Retention and deletion periods will be published before repository connections launch.
- Careful with secrets
- Files that look like credentials will be skipped, and detected secrets masked from context.
- Transparent AI processing
- We will document what is sent to the model provider, and why, for every request type.