open betaUse your own AI subscription or API key.

Build your app. Build the tools your team needs.

An AI coding agent for GitHub. Turn a clear request into a roadmap and development work, using a supported AI subscription or API key you already have. Build an app or an internal tool, then review pull requests and choose the approval and merge controls for your repository.

› Zero markup on AI usage› Review and merge controls you choose› Single-use VMs, destroyed after every run› Pause, gate, or revoke in one click
Project progresssimulated
Request portal filtersPR ready
Weekly reporting dashboardAwaiting review
Shared resource hub accessDecision needed
Webhook retry handlingChecks running
CSV export for reportsMerged
[ how it works ]Connect GitHubDescribe the workReview PRs and decisions
[ AI engines ]Claude CodeCodexGLMKimiGrok

01 — The backlog problem

Copilots made typing faster. Your backlog didn't notice.

Autocomplete and chat agents can help with focused coding work. A backlog still needs someone to define priorities, review progress, and decide what happens next — especially when attention is split across the rest of the workday.

The bottleneck was never typing speed. It's that software work needs a process that can carry defined work forward: plan it, implement it, check it, and bring decisions back for review. That's not an assistant. That's a team.

02 — The loop, defined

Not an agent in a chat window. A process in a sandbox.

Keelen is an autonomous AI coding agent for GitHub repositories. It turns requests into a standing roadmap, plans tasks with acceptance criteria, and implements changes as pull requests using AI credentials you connect. Use it to build internal tools, progress a team's backlog outside working hours, and act on selected findings from Security, Legal and Controls scans. You set the project's approval and merge controls; execution depends on available capacity, provider limits and decisions that need you.

PILLAR 1

A PM that never sleeps

Write a request in plain English. Intake classifies it into roadmap items, clarifying questions, and standing rules. Expansion turns the top item into tasks a developer could pick up cold — each with acceptance criteria and a definition of ready.

PILLAR 2

Dev runs, one task at a time

Every iteration gets a fresh clone in a single-use, network-isolated VM, implements exactly one task, and opens a pull request. Small, reviewable, revertible units — the way disciplined teams ship.

PILLAR 3

Ships merged code — or waits for you

By default, green and gated means merged. Prefer eyes on it first? Require plan sign-off before any code is written, keep the merge button for yourself, or take branches only.

03 — The gauntlet

Five gates stand between the AI and your main branch.

The available controls depend on your project configuration. A verified test command enables test proof, and configured required checks protect the merge.

plancode① red-first② review③ tests④ CI⑤ windoweligible to merge

Red-first proof

When a verified project test command supports it, new tests are applied without the implementation and must fail. Then the implementation lands and they must pass. Tests that were born green are rejected, so the proof can catch a regression.

Adversarial review

A separate adversarial review examines the diff without sharing the development run's conversation. The review model depends on the project configuration. A rejection holds the work for correction.

Your tests, actually run

With a verified project test command, the PR head is checked out clean and that command runs, with monorepo support and a timeout based on your project's own baseline.

CI-green merge gate

Configured required checks protect a merge from a red result. A failing test check holds the work and reopens the task; a flaky integration check gets a bounded re-run, not a shrug.

The review window

When gated auto-merge is configured, it waits out a review window first — and you can replace auto-merge entirely with plan-review sign-off before any code is written, or keep the merge button for yourself.

The contract

The loop is forbidden from weakening configured checks: it may not skip a failing test, mark a configured check non-required, or add continue-on-error to get to green. If it can't fix the real problem, it tells you so — in plain English.

04 — Built for bad nights

Autonomy is easy when everything works. Keelen is built for when it doesn't.

It knows why it failed

Every failed run is classified into one of 30 failure kinds. Infrastructure blips and provider limits never count against your work. Deterministic failures use separate, bounded recovery budgets.

It retries like an adult

Budgeted retries with exponential backoff per failure class. Provider quota hit? It waits for the reset and resumes itself.

It doesn't spam your board

Post-merge failures reopen the original ticket instead of forking duplicates. Conflicts get healed server-side before any agent time is spent. Duplicate PRs are detected byte-for-byte and closed.

It handles flaky CI three ways

Different-failure holds, bounded re-runs, and an early stop when the same failure signature repeats. Machines never burn on the same red twice.

It fixes flaky tests — properly

Flaky tests get root-cause fix tickets first; quarantine is a last resort and tracked. Deterministic failures are never quarantined.

It knows when to stop

Circuit breakers on every runaway pattern pause the project and tell you exactly why. Every dead end becomes one card in your Needs-you queue with a plain-English ask.

05 — Security & isolation

Your code and keys stay within configured access.

Connecting GitHub and your model key takes one click each — and both are built to be taken back just as fast. Here's exactly what happens to them.

A

Least-privilege GitHub, per run

You connect through GitHub's official app and choose which repositories Keelen can see. Every iteration then gets its own access token scoped to one repository, valid for about an hour, with no permission to touch your CI workflows. When the run ends, the token is already dying.

B

Keys encrypted and redacted

Your model key is encrypted when you connect it, under independently rotated keys per credential type. Keelen redacts connected credential values from its logs.

C

A VM that exists for one job, then vanishes

Each iteration runs in its own isolated VM with no persistent disk. Credentials are handed to it only while the run executes — then the machine is destroyed. Code, keys, everything on it: gone.

D

The internet, minus almost all of it

Iteration VMs have no direct internet access. All traffic passes through a deny-by-default proxy that allows roughly twenty hosts — your AI provider, GitHub, package registries — and logs every request, including denials.

You're always in control

Changed your mind? Revoke in seconds.

Disconnect GitHub
  1. 1.GitHub → Settings → Installed GitHub Apps
  2. 2.Find Keelen → Uninstall — access stops instantly
Remove your model key
  1. 1.Keelen → Settings → Integrations
  2. 2.Click Revoke — the key is deleted from our database at once

What Keelen can do is bounded by what you grant. In PR modes, development work is recorded as a pull request; branch-only mode pushes a branch without opening one. Prefer a human gate? Plan sign-off, manual merge, and branch-only mode are one toggle each, and you can pause a project or your whole fleet anytime. Read the full security model →

06 — Scans

The loop that ships your code can audit it, too.

Review security risks, potential legal exposure and controls evidence gaps as your software changes. Run a scan from the dashboard, or use your own agent or scheduler to trigger repeat scans through MCP. Triage the findings, send selected code work into the roadmap, and review the resulting pull requests before rescanning.

Recurring timing is configured in your external scheduler. Keelen does not include a built in scan scheduler. Included on every paid plan. Read-only runs; selected fixes arrive as normal, gated pull requests. All three scans →

07 — Setup

Four steps. About ten minutes.

01

Connect GitHub

Install the GitHub App and pick your repos, or have Keelen create a fresh one from an idea. It works on branches and pull requests; it never commits straight to main.

● acme/internal-tools · main
02

Connect your engine

Choose Claude Code, Codex, GLM, Kimi, or Grok. Connect a supported subscription or API key. Grok accepts SuperGrok sign in or an xAI API key. Credentials are encrypted at rest, and AI usage stays on your provider account with no token markup.

● engine · your account · ✓ ready
03

Write a request

Plain English: “Build a client approval portal.” Keelen turns your request into prioritized roadmap items and tasks with acceptance criteria, and asks you a question when your request is ambiguous.

● T-088 · P0 · Add client approvals
04

Press play

The loop picks the top task and starts work. Follow its progress live, or return to review pull requests and answer questions when Keelen needs your input.

● ▶ running · iter#42 · 7m 21s

08 — Bring your agent

The dashboard is optional. Drive the loop from your editor.

Keelen ships a first-class MCP server. Point your coding agent at it to sign up, create projects, file requests, reorder the roadmap and clear blockers. Connecting GitHub or an AI provider can still require that provider's approval flow.

Claude Code MCP setup demo · August 2026 · 50 seconds

One line, no key required

claude mcp add --transport http keelen https://keelen.ai/mcp

Then just ask

  • “create a project that …”
  • “what shipped overnight?”
  • “bump the auth work to the top”
Claude CodeClaude DesktopCursorWindsurfCodex CLIany MCP client

No key to paste

Signup and email verification are themselves MCP tools. Run the command, then say “sign me up” — the server mints your key in the chat.

41 tools

Create projects, submit requests, reorder the roadmap, read status, resolve escalations, kick off a security review.

One pipeline

A request submitted over MCP enters the exact intake path the dashboard uses. Same queue, same planner, same gates.

Signing up, connecting GitHub and creating a project are free. Running the loop needs an active trial or paid subscription. Provider costs are separate.

09 · Progress and decisions

Keep control of the work.

Keelen plans work and opens pull requests in the background. Review the results and answer questions when a task needs a decision. Your project's approval and merge settings determine what can happen next.

example/operations-hub›todaysimulated
working in the background
pull requests · today2 merged
Add request status filters
T-088 · PR ready for review
Export weekly reporting data
T-090 · merged · after review
Fix retry handling for sync jobs
T-091 · PR open · checks running
Add search to shared resources
T-092 · merged · after review
needs you · 1 decision
T-093
Who can approve requests in this portal?
Team leads
Named approvers
ready for review1
waiting on you1
checks running1
merged after review2

10 — Roadmap-driven

Your roadmap is the prompt.

Drag a task to Next and it runs next iteration. Add an acceptance criterion and Keelen reads it. Lock a lesson and it graduates to a rule for every future run.

  • Drag a task to Next — it runs the next iteration.
  • Self-curating memory: Keelen learns from every iteration and prunes what stops being true.
  • Blocker detection: three failed iters on the same line and Keelen flags you.
  • Pause and resume at any iteration boundary — the machine suspends within a tick.
simulated

Next

2
T-091feature
Add filters to the request portal
P10/7
T-098improvement
Retry failed webhook deliveries
P10/4

In progress

1
T-088feature
Build the weekly reporting view
P04/6

Blocked

1
T-082chore
Choose who can access the resource hub
P12/5

Done

2
T-079feature
Export request history as CSV
P25/5
T-076improvement
Fix duplicate sync jobs
P14/4

11 — Who it's for

Built for the people whose roadmap outruns their hands.

Indie devs & side projects

Bring defined feature work from the project you keep returning to. Keelen rebuilds context, plans the work, and leaves reviewable pull requests and decisions for when you return.

Start with Indie →

Internal tools at work

Build the reporting tool, shared resource hub, or integration your colleagues need while your main job keeps moving. Review the pull requests and deploy the tool through your company's deployment process.

See Keelen at work →

Founders & small teams

Queue well defined fixes, tests and small features for evenings, weekends or holidays. Review the resulting pull requests and decisions when you return, with approval and merge controls set for each project.

See the team handoff →

Agencies

Fifteen concurrent machines across thirty client repos. Per-project merge policy, per-client story, one console — and one flat bill.

Go Agency →

12 — Compare a real setup

Compare the workflow, controls, and evidence.

Use this checklist to compare a real repository setup. Then inspect a named provider's current workflow and primary documentation before choosing the controls for a bounded Request.

Start with a Request

Keelen records a Request, then uses the project roadmap to prepare eligible work. Review the actual Request and acceptance criteria before treating it as a commitment.

Reuse a supported provider setup

Connect a supported provider subscription or API key for the project. Provider availability, allowance, limits, and billing remain terms of that provider plan.

Make test proof concrete

Red-first proof and clean-checkout execution require a verified project test command. A repository without one needs that condition established before it can supply that evidence.

Configure merge protection

Required checks protect a merge only when they are configured in the repository. Project settings can also use plan review, manual merge, or branch-only work.

Read the receipt

A useful comparison ends with the actual revision, check results, and the remaining human decision. Token or pull-request counts do not establish quality or billed cost.

Compare specific workflows: GitHub Copilot · Devin · Cursor · Lovable

13 — Receipts

Keelen is built by Keelen.

Keelen's own repository is a dogfood example: its revisions and CI records show how the team uses the workflow it builds. They are implementation evidence for that repository, not independent customer proof or a guarantee of a customer outcome.

14 — Pricing

Flat tiers. Zero token markup.

Your AI usage bills to your own provider at cost — Keelen never resells tokens. The subscription pays for the loop: the scheduler, the isolated VMs, the gates, the dashboard, the recovery machinery. Cancel any time.

Indie
$29/ mo
For solo devs and side projects.
  • 200 iterations / month
  • 3 projects
  • 2 concurrent runs
  • 1 scheduled project
  • 30-day log retention
  • Security, legal + controls scans
  • Email support
Start with Indie
Operator
$79/ mo
Ship while you sleep.
  • 1,000 iterations / month
  • 10 projects
  • 5 concurrent runs
  • 5 scheduled projects · 24/7 loop
  • 90-day log retention
  • Security, legal + controls scans
  • Priority support
Go Operator
Agency
$299/ mo
For teams running multiple clients.
  • 5,000 iterations / month
  • 30 projects
  • 15 concurrent runs
  • Unlimited scheduled projects
  • 5 team seats
  • 1-year log retention
  • Security, legal + controls scans
  • Dedicated support channel
Go Agency
Enterprise
For orgs with 10+ repos on the loop. — Unlimited projects + concurrent machines · SSO (Google, Okta, SAML) · Self-hosted runner option.
Talk to us

One iteration = one machine run — a PM planning pass or a dev run. At full use, Operator's 1,000 iterations work out to about $0.08 of platform fee per run.

Compare all plans →

15 — Straight answers

Questions about handing over software work.

Practical answers about internal tools, ongoing development, reviews and the controls you keep.

All answers →

What is Keelen?

Keelen is an autonomous AI coding agent for GitHub repositories. It turns requests into a standing roadmap, plans tasks with acceptance criteria, and implements changes as pull requests using AI credentials you connect. Use it to build internal tools, progress a team's backlog outside working hours, and act on selected findings from Security, Legal and Controls scans. You set the project's approval and merge controls; execution depends on available capacity, provider limits and decisions that need you.

Flat pricing from $29/month with zero token markup. When the loop is unsure, it stops and asks instead of guessing.

Can an AI safely merge code to main?

Only if it never grades its own homework. Keelen gates every AI-written pull request behind five checks: where a verified project test command supports it, a red-first proof that new tests fail before the change and pass after, an adversarial review in a separate context, your test suite on a clean checkout when a verified command is available, configured required checks, and an optional human review window you control per project. A failing gate holds or reopens the work until the required conditions are met.

The loop is also forbidden from weakening your checks: it may not skip a failing test or mark a check non-required to get to green.See the five gates →

Can I use an AI subscription or API key I already have?

Yes. Connect a Claude Pro or Max login (or Anthropic API key), a Codex login from your ChatGPT subscription (or OpenAI API key), a GLM (Z.ai) API key, a Kimi Code membership key or Moonshot API key, or a SuperGrok sign in or xAI API key for Grok. Keelen uses the connected engine to progress your roadmap within your provider limits. Keelen never resells tokens and adds zero markup: you pay a flat platform fee, and AI usage bills to your provider at cost.

Use a supported subscription or API key you already have for defined development work, then return to review the result.Put your Claude Max plan to work →

How much does Keelen cost?

Keelen is a flat monthly fee metered by iterations — one iteration is one machine run. Indie is $29/month for 200 iterations, Operator is $79/month for 1,000, and Agency is $299/month for 5,000 with 5 team seats; Enterprise is custom. Every tier is bring-your-own-key with zero token markup, so at full Operator use the platform fee is about $0.08 per run.

Add-on packs cover burst months, and every plan cancels anytime.Compare plans →

What does Keelen ship while you sleep?

Keelen can work through defined fixes, tests and small features while your team is offline, including nights, weekends and holidays. The work follows your project's approval and merge settings. With manual merge, you return to pull requests and check results to review. Quotas, failed checks, missing dependencies and questions can limit progress, so a queued backlog is not a promise of a fixed number of finished tasks.

Start with one bounded task and leave room to review the result.The team handoff →

Can I build internal tools alongside my main job?

Yes, if you can connect a GitHub repository and a supported AI provider within your company's policies. Describe the tool and its acceptance criteria, then let Keelen plan and implement the work as pull requests. You review changes and answer questions. Hosting, colleague sign in and access rules belong to the software you build and the deployment you choose.

Start with a reporting dashboard, a resource hub or a small integration.Internal tools at work →

Can I repeat security, legal and controls scans?

Yes. Run the scans from the dashboard or have your own agent or scheduler call Keelen's MCP tools daily, weekly or after releases. Keelen has no built in scan scheduler. Reviews produce findings and evidence for triage; selected code remediation can enter the development loop. Legal reviews are not legal advice, and controls reviews do not certify compliance.

Scan availability, setup, billing and execution limits still apply.How recurring reviews work →

Can Keelen fix my Sentry errors automatically?

Yes. Connect your Sentry project and new production errors file onto your roadmap — filtered for noise, capped by a daily budget, ranked fatal-first. The loop plans the fix, implements it in an isolated VM on your own AI credentials, passes the test and review gates, and opens a pull request. Keelen then polls your Sentry until the error goes quiet before calling it fixed.

Budgets default to 5 filings a day per project with 3 fixes in flight per project — a bad deploy costs database rows, not AI spend.Sentry integration →

16 — FAQ

Reasonable doubts.

Things people ask in the first call. Email us if yours isn't here.

Which AI engines can I connect?

Connect Claude Code, OpenAI Codex, GLM, Kimi, or Grok using your own supported subscription or API key. Grok accepts a SuperGrok sign in or an xAI API key. Pick an engine per project; AI usage stays on your provider account, and switching engines preserves your roadmap and history. Engine availability can differ by role. OpenRouter is currently limited to Keelen's own test and benchmark projects. It is not enabled for customer repositories.

Do I need a Claude Max plan?

No. Keelen runs on whatever credentials you connect at setup — a Claude subscription login or API key, a Codex login or OpenAI API key, a GLM key, a Kimi key, or a SuperGrok sign in or xAI API key. We don't resell tokens; usage bills to your own provider at cost. If you do own a Claude Pro or Max plan, Keelen is the highest-leverage thing you can point it at: the loop runs on the subscription you already pay for.

How does it avoid wrecking my codebase?

Five gates stand between the AI and your main branch. Where a verified project test command supports it, new tests are applied without the implementation first and must fail — tests born green are rejected. An independent adversarial reviewer that shares no context with the dev run reviews the diff. When a verified project test command is available, your test suite runs on a clean checkout. Configured required CI checks protect a merge from a red result. And gated auto-merge waits out a review window — or you can replace it entirely with plan-review sign-off before any code is written, manual merge, or branch-only mode. The loop is also forbidden from weakening your checks: it may not skip a failing test or mark a check non-required to get to green.

What happens when it gets stuck?

Every failed run is classified into one of 30 failure kinds. Infrastructure blips and provider limits retry on a budget and never count against your work; real dead ends become one plain-English card in your Needs-you queue with a recommended action, and the project pauses instead of burning your quota. Iterations are wall-clock capped (about an hour for a dev run), so nothing spins forever. You resolve the card, hit resume, and the loop continues.

What languages and stacks does it support?

TypeScript and JavaScript (including Next.js and Vite web apps, which get preview-server QA with a headless browser), Python, Go, Rust, C/C++, Godot, and Roblox (Rojo/Luau with the Lune test runner). Monorepos are supported with per-package test targets. Repos with no tests at all can still onboard — Keelen runs with an honest no-test posture until its own PRs add a test suite.

What does Keelen see and store?

Your repo is cloned into an isolated single-use VM that is destroyed when the run ends — no persistent volume, so code and credentials on disk die with the machine. What persists on our side: iteration logs (with secrets automatically scrubbed), PR metadata, and timeline metrics. Your credentials are encrypted at rest under independently rotated keys and are deleted the moment you revoke them.

How is Keelen different from Copilot or a coding agent?

Copilots autocomplete while your hands are on the keyboard. Chat coding agents do one task per prompt and wait for the next one. Keelen runs a standing process: it holds your roadmap, picks its own next task, works around the clock, verifies every change through test and review gates, recovers from flaky CI and merge conflicts on its own, and accumulates lessons and steering rules that persist across runs — on your own AI subscription, at cost.

Is Keelen a loop or a graph-based agent workflow?

Both — the loop is the product, the graph is the machinery. Keelen is not one model in a while-loop: it runs parallel lanes (intake, planning, dev, review, recovery) routed by scheduler policy over durable Postgres state, with circuit breakers on every retry cycle and human checkpoints where you configure them. That is everything graph-based agent frameworks promise — branching, parallelism, checkpointed shared state, human-in-the-loop — running as a crash-safe control plane instead of an in-memory graph.

Can I keep a human in the loop?

Yes, per project. Require plan review — a product sign-off and/or a developer sign-off on every plan before any code is written. Set merge to manual and Keelen opens the PR but leaves the merge button to you. Or choose branch-only and it pushes branches without opening PRs at all. You can also pause one project or your whole fleet at any time, and revoke GitHub or model access in one click.

Can I use Keelen without the web dashboard?

Yes. Keelen ships a public MCP server at https://keelen.ai/mcp over streamable HTTP. Add it to Claude Code, Claude Desktop, Cursor, Windsurf, the Codex CLI, or any MCP client, and 41 tools let you sign up, create projects, submit requests, reorder the roadmap, check project status and resolve escalations from chat. Signup and email verification are themselves tools, so you connect before you have a key. A request submitted over MCP enters the same intake pipeline as one typed into the dashboard.

What counts as an iteration?

One iteration = one machine run — a PM planning pass or a dev run. Manual runs and scheduler-triggered runs count the same. If you hit your monthly cap, new runs pause until your cycle renews — or top up instantly with an add-on pack from the billing dashboard.

Can Keelen audit my code for security issues?

Yes — the Security scan is a deep whole-repository audit that runs in an isolated VM with a read-only single-repo token. It works a fixed checklist across code, secrets (including git history), dependencies, and infrastructure, and reports ranked findings plus a coverage map with no silent gaps. Any finding can be sent to the loop, which fixes it and ships a tested pull request. Included on every paid plan.

Does Keelen help with compliance frameworks like Cyber Essentials or CMMC?

The Controls scan reviews your repository for per-control evidence against Cyber Essentials v3.3, CMMC Level 1, and CMMC Level 2 (NIST SP 800-171 Rev. 2), and the Legal scan maps code observations to commonly cited obligations under GDPR, CCPA/CPRA, COPPA, and TCPA. Both are honestly bounded engineering reviews — not certifications and not legal advice — and both can route code-fixable gaps into the loop as tested pull requests.

Start in minutes

Let it run overnight.
See what's in your inbox.

Drop your email — we'll set you up. Connect your repo and let it run overnight. Free for 14 days, no credit card required.

no spam · cancel anytime