Factory launches automated STRIDE-based security review for pull requests in Droid
Original titleIntroducing Automated Security Review
AISummary
Factory is rolling out automated security review in Droid, running a STRIDE-based check on every non-draft PR alongside standard code review. Findings include severity, a CWE reference, an explanation, and a suggested fix, posted as inline diff comments.
The feature is available today on all plans, and a deeper multi-agent /security-review deep audit is available for full-repository scans.
Source: Factory News · factory.com