ChatGPT powered GitHub code review app
chatcody.umso.co
chatcody.umso.co
Using ChatGPT to code review is very much like posting a picture of your code on StackOverflow or Reddit.
In many ways I think the change is good. It's certainly more convenient. But the radical shift in mindset is something I deeply regret. The SaaS-ification of everything, where the user has zero control over anything (even installation of updates) has had a majorly negative impact on my life. I loathe the fact that every few days, something important to my workflow/routine is probably going to break in some way from a CI/CD deploy that contained a bug, and I'll be stuck until they patch it. And of course there are times when you are mid-something, and the app starts 500ing and you click refresh, and congratulations! You're the first user of the massive UI overhaul that you didn't want or need, so now you get to re-learn how to use the app!
As a dev I love SaaS. It's so wonderfully convenient for me! As a user, I hate it.
Also, it seems that for most web sites and apps, it's more about the craft and speed of execution than the code itself, so I've stopped being paranoid about this kind of stuff. I don't think deep tech engineering co's should use these things though.
I'm sure there are very complex valuable pieces of code within the maps codebase (or any other), but it would be a fairly massive task finding those pieces, extracting them, and getting them to work properly in a different codebase...
maybe this would work if a reviewer wanted to highlight code for a question/comment and then the bot could add their two cents
Why does that matter?
If a user is offline, they are not going to be able to push code for review anyway. Either way, it seems prudent to shift validation and checks closer to the developer, before pushing code. Otherwise you end up with a series of commit & push, wait for check, commit & push fixes, wait for check, commit & push more fixes...
Maybe it could even collaborate with static checkers as a quick screen -- seeing as how some of static checkers today are a compromise between the execution time of the checker and the comprehensiveness of the check.
The idea: Train your bot based on the code reviews of prominent open-source contributors. Next, let the user choose the bot they want a review from (e.g. "Dan Abramov Bot", "Linus Torvalds Bot", etc.). Each time the bot does a code review, the open-source contributor gets paid for that. This also solves the legal problem of the licence of training data.
I explained this idea in a blog post a couple weeks ago: https://marmelab.com/blog/2023/02/27/copilot-code-review.htm...
I would pay for that product, because it's fair and it addresses a real problem: the sustainability of open-source projects.
> "Data submitted through the API is no longer used for service improvements (including model training) unless the organization opts in"
source https://openai.com/blog/introducing-chatgpt-and-whisper-apis
Would love to this evolve into sourcery.ai-like product. Or sourcery.ai could benefit from ChatGPT/Codex.
Additionally, how is this app able to handle so many potential requests to openai? Are they already paying for a bunch of tokens in anticipation? Or do you pay for how many tokens used per month? (The openai pricing is a little confusing since there's so much you can do.)
Thanks for any insight
Just yesterday, I've tweeted about it: https://twitter.com/marceloabsousa/status/163289383288582963....
Some pull request examples at: https://github.com/marcelosousa/robin-preview/pulls
I don't think so.
There is a reason why large companies ban the use of unaudited third-party services like this, especially when they aren't compliant with security standards.
Applies to self driving cars too, though they don’t have rollback capabilities in the event of an unhandled exception that involves physics.
Edit: downvote? So, I received a couple PRs, it commented way too much. Sometimes a comment would say "Everything looks good". Needs better "calibrating".
But since you're solo I'd recommend discipline before pushing instead of adding another layer on your CI, unless the point is to learn of course then go ahead.
Looking at the product it seems very solid. I don't believe in competition in this case but rather that we're trying to help more and more devs.
If they play their cards right, such as PP, they can add modular verifications of security issues, code change recommendations/optimizations, plagiarism detection, etc.
Looks good @winkmaster!