Dependency updates, human reviewed

Tested dependency updates, prepared for human review.

Stop spending engineering hours triaging dependency updates. Bivouac detects the issue, finds a compatible fix, and tests it against your codebase — so the PR that lands in your queue is already proven, not just proposed.

Connect GitHub, choose your policy, and let Bivouac prepare dependency updates for review. You approve and merge.

Try it on one GitHub repo — freeNo credit card. No sales call. No commitment.
A vigilant digital sentinel watches a network of GitHub branches and dependency nodes, illustrating the Bivouac on-call patch agent.
  1. 01Connect GitHub
  2. 02Choose your policy
  3. 03Bivouac finds an issue
  4. 04Patch PR
  5. 05Tests
  6. 06You merge
Human approval required.
Start freeNo credit card. No sales call. No commitment.

A guided first run

See how a safe review sprint fits your repository.

Start with one dependency change, one connected repository, and a policy your team can inspect. This is the real product setup: after you connect a repository, Bivouac opens and tests a reviewable patch PR, then waits for a human to approve and merge it.

Run a First Safe Review SprintNo credit card. No sales call. No commitment.
See what Bivouac would have caught

Connected-repository setup: these permission and review stages apply after you start the product. The zero-permission example below is separate and does not connect to GitHub.

01 / Access

Start with a narrow permission set

Bivouac works within the connected-repository scope and requests only:

  • Repository metadata (read)
  • Contents (read & write)
  • Pull requests (write)
  • Actions (read)

02 / Actions

Run the reviewable PR loop

The permitted loop is deliberately easy to inspect:

  • Inspect the dependency and lockfile change
  • Open the patch PR
  • Observe review and CI results
  • Wait for a human to approve and merge

03 / Escalation

Stop when judgment is required

The PR is blocked or left as a draft when there is:

  • Contested remediation
  • A security-sensitive file
  • A license concern
  • A failing build

This connected flow requests Repository metadata (read), Contents (read & write), Pull requests (write), and Actions (read). Merge execution is currently disabled: the first run opens a tested PR and waits for human approval. The zero-permission example below is separate and does not connect to GitHub. Read the full guardrails and human-review triggers before you connect a repository.

Full guardrails

What Bivouac does

Three things every dep-update agent should do — Bivouac does all three

One scannable row, not a feature blob. The agent’s three load-bearing jobs.

  1. Detect

    Bounded CVE + breaking-change handling
    Watches CVEs and SemVer-major signals, opens the right patch or downgrade, and pages judgement calls only.
  2. Govern

    License-flip detection
    Flags upstream license churn and contested re-licensing before they reach your lockfile.
  3. Patch

    Autonomous patching with self-hosted fallback
    Opens a tested, reviewable PR and pages judgment calls only — merge stays a one-click human decision. Ships the same agent as an air-gapped binary for regulated repos.

Illustrative audit evidence

Start with evidence. Keep the merge decision human.

This example uses a repeatable npm audit of the sample app's preserved baseline. It is not a captured Bivouac run, a live repository scan, or evidence that a pull request was created or tested.

npm audit · lodash@4.17.20

Illustrative fixture
  1. Sample baseline

    The preserved sample manifest and lockfile pin lodash 4.17.20.

  2. npm audit findings

    The registry audit returned five lodash advisory records for this baseline version.

  3. Available remediation target

    For this preserved sample lockfile, npm audit reports lodash 4.18.1 as the remediation target.

  4. The audit describes the package version, advisory identifiers, and available remediation target. Bivouac's sample decision board is illustrative; this page does not request GitHub access, creates no PR, changes no repository, and does not run a live scan. A human remains responsible for approval and merge.

    GHSA-35jh-r3h4-6jhm lists lodash 4.17.21 as patched for that advisory. A later lodash advisory, GHSA-r5fr-rjxr-66jc, affects versions through 4.17.23 and lists 4.18.0 and later as patched. For this fixture, npm audit selects lodash 4.18.1 as the current target. The GHSA threshold and fixture audit target describe different evidence.

    Start freeNo credit card. No sales call. No commitment.

Human in the loop

AI handles the routine. Engineers handle the exceptions.

Bivouac doesn't replace your engineers — it removes the repetitive dependency work that doesn't require engineering judgment. The same loop runs on every signal: investigate, fix, test, review. Engineers stay responsible for approving and merging the calls that need humans.

If it doesn't require engineering judgment, Bivouac prepares it. If it does, Bivouac waits for you.

The four triggers below are the conditions that require extra human judgement. They are recorded in the policy pack and reviewable alongside the patch.

Contested decisions
When the right remediation isn't unambiguous — forward-fix vs. downgrade vs. pin — the agent opens the PR as a draft and pages a maintainer to pick.
Security-sensitive surfaces
Auth, crypto, signing, and supply-chain entry points. The agent stops and waits for human review before any patch lands in those files.
License concerns
License churn (new copyleft dependency, attribution drift, GPL contamination). The agent keeps the PR open and surfaces the licensing diff to a maintainer.
Failing builds
If the test suite goes red on the patch, the agent keeps the PR open, writes the failure to the audit log, and asks a maintainer to decide.

Cost of one vulnerability

What does one vulnerability actually cost your team?

A dependency alert still needs a compatible change and a review. Bivouac helps prepare that work while your team keeps the merge decision.

Human-led workflow

Investigate, update, test, review

Bivouac-assisted workflow

Prepare evidence and wait for approval

Your team keeps the merge decision

Human-led workflow

Investigate, update, test, review

Your team owns each step

  1. Review the alert and advisory
  2. Trace the affected dependency
  3. Choose a compatible update
  4. Apply the change and run CI
  5. Review and merge as a human

Bivouac-assisted workflow

Prepare a change for review

Your team approves and merges

  1. Inspect the dependency update
  2. Prepare the proposed change
  3. Run the configured test gate
  4. Present the result for review
  5. You approve and merge

Built for teams that maintain their own stack

Who Bivouac is for

One product, four reasons to buy — pick the one that matches the room you're in.

CTO

Stop paying engineer-hours to maintain dependencies. Bivouac absorbs the maintenance tax so your roadmap keeps moving.

Engineering Manager

No more manually triaging Dependabot PRs at 8am. Bivouac sorts, tests, and opens the patch PR your team can merge.

Platform Team

Standardize dependency remediation across every repo. One policy, one agent, every service — without the bespoke plumbing per team.

Security Team

Turn every CVE alert into a tested, gated patch PR. Remediation lands before the alert ages out of the dashboard.

Start freeAll four start free on the same first repo. No sales call required.

How Bivouac compares

More than alerts — Bivouac closes the loop.

Dependabot and Renovate keep raising PRs. Snyk keeps flagging advisories. Bivouac is the layer that decides what to do, proves it on your tests, and opens a reviewable PR — only paging a human when the call is genuinely contested.

CapabilityBivouacDependabotRenovateSnyk Open Source
Monitors CVEs and breaking changeswatches CVEs and SemVer-major signals across public and private feedstracks public advisory feeds onlytracks public advisory feeds and SemVer drifttracks public vulnerability feeds
Opens a patch PRopens a draft PR against the right pin, fork, or downgradeopens a forward-fix PRopens a forward-fix or pin PRno PR — surfaces an advisory
Runs your test suiteruns the project test suite before the PR is reviewablenot in scopeoptional maintainer-configured merge after CI; the maintainer controls itnot in scope
Review and merge responsibilityPrepares a tested PR for review. Your team approves and merges it; Bivouac does not merge PRs.maintainer reviews and mergesopt-in test-gate; maintainer mergesnot in scope
Pages a human on judgment callspages the on-call only on contested decisions — license, public API, security surfacenot in scopenot in scopenot in scope
Handles downgrades when a forward fix is not viablepicks downgrade-as-fix when the forward upgrade is incompatibleforward-only — fails open otherwiseforward-only by defaultnot a remediation tool

Outcome-language summary — see pricing for what each plan actually runs in your repo.

See pricing →

For the CTO and the auditor

NIS2, CRA, SOC 2, and the dependency graph — generated as part of tested PR review.

Every bounded triage decision leaves a signed, exportable record — the same record your auditor wants to see. Compliance turns from a quarterly scramble into a query against the review log, and the agent reasons over your full dependency graph before it picks a remediation. Bivouac produces the evidence your team hands to the auditor — it isn't itself SOC 2 / NIS2 or EU CRA certified.

NIS2 · Article 21

Incident handling and supply-chain security recorded per review — ready to inspect in the review log.

EU CRA

Vulnerability handling, supported-product disclosure, and signed SBOMs / software-bill-of-materials per build — exportable from the review log.

SOC 2 evidence-ready

Append-only audit trail: which signal fired, which policy pack applied, which test gate made the PR ready for review.

Dependency graph awareness

Reads the full transitive dependency graph before picking forward-fix, downgrade, or pin — so the chosen remediation is the one your graph actually supports.

How it works

From disclosure to tested PR — on its own shift.

Every signal runs the same three-step track. The test suite is the gate. The on-call only gets paged for contested decisions, security-sensitive surfaces, license concerns, or failing builds.

  1. 01
    Watches
    Monitors connected GitHub repositories and their dependency trees.

    Public and private advisory feeds, package-registry disclosures, and upstream breaking changes.

  2. 02
    Investigates
    Reads the signal. Picks forward fix, downgrade, or pin against your policy pack.

    SemVer, peer usage, license posture, and security-sensitive surfaces — chosen locally before any code is touched.

  3. 03
    Patch, test, review
    Opens a reviewable PR, runs the project test suite, and waits for approval.

    The build is the gate. Red keeps the PR open. License churn, public-API breakage, and security-sensitive surfaces remain with a human — merge execution is disabled today.

Early access

Built for teams that can't afford dependency drift.

Currently onboarding early-access teams.

Bivouac is in private beta with a small set of design partners. Each team gets a named engineer, a shared roadmap slot, and a private channel into the audit log — names will appear on this page once they've signed off, not before.

Connected-product ecosystem coverage

npm today, with more ecosystems coming

Hosted-product coverage is listed below; entries marked Coming soon are not yet supported. The public GitHub Action investigates npm dependency bumps in changed package.json files only; it does not handle PyPI, Maven, RubyGems, crates.io, or Go modules. The public GitHub Action does not merge pull requests.

GitHub

Repos, advisories, PRs, review gates.

js
Node.js

npm lockfiles, transitive SemVer, peer ranges.

py
Python

pip, pyproject, private indexes · Coming soon

ja
Java

Maven, Gradle, OSV-scored advisories · Coming soon

go
Go

go.mod graph, vendor trees, module proxy · Coming soon

rb
Ruby

Bundler, gemspec, RubyGems advisories · Coming soon

rs
Rust

Cargo workspace graph, crates.io advisories · Coming soon

php
PHP

Composer, lockfile, private Packagist · Coming soon

.n
.NET

NuGet, csproj, transitive resolve · Coming soon

Early-access teams

A small set of design partners is onboarding now. Names will appear here once they've signed off — we don't put logos on the page before they do.

Pricing

Three tiers, one product.

Free, Team, and Enterprise. The headline price is what the team actually pays — Free for your first repo, Team at $399/mo with 25 included repos, Enterprise on a custom quote. All tiers ship the same audit trail and the same test-gated review handoff.

Free

$0
1 included private repo — continuous dependency watch, manual patch PRs, public feeds.

Team

$399
/ month
25 included private repos — private feeds, autonomous investigation and testing with one-click human merge, multi-repo policy packs.

Enterprise

Custom
Unlimited repos — dedicated on-call routing, SAML + SCIM, SBOM attestation exports.
Start freeFree for the first repo. No card. No call.

Volume pricing for fleets and SOC 2 / NIS2 / CRA evidence-ready audit export on every tier. See full pricing →

Talk to us

Got a fleet, a regulated environment, or a tricky policy?

Drop a few lines to talk with the Bivouac team — no SDR sequence, no demo gauntlet. We'll help you size the rollout and pick the right policy pack for the repos you actually watch.

Already running Dependabot, Renovate, or Snyk? Tell us what you're paying for them — we'll show you the overlap with what Bivouac earns.

Send us a note
We read every message. Expect a real reply from a person on the team, not a sequence.

All fields are required.

Buyer-pipeline questions

Five questions evaluation engineers raise during a review.

Replacement posture, test-gate behavior, the approval layer, the upstream registry surface, and the self-hosted path — the pipeline questions, answered in plain language and laid out next to the 3-step “How it works” section above so the buyer can read them against the same flow.

  1. 01
    Does Bivouac replace Dependabot?

    Dependabot raises the PR and stops. Bivouac opens the PR, runs your tests, picks downgrade-as-fix when a forward upgrade is incompatible, and leaves a tested PR for human approval — so the team that was triaging Dependabot alerts gets a clearer handoff. Where Dependabot's coverage is what you want, leave it on; most teams run them in parallel for a quarter before turning the old one off.

  2. 02
    What happens when the test suite fails?

    The PR stays a draft and the merge is blocked — your test suite, run on a clean checkout, is the gate, not a courtesy. The failure is written to the audit row with the failing check name attached, so the regulator and your VP Eng can see what failed, not just that it failed. If the failure traces to a contested decision (license, public-API impact, security-sensitive surface) the on-call rotation is paged; if not, the signal stays open and we wait for you or for a follow-up run, runs, or both.

  3. 03
    Can we keep an approval gate?

    Yes — a required-reviewer rule in your policy pack keeps a human in the merge path after tests pass. Defaults are one reviewer for direct deps and two for transitive updates on a security-sensitive surface; the rule is written in the same diff as the patch so reviewers see it when they review the patch. Every review row records whether the rule fired, so the audit trail shows the approval context, not just that 'a human clicked Approve'.

    Read the remediation + audit model →

  4. 04
    Which languages / ecosystems are supported?

    npm today, via the public npm advisory data. PyPI, Maven Central, RubyGems, crates.io and Go are on the roadmap.

  5. 05
    Is there a self-hosted option?

    Yes — the same agent ships as a self-hosted runner your team deploys inside your own VPC, available on the Team and Enterprise tiers. It reads the same lockfile and CI surface, writes to the same audit-row format, and is billed the same per active repo — so the regulator and your auditor get an identical artifact whether the review came from our hosted agent or yours. Bring the runner to the data; the evidence format does not move.

Explore Bivouac

One section, every public route worth a click.

Skim the alternatives hub, the install guide, the integrations, the FAQ, the security posture, and the three switch-from plans for teams already running Renovate, Dependabot, or Snyk.

  1. Compare Bivouac
    Side-by-side with Dependabot, Renovate, Snyk, and Socket — the alternatives hub.
  2. Pricing
    Free for your first repo. Team is $399/month with 25 included private repos. Enterprise is custom-priced and removes the cap.
  3. Installation guide
    Configure the GitHub integration and repository permissions.
  4. Integrations
    The connected product uses public npm advisory data. The public GitHub Action investigates npm dependency bumps in changed package.json files only.
  5. FAQ
    Pricing, breaking changes, transitive CVEs, on-call paging, GitHub App vs Action.
  6. Security & trust
    The review log, dependency decision trail, and NIS2 / EU CRA evidence.
  7. Switching from Renovate
    Same Renovate coverage, fewer PRs, tested review queue, policy pack before the queue.
  8. Switching from Dependabot
    Layers Investigate → Fix → Test → Review on top of the Dependabot PR stream.
  9. Switching from Snyk
    Same NVD + GHSA feeds, tested PRs with evidence instead of dashboard rows to triage.

Light the watch

Your next dependency update, ready for review.

Connect GitHub → choose your policy → Bivouac finds an issue → opens the patch PR → runs your tests → prepares a reviewable PR → waits for a human to approve and merge. The test suite is the gate; the merge decision stays with your team.

No credit card. No sales call. No commitment.