Frequently asked questions
Everything about governing AI-written code.
What is Hunaru?
+
Hunaru is an AI product company that makes it safe for teams to ship AI-generated code. As AI coding agents (GitHub Copilot, Cursor, Claude Code) write more of your production code, Hunaru is the governance layer, it audits what the agents do, scans for security and compliance issues, and protects production at runtime, producing audit-ready evidence for SOC 2, ISO 27001, ISO 42001, NIST AI RMF, and India's DPDP Act.
What does Pramana do?
+
Pramana is Hunaru's AI-agent audit and compliance product. A lightweight CLI with git hooks and repository webhooks attributes every code action to the specific AI coding agent that made it, records it in a tamper-evident, hash-chained audit trail, risk-flags high-signal events (like direct pushes to main, large diffs, or sensitive-path changes) into a human reviewer queue, and exports SOC 2 / ISO 27001 / ISO 42001 compliance evidence on demand.
What does Petika do?
+
Petika is Hunaru's security and compliance scanning product. It runs industry-standard scanners (static analysis / SAST, dependency and CVE detection, container scanning, and secrets detection), then maps every finding to the specific compliance control it affects, India's DPDP Act, SOC 2, ISO 27001, and PCI-DSS, turning a technical scan into an audit-ready assessment a compliance officer can act on.
What does Lachit do?
+
Lachit is Hunaru's runtime protection and self-heal product. It watches your production error logs, and when the same error recurs it opens a single incident, writes a root-cause analysis, notifies the owner, and, on approval, rolls back, fixes, and redeploys. It catches the failure mode standard health checks miss: when a service looks healthy but users are getting errors.
Which AI coding agents does Hunaru support?
+
Hunaru detects and attributes activity from the major AI coding agents, including Claude Code, Cursor, and GitHub Copilot. Its agent-attribution approach is designed to extend to new agents as they emerge.
How does Hunaru help with SOC 2, ISO 27001, and DPDP compliance?
+
Hunaru generates the evidence auditors ask for about AI-generated code. Pramana produces a tamper-evident audit trail of AI-agent actions and exports framework-styled reports; Petika maps security findings to specific controls. Hunaru is built to support SOC 2, ISO 27001, ISO/IEC 42001 (the AI management standard), NIST AI RMF, and is India-first in natively mapping to the DPDP Act.
How is Hunaru different from tools like Snyk, Vanta, or LinearB?
+
Most tools own one lens: code-security scanners (Snyk, Legit, Endor) find vulnerabilities in AI-written code; compliance platforms (Vanta, Drata) store evidence; and engineering-intelligence tools (LinearB, Faros) measure AI adoption. None of them tie governance to the specific AI agent and its actions across the full lifecycle. Hunaru's wedge is agent attribution + action-level audit + AI-native compliance evidence, from commit to production, and it is India-first on DPDP.
Is Hunaru available now?
+
Pramana is in a private pilot with a real customer. Petika and Lachit are in early access. You can request early access or book a demo from the Hunaru website.
Is my code and data secure with Hunaru?
+
Hunaru is designed for privacy-conscious teams, including a bring-your-own-API-key mode so sensitive data stays under your control, a tamper-evident (hash-chained) audit ledger, and role-based access for the reviewer workflow.
How much does Hunaru cost?
+
Hunaru is a B2B SaaS suite. Pricing is being finalized with pilot customers; the model is per-monitored-developer with usage-based compliance exports and an enterprise tier, plus a free open-source CLI tier. Contact Hunaru for current pricing or to join early access.
Where is Hunaru based?
+
Hunaru One Private Limited is an India-origin company selling to engineering teams globally.