cd /news/ai-tools/show-hn-marucheck-independent-qa-for… · home topics ai-tools article
[ARTICLE · art-125874] src=github.com ↗ pub= topic=ai-tools verified=true sentiment=↑ positive

Show HN: MaruCheck – Independent QA for AI-generated code

MaruCheck, an open-source QA verification tool for AI-generated code, launched on NPM at version 0.3.0 and can be run via "npx --yes marucheck@0.3.0 init," its developer announced on Hacker News. The tool treats approved requirements as separate evidence to flag semantic drift — for example, catching when a coding agent changes a free user's upload limit from 5 to 10 — and includes quality contracts, Git diff change-impact analysis, risk-based analysis, and QA memory for prior bugs and regressions. The project is local-first and orchestrates existing tools such as Playwright, Vitest, and Jest rather than building new browser automation, with docs at marucheck.dev.

read1 min views1 publishedSep 10, 2026

Hi HN,

I've been building MaruCheck, an independent, open-source QA verification tool aimed to solve the issues that arise when coding agents like codex, claude, cursor make semantic issues that has heavy ramifications.

Take the example where the requirements says a free user gets 5 uploads. The code changes this behavior to 10. Test generated from the implementation may simply start expecting 10. But Marucheck treats the existing approved requirements as a separate evidence and flags the behavior change.

Some of the things implemented currently are Quality contracts, repository and stack scanning, Git diff/change- impact analysis, risk based analysis, semantic drift detection, QA memory for previous bugs/regression, CLI workflows, integration for coding agents, Github/CI verification etc etc..

Another area I’m experimenting with is QA Memory.

If six months ago a bug existed because users could access another customer’s invoice by changing an invoice ID, MaruCheck can associate that regression with the relevant files/contracts. If those areas change again later, that previous failure becomes part of the new verification plan. The project is local-first and I’m trying not to reinvent existing testing infrastructure unnecessarily. The idea is to orchestrate tools like Playwright/Vitest/security/Jest tooling rather than build another browser automation framework from scratch.

Currently it's on NPM and you can runit using npx or npm by writiing npx --yes marucheck@0.3.0 init and all the information and docs are available on the site marucheck.dev.

I have decided to build it in the open and I'm especially interested in feedback on all aspects. Contributors are very welcome as well - issues, adapters, testing, docs, bug reports, architecture criticisms, all of it.

Thanks

Comments URL: [https://news.ycombinator.com/item?id=49644238](https://news.ycombinator.com/item?id=49644238)

Points: 1

── more in #ai-tools 4 stories · sorted by recency
── more on @marucheck 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/show-hn-marucheck-in…] indexed:0 read:1min 2026-09-10 ·