A ServiceNow Code Analysis, Best Practice, and AI-Powered Developer Intelligence Application.
Security, performance, and code quality are increasingly important to ServiceNow® developers and product owners. CodeWorks.ai is a powerful static code analysis tool that detects bugs, vulnerabilities, and code smells across 227 rules and 15 artifact types using a custom-built linting engine, now enhanced with Now Assist-powered AI capabilities that take remediation and insight to the next level.
CodeWorks.ai continuously scans your instance in real-time against a comprehensive list of ServiceNow® and JavaScript best practices and coding rules. It grades issues by impact so you can focus on urgent issues first and prevent problems from reaching production. Vulnerable JavaScript libraries are identified with their affected version, CVE identifier, and severity, so supply chain risk surfaces alongside your own code. When AI Scan Summary is invoked, it analyses your scan results and produces a structured quality report, complete with executive-ready commentary and PDF export, giving stakeholders an accurate, actionable picture of application health without needing to interpret raw data.
The focus has always been on fixing issues, not just finding them. CodeWorks.ai gives you the actual fix code to resolve issues, and pairs it with AI Fix Suggestions: inline, context-aware remediation guidance generated at the point of development. With Apply AI Fix, you can go one step further and have the corrected script generated and written back to the artifact in a single action, so developers move from finding a problem to resolving it without leaving the platform.
Scanning also extends beyond the instance. A pre-commit review API lets your existing development tooling check a script before it ever reaches ServiceNow, and in-platform notifications tell the developer the moment a scan completes, with a direct route into the results.
End result? A more performant instance, a measurable reduction in technical debt, and a development workflow accelerated by AI. You always have an accurate picture of your ServiceNow® instance health, and now the intelligence to act on it faster.
AI Scan Summary - Instantly analyse scan results with AI to generate a structured quality report, complete with PDF export, giving developers and stakeholders a clear picture of code health with actionable steps.
Apply Fix - Generate a corrected script on demand and apply it to the source artifact in one action, with every write validated against scan configuration before it lands.
Full Static Code Analysis - Detect bugs and code smells across 227 rules and 15 artifact types using a powerful custom linting engine.
Best Practice Scan - Validate scripts against defined ServiceNow best practice rules.
Vulnerable Library Detection - Identify JavaScript libraries with known published vulnerabilities, reporting the affected version, CVE identifier and severity.
Continuous - Real-time feedback to developers reduces the cost of defects by finding problematic code early in your development lifecycle.
Reportable - Track the resolution of issues and auto-detect when they are resolved.
Actionable - Provide the fix code to resolve issues faster.
Reduce Technical Debt - Unused, customised and poorly written code increases technical debt and support cost, so cut those costs by finding issues sooner.
Upgradability - Find customised code and compatibility issues that will affect your ability to upgrade.
In-platform - Scan your code and partner code in your instance without sending data to third party systems.
Developer Tools - Visualise code changes using TimeMachine, and use the Code Editor to auto-fix issues and perform code reviews.
Release Management - Understand update set migration through environments on one single page and track issues between instances.
Quality Gates - Configure optional gates that enforce a quality policy in your organisation, preventing developers from updating non-compliant scripts or records.
Product Dashboard - See a breakdown of the issues on your ServiceNow instance by ServiceNow product family.
Initial Release: CodeWorks AI is now available on the ServiceNow Store. Key features include full static code analysis, best practice scanning, real-time on-save scanning, automated issue tracking and resolution detection, AI-powered scan summaries with PDF export, AI-driven inline fix suggestions with impact analysis, technical debt identification, upgradability checks, fully in-platform scanning with no third-party data transfer, TimeMachine and CodeWorks IDE, update set release management, configurable quality gates, and a product dashboard with ServiceNow Product family breakdown.
Version 1.1: CodeWorks AI adds Apply Fix, which generates a corrected script on demand through the new CodeWorks Script Fix skill and writes it back to the source artifact in a single action, with every write validated against scan configuration before it lands. This release also introduces vulnerable JavaScript library detection covering 78 libraries and 659 published vulnerabilities with CVE and severity reporting, in-platform scan completion notifications with a direct route into the results, a pre-commit review API allowing external tooling to scan a script before it reaches the instance, and a Now Assist consumption dashboard reporting AI assist usage per agent and per agentic workflow. Scan rule coverage now stands at 227 rules across 15 artifact types.
CodeWorks AI requires the following plugins to be active on your ServiceNow instance prior to installation:
- Now Assist Skill Kit (sn_skill_builder) - 6.0.10 (Non mandatory as Codeworks.ai works without AI entitlement too)
- Now Assist for ITSM (sn_itsm_gen_ai) - 11.0.0 (Non mandatory as Codeworks.ai works without AI entitlement too)
There is a Global Update Set Required as part of the application for a few artifacts created on the Global tables which are required for the application's functionality. The update set is available in the Installation Document.