Mobidev Factory turns instructions into reviewed, tested pull requests. Agents execute inside controlled boundaries — you keep the merge button.
"Add Excel export to the repayment report."
An instruction lands as a work item — via the console or the API.
The repo is cloned fresh, a task branch cut, and an isolated workspace provisioned.
A Devin agent works the task. Every shell command is allow/deny-gated by your exec policy.
Commits are verified, the branch pushed, and a pull request opened. Humans merge.
Every autonomous action is scoped, policy-checked, and recorded. The agent never holds credentials, never pushes, never touches production.
Every command the agent wants to run is matched against allow/deny rules — compound commands split per segment, subshells refused, paths confined to the workspace. Fail closed by default.
Tool calls, permissions, retries, and the raw JSON-RPC transcript land in an append-only event log per work item.
Failed runs resume the same agent session with context — up to a hard attempt cap, then flagged as over budget.
POST an instruction, get a work item back. Token-authenticated, workspace-scoped, cancellable.
The agent can't merge, push to main, or deploy. Review stays human; routine execution doesn't.
The Mobidev operating principle.
Open the console