Comparing Code with Diff Mode

Compare two codebase versions to identify endpoint changes.

Compare two versions of a codebase to identify endpoint changes. Useful for code reviews, security assessments, and understanding feature impacts.

noir scan <NEW_VERSION_PATH> --diff-path <OLD_VERSION_PATH>

Output

Plain Output

The default output groups changes into Added (new endpoints), Removed (deleted ones), and Changed (endpoints present in both versions whose parameters or other details were modified — endpoints are matched by URL and method, so a method change shows up as one Added plus one Removed). Each section renders endpoints in the standard plain format:

───────────── ✚ Added (2) ─────────────

GET /
  ○ headers: 
    └── x-api-key

POST /update

──────────── ✖ Removed (1) ─────────────

GET /secret.html

JSON and YAML Output

Use -f json or -f yaml for structured output. Results are grouped into three categories.

{
  "added": [...],
  "removed": [...],
  "changed": [...]
}

Especially useful in CI/CD: feed only the added and changed endpoints into a DAST scanner to focus on modified attack surface.