code-audit

reviewing code for quality, security, and performance issues

no-skill baseline: 46% — anything below it makes the model worse.

⚖ Measured verdict: the base model already handles this capability well — every tested candidate degraded output. Recommended: no artifact at all for this step.
1untested
code_auditworkflowdefault
Parallel 3-phase security/style/synthesis audit with cross-file pattern detection.
2untested
analyze-codebaseworkflow
Workflow for analyze-codebase
3untested
dependency-auditworkflow
Security and compatibility audit of dependency trees with CVE verification.
4untested
smellsworkflow
Finding code regressions and systemic patterns across large codebases in batch.
5untested
level-upworkflow
Feature promotion workflows where maturity gates and dependency checks are critical
6untested
adlc-sprintworkflow
Processing batches of items through concurrent, scoped review stages with per-item result collection.
7untested
pipeline-reviewworkflow
Processing batches of items through concurrent, scoped review stages with per-item result collection.
8untested
code-reviewerskill
When you need systematic code review for bugs, security, and quality improvements.
9untested
ecosystem-alignmentskill
Keeping a custom Claude Code setup in sync with upstream platform updates, preventing drift and discovering new capabilities to adopt.
10untested
engineering-skillsplugin
When shipping production-grade code requires discipline across architecture, testing, deployment, and security domains rather than isolated linting.
11untested
code-reviewskill
Systematic identification of bugs and refactoring opportunities in pull requests.
12untested
plan-auditskill
Catching gaps and codebase drift in a plan when stakes warrant independent verification beyond same-context red-teaming with clean-context subagent.
13untested
crcommand
Catching language-specific bugs and design issues before commit by applying both project-local and generic review profiles to changed code.
14untested
code-reviewersubagent
Structured peer review of code changes before merge, catching bugs and style violations early
15untested
nuclear-reviewworkflow
Comprehensive codebase audits where structural issues must be prioritized and mapped across modules.
16untested
plugin-auditskill
Gate skill publication by enforcing consistent structure without manual 8-phase checklists
17untested
gsd:code-reviewskill
Finishing a phase when you want machine-assisted code quality review before merging, with control over depth vs time.
18untested
audit-servicesworkflow
workflow automation in specialized problem domain; check artifact name and description.
19untested
audit-pipeline-lockstepworkflow
Best for orchestrating parallel multi-phase work.
20untested
data-provenanceskill
Publishing genomics workflows where 'we aligned with STAR' is too vague—lock down exact versions, genomes, parameters, and accessions for publication-ready methods.
21untested
quality-reviewingskill
Catching ecosystem mismatches before they reach production; complements automatic hook with external verification.
22untested
bitbucket-automationskill
Automating code review workflows and branch management in Bitbucket when you're in a git-centric org using Atlassian stack
23untested
dashclaw-preship-sweepworkflow
Running go/no-go pre-deployment checks in parallel with cost-optimized model routing (cheap + expensive gates).
24untested
dependency-auditworkflow
Monthly per repo, before major releases, or when adding a significant new dependency. Surface critical security findings
25untested
agent-architecture-auditskill
Reviewing multi-agent system design for coupling, messaging patterns, and safety boundaries.
26untested
review-changesskill
Pull-request review of Android code when Kotlin correctness, lifecycle safety, and SDK integration must be jointly assessed before merge.
27untested
sonarqube-scanskill
Automated code quality gates in CI/CD to detect security vulnerabilities, bugs, and technical debt before code reaches production.
28untested
sourcesage-cliskill
Quickly documenting codebases for AI context or team onboarding without manual summarization.
29untested
migration-auditworkflow
Discovering quality gaps across multiple architecture and compliance dimensions.
30untested
dev-workflowworkflow
Orchestrating end-to-end ticket-to-PR cycles with parallel code review and automated fix loops.
31untested
auto-elevate-discoverworkflow
Automating multi-phase task execution with agents.
32untested
cross-component-reviewworkflow
Multi-perspective code review with adversarial voting and automated fix application.
33untested
dependency-upgradeworkflow
fan-out parallel research with synthesized results
34untested
review-fix-loopworkflow
Automated code review with structured feedback loops.
35untested
codebase-auditworkflow
Comprehensive codebase health check covering structure, dependencies, and quality before release.
36untested
pm-auditworkflow
Comprehensive review of codebase/content with structured audit findings.
37untested
mishkan-codebase-auditworkflow
Periodic project-wide audits, pre-release reviews, post-incident hardening passes.
38untested
review-agentsubagent
Before merging, when you need a senior engineer review catching correctness bugs, security issues, and maintainability problems.
39untested
forgeplugin
Multi-file refactors, full-stack features, or spec-driven work where parallel validation and retry beat sequential manual oversight.
40untested
codebase-onboardingskill
Bootstrapping documentation for an unfamiliar codebase when you need structure before reading individual files.
41untested
ship-gateskill
Preventing production incidents by systematically auditing security, database, and code quality before deploy.
42untested
code-reviewskill
Post-implementation review to catch security issues, bugs, and code quality gaps before merge.
43untested
security-reviewskill
Identifying security vulnerabilities and compliance risks in code diffs before merge.
44untested
site-auditworkflow
workflow automation in specialized problem domain; check artifact name and description.
45untested
audit-projectplugin
Enforcing zero-defect standards on medium codebases where iterative polish beats single-pass review.
46untested
token-doctorskill
Identifying spend concentrations and antipatterns when your Claude bill is unexpectedly high.
47untested
react-doctorskill
Quick after-change validation in React projects when a fast score + actionable fixes matter more than deep architectural review.
48untested
java-concurrency-reviewskill
When auditing Java code for race conditions, deadlocks, and thread safety.
49untested
reviewskill
Catching real bugs in code changes before PR merge, with proof and concrete fixes
50untested
review-generatorsubagent
After code implementation to document changes, verify tasks completed, and create reviewer checklists
51untested
code-review-expertsubagent
When you need mandatory code review before commit, catching security, type hints, and architecture violations.
52untested
solid-auditworkflow
accessibility/compliance audits
53untested
autoreviewskill
Code review just before commit/ship when you need advisory findings verified against real dependencies.
54untested
code-health-checkskill
Regular codebase audits to catch health degradation before it blocks features.
55untested
pr-review-analystsubagent
When evaluating automated code review comments for correctness using full codebase context.
56untested
securitysubagent
Auditing code for authorization, RLS, and authentication vulnerabilities before launch.
57untested
code-reviewerskill
reviewing pull requests, analyzing code quality, identifying issues, generating review checklists.
58untested
code-healthskill
Scanning codebases for dead code, tech debt, and vulnerabilities in a single command without manual code review
59untested
find-bugsskill
Thorough security checklist + bug audit when you need systematic attack-surface mapping before merge.
60untested
dispatch-cycleworkflow
Automating the full developer→CR→ship cycle with structured gating and audit trail.
61untested
simplifyworkflow
Detecting hidden reuse opportunities and efficiency bugs across changed code in one pass.
62untested
codebase-surveyworkflow
Onboarding or refactoring when you want a comprehensive structure survey without running code.
63untested
checkcommand
Full-pipeline code validation with automatic style and format fixes.
64untested
vibe-checkcommand
Pre-commit quality check when AI agents have contributed code
65untested
behaviortree-reviewersubagent
Auditing BehaviorTree.CPP nodes for non-blocking ticks and correct base-class choice.
66untested
code-reviewskill
When you need multi-level code review before merging high-risk changes.
67untested
sast-analysisskill
When auditing source code in CI/CD or pre-release security review.
68untested
spec-auditworkflow
accessibility/compliance audits
69untested
ferrum-buildworkflow
feature development
70untested
slopeskill
When you need to prioritize refactoring and identify hot spots in a large codebase
71untested
audit-quality-gatesskill
Identify linting rule gaps and tool suppression abuse in legacy projects without modifying code.
72untested
READMEsubagent
Parallel auditing of unfamiliar legacy code when multiple specialists are needed.
73untested
quality-reviewersubagent
Universal PR quality checks when no role-specific reviewer exists.
74untested
pr-cleanup-reviewersubagent
Addressing test failures and reviewer feedback systematically with detailed GitHub updates.
75untested
codebase-auditskill
Building production codebase-audit applications with best practices.
76untested
kotlin-idiom-reviewworkflow
Automated code review with structured feedback loops.
77untested
multi-reviewworkflow
Automated code review with structured feedback loops.
78untested
ccommand
Fast codebase orientation using large-context language model analysis.
79untested
architectsubagent
Auditing code for authorization, RLS, and authentication vulnerabilities before launch.
80untested
codebase-analystsubagent
Onboarding to unfamiliar codebases or assessing code health before major refactors
81untested
code-reviewersubagent
Enforcing project-specific code standards across all PR changes.
82untested
repo-scanskill
onboarding a legacy codebase, planning a refactor, or auditing embedded dependencies across C++, Android,
83untested
doctorskill
Run automated health checks and linting rules against codebase without manual review.
84untested
gsd:review-backlogskill
Systematically triaging project tasks and surfacing critical path blockers.
85untested
audit-skillskill
reviewing pull requests for production readiness
86untested
review-stylesubagent
When evaluating code clarity and idioms before merging pull requests.
87untested
project-pull-requestskill
Creating GitHub PRs with required templates, security reviews, and conventional commit standards.
88untested
code-review-part-4-three-state-verification-phasesubagent
Providing subagent-level automation for code review part 4 three state verification phase tasks.
89untested
adr-authorsubagent
Auditing code for authorization, RLS, and authentication vulnerabilities before launch.
90untested
code-reviewskill
When reviewing prs or checking code quality.
91untested
codebase-auditworkflow
Auditing codebases when you need whole-repo cross-slice analysis (orphans, duplication, dead code, architecture drift, HARD-RULE compliance).
92hurts
developer-growth-analysisskill
Developers who want structured, evidence-based feedback on their work growth without waiting for code reviews, using their actual recent project history as the signal.
93hurts
codacy-mcpmcp_server
Continuous integration pipelines auditing code quality and security across teams.
94hurts
sprint-statuscommand
Quick snapshot of progress across parallel Claude Code sessions before switching contexts.
95hurts
bitbucket-mcp-servermcp_server
Code review and PR workflows on Bitbucket Cloud or Server.