code-review
265Command ✓ vendor
A command for reviewing code quality, security, performance, and software architecture, the overall structure of a system.
2,708 tagged Security, measured the same way as everything else here.
Browse within: compliance 150gdpr 116ai-security 78devsecops 73appsec 66bug-bounty 64ai-governance 52claude-ai 52offensive-security 52pentesting 52ai-coding 51cybersecurity 48ctf 47claude-code-skill 32
Command ✓ vendor
A command for reviewing code quality, security, performance, and software architecture, the overall structure of a system.
Command Claude Code
This command formats the code, updates documentation to reflect changes, scans for leaked secrets, commits, and pushes to the remote main branch. It will REFUSE to proceed if any secrets or tokens are detected. It runs fully automatically with NO user prompts unless secrets are found.
Command Claude Code
Run this before /deploy to catch security issues. Three-step process: scan, triage, report.
sabakan0123/claude-security-skills
Command
A full project scan that first detects the project structure and then runs sub-agents in parallel. The input does not explain which checks the scan performs.
sabakan0123/claude-security-skills
Command
A manually started security review of the changes between Git branches or commits. Git diff is the view of what code was added, removed, or changed.
sabakan0123/claude-security-skills
Command
A manually started runtime check for a server already deployed to a staging environment. It tests HTTP headers, sends dynamic probes, and checks authentication.
holgerleichsenring/agent-smith
Command Claude Code
Smoke-test the agent-smith CLI binary + docker-compose for api-scan / security-scan / fix-bug. Catches regressions that escape the unit test suite.
Command Cursor
Audit recent changes for security issues specific to this project.
Command
Part of forge
Start Forge Mentor in this project — connect accounts, agree permissions, and begin the foundation interrogation.
martinholovsky/claude-project-scaffold
Command Claude Code
Review staged changes for bugs, security issues, and style.
martinholovsky/claude-project-scaffold
Command
Validate network policies and check for dangerous patterns.
Command Claude Code
Write and run a valid Foundry proof-of-concept that proves (or disproves) a Solidity exploit by asserting the actual harm on a forked chain or against local source.
Command Claude Code
Run a complete multi-phase security audit on the target codebase.
Myr-Aya/GouvernAI-claude-code-plugin
Command
Part of gouvernai
Show guardrails status, switch modes, set token cap, or view the audit log. Usage: /guardrails [status|log|strict|relaxed|audit|reset|policy|tokencap].
Command
Part of air-blackbox
Export a signed compliance evidence package as JSON or PDF for regulatory handoff.
tungnk123/mobile-best-practices
Command
Audit mobile app for security vulnerabilities using the mobile-best-practices database.
Command
A command that checks TypeScript and Next.js code against a company’s required coding, security, testing, and project rules. TypeScript adds types to JavaScript, while Next.js is a framework for building web applications.
Command
Part of sentinel-ai
Check text or a file for personally identifiable information and show the redacted version.
Command
Part of sentinel-ai
Generate a detailed safety risk report for the current conversation or a specific file.
Command
Part of sentinel-ai
Red-team your safety scanning by generating adversarial variants of a prompt injection attempt.
afiqiqmal/claude-security-audit
Command Claude Code
Run a comprehensive white-box and gray-box security audit with OWASP Top 10:2025, CWE, NIST CSF 2.0, SANS Top 25, ASVS, PCI DSS, MITRE ATT&CK, SOC 2 and ISO 27001 mapping. Shows findings by default. Append --fix to include remediation code blocks.
Command
Audite les dépendances du lockfile — CVE, scripts non approuvés, signaux de typosquat.
dvasyliev/ai-dev-tools-getting-started
Command
Perform a thorough code review that verifies functionality, maintainability, and security before approving a change. Focus on architecture, readability, performance implications, and provide actionable suggestions for improvement.
Command
Part of memory-custodian
Run.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: