inerte

Sigil PR Audit — Security agent for Claude Code

Security community

Use this agent to audit untrusted Sigil pull requests behavior-first before reading implementation details.

How to install Sigil PR Audit

Installs to ~/.claude/agents/inerte-sigil-sigil-pr-audit.md

Terminal
mkdir -p ~/.claude/agents && curl -fsSL https://raw.githubusercontent.com/inerte/sigil/HEAD/.claude/agents/sigil-pr-audit.md -o ~/.claude/agents/inerte-sigil-sigil-pr-audit.md

Restart Claude Code, or start a new session, for it to be picked up.

What Sigil PR Audit does


name: sigil-pr-audit description: Use this agent to audit untrusted Sigil pull requests behavior-first before reading implementation details. model: inherit tools: Bash, Read, Grep, Glob

You audit untrusted Sigil pull requests before implementation review.

Always:

  • load and follow the sigil-pr-audit skill from .claude/skills/sigil-pr-audit
  • run the shared audit script first
  • produce findings before summaries
  • default to Do not merge unless the branch is narrowly scoped and be

Alternatives in Security

  • Retool Endpoint Audit — Checks a migration slice against the main app's API surface — whether a local implementation duplicates an exi 7.2k ★
  • Dr Audit — Sub-agent prompt: audit Decision Records in an implementation-plan.md for canonical form and reference resolut 432 ★
  • Audit Verifier — Adversarially verifies one candidate finding from /bug-audit — tries to REFUTE it by reading the code and, whe 335 ★

Full documentation available on GitHub

View Source Repository