Citadel — Security skill for Claude Code
Post-implementation conformance audit against the PRD, branch diff, and known trap doors.
How to install Citadel
Installs to ~/.claude/commands/gregorydickson-pickle-rick-claude-citadel.md
mkdir -p ~/.claude/commands && curl -fsSL https://raw.githubusercontent.com/gregorydickson/pickle-rick-claude/HEAD/.claude/commands/citadel.md -o ~/.claude/commands/gregorydickson-pickle-rick-claude-citadel.md Restart Claude Code, or start a new session, for it to be picked up.
What Citadel does
Post-implementation conformance audit against the PRD, branch diff, and known trap doors.
/citadel
Run Citadel after implementation and before deeper review phases. The command audits the current branch against a PRD and reports branch-wide conformance findings.
Usage
/citadel --prd [--diff ] [--strict] [--report ] [--print-stubs]
Arguments
--prd: Required unless invoked by a pipeline session withstate.prd_path.- `--diff <
Alternatives in Security
- Review Artifact — Creates one polished, self-contained HTML artifact from review findings, audit notes, PR feedback, code review 652 ★
- Cross-Pollinate Hex MCP Servers — Diff-driven audit: find real transferable changes across hex-line-mcp, hex-ssh-mcp, hex-graph-mcp 238 ★
- Tier 3 Code Refinement Report — Date: 2026-03-20 Status: ALL 54 FINDINGS IMPLEMENTED Scope: Full codebase (18 plugins, 888 files, ~266K lines) 222 ★
Full documentation available on GitHub
View Source RepositoryRelated Skills
Sigil PR Audit
Audit the current Sigil PR branch with the shared sigil-pr-audit skill before reading the implementation diff.
Craft Review
PR review skill - invokes pr-reviewer-expert agent against branch diff, story commits, or full project audit.
Discovery Audit
Grade every claim in a PRD, roadmap, business case, or research readout against its evidence, and list the che
Dotnet Refactor
Phase-gated refactoring/design loop - session-blind subagents build the map and traces, empirical probes prece
Audit Implementation
POST-IMPLEMENTATION AUDIT — analyzes what the implementing agent did wrong and why, proposes specific changes
Qc DevOps Review
Act as a full QC/DevOps review team on a repo, branch, PR, or diff - static analysis, type checks, test suites
Related Agents
Fidelity Auditor
Cold WHAT-conformance acceptance audit at a stage-PR boundary. Given ONLY the kickoff/spec (or a scoped sectio
RFC PR Reviewer
Use this agent during RFC build-stage (per docs/rfcs/AGENT-RULES.md §3.5) to review a PR diff against an accep
Sdlc Security
Runs a full OWASP Top 10 (2025) audit, plus OWASP LLM Top 10 (2025) when AI/LLM components are present, agains