jisundr

Cairn Review PR — Security skill for Claude Code

Security community

Reviews an open PR/MR — code-review findings plus cairn's security checklist and fix-lane tags, drafted and gated behind confirmation before anything posts.

How to install Cairn Review PR

Installs to ~/.claude/skills/jisundr-cairn-2.0-cairn-review-pr/SKILL.md

Terminal
mkdir -p ~/.claude/skills/jisundr-cairn-2.0-cairn-review-pr && curl -fsSL https://raw.githubusercontent.com/jisundr/cairn-2.0/HEAD/commands/cairn-review-pr.md -o ~/.claude/skills/jisundr-cairn-2.0-cairn-review-pr/SKILL.md

Restart Claude Code, or start a new session, for it to be picked up.

What Cairn Review PR does


description: Reviews an open PR/MR — code-review findings plus cairn's security checklist and fix-lane tags, drafted and gated behind confirmation before anything posts. argument-hint:

No URL given → ask for one.

Invoke `Skill(skill: "cairn:review-pr")` with it. That skill owns host resolution, mode detection, and every review scenario — this command is only its entry point.

Alternatives in Security

  • MCP Security Checklist (SlowMist) — Comprehensive checklist: input validation, rate limiting, RBAC, credential management, container hardening 819 ★
  • CodexQB — CodexQB is a Codex plugin for evidence-backed repo comprehension, planning, QA audit, and gated implementation 186 ★
  • Commit Hook Checklist — Audit commit-hook automation as gates against AI slop and broken commits (Node.js, Go, polyglot) 168 ★

Full documentation available on GitHub

View Source Repository