Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsCommunityBlog
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Coderabbit

CSecurity

AI-powered code review using CodeRabbit CLI and GitHub integration. Use when running local code reviews before commits ("run coderabbit", "review my changes"), configuring .coderabbit.yaml files, integrating CodeRabbit with Claude Code for autonomous review workflows, using @coderabbitai commands in pull requests, or setting up automated code review pipelines.

76 stars
0 votes
0 copies
0 views
Added 2/8/2026
developmentjavascripttypescriptpythongojavabashgitci/cdsecurity

Works with

claude codecursorcli

Security Analysis

C71/100
criticalPipes output to a shell interpreter
mediumUses curl or wget to download content
criticalDownloads and executes remote scripts — classic supply chain attack

Scanned 2/12/2026

Install to Claude Code

$npx -y skills add majiayu000/claude-skill-registry --skill coderabbit --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Coderabbit?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Coderabbit
[![Security: C — Skills Directory](https://www.skillsdirectory.com/api/skills/majiayu000-coderabbit/badge)](https://www.skillsdirectory.com/skills/majiayu000-coderabbit)

More formats (shields.io, HTML) on the badges page.

Download with Pro
Files
SKILL.md
---
name: coderabbit
description: >
  AI-powered code review using CodeRabbit CLI and GitHub integration. Use when running
  local code reviews before commits ("run coderabbit", "review my changes"), configuring
  .coderabbit.yaml files, integrating CodeRabbit with Claude Code for autonomous review
  workflows, using @coderabbitai commands in pull requests, or setting up automated
  code review pipelines.
---

# CodeRabbit

AI code review tool that catches race conditions, memory leaks, and security vulnerabilities.
Integrates with Claude Code for autonomous review-and-fix workflows.

## Quick Start: Claude Code Integration

Run CodeRabbit as part of your development workflow:

```text
Implement the feature from the spec, then run coderabbit --prompt-only
in the background and fix any issues found.
```

Key flags for Claude Code:

- `--prompt-only` - Minimal output optimized for AI agents
- `--plain` - Plain text mode (no interactive UI)
- `--type uncommitted` - Review only uncommitted changes

## CLI Commands

```bash
# Install
curl -fsSL https://cli.coderabbit.ai/install.sh | sh

# Authenticate (run once per Claude Code session)
coderabbit auth login

# Review code
coderabbit                          # Interactive mode
coderabbit --plain                  # Plain text output
coderabbit --prompt-only            # AI-optimized output
coderabbit --type uncommitted       # Only uncommitted changes
coderabbit --base develop           # Compare against develop branch
```

## Claude Code Workflow

Recommended prompt pattern:

```text
Please implement [feature] and then run coderabbit --prompt-only,
let it run as long as it needs (run it in the background) and fix any issues.
```

CodeRabbit reviews take 7-30+ minutes. Run in background and check periodically.

**Fix prioritization:** Fix critical issues first, ignore nits. Run CodeRabbit
again after fixes to verify no new issues introduced. Limit to 2 iterations.

## GitHub Commands

Use `@coderabbitai` in PR comments:

| Command | Description |
|---------|-------------|
| `@coderabbitai review` | Incremental review of new changes |
| `@coderabbitai full review` | Complete review from scratch |
| `@coderabbitai pause` | Stop automatic reviews |
| `@coderabbitai resume` | Restart reviews |
| `@coderabbitai summary` | Regenerate PR summary |
| `@coderabbitai generate docstrings` | Generate function docs (Pro) |
| `@coderabbitai generate unit tests` | Generate tests (Pro) |
| `@coderabbitai resolve` | Resolve all CR comments |
| `@coderabbitai configuration` | Show current settings |

Add `@coderabbitai ignore` to PR **description** to disable reviews for that PR.

## Configuration (.coderabbit.yaml)

```yaml
# yaml-language-server: $schema=https://coderabbit.ai/integrations/schema.v2.json
language: en-US
tone_instructions: "Be concise and focus on critical issues only"

reviews:
  profile: chill  # or "assertive" for comprehensive feedback
  high_level_summary: true
  auto_review:
    enabled: true
    drafts: false
    ignore_title_keywords:
      - "wip"
      - "draft"

knowledge_base:
  code_guidelines:
    enabled: true
    filePatterns:
      - "**/.cursorrules"
      - "**/claude.md"
```

CodeRabbit auto-reads `claude.md` and `.cursorrules` for coding standards.

## Supported Tools

CodeRabbit integrates 40+ linters and security analyzers:

- **JavaScript/TypeScript:** ESLint, Biome, Oxlint
- **Python:** Ruff, Pylint, Flake8
- **Go:** golangci-lint
- **Security:** Gitleaks, Semgrep, OSV Scanner
- **Infrastructure:** Checkov, Hadolint
- **CI/CD:** actionlint, CircleCI

**Full tools reference:** See [references/tools-reference.md](references/tools-reference.md)

## Troubleshooting

**CodeRabbit not finding issues:**

1. Check auth: `coderabbit auth status`
2. Verify git status: `git status`
3. Specify review type: `--type uncommitted`
4. Specify base branch: `--base develop`

**Claude Code not applying fixes:**

1. Use `--prompt-only` mode
2. Include "run in background" in prompt
3. Explicitly ask to "fix issues found by CodeRabbit"

## References

- **Overview:** [references/overview.md](references/overview.md)
- **Claude Code Integration:** [references/claude-code-integration.md](references/claude-code-integration.md)
- **YAML Configuration:** [references/yaml-configuration-guide.md](references/yaml-configuration-guide.md)
- **GitHub Commands:** [references/github-commands.md](references/github-commands.md)
- **Tools Reference:** [references/tools-reference.md](references/tools-reference.md)
- **Full Configuration:** [references/configuration.md](references/configuration.md)

Attribution

majiayu000majiayu000
View sourceMore from majiayu000 →
SSkills DirectorySkills Directory

Know which skills are safe — weekly.

Best new skills + every skill we flagged as malicious. From the team that scanned 103,619.

Join free

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Know which skills are safe — weekly.

Best new skills + every skill we flagged as malicious. From the team that scanned 103,619.

Join free

Related Skills

Browser Extension Developer

Use this skill when developing or maintaining browser extension code in the `browser/` directory, including Chrome/Firefox/Edge compatibility, content scripts, background scripts, or i18n updates.

284722 votes

Seo Optimizer

SEO optimization with keyword analysis, readability assessment, technical validation, content quality. Use for search rankings, blog posts, content audits, or encountering keyword density, readability scores, meta tags, schema markup errors.

2192 votes

Google Official Seo Guide

Official Google SEO guide covering search optimization, best practices, Search Console, crawling, indexing, and improving website search visibility based on official Google documentation

1862 votes

Tanstack Start

Build a full-stack TanStack Start app on Cloudflare Workers from scratch — SSR, file-based routing, server functions, D1+Drizzle, better-auth, Tailwind v4+shadcn/ui. Use whenever the user mentions TanStack Start, asks to scaffold a full-stack Cloudflare app with SSR, wants an SSR dashboard, or asks for a React 19 + Cloudflare Workers app with file-based routing and server functions — even if they don't name TanStack Start specifically. No template repo — Claude generates every file fresh per ...

9881 votes

Pentest

PTES-aligned adversarial security audit for backend, frontend, and mobile applications. Produces a CVSS-scored Hacker Report with verified PoCs and phased remediation.

5491 votes
View all in development →