Run Continuous Code Quality Checks
Set up automated checks that run on every commit or PR to catch security issues, code smells, and test gaps. The workflow covers static analysis, vulnerability scanning, and quality gates that block bad code from shipping.
Useful for
- You skip code quality checks because running them manually takes too long
- You have no idea if your dependencies have known vulnerabilities
- You want a quality gate that blocks merges when standards are not met
Suggested Skills
Pick skills from the phases below based on what you need. Each phase has an example prompt you can copy and try with your agent.
Scan skills check for vulnerabilities, secrets, and insecure patterns. Analyze skills measure code quality, complexity, and test coverage. Gate skills enforce standards and block code that does not pass.
Scan
Check for security vulnerabilities and dangerous patterns.
Analyze
Measure code quality and find areas that need improvement.
Enforce
Set up quality gates that block bad code from merging.