Skip to main content
Integrate CodeAnt AI directly into Claude Code to resolve PR review comments, review local changes, and generate custom review rules - all without leaving your terminal.

Video Walkthrough

What You Get

These skills run the CodeAnt CLI. To also give Claude structured tools for scans, the Hotlist, cloud and pentest findings, and pull requests, add the CodeAnt MCP server. The skills and the MCP server work together.

Prerequisites

  1. Claude Code v2.0.73 or later - plugin support requires this minimum version (installation guide)
  2. CodeAnt CLI installed and authenticated - follow the CLI setup guide

Installation

Install the CodeAnt plugin from inside Claude Code:
  1. Run /plugin and select Manage plugins
  2. Choose Add plugin and enter the plugin registry URL:
  3. Go to Install plugin, search for CodeAnt, and install it
  4. Restart Claude Code for the plugin to take effect

Usage

/codeant:resolve-pr-comments - Resolve PR Review Comments

Fetch all unresolved CodeAnt AI review comments on a pull request and fix them. With a PR number:
Auto-detect from current branch:
When auto-detecting, Claude Code will:
  1. Get your current branch name
  2. Run codeant pr list --source-branch "<branch>" --state open to find the matching PR
  3. If multiple PRs match, ask you which one to use
The fix flow:
  1. Fetch comments - runs codeant pr comments --pr-number <N> --codeant-generated true and filters to unresolved comments
  2. Categorize - separates inline code comments (actionable) from general PR-level comments (informational, skipped)
  3. Analyze and assign verdicts - for each inline comment:
    • Reads the file with 30 lines of surrounding context
    • Checks the code at the referenced line still matches what the comment describes
    • Extracts code suggestions from the comment body
    • Validates syntax, variable scope, imports, and that existing logic is not broken
    • Assigns a verdict: ACCEPT, LIKELY ACCEPT, DO NOT ACCEPT, or STALE
  4. Present summary - shows all comments grouped by verdict with before/after code diffs
  5. Apply safe fixes - applies ACCEPT fixes, asks about LIKELY ACCEPT, skips DO NOT ACCEPT and STALE
  6. Resolve threads - marks applied comments as resolved on the PR via codeant pr resolve (supports GitHub, GitLab, Bitbucket, and Azure DevOps)
  7. Offer to commit - lists changed files and offers to commit and push
Changes are not committed automatically - you review the diffs and decide.

/codeant:resolve-quality-gates - Fix CI/CD Quality Gate Failures

Locate the CodeAnt Quality Gate comment posted by CI on the current branch’s PR and fix the listed findings. With a PR number:
Auto-detect from current branch:
When auto-detecting, Claude Code will:
  1. Get your current branch name
  2. Run codeant pr list --source-branch "<branch>" --state open to find the matching PR
  3. If multiple PRs match, ask you which one to use
The fix flow:
  1. Locate the comment - runs codeant pr comments --pr-number <N> --codeant-generated true and picks the most recent one whose body starts with CodeAnt Quality Gate Results
  2. Parse failures - extracts the list of failed gates from the summary table and the per-finding rows from the View Failure Result block (SAST, Secrets, Duplicate Code)
  3. Analyze and assign verdicts - for each finding:
    • Reads the file at the indicated line with 30 lines of context
    • Drafts a minimal fix (the comment contains no inline suggestion - the skill designs the fix from the rule / type / window)
    • Validates syntax, scope, error handling, and that existing behavior is preserved
    • Assigns a verdict: ACCEPT, LIKELY ACCEPT, DO NOT ACCEPT, or STALE
  4. Present summary - groups findings by verdict and gate type, shows before/after diffs
  5. Apply safe fixes - ACCEPT automatically, LIKELY ACCEPT with confirmation, skip the rest
  6. Offer to commit - pushing the fix commit re-triggers CI, which updates the quality gate comment
Coverage by gate: Changes are not committed automatically - you review the diffs and decide.

/codeant:review-local - Review and Fix Local Changes

Run a CodeAnt AI code review on your local changes and fix all issues found.
You can specify the review scope:
The skill selects the right flag based on your request: The fix flow:
  1. Run review - executes codeant review <scope-flag>
  2. Present findings - shows issues grouped by file with category labels (Security, Code Quality, Performance, Maintainability)
  3. Analyze and assign verdicts - classifies each issue as ACCEPT, LIKELY ACCEPT, DO NOT ACCEPT, or STALE
  4. Apply safe fixes - minimal changes only, skips anything that could break existing logic
  5. Verify - re-runs the review to confirm fixes are clean
  6. Report - initial findings, fixes applied, fixes skipped (and why), and verification results
Changes are not committed automatically - you review the diffs and commit when ready.

/codeant:implement-repo-learnings - Generate Custom Review Rules

Analyze your team’s PR review history to generate custom CodeAnt review rules.
The workflow:
  1. Fetch PR history - retrieves the last 100 merged PRs
  2. Extract human feedback - fetches review comments, filters out bots and non-actionable replies
  3. Analyze bug-fix commits - mines git history for recurring fix patterns
  4. Read project guidelines - extracts conventions from .cursorrules, CLAUDE.md, CONTRIBUTING.md, etc.
  5. Cluster patterns - groups feedback into rule candidates with confidence levels (HIGH/MEDIUM)
  6. Interactive confirmation - presents each rule with evidence for your approval
  7. Write rules - generates .codeant/review.json with your approved rules
Rules are merged with any existing .codeant/review.json - nothing is overwritten without confirmation.

Verdict System

All fix workflows use a verdict system to classify each suggestion before applying:

Example Workflows

Resolve PR Comments

Review → Fix → Ship

Updating the Plugin

To get the latest skills:

Troubleshooting

“codeant: command not found” Ensure the CLI is installed globally:
“Not authenticated” or “Could not detect remote”
“Could not detect repo name” Ensure you’re in a git repository with a remote:
Plugin not appearing after install Run /reload-plugins to refresh without restarting Claude Code.