Skip to content
Security
Command

/review-pr

Review pull requests for compliance regressions

From plugin
trust-center
367139 skills139 commands1 MCP
Install
$ npx -y skills add GRCEngClub/claude-grc-engineering --agent claude-code

How it fires

How this command gets triggered: by you, by Claude, or both.

  • Fires itselfClaude auto-loads it when your prompt matches the work.
  • You can call itInvoke it directly when you want it.
  • Slash command/review-pr

Context preview

What this command does when you run it.

Review pull requests for compliance regressions

Command definition

review-pr.md
description: Review pull requests for compliance regressions

Review PR

Reviews GitHub pull requests for compliance regressions and security issues.

Arguments

  • `$1` - Repository (required, format: owner/repo)
  • `$2` - PR number (required)
  • `$3` - Framework (optional, defaults to SOC2)

Prerequisites

  • `GITHUB_TOKEN` environment variable (requires `repo` scope)

Instructions

1. Set up GitHub token:

   export GITHUB_TOKEN=your_token_here

2. Run the review-pr script:

   node plugins/grc-engineer/scripts/review-pr.js $ARGUMENTS

3. The script analyzes the PR diff and generates compliance review comments.

4. Review the generated comments and post them to the PR if needed.

Example

/grc-engineer:review-pr myorg/infrastructure 42 SOC2
Ships withtrust-center

Open-source GRC Engineering resource for Claude. claude-grc-engineering turns technical evidence from cloud, SaaS, code, and security tools into framework-aligned findings, gap reports, remediation guidance, evidence packages, and OSCAL workflows.

Get the whole plugin, auto-invoked
Stats
367
Stars
0
Views
82
Forks
Active
Maintenance
JavaScript
Language
1d ago
Last commit
7mo ago
Created

Repo: GRCEngClub/claude-grc-engineering