Codity Claude Code Plugin
The Codity Claude Code plugin brings Codity review, security scanning, PR triage, and fix workflows into Claude Code.
The plugin uses the Codity CLI under the hood, so install and authenticate the CLI before using plugin commands.
Install
In Claude Code, add the marketplace and install the plugin:
/plugin marketplace add codity-ai/codity-plugin
/plugin install codity@codity
Then authenticate the CLI once, in your own terminal rather than through the agent, since it needs a real terminal and opens a browser:
codity login
For Codity email accounts, use:
codity login --email
Slash Commands
| Command | What it does |
|---|---|
/codity:review |
Reviews local changes and helps fix findings. |
/codity:fix |
Applies Codity PR comments with approval before each fix. |
/codity:check-pr |
Checks PR readiness by waiting for CI, reading review comments, and summarizing merge status. |
/codity:loop |
Runs review, fix, and re-review cycles until critical and high findings are cleared or the loop limit is reached. |
/codity:scan |
Runs a security scan (SAST, SCA, license) over the current changes and triages the findings. |
Four of these run the plugin's skills: code-review, autofix, check-pr and codity-loop. /codity:scan has no skill of its own; it runs a full review and triages the security object directly. The skills also trigger from natural language, such as "review my code" or "fix the Codity comments", so the commands are a shortcut rather than the only entry point.
The same skills install into Cursor. See Cursor plugin.
Typical Workflows
Review Local Changes
- Make changes in your repository.
- Ask Claude Code to run
/codity:review. - Review the grouped findings.
- Approve fixes you want applied.
Fix Existing PR Comments
- Open Claude Code in the repository for the PR.
- Run
/codity:fix. - Approve or skip each proposed fix.
- Resolve the addressed threads in your provider's UI. The Codity CLI does not resolve threads.
Check Whether a PR Is Ready
Run:
/codity:check-pr
The plugin gathers CI status, review comments, and Codity findings, then reports what still needs attention before merge.
Iterate Until Clean
Run:
/codity:loop
Codity reviews, fixes actionable findings, and re-reviews in a loop until no critical or high issues remain, up to a maximum of 5 iterations.
Requirements
- Codity CLI installed and available on
PATH. - An authenticated Codity CLI session.
- Repository access for the PR or local changes you want reviewed.
- GitHub or GitLab CLI tools may be useful for provider-specific PR operations, but Codity can also talk to supported providers directly.
Troubleshooting
If a plugin command cannot run:
- Run
codity --versionto confirm the CLI is installed. - Run
codity doctorto check service connectivity. - Run
codity loginorcodity login --emailif authentication expired. - Run the command from inside the target git repository.

