← All Semantic Contracts

Quality Review

How we review code and check for security issues

A semantic contract: vocabulary your project supplies itself — ready to drop into your CLAUDE.md / AGENTS.md.

    Quality assurance follows three layers:

  • Code review using Fagan Inspection (structured, systematic, with defined phases)
  • Security review based on OWASP Top 10
  • Architecture review using ATAM (scenario-based tradeoff analysis against quality goals)
  • Use a different AI model or fresh session for reviews to avoid blind spots

Related Anchors