Set up a comprehensive GitHub repository quality and security toolchain. Use this skill whenever the user wants to configure GitHub Actions, code review bots, static analysis, security scanning, dependency updates, or coverage reporting for a repository -- even if they only mention some of the tools (CodeRabbit, SonarCloud, Semgrep, Dependabot, CodeQL, Snyk, Trivy, Codecov). Also use when the user says things like "make my repo production-ready", "add CI quality gates", "set up GitHub security", "configure PR automation", or "add workflow files for code review/security".