Skip to content
Back to skills

Code Review 33

ASecurity

Code review workflow using GitHub CLI. Use when reviewing pull requests, checking PR diffs, adding review comments, or approving/requesting changes on PRs.

  • 2 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 27, 2026
toolsbashcode-reviewgitapisecuritydocumentation

Works with

  • cli
  • api

Security analysis

A100/100

Pro scans all 2 files and shows the line behind each finding

Scanned September 27, 2026

npx -y skills add David-Li0406/meta-skill-evloving --skill code-review-33 --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Code Review 33?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Code Review 33
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/david-li0406-code-review-33/badge)](https://www.skillsdirectory.com/skills/david-li0406-code-review-33)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: code-review
description: Code review workflow using GitHub CLI. Use when reviewing pull requests, checking PR diffs, adding review comments, or approving/requesting changes on PRs.
allowed-tools:
  - Bash(gh pr list:*)
  - Bash(gh pr view:*)
  - Bash(gh pr diff:*)
  - Bash(gh pr checks:*)
  - Bash(gh pr checkout:*)
  - Bash(gh issue list:*)
  - Bash(gh issue view:*)
  - Bash(gh run list:*)
  - Bash(gh run view:*)
  - Bash(gh api:*)
  - Read
  - Grep
  - Glob
---

# Code Review Skill

## Rules

### Read-Only Operations
This skill only allows read-only GitHub operations.
Write operations require explicit user instruction outside this skill.

For `gh api`: GET requests only. No `-X POST/PUT/PATCH/DELETE` or `-f`/`-F` flags.

### Citation Required
Every issue raised MUST reference official documentation with URL or doc name.
Do not raise issues without documentation support.

## Workflow

1. **Get PR overview** - `gh pr view <number>`
2. **Review diff** - `gh pr diff <number>`
3. **Impact analysis** - Search callers of modified functions
4. **Check CI** - `gh pr checks <number>`
5. **Output findings** - Use format below

For detailed commands: See [references/gh-commands.md](references/gh-commands.md)

## Impact Analysis (REQUIRED)

When functions/methods/interfaces are modified:

1. Identify modified functions from diff
2. Search all callers: `rg "functionName" --type <lang>`
3. Verify caller compatibility
4. Report breaking changes

Check for: signature changes, return type changes, renamed functions, modified APIs.

## Output Format

```
## Review Summary

### Issues Found

#### [File: path/to/file.ext, Line: XX]
**Issue**: [Description]
**Reference**: [Official documentation URL]
**Suggestion**: [How to fix]

### Impact Analysis
- [Affected callers and compatibility status]

### Recommendation
- [ ] Approve / [ ] Request Changes / [ ] Comment Only
```

## Checklist

- [ ] Changes align with purpose
- [ ] Logic correct, edge cases handled
- [ ] All callers of modified functions identified
- [ ] No breaking changes to public APIs
- [ ] Security: input validation, no hardcoded secrets
- [ ] Tests added/updated, CI passing

Files in this skill

  • SKILL.md2.1 KB
  • references/gh-commands.md1.1 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…