Back to skills
SKILL.md
Code Review 33
ASecurityCode review workflow using GitHub CLI. Use when reviewing pull requests, checking PR diffs, adding review comments, or approving/requesting changes on PRs.
- 2 stars
- 0 votes
- 0 copies
- 0 views
- Added September 27, 2026
Works with
Security analysis
100/100Pro scans all 2 files and shows the line behind each finding
npx -y skills add David-Li0406/meta-skill-evloving --skill code-review-33 --agent claude-codeAre you the author of Code Review 33?
Add the live security badge to your README. It updates with every re-scan.
[](https://www.skillsdirectory.com/skills/david-li0406-code-review-33)---
name: code-review
description: Code review workflow using GitHub CLI. Use when reviewing pull requests, checking PR diffs, adding review comments, or approving/requesting changes on PRs.
allowed-tools:
- Bash(gh pr list:*)
- Bash(gh pr view:*)
- Bash(gh pr diff:*)
- Bash(gh pr checks:*)
- Bash(gh pr checkout:*)
- Bash(gh issue list:*)
- Bash(gh issue view:*)
- Bash(gh run list:*)
- Bash(gh run view:*)
- Bash(gh api:*)
- Read
- Grep
- Glob
---
# Code Review Skill
## Rules
### Read-Only Operations
This skill only allows read-only GitHub operations.
Write operations require explicit user instruction outside this skill.
For `gh api`: GET requests only. No `-X POST/PUT/PATCH/DELETE` or `-f`/`-F` flags.
### Citation Required
Every issue raised MUST reference official documentation with URL or doc name.
Do not raise issues without documentation support.
## Workflow
1. **Get PR overview** - `gh pr view <number>`
2. **Review diff** - `gh pr diff <number>`
3. **Impact analysis** - Search callers of modified functions
4. **Check CI** - `gh pr checks <number>`
5. **Output findings** - Use format below
For detailed commands: See [references/gh-commands.md](references/gh-commands.md)
## Impact Analysis (REQUIRED)
When functions/methods/interfaces are modified:
1. Identify modified functions from diff
2. Search all callers: `rg "functionName" --type <lang>`
3. Verify caller compatibility
4. Report breaking changes
Check for: signature changes, return type changes, renamed functions, modified APIs.
## Output Format
```
## Review Summary
### Issues Found
#### [File: path/to/file.ext, Line: XX]
**Issue**: [Description]
**Reference**: [Official documentation URL]
**Suggestion**: [How to fix]
### Impact Analysis
- [Affected callers and compatibility status]
### Recommendation
- [ ] Approve / [ ] Request Changes / [ ] Comment Only
```
## Checklist
- [ ] Changes align with purpose
- [ ] Logic correct, edge cases handled
- [ ] All callers of modified functions identified
- [ ] No breaking changes to public APIs
- [ ] Security: input validation, no hardcoded secrets
- [ ] Tests added/updated, CI passing
Files in this skill
- SKILL.md
- references/gh-commands.md
Attribution
Comments
Loading comments…