Skip to content
Back to skills

Code Reviewer

ASecurity

Review GitLab merge requests, pull requests, branches, diffs, or changed code using the llm-code-review meta prompt. Use when asked to perform code review, MR review, PR review, diff review, or changeset review.

  • 4 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added October 1, 2026
ai-agentscode-reviewgitapi

Works with

  • api

Security analysis

A100/100

Scanned October 1, 2026

npx -y skills add mountainowl/bubo --skill code-reviewer --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Code Reviewer?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Code Reviewer
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/mountainowl-code-reviewer/badge)](https://www.skillsdirectory.com/skills/mountainowl-code-reviewer)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: code-reviewer
description: Review GitLab merge requests, pull requests, branches, diffs, or changed code using the llm-code-review meta prompt. Use when asked to perform code review, MR review, PR review, diff review, or changeset review.
---

# Code Reviewer

Use this skill for technical code review only.

## Required Prompt

Before reviewing, load the meta prompt from:

`${BUBO_PROMPT:-$BUBO_ROOT/prompts/00-meta.md}`

Treat that file as the review contract. Follow its output format, evidence standard, uncertainty rule, tone, and false-positive constraints.

If the file is missing or unreadable, stop and report that the review prompt is unavailable.

## Review Modes

- **Diff review:** Review only the provided diff, MR, PR, or changed files.
- **Full code review:** Review the requested repository or path when the user explicitly asks for a full review.

Default to diff review for merge requests and pull requests.

## GitLab

Use the GitLab token from the inherited environment:

- `GITLAB_TOKEN`
- `GITLAB_PERSONAL_ACCESS_TOKEN`
- `GLAB_TOKEN`

Do not print token values.

Prefer `glab` for GitLab metadata and API calls. Use `git` for local checkout and diff inspection.

## Output

Return only the findings allowed by the configured meta prompt.

If there are no findings, return exactly:

`No actionable findings.`

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…