Code Review
yaklang/yakit
对 Yakit 仓库的代码改动做规范化 code review:按代码逻辑、TS 定义、UI 引用与 Props、CSS 样式、依赖版本、配置项六个维度审查,检查测试用例缺失,强制执行 tsc 类型检查与 vitest 测试验证,输出「结果汇总 / 明细解释 / 合并结论」三块报告,经用户确认后写入文件。当用户要求 review、审查、评审代码改动,或在提交、合并、提 PR…
Has the host agent do the code review itself while the ocr CLI handles file selection and rule lookup, covering workspace changes, branch ranges or single commits.
$ npx skills add alibaba/open-code-review --skill open-code-review-delegate -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install alibaba/open-code-review open-code-review-delegate --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/alibaba/open-code-review.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/open-code-review-delegate .claude/skills/open-code-review-delegate && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "open-code-review-delegate" agent skill from https://github.com/alibaba/open-code-review/tree/main/skills/open-code-review-delegate into .claude/skills/open-code-review-delegate/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "open-code-review-delegate", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/alibaba/open-code-review/tree/main/skills/open-code-review-delegateType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add alibaba/open-code-review --skill open-code-review-delegate -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install alibaba/open-code-review open-code-review-delegate --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/alibaba/open-code-review.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/open-code-review-delegate .agents/skills/open-code-review-delegate && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "open-code-review-delegate" agent skill from https://github.com/alibaba/open-code-review/tree/main/skills/open-code-review-delegate into .agents/skills/open-code-review-delegate/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "open-code-review-delegate", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add alibaba/open-code-review --skill open-code-review-delegate -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install alibaba/open-code-review open-code-review-delegate --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/alibaba/open-code-review.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/open-code-review-delegate .cursor/skills/open-code-review-delegate && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "open-code-review-delegate" agent skill from https://github.com/alibaba/open-code-review/tree/main/skills/open-code-review-delegate into .cursor/skills/open-code-review-delegate/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "open-code-review-delegate", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/alibaba/open-code-review.git --path skills/open-code-review-delegate--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add alibaba/open-code-review --skill open-code-review-delegate -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install alibaba/open-code-review open-code-review-delegate --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/alibaba/open-code-review.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/open-code-review-delegate .gemini/skills/open-code-review-delegate && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "open-code-review-delegate" agent skill from https://github.com/alibaba/open-code-review/tree/main/skills/open-code-review-delegate into .gemini/skills/open-code-review-delegate/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "open-code-review-delegate", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install alibaba/open-code-review open-code-review-delegateInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add alibaba/open-code-review --skill open-code-review-delegate -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/alibaba/open-code-review.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/open-code-review-delegate .github/skills/open-code-review-delegate && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "open-code-review-delegate" agent skill from https://github.com/alibaba/open-code-review/tree/main/skills/open-code-review-delegate into .github/skills/open-code-review-delegate/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "open-code-review-delegate", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add alibaba/open-code-review --skill open-code-review-delegate -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install alibaba/open-code-review open-code-review-delegate --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/alibaba/open-code-review.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/open-code-review-delegate .opencode/skills/open-code-review-delegate && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "open-code-review-delegate" agent skill from https://github.com/alibaba/open-code-review/tree/main/skills/open-code-review-delegate into .opencode/skills/open-code-review-delegate/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "open-code-review-delegate", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
open-code-review-delegateHas the host agent do the code review itself while the ocr CLI handles file selection and rule lookup, covering workspace changes, branch ranges or single commits.
In delegation mode the `ocr` CLI does only deterministic work and the agent supplies the intelligence, so no LLM endpoint needs to be configured on the OCR side. A preview command reports what is under review, which can be the workspace changes, a range between two refs or one commit, with ref metadata, the reviewable files and their insertions and deletions, and the excluded files with reasons. A rule command then takes those paths and returns the review rules, grouped so that files sharing a rule appear once.
The agent gets each diff straight from git, using the merge base for ranges, `git show` for commits, and `git diff HEAD` plus a direct read for new untracked files in the workspace. It keeps a checklist keyed by path and status, reviews every file against its rule group, and marks each one reviewed or skipped with a concrete reason. Large changes are reviewed in bounded batches grouped by rules and diff size, and the agent does not stop at the first high-severity issue. Comments follow a fixed structure that includes the file path and a description of the issue.
7 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 182898c. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
gitnpmFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use git and npm, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Requires the `ocr` CLI installed (via `npm install -g @alibaba-group/open-code-review` or GitHub release binary). Does NOT require a configured LLM endpoint — delegation mode is LLM-free on the OCR side.
From compatibility in the SKILL.md frontmatter.
Open Code Review Delegate loads about 2k tokens when it runs. Until then it costs about 85 tokens; SKILL.md has 927 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from alibaba/open-code-review at commit 182898c, republished under its Apache-2.0 licence (© alibaba). 927 words, ~1,983 tokens.
.claude/skills/open-code-review-delegate/SKILL.md (or your agent's skills folder).A skill for performing AI code review where OCR provides deterministic engineering (file filtering, rule resolution) and the host agent performs the actual review using its own intelligence and tools.
ocr delegate preview --format json [--from <ref> --to <ref>] [--commit <hash>] [--exclude <patterns>]This outputs:
Common invocations:
| Scenario | Command |
|---|---|
| Workspace changes | ocr delegate preview |
| Branch comparison | ocr delegate preview --from main --to feature |
| Single commit | ocr delegate preview -c abc123 |
ocr delegate rule --format json <path1> <path2> ...Pass the reviewable file paths from Step 1. Output is grouped by rule content — files sharing the same rule appear under one group, avoiding repetition.
Use git directly based on the mode/ref info from Step 1:
Range mode (merge_base provided in preview output):
git diff <merge_base>..<to> -- <path>Commit mode:
git show <commit> -- <path>Workspace mode:
# Tracked files
git diff HEAD -- <path>
# New untracked files — read directly (entire file is new code)
cat <path>Create a checklist containing every reviewable_files entry. For each reviewable file:
Use (path, status) as the checklist identity. Workspace mode can report the same path twice when a staged deletion is followed by an untracked recreation.
reviewed, or skipped with a concrete reasonFor large changes, review in bounded batches grouped by shared rules and diff size. Do not stop after finding the first high-severity issue.
Each comment must follow this structure:
| Field | Type | Required | Description |
|---|---|---|---|
| path | string | yes | Relative file path |
| content | string | yes | Review comment describing the issue |
| start_line | integer | no | Start line in the new file |
| end_line | integer | no | End line in the new file |
| category | enum | no | bug, security, performance, maintainability, test, style, documentation, other |
| severity | enum | no | critical, high, medium, low |
Before reporting, verify that every previewed file is accounted for. Include total_files, reviewed_files, skipped_files, and coverage_rate in the summary. A skipped file must include its reason.
Group findings by severity:
Discard likely false positives silently.
If the user requested "review and fix":
| Command | Purpose |
|---|---|
ocr delegate preview | Which files to review + mode/ref metadata |
ocr delegate rule <path...> | Review rules grouped by content |
| Flag | Description |
|---|---|
--from <ref> | Source ref for range mode |
--to <ref> | Target ref for range mode |
-c, --commit <hash> | Single commit mode |
--repo <path> | Repository root (default: cwd) |
--rule <path> | Custom rule.json path |
--exclude <patterns> | Comma-separated exclude patterns |
-b, --background <text> | Business context |
-B, --background-file <path> | Business context from Markdown file (takes precedence over -b) |
-f, --format <text|json> | Output format; use json for agent integrations |
ocr delegate operates on the Git repo at the current directory. Use --repo /path to override.preview includes untracked files. For these, read the file directly instead of using git diff.--background to preview when you have requirement context; it appears in the output for your reference during review.reviewable_files entry must end as reviewed or explicitly skipped; do not silently omit files.--background-file has two independent limits. The raw file must not exceed
1 MiB, and the sanitized content must not exceed 8000 characters. Either
condition aborts the command. When the command reports either limit:
$(), backticks, quotes, and variable references can still be evaluated.
Omit the original --background-file so the CLI does not reload the same
oversized file and fail again.The --format flag is available in ocr v1.9.0 and later. The Skill and the
installed CLI can be updated independently. If a requested preview or rule
command with --format json fails specifically with unknown flag: --format,
rerun it without the flag and use text output for the rest of the delegation
run. Preserve the explicit mode, ref, file, and rule information from that
output; do not parse text output as JSON or invent missing schema fields. Do
not retry without the flag for any other error; report it and stop the affected
workflow.
The host-agent Skill may consume the equivalent text output to complete its
review checklist. Programmatic integrations that require schema_version or
other JSON fields must require a JSON-capable CLI instead: verify with
ocr --version and upgrade when necessary:
npm install -g @alibaba-group/open-code-review© alibaba, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in skills/open-code-review-delegate of alibaba/open-code-review.
Open the folder on GitHubat commit 182898c
Open Code Review Delegate next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Open Code Review Delegate this skillalibaba/open-code-review | 44k | — | ~2k | Automated safety check: Pass | Apache-2.0 | |
| Code Reviewyaklang/yakit | 7.8k | — | ~1.4k | Automated safety check: Notes | AGPL-3.0 | |
| Shipcatlog22/Claude-Code-Workflow | 2.1k | — | ~1.8k | Automated safety check: Notes | MIT | |
| Code Review ChecklistshareAI-lab/learn-claude-code | 78k | 5 repos | ~1.1k | Automated safety check: Pass | MIT | |
| Understand Diff AnalysisEgonex-AI/Understand-Anything | 85k | 1 repos | ~1.4k | Automated safety check: Pass | MIT | |
| Migrate Internal Package into GhostTryGhost/Ghost | 55k | — | ~3.8k | Automated safety check: Pass | MIT |
yaklang/yakit
对 Yakit 仓库的代码改动做规范化 code review:按代码逻辑、TS 定义、UI 引用与 Props、CSS 样式、依赖版本、配置项六个维度审查,检查测试用例缺失,强制执行 tsc 类型检查与 vitest 测试验证,输出「结果汇总 / 明细解释 / 合并结论」三块报告,经用户确认后写入文件。当用户要求 review、审查、评审代码改动,或在提交、合并、提 PR…
catlog22/Claude-Code-Workflow
Structured release pipeline with pre-flight checks, AI code review, version bump, changelog, PR creation, platform publish, and GitHub release.
shareAI-lab/learn-claude-code
Reviews code against a five-part checklist covering security, correctness, performance, maintainability and testing, and reports findings in a fixed format.
Egonex-AI/Understand-Anything
Reads your git changes or a pull request against a prebuilt knowledge graph of the project to explain what changed, which components are affected and what is risky.
TryGhost/Ghost
Moves a package from another TryGhost repository into Ghost as an internal workspace package while keeping its Git history, with checkpoints for the steps that need an administrator.
prisma/orm
Fetches a pull request's canonical review state as JSON, validates it, and renders markdown, a text summary and triage target files from it using bundled scripts.
alibaba/open-code-review
Runs the ocr command-line tool to review Git changes, a commit or a branch comparison with an AI model, returning line-level comments and optionally applying fixes.
Categories
Has the host agent do the code review itself while the ocr CLI handles file selection and rule lookup, covering workspace changes, branch ranges or single commits. In delegation mode the `ocr` CLI does only deterministic work and the agent supplies the intelligence, so no LLM endpoint needs to be configured on the OCR side. A preview command reports what is under review, which can be the workspace changes, a range between two refs or one commit, with ref metadata, the reviewable files and their insertions and deletions, and the excluded files with reasons.
Open Code Review Delegate fits situations like: reviewing uncommitted workspace changes with the agent's own model; reviewing a branch against main using the project's review rules; reviewing a single commit.
Run `npx skills add alibaba/open-code-review --skill open-code-review-delegate -a claude-code`. Or copy the skill folder (skills/open-code-review-delegate in alibaba/open-code-review) into .claude/skills/open-code-review-delegate in your project. Claude Code loads it when a task matches its description.
Run `npx skills add alibaba/open-code-review --skill open-code-review-delegate -a codex`. Or copy the skill folder (skills/open-code-review-delegate in alibaba/open-code-review) into .agents/skills/open-code-review-delegate in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add alibaba/open-code-review --skill open-code-review-delegate -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/open-code-review-delegate, .gemini/skills/open-code-review-delegate, .github/skills/open-code-review-delegate and .opencode/skills/open-code-review-delegate in your project.
Going by SKILL.md and its folder, Open Code Review Delegate needs the command-line tools its instructions call (git and npm). Our summary lists: The `ocr` CLI, from the npm package `@alibaba-group/open-code-review` or a release binary; Git. Compatibility (from SKILL.md): Requires the `ocr` CLI installed (via `npm install -g @alibaba-group/open-code-review` or GitHub release binary). Does NOT require a configured LLM endpoint — delegation mode is LLM-free on the OCR side. .
SKILL.md contains no URLs. Its commands use git and npm, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Open Code Review Delegate is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 2k tokens (SKILL.md is roughly 7.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Open Code Review Delegate: Code Review (yaklang/yakit, 7.8k stars), Ship (catlog22/Claude-Code-Workflow, 2.1k stars), Code Review Checklist (shareAI-lab/learn-claude-code, 78k stars) and Understand Diff Analysis (Egonex-AI/Understand-Anything, 85k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
alibaba (a GitHub organization) maintains it in alibaba/open-code-review, which has 44,069 GitHub stars. The repository holds 2 skills in this directory. The repository was last updated on October 5, 2026.
Source: alibaba/open-code-review on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.