Graph-Based Change Review
tirth8205/code-review-graph
Reviews a change set using a code knowledge graph for risk scores, blast radius and test gaps, and ends with a merge recommendation.
Review code changes in the AppClaw repo for correctness, CLI/VSCode extension consistency, and YAML flow parsing regressions.
$ npx skills add appclawhq/AppClaw --skill review-changes -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install appclawhq/AppClaw review-changes --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/appclawhq/AppClaw.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/review-changes .claude/skills/review-changes && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "review-changes" agent skill from https://github.com/appclawhq/AppClaw/tree/main/.agents/skills/review-changes into .claude/skills/review-changes/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-changes", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/appclawhq/AppClaw/tree/main/.agents/skills/review-changesType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add appclawhq/AppClaw --skill review-changes -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install appclawhq/AppClaw review-changes --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/appclawhq/AppClaw.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.agents/skills/review-changes .agents/skills/review-changes && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "review-changes" agent skill from https://github.com/appclawhq/AppClaw/tree/main/.agents/skills/review-changes into .agents/skills/review-changes/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-changes", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add appclawhq/AppClaw --skill review-changes -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install appclawhq/AppClaw review-changes --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/appclawhq/AppClaw.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.agents/skills/review-changes .cursor/skills/review-changes && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "review-changes" agent skill from https://github.com/appclawhq/AppClaw/tree/main/.agents/skills/review-changes into .cursor/skills/review-changes/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-changes", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/appclawhq/AppClaw.git --path .agents/skills/review-changes--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add appclawhq/AppClaw --skill review-changes -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install appclawhq/AppClaw review-changes --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/appclawhq/AppClaw.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.agents/skills/review-changes .gemini/skills/review-changes && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "review-changes" agent skill from https://github.com/appclawhq/AppClaw/tree/main/.agents/skills/review-changes into .gemini/skills/review-changes/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-changes", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install appclawhq/AppClaw review-changesInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add appclawhq/AppClaw --skill review-changes -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/appclawhq/AppClaw.git skills-src && mkdir -p .github/skills && cp -r skills-src/.agents/skills/review-changes .github/skills/review-changes && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "review-changes" agent skill from https://github.com/appclawhq/AppClaw/tree/main/.agents/skills/review-changes into .github/skills/review-changes/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-changes", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add appclawhq/AppClaw --skill review-changes -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install appclawhq/AppClaw review-changes --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/appclawhq/AppClaw.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.agents/skills/review-changes .opencode/skills/review-changes && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "review-changes" agent skill from https://github.com/appclawhq/AppClaw/tree/main/.agents/skills/review-changes into .opencode/skills/review-changes/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-changes", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
review-changesReview code changes in the AppClaw repo for correctness, CLI/VSCode extension consistency, and YAML flow parsing regressions.
Review Changes is an agent skill from appclawhq/AppClaw. Review code changes in the AppClaw repo for correctness, CLI/VSCode extension consistency, and YAML flow parsing regressions. Use this skill whenever the user says "review my changes", "check my changes", "validate changes", "does this break anything", "review the diff", or any variation of wanting to verify that recent code modifications haven't broken the CLI, VSCode extension, or YAML flow parsing. Also use when the user is about to commit or push and wants a sanity check.
Its SKILL.md is about 1.4k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files (for example `evals/evals.json`).
It sits in Development, covering Code review. It works with Visual Studio Code and Model Context Protocol. The repository describes itself as: AI-powered mobile automation agent — describe what you want in plain English, AppClaw reads the screen, reasons, and acts. LLM-agnostic, open-source, zero telemetry. The licence is Apache-2.0.
5 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 9bbc6f1. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
npmgitnpxFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use npm, git and npx, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Review Changes loads about 1.4k tokens when it runs. Until then it costs about 124 tokens; SKILL.md has 518 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from appclawhq/AppClaw at commit 9bbc6f1, republished under its Apache-2.0 licence (© appclawhq). 518 words, ~1,432 tokens.
.claude/skills/review-changes/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.This skill reviews code changes in AppClaw to catch breakage across two surfaces (CLI and VSCode extension) and validate YAML flow parsing. AppClaw has a fragile contract between these surfaces — the CLI emits NDJSON events that the extension parses, and changes to either side can silently break the other.
AppClaw has three main failure modes when code changes:
src/json-emitter.ts defines event types. The extension's vscode-extension/src/bridge.ts mirrors those types manually. When someone adds a field to one side, the other silently ignores it, causing subtle bugs.src/flow/natural-line.ts uses regex patterns that interact in surprising ways. A change to one regex can break another flow format.src/config.ts (Zod schema). The extension maps VS Code settings to env vars in bridge.ts:getEnvFromSettings(). New config options added to one side may not appear in the other.When triggered, perform these checks in order:
Run git diff (staged + unstaged) and git diff --cached to see all pending changes. Categorize the changed files:
src/json-emitter.ts, src/flow/types.ts, src/config.tssrc/flow/natural-line.ts, src/flow/parse-yaml-flow.ts, src/flow/run-yaml-flow.ts, src/flow/variable-resolver.ts, src/flow/llm-parser.tsvscode-extension/src/If any shared contract files changed, or if extension/CLI files changed:
Event type check:
src/json-emitter.ts (the JsonEvent type union)vscode-extension/src/bridge.ts (the AppclawEvent type and individual event interfaces)Config mapping check:
src/config.ts (the Zod schema for env vars)getEnvFromSettings() function in vscode-extension/src/bridge.tsvscode-extension/package.json contributes.configuration sectionReport format:
## Cross-Surface Consistency
### Event Types
- [OK] connected — fields match
- [DRIFT] flow_done — CLI has `failedPhase?: string` and `phaseResults?: unknown[]`, extension bridge is missing both
- [NEW] screen — not handled in extension's formatEvent (returns null)
### Config Mapping
- [OK] LLM_PROVIDER — mapped via llmProvider setting
- [MISSING] NEW_CONFIG_VAR — added to CLI config but no VS Code setting existsRun the test suites to verify parsing still works:
# Run vitest for flow parsing, variable resolution, and cross-surface validation
cd /Users/saikrishna/Documents/git/appclaw && npm test
# Run the integration verification script
npx tsx tests/verify-parsing.tsIf tests fail, report which tests failed and why. If tests pass, confirm that.
Then, if natural-line.ts or parse-yaml-flow.ts changed, do an additional manual audit:
examples/flows/google-search.yaml (legacy structured: tap:, type:, done:)examples/flows/vodqa-natural.yaml (natural language flat)examples/flows/settings-wifi-on.yaml (structured with comments)examples/flows/youtube-search-appium3.yaml (mixed natural + structured)tests/flows/youtube-phased.yaml (phased with variables)flows/youtube.yaml (legacy flat with phases)cd /Users/saikrishna/Documents/git/appclaw && npm run typecheckReport any type errors, especially ones related to the changed files.
Present findings as a structured report:
# Change Review Summary
## Files Changed
- list of files with risk level
## Cross-Surface Issues
- any drift or mismatches found (or "None found")
## YAML Parsing
- test results (pass/fail counts)
- any regressions identified
## Type Check
- clean or errors found
## Recommendations
- specific fixes needed, if anyBe direct — if everything looks good, say so briefly. If there are issues, be specific about what's wrong and suggest the fix.
src/agent/ files), skip the cross-surface check and say so.npm test). The cross-surface contract test (tests/flow/cross-surface.test.ts) automatically validates CLI ↔ extension event parity.cd vscode-extension && npm run compile). If extension files changed, run that too.© appclawhq, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 1 other file in .agents/skills/review-changes of appclawhq/AppClaw.
Open the folder on GitHubat commit 9bbc6f1
Review Changes next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Review Changes this skillappclawhq/AppClaw | 116 | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | |
| Graph-Based Change Reviewtirth8205/code-review-graph | 32k | 1 repos | ~331 | Automated safety check: Pass | MIT | |
| YugabyteDB Backport Reviewyugabyte/yugabyte-db | 11k | — | ~2.5k | Automated safety check: Pass | Custom licence | |
| Liveagent Code ReviewStack-Cairn/LiveAgent | 2.2k | — | ~2k | Automated safety check: Pass | MIT | |
| Code Review Graph Navigatorhandsontable/handsontable | 22k | — | ~939 | Automated safety check: Pass | Custom licence | |
| Code Reviewnteract/semiotic | 2.7k | — | ~1.5k | Automated safety check: Pass | Apache-2.0 |
tirth8205/code-review-graph
Reviews a change set using a code knowledge graph for risk scores, blast radius and test gaps, and ends with a merge recommendation.
yugabyte/yugabyte-db
Checks a YugabyteDB backport revision on Phorge against the original diff it was ported from and flags differences, tracing unexplained code back to master.
Stack-Cairn/LiveAgent
Review an open GitHub pull request or the current local branch and working tree with parallel, independent reviewers and evidence-based validation.
handsontable/handsontable
Queries a pre-built, Tree-sitter-based code graph of the whole monorepo instead of grepping call chains, for exploring, debugging, refactoring or reviewing code.
nteract/semiotic
Review Semiotic pull requests for behavioral bugs, regressions, contract drift, and missing evidence.
Cranot/roam-code
Codebase comprehension via roam-code CLI. An agent skill from Cranot/roam-code.
appclawhq/AppClaw
Generate YAML flow files for AppClaw mobile automation. An agent skill from appclawhq/AppClaw.
appclawhq/AppClaw
Use the AppClaw CLI to run YAML flows, start the interactive TUI shell, explore apps, record/replay sessions, configure devices, and troubleshoot.
appclawhq/AppClaw
Use the appclaw-agent CLI to directly open, inspect, and interact with a mobile app via terminal commands — without writing a YAML flow.
Works with
Categories
Review code changes in the AppClaw repo for correctness, CLI/VSCode extension consistency, and YAML flow parsing regressions. Review Changes is an agent skill from appclawhq/AppClaw. Review code changes in the AppClaw repo for correctness, CLI/VSCode extension consistency, and YAML flow parsing regressions.
Review Changes fits situations like: the user says review my changes; check my changes; validate changes; does this break anything.
Run `npx skills add appclawhq/AppClaw --skill review-changes -a claude-code`. Or copy the skill folder (.agents/skills/review-changes in appclawhq/AppClaw) into .claude/skills/review-changes in your project. Claude Code loads it when a task matches its description.
Run `npx skills add appclawhq/AppClaw --skill review-changes -a codex`. Or copy the skill folder (.agents/skills/review-changes in appclawhq/AppClaw) into .agents/skills/review-changes in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add appclawhq/AppClaw --skill review-changes -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/review-changes, .gemini/skills/review-changes, .github/skills/review-changes and .opencode/skills/review-changes in your project.
Going by SKILL.md and its folder, Review Changes needs the command-line tools its instructions call (npm, git and npx). Our summary lists: Node.js.
SKILL.md contains no URLs. Its commands use npm, git and npx, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Review Changes is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.4k tokens (SKILL.md is roughly 5.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Review Changes: Graph-Based Change Review (tirth8205/code-review-graph, 32k stars), YugabyteDB Backport Review (yugabyte/yugabyte-db, 11k stars), Liveagent Code Review (Stack-Cairn/LiveAgent, 2.2k stars) and Code Review Graph Navigator (handsontable/handsontable, 22k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
appclawhq (a GitHub organization) maintains it in appclawhq/AppClaw, which has 116 GitHub stars. The repository holds 4 skills in this directory. The repository was last updated on September 3, 2026.
Source: appclawhq/AppClaw on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.