Agent skill

Code Review

by AUTO-MAS-Project in AUTO-MAS-Project/AUTO-MAS

从固定点(commit、branch、tag 或 merge-base)开始,沿两条轴线审查变更——规范(代码是否遵循仓库文档化的编码规范?)和规格(代码是否与原始 issue/PRD 的要求一致?)。两条审查线在并行子 agent 中运行,并以并排方式报告结果。当用户想审查一个分支、PR、进行中的变更,或要求"从 X 开始审查"时使用。

AGPL-3.0Auto-check passedProduct & Project Management

Install Code Review

skills CLI
$ npx skills add AUTO-MAS-Project/AUTO-MAS --skill code-review -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install AUTO-MAS-Project/AUTO-MAS code-review --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/AUTO-MAS-Project/AUTO-MAS.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/code-review .claude/skills/code-review && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
code-review
GitHub stars
708
Used in
1 other repo
Token cost
~797 tokens
SKILL.md length
209 words
Files
2
Skills in repo
15
Repo updated
First seen
Licence
AGPL-3.0

At a glance

从固定点(commit、branch、tag 或 merge-base)开始,沿两条轴线审查变更——规范(代码是否遵循仓库文档化的编码规范?)和规格(代码是否与原始 issue/PRD 的要求一致?)。两条审查线在并行子 agent 中运行,并以并排方式报告结果。当用户想审查一个分支、PR、进行中的变更,或要求"从 X 开始审查"时使用。

  • Works in 5 steps: 确定固定点 → 确定规格来源 → 确定规范来源 → …
  • Tasks that involve PRD writing
  • SKILL.md covers 流程 and 为什么要分两条轴线
  • Calls git

What it does

Code Review is an agent skill from AUTO-MAS-Project/AUTO-MAS. 从固定点(commit、branch、tag 或 merge-base)开始,沿两条轴线审查变更——规范(代码是否遵循仓库文档化的编码规范?)和规格(代码是否与原始 issue/PRD 的要求一致?)。两条审查线在并行子 agent 中运行,并以并排方式报告结果。当用户想审查一个分支、PR、进行中的变更,或要求"从 X 开始审查"时使用。

Its SKILL.md is about 800 tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files (for example `agents/openai.yaml`).

It sits in Product & Project Management, covering PRD writing and Code review. It works with Git. The repository describes itself as: 多脚本多配置统一管理与自动化工具 | 轻松管理大量脚本并存储多个用户配置、设计自动化任务流、监看脚本日志,大幅提高自动化代理效率与稳定性!. The licence is AGPL-3.0.

When your agent uses it

  • Tasks that involve PRD writing
  • Tasks that involve Code review

Example prompts

  • “从 X 开始审查”
  • “/code-review”

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. 确定固定点
  2. 确定规格来源
  3. 确定规范来源
  4. 并行启动两个子 agent
  5. 汇总

What it can do on your machine

Read from SKILL.md and the folder at commit 699de5a. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • git

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Code Review loads about 797 tokens when it runs. Until then it costs about 46 tokens; SKILL.md has 209 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~46
When it runs · the whole SKILL.md, loaded when a task matches
~797

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from AUTO-MAS-Project/AUTO-MAS at commit 699de5a, republished under its AGPL-3.0 licence (© AUTO-MAS-Project). 209 words, ~797 tokens.

Download SKILL.mdSave it as .claude/skills/code-review/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
code-review
description
从固定点(commit、branch、tag 或 merge-base)开始,沿两条轴线审查变更——规范(代码是否遵循仓库文档化的编码规范?)和规格(代码是否与原始 issue/PRD 的要求一致?)。两条审查线在并行子 agent 中运行,并以并排方式报告结果。当用户想审查一个分支、PR、进行中的变更,或要求"从 X 开始审查"时使用。

审查

对 HEAD 与用户指定的固定点之间的 diff 进行双轴审查:

  • 规范——代码是否符合本仓库文档化的编码规范?
  • 规格——代码是否忠实地实现了原始 issue / PRD / 规格?

两条轴线作为并行子 agent 运行,互不污染彼此的上下文,然后由本技能汇总双方的发现。

Issue 引用按仓库根目录 AGENTS.md 的贡献规范解析(本仓库为 GitHub Issues,提交与 PR 正文使用 Closes #n);无需单独的 issue-tracker 配置文件。

流程

1. 确定固定点

用户说的任何东西都可以作为固定点——commit SHA、分支名、tag、main、HEAD~5 等等。不要随意发挥,直接传入即可。如果用户没有指定,则询问:"以什么为基准进行审查——一个分支、一个 commit、还是 main?" 没有得到答案之前不要继续。

捕获 diff 命令:git diff <fixed-point>...HEAD(三个点,这样比较的是 merge-base)。同时通过 git log <fixed-point>..HEAD --oneline 记录 commit 列表。

在继续之前,确认固定点能解析(git rev-parse <fixed-point>)且 diff 非空。错误的引用或空的 diff 应该在此处失败——不应该让两个并行子 agent 来处理。

2. 确定规格来源

按以下顺序查找原始规格:

  1. commit 消息中的 issue 引用(#123、Closes #45 等)——用 gh 命令或 GitHub 页面获取对应 issue / PR 正文。
  2. 用户作为参数传入的路径。
  3. docs/、specs/ 或 .scratch/ 下与分支名或功能名匹配的 PRD/规格文件。
  4. 如果什么都没找到,询问用户规格在哪里。如果用户说没有,规格子 agent 将跳过并报告"无可用的规格"。
3. 确定规范来源

仓库中任何记载了代码应如何编写的文档,例如 CODING_STANDARDS.md 或 CONTRIBUTING.md。

除了仓库记录的内容外,规范轴线始终携带下面的可疑写法基线(refactoring smells,Fowler《重构》第 3 章)——一组固定的可疑写法判定,即使仓库没有任何文档也适用。两条约束规则:

  • 仓库覆盖规范。 已文档化的仓库标准永远优先;如果仓库明确认可了基线的某些判定,则压制该判定。
  • 始终是判断性问题。 每一条都是带标签的启发式判断("可能的特性依恋"),绝不是一个硬性违反——而且和这里的所有标准一样,跳过工具已强制执行的内容。

每条的格式为它是什么 → 如何修复;将其与 diff 匹配:

  • 神秘命名(Mysterious Name)——函数、变量或类型的名称不能揭示其作用或含义。→ 重命名;如果找不到一个诚实的名字,说明设计本身模糊不清。
  • 重复代码(Duplicated Code)——相同的逻辑形态出现在变更中的多个 hunk 或文件里。→ 提取共享形态,从两处调用。
  • 特性依恋(Feature Envy)——方法访问另一个对象的数据比访问自己的更多。→ 将该方法移动到它所依恋的数据上。
  • 数据泥团(Data Clumps)——同一组字段或参数反复结伴出现(一个等待诞生的类型)。→ 将它们打包成一个类型,传递这个类型。
  • 基本类型偏执(Primitive Obsession)——用基本类型或字符串来表示值得拥有自己类型的概念。→ 给该概念一个自己的小类型。
  • 重复 switch(Repeated Switches)——对同一类型反复使用相同的 switch/if 级联。→ 用多态替换,或使用两者共享的一个映射。
  • 霰弹式修改(Shotgun Surgery)——一个逻辑变更迫使 diff 中散落在许多文件中的修改。→ 将一起变更的内容聚集到一个模块中。
  • 发散式变更(Divergent Change)——一个文件或模块因多个无关原因被修改。→ 拆分,使每个模块因单一原因变更。
  • 臆测通用性(Speculative Generality)——为规格中不存在的需求添加的抽象、参数或钩子。→ 删除;内联回去,直到真实需求出现。
  • 消息链(Message Chains)——调用者不应依赖的冗长 a.b().c().d() 导航。→ 将遍历隐藏在第一个对象的一个方法后面。
  • 中间人(Middle Man)——一个类或函数大部分时间只是委托给其他人。→ 砍掉它,直接调用真正的目标。
  • 拒绝遗产(Refused Bequest)——子类或实现者忽略或覆盖了大部分继承的内容。→ 放弃继承,改用组合。
4. 并行启动两个子 agent

规范子 agent prompt——包含:

  • 完整的 diff 命令和 commit 列表。
  • 你在步骤 3 中找到的规范来源文件列表,加上步骤 3 中的可疑写法基线(完整粘贴——子 agent 没有其他途径获取它)。
  • 任务简述:"报告——按文件/hunk 列出——(a) diff 中每一处违反文档化规范的地方:引用规范(文件 + 规则);以及 (b) 你发现的任何基线可疑写法:命名并引用 hunk。区分硬性违规和判断性差异——文档化规范的违规可以是硬性的,但基线判定始终是判断性问题,且已文档化的仓库标准覆盖基线。跳过工具已强制执行的内容。400 字以内。"

规格子 agent prompt——包含:

  • diff 命令和 commit 列表。
  • 规格文件的路径或获取到的内容。
  • 任务简述:"报告:(a) 规格要求但缺失或不完整的需求;(b) diff 中存在但规格未要求的行为(范围蔓延);(c) 看起来已实现但实现可能错误的需求。每一项都引用规格原文。400 字以内。"

如果规格缺失,跳过规格子 agent,并在最终报告中注明。

5. 汇总

在 ## 规范 和 ## 规格 标题下呈现两份报告,可以原文呈现或稍作整理。不要合并或重新排序发现项——两条轴线刻意分开(参见《为什么要分两条轴线》)。

结尾附一行总结:每条轴线上发现项的总数,以及每条轴线内最严重的单项问题(如果有的话)。不要跨轴线选一个最终获胜者——那正是拆分要防止的重新排序。

为什么要分两条轴线

一项变更可能通过一条轴线的审查而不通过另一条:

  • 代码遵循了所有规范但实现了错误的功能 → 规范通过,规格失败。
  • 代码完全按 issue 要求实现但违反了项目约定 → 规格通过,规范失败。

分别报告可以防止一条轴线掩盖另一条轴线。

© AUTO-MAS-Project, AGPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file in .agents/skills/code-review of AUTO-MAS-Project/AUTO-MAS.

  • SKILL.md
  • agents/openai.yaml

Open the folder on GitHubat commit 699de5a

Used in 1 other repository

We found 1 copy of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in AUTO-MAS-Project/AUTO-MAS, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Code Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Code Review compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Code Review this skillAUTO-MAS-Project/AUTO-MAS7081 repos~797Automated safety check: PassAGPL-3.0
Ad ReviewCorridorTech/PoseCap224—~2.4kAutomated safety check: NotesApache-2.0
CCPM Project Managementautomazeio/ccpm8.4k—~1.1kAutomated safety check: PassMIT
Astro Code Reviewwithastro/astro63k—~7.6kAutomated safety check: PassCustom licence
Reviewfossasia/eventyay-interpretation1.6k35 repos~996Automated safety check: PassApache-2.0
Pi Enshare-skills/pi108—~9.9kAutomated safety check: WarnApache-2.0

Similar skills

  • Ad Review

    CorridorTech/PoseCap

    Two-axis fresh-context code review per WORKFLOW §10. An agent skill from CorridorTech/PoseCap.

    224 GitHub stars~2.4k tokensUpdated yesterday
    DevelopmentAuto-check: notes
  • Runs a spec-driven workflow from PRD to epic to GitHub issues to parallel agents, with status, standup and blocked-work reports from bundled scripts.

    8.4k GitHub stars~1.1k tokensUpdated 6 mo ago
    Product & Project ManagementAuto-check passed
  • Astro Code Review

    withastro/astro

    Official

    Perform a static, read-only code review of an Astro pull request or of a local branch, commit range, diff, patch, or working tree being prepared as a pull request.

    63k GitHub stars~7.6k tokensUpdated today
    DevelopmentAuto-check passed
  • Review

    fossasia/eventyay-interpretation

    Review the changes since a fixed point (commit, branch, tag, or merge-base) along two axes — Standards (does the code follow this repo's documented coding standards?) and Spec (does the code match…

    1.6k GitHub starsUsed in 35 repos~996 tokens
    Product & Project ManagementAuto-check passed
  • Pi En

    share-skills/pi

    PI Cognitive AI. An agent skill from share-skills/pi.

    108 GitHub stars~9.9k tokensUpdated 3 mo ago
    Product & Project ManagementAuto-check: warnings
  • Req Change Workflow

    yunshu0909/yunshu_skillshub

    已有功能的需求变更闭环(门禁式七步)。触发硬条件:要改的功能已经实现并跑起来了。当用户说"改需求""需求变更""调整交互""改功能""重构流程",或改动容易散到多个文件、碰到鉴权/存储/配置/权限、需要可靠验证 + 回滚方案时使用。流程:锁 scope 写 change brief → 从代码确认当前行为(不靠记忆和假设)→ 影响面与风险评估 + 回滚计划 →…

    767 GitHub stars~1.4k tokensUpdated 2 days ago
    Product & Project ManagementAuto-check passed

More from AUTO-MAS-Project/AUTO-MAS

All 15 skills in this repo
  • Mas Game Sign

    AUTO-MAS-Project/AUTO-MAS

    Add, refactor, or review AUTO-MAS game community sign-in (game sign) code, including the provider registry in app/tools/gamesign.py, platform adapters for Skland/Miyoushe/Kuro/Taygedo, credential…

    708 GitHub stars~2.4k tokensUpdated today
    Auto-check passed
  • Mas Schema Naming

    AUTO-MAS-Project/AUTO-MAS

    Define canonical naming for future backend schema domains. An agent skill from AUTO-MAS-Project/AUTO-MAS.

    708 GitHub stars~1k tokensUpdated today
    Auto-check passed
  • Mas Code Standards

    AUTO-MAS-Project/AUTO-MAS

    A skill your agent uses when implementing, fixing, refactoring, or reviewing non-generated AUTO-MAS code, or when preparing code-style guidance, comments, docstrings, version notes, or Conventional…

    708 GitHub stars~2.5k tokensUpdated today
    Auto-check passed
  • Mas Frontend UI

    AUTO-MAS-Project/AUTO-MAS

    A skill your agent uses when working on AUTO-MAS frontend UI, Ant Design Vue components, page layout, forms, tables, modals, drawers, feedback, empty/loading/error states, drag interactions, dark…

    708 GitHub stars~3.8k tokensUpdated today
    Auto-check passed
  • Mas Script Specialized Adapter

    AUTO-MAS-Project/AUTO-MAS

    Review, add, or refactor AUTO-MAS specialized script adapters by upstream architecture, including MAA, SRC, MaaEnd/MXU, General, ok-script adapters such as Okww and OkNte, multi-engine adapters such…

    708 GitHub stars~2.8k tokensUpdated today
    Auto-check passed
  • Mas API Contract

    AUTO-MAS-Project/AUTO-MAS

    Define backend API contract standards for FastAPI services. An agent skill from AUTO-MAS-Project/AUTO-MAS.

    708 GitHub stars~1.9k tokensUpdated today
    Auto-check passed

Works with

Questions about Code Review

What does Code Review do?

从固定点(commit、branch、tag 或 merge-base)开始,沿两条轴线审查变更——规范(代码是否遵循仓库文档化的编码规范?)和规格(代码是否与原始 issue/PRD 的要求一致?)。两条审查线在并行子 agent 中运行,并以并排方式报告结果。当用户想审查一个分支、PR、进行中的变更,或要求"从 X 开始审查"时使用。. Code Review is an agent skill from AUTO-MAS-Project/AUTO-MAS.

When should I use Code Review?

Code Review fits situations like: tasks that involve PRD writing; tasks that involve Code review.

How do I install Code Review in Claude Code?

Run `npx skills add AUTO-MAS-Project/AUTO-MAS --skill code-review -a claude-code`. Or copy the skill folder (.agents/skills/code-review in AUTO-MAS-Project/AUTO-MAS) into .claude/skills/code-review in your project. Claude Code loads it when a task matches its description.

How do I install Code Review in Codex?

Run `npx skills add AUTO-MAS-Project/AUTO-MAS --skill code-review -a codex`. Or copy the skill folder (.agents/skills/code-review in AUTO-MAS-Project/AUTO-MAS) into .agents/skills/code-review in your project. Codex loads it when a task matches its description.

Can I use Code Review in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add AUTO-MAS-Project/AUTO-MAS --skill code-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/code-review, .gemini/skills/code-review, .github/skills/code-review and .opencode/skills/code-review in your project.

What does Code Review need to run?

Going by SKILL.md and its folder, Code Review needs the command-line tools its instructions call (git).

Does Code Review access the network?

SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Code Review safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Code Review use?

Code Review is published under the AGPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Code Review use?

About 797 tokens (SKILL.md is roughly 3.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Code Review?

Skills that share tags, products or a category with Code Review: Ad Review (CorridorTech/PoseCap, 224 stars), CCPM Project Management (automazeio/ccpm, 8.4k stars), Astro Code Review (withastro/astro, 63k stars) and Review (fossasia/eventyay-interpretation, 1.6k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Code Review?

AUTO-MAS-Project (a GitHub organization) maintains it in AUTO-MAS-Project/AUTO-MAS, which has 708 GitHub stars. The repository holds 15 skills in this directory. The repository was last updated on October 8, 2026.

Source: AUTO-MAS-Project/AUTO-MAS on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.