Code Review Checklist
shareAI-lab/learn-claude-code
Reviews code against a five-part checklist covering security, correctness, performance, maintainability and testing, and reports findings in a fixed format.
Iterative review+fix loop for BASESHA..HEAD: generate findings, apply accepted fixes, run checks, commit, and re-review up to 3 iterations or until clean.
$ npx skills add besimple-oss/broccoli --skill code-review-loop -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install besimple-oss/broccoli code-review-loop --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/besimple-oss/broccoli.git skills-src && mkdir -p .claude/skills && cp -r skills-src/prompt-templates/skills/code-review-loop .claude/skills/code-review-loop && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "code-review-loop" agent skill from https://github.com/besimple-oss/broccoli/tree/main/prompt-templates/skills/code-review-loop into .claude/skills/code-review-loop/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-review-loop", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/besimple-oss/broccoli/tree/main/prompt-templates/skills/code-review-loopType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add besimple-oss/broccoli --skill code-review-loop -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install besimple-oss/broccoli code-review-loop --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/besimple-oss/broccoli.git skills-src && mkdir -p .agents/skills && cp -r skills-src/prompt-templates/skills/code-review-loop .agents/skills/code-review-loop && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "code-review-loop" agent skill from https://github.com/besimple-oss/broccoli/tree/main/prompt-templates/skills/code-review-loop into .agents/skills/code-review-loop/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-review-loop", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add besimple-oss/broccoli --skill code-review-loop -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install besimple-oss/broccoli code-review-loop --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/besimple-oss/broccoli.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/prompt-templates/skills/code-review-loop .cursor/skills/code-review-loop && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "code-review-loop" agent skill from https://github.com/besimple-oss/broccoli/tree/main/prompt-templates/skills/code-review-loop into .cursor/skills/code-review-loop/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-review-loop", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/besimple-oss/broccoli.git --path prompt-templates/skills/code-review-loop--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add besimple-oss/broccoli --skill code-review-loop -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install besimple-oss/broccoli code-review-loop --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/besimple-oss/broccoli.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/prompt-templates/skills/code-review-loop .gemini/skills/code-review-loop && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "code-review-loop" agent skill from https://github.com/besimple-oss/broccoli/tree/main/prompt-templates/skills/code-review-loop into .gemini/skills/code-review-loop/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-review-loop", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install besimple-oss/broccoli code-review-loopInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add besimple-oss/broccoli --skill code-review-loop -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/besimple-oss/broccoli.git skills-src && mkdir -p .github/skills && cp -r skills-src/prompt-templates/skills/code-review-loop .github/skills/code-review-loop && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "code-review-loop" agent skill from https://github.com/besimple-oss/broccoli/tree/main/prompt-templates/skills/code-review-loop into .github/skills/code-review-loop/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-review-loop", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add besimple-oss/broccoli --skill code-review-loop -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install besimple-oss/broccoli code-review-loop --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/besimple-oss/broccoli.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/prompt-templates/skills/code-review-loop .opencode/skills/code-review-loop && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "code-review-loop" agent skill from https://github.com/besimple-oss/broccoli/tree/main/prompt-templates/skills/code-review-loop into .opencode/skills/code-review-loop/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "code-review-loop", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
code-review-loopIterative review+fix loop for BASESHA..HEAD: generate findings, apply accepted fixes, run checks, commit, and re-review up to 3 iterations or until clean.
Code Review Loop is an agent skill from besimple-oss/broccoli. Iterative review+fix loop for BASESHA..HEAD: generate findings, apply accepted fixes, run checks, commit, and re-review up to 3 iterations or until clean.
Its SKILL.md is about 1.6k tokens, which your agent loads only when the skill is triggered. The skill folder holds 6 other files, including scripts and reference files (for example `references/prompts/code-review-responder-system.md`, `references/prompts/codex-review-prompt.md` and `scripts/run_review_loop.py`).
It sits in Development, covering Code review. It works with Git. The repository describes itself as: Broccoli turns Linear tickets into shipped PRs — powered by Claude and Codex, running on your own Google Cloud or Blaxel containers. The licence is MIT.
Read from SKILL.md and the folder at commit 6cad3b9. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships 1 file in scripts/ (Python), which the agent can run.
Shell commands in SKILL.md call:
gitpython3claudeFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Code Review Loop loads about 1.6k tokens when it runs, and up to ~3.4k if it reads all its reference files. Until then it costs about 43 tokens; SKILL.md has 674 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
The full file from besimple-oss/broccoli at commit 6cad3b9, republished under its MIT licence (© besimple-oss). 674 words, ~1,552 tokens.
.claude/skills/code-review-loop/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.Input: a git base SHA (or other explicit range) to review against (for example: <sha> or HEAD~1).
git rev-parse --show-toplevelgit status --porcelain should be empty.codex and claude) because reviewer/responder must be different vendors.Typically runs 15–45 minutes, but allow at least 120 minutes.
Do not interrupt/restart the subagent if it looks stuck. The loop script owns stuck/timeout handling and will exit on its own when it completes or when --timeout is reached. Prefer watching the periodic heartbeat output (--heartbeat-seconds) instead of tailing logs.
Claude Code print mode can be silent in --output-format text until it finishes (including during tool work). This repo defaults Claude subprocesses to --output-format stream-json --include-partial-messages so the wrapper sees measurable progress and inactivity timeouts mainly trigger on true hangs.
Run the review loop script:
resolve_skill_dir() {
local name="$1"
local repo_root=""
repo_root="$(git rev-parse --show-toplevel 2>/dev/null || pwd)"
local candidates=(
"$repo_root/.agents/skills/$name"
"$repo_root/.claude/skills/$name"
"$HOME/.agents/skills/$name"
"$HOME/.codex/skills/$name"
"$HOME/.claude/skills/$name"
)
for d in "${candidates[@]}"; do
if [[ -d "$d" ]]; then
echo "$d"
return 0
fi
done
echo "Error: skill '$name' not found in repo-scoped or user-scoped skill dirs." >&2
return 1
}
CODE_REVIEW_LOOP_SKILL_DIR="$(resolve_skill_dir code-review-loop)"
python3 "$CODE_REVIEW_LOOP_SKILL_DIR/scripts/run_review_loop.py" <base-sha>Options:
--max-iterations N (default: 3)--cli codex|claude (pin responder provider; reviewer is selected from provider pool and always differs from responder)--provider-pool codex,claude (provider pool for both subprocesses; reviewer/responder vendors are always distinct)--codex-model-pool ... and --claude-model-pool ... (random model selection; supports model@effort)--progress-log <path> and --heartbeat-seconds N--artifacts-dir <path> (optional; stores reviewer outputs for responders to read)--timeout N (per-subprocess timeout in seconds; default: 7200)--review-only (responder does not apply fixes/commit)Claude automation knobs (env vars; defaults shown):
PROMPT_TEMPLATES_CLAUDE_OUTPUT_FORMAT=stream-json (text|json|stream-json)PROMPT_TEMPLATES_CLAUDE_MIN_VERSION=2.1.33 (fail fast if installed Claude Code is older)PROMPT_TEMPLATES_CLAUDE_STREAM_LOG_MAX_BYTES=10485760 (per invocation; set 0 for unlimited)PROMPT_TEMPLATES_CLAUDE_INACTIVITY_TIMEOUT_SECONDS=180 (set 0 to disable; in text/json mode it is disabled unless explicitly set)PROMPT_TEMPLATES_CLAUDE_INACTIVITY_MIN_RUNTIME_SECONDS=30PROMPT_TEMPLATES_CLAUDE_PROMPT_BUDGET_BYTES=0 (disabled by default; set >0 to enforce)Behavior:
BASE_SHA..HEAD (it fetches the diff locally via git diff).git diff and reads reviewer output from the artifacts dir).reviewer=claude fails after retry and responder is not pinned to codex, the script performs a role-swap fallback and re-runs the iteration with reviewer=codex,responder=claude (it prints a CLAUDE_FALLBACK: ... line when this happens).type=result event (stream-json).--sandbox danger-full-access and -a never so it can run git commands (including committing fixes) without getting stuck on approvals or .git lock writes.--review-only mode, the script enforces commit hygiene per iteration: if responder leaves working-tree fix changes, it auto-commits them before the next iteration; if responder accepts findings but produces no committed changes, the loop stops.REVIEW_PROGRESS log summary including:gpt-5.2@highclaude-opus-4-6[1m]@highTroubleshooting:
CLAUDE_RETRY: / CLAUDE_FALLBACK: lines on stderr to confirm retry/fallback behavior.idle_seconds=... and byte counters; PTY mode uses pty_bytes=....--progress-log may include full tool outputs (diffs, file contents). Treat it as sensitive; stream-json logs are truncated by default via PROMPT_TEMPLATES_CLAUDE_STREAM_LOG_MAX_BYTES.CLAUDE_FALLBACK_UNAVAILABLE: ... responder is pinned to codex, rerun with --cli claude to allow the role-swap fallback.© besimple-oss, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 3 other files (scripts, references) in prompt-templates/skills/code-review-loop of besimple-oss/broccoli.
Open the folder on GitHubat commit 6cad3b9
Code Review Loop next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Code Review Loop this skillbesimple-oss/broccoli | 286 | — | ~1.6k | Automated safety check: Pass | MIT | |
| Code Review ChecklistshareAI-lab/learn-claude-code | 78k | 5 repos | ~1.1k | Automated safety check: Pass | MIT | |
| Understand Diff AnalysisEgonex-AI/Understand-Anything | 85k | 1 repos | ~1.4k | Automated safety check: Pass | MIT | |
| Open Code Review CLIalibaba/open-code-review | 44k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | |
| Open Code Review Delegatealibaba/open-code-review | 44k | — | ~2k | Automated safety check: Pass | Apache-2.0 | |
| PR Review State Fetchprisma/orm | 48k | — | ~767 | Automated safety check: Pass | Apache-2.0 |
shareAI-lab/learn-claude-code
Reviews code against a five-part checklist covering security, correctness, performance, maintainability and testing, and reports findings in a fixed format.
Egonex-AI/Understand-Anything
Reads your git changes or a pull request against a prebuilt knowledge graph of the project to explain what changed, which components are affected and what is risky.
alibaba/open-code-review
Runs the ocr command-line tool to review Git changes, a commit or a branch comparison with an AI model, returning line-level comments and optionally applying fixes.
alibaba/open-code-review
Has the host agent do the code review itself while the ocr CLI handles file selection and rule lookup, covering workspace changes, branch ranges or single commits.
prisma/orm
Fetches a pull request's canonical review state as JSON, validates it, and renders markdown, a text summary and triage target files from it using bundled scripts.
tirth8205/code-review-graph
Reviews a pull request or branch diff with a code knowledge graph and produces a structured review that includes blast-radius analysis.
besimple-oss/broccoli
Deploy this repository to a new Google Cloud project using the repo's existing Cloud Run, Cloud Run Jobs, Cloud SQL, Secret Manager, and Artifact Registry scripts.
besimple-oss/broccoli
Critique and revise an existing plan doc up to 3 iterations, using accept/reject triage and stopping early when no important feedback remains.
besimple-oss/broccoli
Do bounded research (official docs first) and produce a high-level implementation sketch in sketch/<generated-name.md.
besimple-oss/broccoli
Write a detailed, self-contained implementation plan to a new Markdown file under plan/.
besimple-oss/broccoli
Run Claude's built-in /simplify skill on BASESHA..HEAD, validate checks, and commit.
besimple-oss/broccoli
Dedupe-only pass for BASESHA..HEAD: remove duplicate code introduced by the diff or reuse existing shared utils; applies changes + commits.
Works with
Categories
Iterative review+fix loop for BASESHA..HEAD: generate findings, apply accepted fixes, run checks, commit, and re-review up to 3 iterations or until clean. Code Review Loop is an agent skill from besimple-oss/broccoli.HEAD: generate findings, apply accepted fixes, run checks, commit, and re-review up to 3 iterations or until clean.
Code Review Loop fits situations like: tasks that involve Code review.
Run `npx skills add besimple-oss/broccoli --skill code-review-loop -a claude-code`. Or copy the skill folder (prompt-templates/skills/code-review-loop in besimple-oss/broccoli) into .claude/skills/code-review-loop in your project. Claude Code loads it when a task matches its description.
Run `npx skills add besimple-oss/broccoli --skill code-review-loop -a codex`. Or copy the skill folder (prompt-templates/skills/code-review-loop in besimple-oss/broccoli) into .agents/skills/code-review-loop in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add besimple-oss/broccoli --skill code-review-loop -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/code-review-loop, .gemini/skills/code-review-loop, .github/skills/code-review-loop and .opencode/skills/code-review-loop in your project.
Going by SKILL.md and its folder, Code Review Loop needs Python for the scripts in its folder and the command-line tools its instructions call (git, python3 and claude). Our summary lists: Python 3.
SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
Code Review Loop is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.6k tokens (SKILL.md is roughly 6.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1.8k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Code Review Loop: Code Review Checklist (shareAI-lab/learn-claude-code, 78k stars), Understand Diff Analysis (Egonex-AI/Understand-Anything, 85k stars), Open Code Review CLI (alibaba/open-code-review, 44k stars) and Open Code Review Delegate (alibaba/open-code-review, 44k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
besimple-oss (a GitHub organization) maintains it in besimple-oss/broccoli, which has 286 GitHub stars. The repository holds 10 skills in this directory. The repository was last updated on April 26, 2026.
Source: besimple-oss/broccoli on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.