Code Review Checklist
shareAI-lab/learn-claude-code
Reviews code against a five-part checklist covering security, correctness, performance, maintainability and testing, and reports findings in a fixed format.
Routes a review request to the right mode and reference file in the claude-code-harness project: code, plan or scope review, a quick closeout, a dual Claude-and-Codex opinion, or a security-only pass.
SKILL.md written in Japanese; this summary is our English description.
$ npx skills add Chachamaru127/claude-code-harness --skill harness-review -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install Chachamaru127/claude-code-harness harness-review --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/Chachamaru127/claude-code-harness.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/harness-review .claude/skills/harness-review && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "harness-review" agent skill from https://github.com/Chachamaru127/claude-code-harness/tree/main/skills/harness-review into .claude/skills/harness-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "harness-review", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/Chachamaru127/claude-code-harness/tree/main/skills/harness-reviewType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add Chachamaru127/claude-code-harness --skill harness-review -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install Chachamaru127/claude-code-harness harness-review --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Chachamaru127/claude-code-harness.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/harness-review .agents/skills/harness-review && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "harness-review" agent skill from https://github.com/Chachamaru127/claude-code-harness/tree/main/skills/harness-review into .agents/skills/harness-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "harness-review", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Chachamaru127/claude-code-harness --skill harness-review -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install Chachamaru127/claude-code-harness harness-review --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Chachamaru127/claude-code-harness.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/harness-review .cursor/skills/harness-review && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "harness-review" agent skill from https://github.com/Chachamaru127/claude-code-harness/tree/main/skills/harness-review into .cursor/skills/harness-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "harness-review", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/Chachamaru127/claude-code-harness.git --path skills/harness-review--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add Chachamaru127/claude-code-harness --skill harness-review -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install Chachamaru127/claude-code-harness harness-review --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Chachamaru127/claude-code-harness.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/harness-review .gemini/skills/harness-review && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "harness-review" agent skill from https://github.com/Chachamaru127/claude-code-harness/tree/main/skills/harness-review into .gemini/skills/harness-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "harness-review", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install Chachamaru127/claude-code-harness harness-reviewInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add Chachamaru127/claude-code-harness --skill harness-review -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/Chachamaru127/claude-code-harness.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/harness-review .github/skills/harness-review && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "harness-review" agent skill from https://github.com/Chachamaru127/claude-code-harness/tree/main/skills/harness-review into .github/skills/harness-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "harness-review", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Chachamaru127/claude-code-harness --skill harness-review -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install Chachamaru127/claude-code-harness harness-review --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Chachamaru127/claude-code-harness.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/harness-review .opencode/skills/harness-review && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "harness-review" agent skill from https://github.com/Chachamaru127/claude-code-harness/tree/main/skills/harness-review into .opencode/skills/harness-review/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "harness-review", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
harness-reviewRoutes a review request to the right mode and reference file in the claude-code-harness project: code, plan or scope review, a quick closeout, a dual Claude-and-Codex opinion, or a security-only pass.
This Japanese-language skill is a thin dispatcher for a multi-angle review harness: the detailed quality criteria live in the references folder, not in the main file. With no argument it interprets the request as reviewing the work done so far, auto-detects the review target, and either starts automatically when one target is clear or asks the user to choose when it is ambiguous or there are several candidates.
A quick-reference table maps commands to modes: plain code review, a quick closeout for small dirty changes, a Codex-advised closeout, a dual Claude-and-Codex second opinion, a Cursor pre-review or second opinion, a forced team debate, a security-only review, and dedicated plan and scope reviews, each loading only the reference files its mode needs, such as code-review.md, security-profile.md or scope-review.md.
The skill's own contract is read-only: by default it never commits, pushes or releases, even on an APPROVE verdict, and delegates any actual commit to harness-work or harness-release unless the user explicitly asks or an opt-in flag is designed for it. When output is relayed through a local command stdout channel, the last line must carry a fixed literal telling the user that Claude will summarize the result and that Enter or a new prompt continues, so the review doesn't look like it stalled.
3 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 2b2b748. It shows what the files ask for, not the result of running them.
Pre-approves these tools, so the agent can use them without asking each time:
ReadGrepGlobBashTaskMonitorAskUserQuestionFrom allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
bashclaudeFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Harness Review Dispatcher loads about 3.6k tokens when it runs, and up to ~21k if it reads all its reference files. Until then it costs about 53 tokens; SKILL.md has 1,079 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check noted patterns worth knowing about, such as sudo or a known installer.
allowed-tools: Read, Grep, Glob, Bash, Task, Monitor, AskUserQuestionAutomated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from Chachamaru127/claude-code-harness at commit 2b2b748, republished under its MIT licence (© Chachamaru127). 1,079 words, ~3,622 tokens.
.claude/skills/harness-review/SKILL.md (or your agent's skills folder). This skill also uses 12 other files; get the full folder from GitHub.Harness の統合レビュースキル。
この SKILL.md は薄い dispatcher であり、詳細な品質基準は references/ を読む。
if $ARGUMENTS == "": → 「今までの作業のレビュー」と解釈し、Review target detection を実行する → review target が 1 つに確定できる場合だけ自動開始する → review target が不明または複数候補の場合は AskUserQuestion で選択肢を出し、認識を揃えてから開始する
<!-- 上記 3 行は AUTO-START CONTRACT。skill-editing.md の「最冒頭 3 行以内」ルールに従い fence / HTML コメントで押し下げない -->
<local-command-stdout> で host へ結果を中継する場合だけ、output の 最後の 1 行に次の literal を含める:
↑この結果は Claude が要約します。Enter キーで次へ進むか、新規 prompt で別の指示を出してください。
これは <local-command-stdout> 経由で text response として表示されると user が「止まった」と感じる UX 問題への明示的な instruction (patterns.md P35)。
host の最終回答は verdict、判断理由、確認した証拠、未検証点を返す。要約の予告だけで終了しない。
この skill の責務は review 判定だけ。 commit / push / release は既定では行わない。
APPROVE でも自動 commit しないharness-work、または harness-release の Work Commit Gate に委譲する--commit-on-approve のような明示 opt-in が設計されるまで、この skill 単体の default side effect は禁止| Command | Mode | Purpose |
|---|---|---|
/harness-review | code | 今までの作業を自動検出して review |
/harness-review --quick | quick | 小さな dirty change を軽く closeout |
/harness-review --codex-closeout | codex-closeout | Codex 助言 + focused tests で closeout |
/harness-review --dual | dual | Claude + Codex second opinion |
--pre-review cursor | code+pre-review | fresh-context composer advisory pre-review before brain verdict(read-only) |
/harness-review --cursor | code+cursor-second-opinion | core review gates + cursor second-opinion(brain 一次レビュー必須) |
HARNESS_IMPL_BACKEND=cursor harness-review | code+cursor-second-opinion | default ON 時も core review gates に cursor second-opinion を自動加算。primary verdict は brain 固定 |
/harness-review --team-debate | team-debate | TeamAgent Debate を強制 |
/harness-review --security | security | security 専用 review |
/harness-review plan | plan | Plans.md の計画 review |
/harness-review scope | scope | scope creep / 漏れ review |
引数から実行 mode を決定し、必要な references/ を選択ロードする。
| 入力 | mode | 読む reference |
|---|---|---|
引数なし / code | code | references/code-review.md, references/governance.md |
--quick | quick | references/codex-closeout.md, references/code-review.md |
--codex-closeout | codex-closeout | references/codex-closeout.md |
--dual | dual | references/dual-review.md, references/team-debate.md |
--team-debate | team-debate | references/team-debate.md, references/governance.md |
--security | security | references/security-profile.md, references/governance.md |
--ui-rubric | ui-rubric | references/ui-rubric.md |
plan | plan | references/plan-review.md, references/governance.md |
scope | scope | references/scope-review.md, references/governance.md |
--cursor or resolver result cursor for no-arg / code review only | code+cursor-second-opinion | references/code-review.md, references/governance.md, references/cursor-review.md, references/dual-review.md |
full | full | references/code-review.md, references/team-debate.md, references/dual-review.md |
quick と codex-closeout は軽量 path。
小さな dirty change、single commit、PR branch の closeout を速く見る。
品質 gate を捨てるものではない。
mode 判定時、明示 mode words (plan, scope, full) と明示フラグを先に確定する。no-arg / code review の場合だけ helper root を解決して resolver を 1 回だけ実行し、resolver 不在時は claude とみなす。
HARNESS_PLUGIN_ROOT="${HARNESS_PLUGIN_ROOT:-${CLAUDE_PLUGIN_ROOT:-}}"; if [ -z "$HARNESS_PLUGIN_ROOT" ] && [ -n "${CLAUDE_SKILL_DIR:-}" ]; then probe="$(cd "${CLAUDE_SKILL_DIR}" && pwd)"; while [ "$probe" != "/" ] && [ ! -d "$probe/scripts" ]; do probe="$(cd "$probe/.." && pwd)"; done; [ -d "$probe/scripts" ] && HARNESS_PLUGIN_ROOT="$probe"; fi
if [ -x "${HARNESS_PLUGIN_ROOT:-}/scripts/resolve-impl-backend.sh" ]; then resolved_backend="$(bash "${HARNESS_PLUGIN_ROOT}/scripts/resolve-impl-backend.sh" --role reviewer)"; else resolved_backend="claude"; fino-arg / code review で結果が cursor の場合は --cursor と同じ cursor-second-opinion を追加するが、core review gates (references/code-review.md, references/governance.md) は必ず先に読み、Cursor reference は additive にだけ扱う。primary verdict は brain 側で維持し、cursor は dual_review.cursor_verdict の advisory に限る。plan / scope など明示 mode word は resolver result より優先し、cursor default によって plan/scope references も code/governance references も置き換えない。結果が claude / codex の場合は従来どおりで、review の primary 判定面は変えない。
--pre-review cursor)/harness-review --pre-review cursor は bash scripts/pre-review-cursor.sh [--base ref] で read-only fresh-context composer pre-review(model-routing.sh --host cursor --tier review → cursor-companion.sh task、--write / --workspace / --resume なし)を 1 回実行し、PRE_REVIEW_FINDINGS: を brain 一次レビュー入力へ添付。companion 失敗は PRE_REVIEW_SKIPPED + exit 0(fail-open)。verdict は brain のみ(self-review scope 契約)。
REVIEW_AUTOSTART 契約:
引数なし ($ARGUMENTS == "") で呼ばれた場合、review / /review / /harness-review だけの入力を「今までの作業のレビュー」と解釈する。
Step 1 開始前の handshake 行として次を 1 行だけ出力する。
REVIEW_AUTOSTART: target={resolved_target}, base_ref={resolved_base_ref}, type={mode}REVIEW_TARGET_ASK 契約:
bare 呼び出しで review target が不明または複数候補の場合、Step 1 に進む前に AskUserQuestion を 1 回だけ使い、候補を 2-3 個に絞って確認する。
候補は次の順で作る。
複数候補が同時に成立する場合:
REVIEW_TARGET_AMBIGUOUS: working_tree_and_branch_commitsAskUserQuestion の候補:
clean tree かつ branch 差分がない場合:
REVIEW_TARGET_AMBIGUOUS: clean_tree_no_branch_commitsAskUserQuestion の候補:
ユーザー回答後:
REVIEW_TARGET_CONFIRMED: {choice}
REVIEW_AUTOSTART: target={resolved_target}, base_ref={resolved_base_ref}, type={mode}禁止:
Plans.md を確認するAPPROVE / REQUEST_CHANGES / decision_needed を返すREQUEST_CHANGES の場合は critical / major の修正方針と修正後再レビュー条件を示す委譲先には原依頼、目的、対象差分、spec / DoD、検証証拠を渡し、結論の理由と参照箇所を求める。内部の思考過程や実装 Worker の会話状態は渡さない。 各 reviewer の確認範囲を分け、許可された同時実行上限を守る。親は証拠照合と指摘の採否判定を進める。 必要な review とチェックを終えた後の追加検証は、新しい変更、失敗、未解決の懸念がある場合に限る。
詳細は references/governance.md。
ここでは最低限の合格ラインだけ固定する。
APPROVE は次のすべてを満たす時だけ返す(詳細は references/governance.md)。
spec.md alignment(product contract と矛盾しない;仕様正本 alignment check 必須)Plans.md alignment(task / DoD / Depends、[lane:*]、stage gate が contract と一致)[tdd:required] は tdd_red_log / failing output / skip_tdd_reason)not_observed != absent — 証拠なしの「問題なし」「データなし」を APPROVE しない)APPROVE は commit / push / PR 作成命令ではない(read-only boundary)。
詳細は references/team-debate.md。
TeamAgent Debate は、異なる見解を read-only で衝突させる review pass。
| Agent | 主な問い |
|---|---|
| Spec Agent | 仕様正本と実装差分の矛盾を探す |
| Plans Agent | Plans.md の task / DoD / Depends と差分の対応を確認する |
| Regression Agent | 既存挙動・テスト・配布 mirror・CLI/skill UX のデグレを探す |
| Skeptic Agent | 合格させたい前提で見落としている major risk を探す |
Codex 環境で native TeamAgent が使えない場合でも、この gate を省略してはいけない。
codex-companion.sh review、利用可能な reviewer subagent、または明示的に分けた read-only manual-pass で同じ 2-4 視点を再現し、team_agent_mode に native / codex-companion / manual-pass / unavailable を記録する。
通常 code review は次を見る。
root spec.md alignment、Plans lane/stage、TDD evidence、unknown data contract、evidence pack の詳細は references/governance.md と references/code-review.md。
AI Residuals は scripts/review-ai-residuals.sh と scripts/review-weak-supervision-report.sh を優先して使う。
untracked も見る場合は --include-untracked を使う。
mockData, dummy, fake, localhost, TODO, FIXME, it.skip, test.skip, expect(true).toBe(true) などは候補であり、diff 文脈で severity を決める。
finding 段階は網羅優先。minor と判定した指摘も observations[] / recommendations[] に残し、gate は verdict 段階だけで行う(Opus 4.8 は low-severity の報告を絞る癖がある。references/code-review.md の Finding coverage 参照)。
軽量 path の原則:
helper:
bash scripts/harness-review-closeout.sh --dry-run --uncommitted
bash scripts/harness-review-closeout.sh --base origin/main --parallel-tests --test "bash tests/test-harness-review-governance.sh"
bash scripts/harness-review-closeout.sh --commit HEADPlan Review は Plans.md の DoD / Depends / Status と実装順序を見る。
仕様正本が必要なタスクで spec_path がない場合は、decision_needed として止める。
Scope Review は、要求・差分・テスト・docs の境界が膨らんでいないかを見る。
範囲変更が必要なら、推測で進めず AskUserQuestion または plan 更新に戻す。
references/security-profile.mdreferences/ui-rubric.md(--blind-judge 併用可: 既定 OFF の opt-in second opinion。rubric も prior verdict も渡さない fresh sub-agent — context: fork 不可。対象は外部向け UI コピー / docs / cognitive-load HTML surface のみ、コード・テスト・設定・スキーマ不可、advisory only(verdict 不変)。詳細と eligibility は ${CLAUDE_SKILL_DIR}/references/blind-judge.md)references/vision-high-res-flow.mdreferences/dual-review.md/ultrareview は Harness flow 内では既定で呼ばない。
Harness flow の review-result.v1、commit guard、sprint-contract との接続を置き換えないため。
claude ultrareview [target] --json は CI / script からの second-opinion としてだけ扱う。
GitHub-first。 PR host 上の review 事実は GitHub を正とし、local diff は補助証拠として扱う。 ただし local uncommitted review は GitHub に push しない。
User-facing prose follows the explicit session or project language.
If no language is configured, use English. Use Japanese only when
i18n.language: ja, CLAUDE_CODE_HARNESS_LANG=ja, or an explicit session
instruction requests Japanese output.
Machine-readable values stay English.
Start with the result summary.
## Review Result
### {APPROVE | REQUEST_CHANGES | decision_needed} - {one-line conclusion}
Target: `{BASE_REF}..HEAD` or `{target}`
Verification: {commands run}
Strengths:
- ...
Findings:
- [severity] file:line - issue and evidence
Next Actions:
- ...
Details:
```json
{
"schema_version": "review-result.v1",
"verdict": "APPROVE | REQUEST_CHANGES",
"decision_needed": {
"required": false,
"ask_tool": "AskUserQuestion"
},
"accepted_findings": [],
"rejected_findings": [],
"acceptance_bar": {
"critical_major_zero": true,
"spec_alignment": "pass | fail | not_applicable",
"plans_alignment": "pass | fail | not_applicable",
"regression_safety": "pass | fail | not_applicable",
"verification_evidence": "pass | fail | not_applicable"
},
"team_debate": {
"required": false,
"mode": "native | codex-companion | manual-pass | unavailable",
"team_agent_mode": "native | codex-companion | manual-pass | unavailable",
"agents": [],
"disagreements": []
},
"critical_issues": [],
"major_issues": [],
"observations": [],
"recommendations": []
}
```Codex 環境では使える tool が異なるが、合格ライン、仕様正本、Plans.md、デグレ、修正後再レビュー、AskUserQuestion / decision_needed.v1 の契約は同じ。
| 通常環境 | Codex fallback |
|---|---|
| Task tool の TeamAgent Debate | reviewer subagent / codex-companion.sh review / manual-pass |
| AskUserQuestion | 使えない場合は decision_needed.v1 を stdout に出し、推測で進めない |
| TaskList | Plans.md を直接読む |
harness-work: REQUEST_CHANGES 後の修正実行harness-plan: plan / scope / spec の更新harness-release: review 済み work の commit / release© Chachamaru127, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 12 other files (references) in skills/harness-review of Chachamaru127/claude-code-harness.
Open the folder on GitHubat commit 2b2b748
Harness Review Dispatcher next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Harness Review Dispatcher this skillChachamaru127/claude-code-harness | 3.2k | — | ~3.6k | Automated safety check: Notes | MIT | |
| Code Review ChecklistshareAI-lab/learn-claude-code | 78k | 4 repos | ~1.1k | Automated safety check: Pass | MIT | |
| Code Review Skillawesome-skills/code-review-skill | 2.1k | — | ~2.8k | Automated safety check: Notes | MIT | |
| Requesting Code ReviewHezaoHezao/poirot | 249 | 5 repos | ~1.6k | Automated safety check: Pass | MIT | |
| Code Review Specialistluongnv89/claude-howto | 42k | — | ~764 | Automated safety check: Pass | MIT | |
| Verdaccio Code Reviewverdaccio/verdaccio | 18k | — | ~853 | Automated safety check: Pass | MIT |
shareAI-lab/learn-claude-code
Reviews code against a five-part checklist covering security, correctness, performance, maintainability and testing, and reports findings in a fixed format.
awesome-skills/code-review-skill
Provides comprehensive code review guidance for React 19, Vue 3, Angular 17+, Svelte 5, Rust, TypeScript, Java, Java 8, PHP, Ruby, Rails, Python, Django, FastAPI, Go, C/.NET, Kotlin, Swift, Dart…
HezaoHezao/poirot
Pre-commit review: security scan, quality gates, auto-fix. An agent skill from HezaoHezao/poirot.
luongnv89/claude-howto
Reviews code for security, performance, quality and maintainability, using a checklist, a finding template and two metrics scripts.
verdaccio/verdaccio
Reviews a verdaccio diff, branch or PR against the repository's review guide, verifies each finding in the code and reports only actionable issues.
codexstar69/bug-hunter
Precision-first adversarial bug hunting for runtime, logic, data, concurrency, and security defects.
Chachamaru127/claude-code-harness
Diagnoses failing CI pipelines and tests, deciding first whether the test or the implementation is at fault, and hands hard cases to a dedicated fixer subagent.
Chachamaru127/claude-code-harness
Hands one implementation task to Cursor Composer in an isolated git worktree, then reviews its diff and cherry-picks the result into the main branch.
Chachamaru127/claude-code-harness
Renders a single HTML page showing each acceptance criterion as verified or not, with a ship, wait, or reject recommendation for non-engineers.
Chachamaru127/claude-code-harness
Repeats a long task as a series of scheduled wake-ups, each re-entering with fresh context and calling harness-work for one task per cycle.
Chachamaru127/claude-code-harness
Creates and maintains Plans.md task plans with a spec delta, updates task markers and syncs plan progress with the implementation.
Chachamaru127/claude-code-harness
Runs a release for any project that keeps a Keep a Changelog file on GitHub, from version bump to merge, tag and GitHub Release after a single approval.
Categories
Routes a review request to the right mode and reference file in the claude-code-harness project: code, plan or scope review, a quick closeout, a dual Claude-and-Codex opinion, or a security-only pass. This Japanese-language skill is a thin dispatcher for a multi-angle review harness: the detailed quality criteria live in the references folder, not in the main file. With no argument it interprets the request as reviewing the work done so far, auto-detects the review target, and either starts automatically when one target is clear or asks the user to choose when it is ambiguous or there are several candidates.
Harness Review Dispatcher fits situations like: reviewing the code just written for quality and security issues; reviewing a plan file before implementation starts; checking a change for scope creep or missed requirements; getting a second opinion from Codex or Cursor alongside the primary review.
Run `npx skills add Chachamaru127/claude-code-harness --skill harness-review -a claude-code`. Or copy the skill folder (skills/harness-review in Chachamaru127/claude-code-harness) into .claude/skills/harness-review in your project. Claude Code loads it when a task matches its description.
Run `npx skills add Chachamaru127/claude-code-harness --skill harness-review -a codex`. Or copy the skill folder (skills/harness-review in Chachamaru127/claude-code-harness) into .agents/skills/harness-review in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Chachamaru127/claude-code-harness --skill harness-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/harness-review, .gemini/skills/harness-review, .github/skills/harness-review and .opencode/skills/harness-review in your project.
Going by SKILL.md and its folder, Harness Review Dispatcher needs the command-line tools its instructions call (bash and claude). Our summary lists: The claude-code-harness project. Its frontmatter pre-approves these tools: Read, Grep, Glob, Bash, Task, Monitor, AskUserQuestion.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.
Harness Review Dispatcher is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 3.6k tokens (SKILL.md is roughly 14k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 18k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Harness Review Dispatcher: Code Review Checklist (shareAI-lab/learn-claude-code, 78k stars), Code Review Skill (awesome-skills/code-review-skill, 2.1k stars), Requesting Code Review (HezaoHezao/poirot, 249 stars) and Code Review Specialist (luongnv89/claude-howto, 42k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Chachamaru127 (a GitHub user) maintains it in Chachamaru127/claude-code-harness, which has 3,156 GitHub stars. The repository holds 25 skills in this directory. The repository was last updated on October 5, 2026.
Source: Chachamaru127/claude-code-harness on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.