Agent skill

Piv Review PR

by coleam00 in coleam00/skills

Full pull-request review — fetch the PR, run the project's validation, review the diff with fresh eyes (dispatching the code-reviewer agent), categorize issues by severity, post the review to GitHub…

MITAuto-check passedDevelopment

Install Piv Review PR

skills CLI
$ npx skills add coleam00/skills --skill piv-review-pr -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install coleam00/skills piv-review-pr --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/coleam00/skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/piv-review-pr .claude/skills/piv-review-pr && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
piv-review-pr
GitHub stars
676
Token cost
~1.2k tokens
SKILL.md length
528 words
Files
1
Skills in repo
34
Repo updated
First seen
Licence
MIT

At a glance

Full pull-request review — fetch the PR, run the project's validation, review the diff with fresh eyes (dispatching the code-reviewer agent), categorize issues by severity, post the review to GitHub…

  • Works in 6 steps: Fetch the PR → Load the context (so you review against… → Run validation → …
  • Tasks that involve Pull requests
  • SKILL.md covers Phase 1 — Fetch the PR, Phase 2 — Load the context (so…, Phase 3 — Run validation and Phase 4 — Review the diff…, plus 4 more sections
  • Calls gh

What it does

Piv Review PR is an agent skill from coleam00/skills. Full pull-request review — fetch the PR, run the project's validation, review the diff with fresh eyes (dispatching the code-reviewer agent), categorize issues by severity, post the review to GitHub (approve / request-changes / comment), and save a report. The agentic gate that runs on an open PR before a human approves. Use after piv-create-pr.

Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Pull requests and Code review. It works with GitHub. The repository describes itself as: The agent skills I actually use to build software with coding agents. The PIV loop, planning, worktrees, and the meta-skills for building your own AI Layer. The licence is MIT.

When your agent uses it

  • Tasks that involve Pull requests
  • Tasks that involve Code review

Example prompts

  • “/piv-review-pr”

Workflow steps

6 steps, taken from the step headings in SKILL.md.

  1. Fetch the PR
  2. Load the context (so you review against the right bar)
  3. Run validation
  4. Review the diff (dispatch the code-reviewer agent)
  5. Decide
  6. Post to GitHub + save the report

What it can do on your machine

Read from SKILL.md and the folder at commit 847be08. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • gh

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use gh, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Piv Review PR loads about 1.2k tokens when it runs. Until then it costs about 90 tokens; SKILL.md has 528 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~90
When it runs · the whole SKILL.md, loaded when a task matches
~1.2k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from coleam00/skills at commit 847be08, republished under its MIT licence (© coleam00). 528 words, ~1,202 tokens.

Download SKILL.mdSave it as .claude/skills/piv-review-pr/SKILL.md (or your agent's skills folder).
name
piv-review-pr
description
Full pull-request review — fetch the PR, run the project's validation, review the diff with fresh eyes (dispatching the code-reviewer agent), categorize issues by severity, post the review to GitHub (approve / request-changes / comment), and save a report. The agentic gate that runs on an open PR before a human approves. Use after piv-create-pr.
argument-hint
<pr-number | pr-url | branch> [--approve | --request-changes]

Review PR: The Agentic Gate Before the Human

Input: $ARGUMENTS

The point of this skill is fresh eyes: it reviews the PR in a clean context — not the context that wrote the code — and can hand the deep analysis to the code-reviewer agent, which is the whole reason the review catches what the author's own context rationalizes away. It posts its verdict on the PR, then a human makes the final call.

Phase 1 — Fetch the PR

Resolve the input to a PR number (a number, a URL, or a branch via gh pr list --head <branch> --json number -q '.[0].number'). Then:

bash
gh pr view {N} --json number,title,body,author,headRefName,baseRefName,state,additions,deletions,changedFiles,files
gh pr diff {N}
gh pr checkout {N}

State guard: MERGED/CLOSED → stop ("nothing to review"); DRAFT → review direction, don't approve/block.

Phase 2 — Load the context (so you review against the right bar)

  • CLAUDE.md + any .claude/references/ — the project's standards are the review rubric.
  • The implementation report (if piv-implement wrote one — .claude/reports/*{branch}*) + its plan: read the documented deviations. A documented deviation is an intentional decision, not an issue — only flag undocumented divergences. (No report? Review normally and note its absence.)
  • The PR's own intent (title/body): what problem it claims to solve.

Phase 3 — Run validation

Run the project's real suite (the piv-validate skill, or the plan's validation commands) — tests, type-check, lint, build. Capture pass/fail + counts. A red suite is a finding in itself.

Phase 4 — Review the diff (dispatch the code-reviewer agent)

Hand the deep pass to a code-reviewer subagent if the project has one (.claude/agents/code-reviewer.md); otherwise review in this session, in a clean context — it reviews against the project's standards and reports high-confidence issues only. Read every changed file in full (not just the diff) for context. Cover: correctness · type safety · pattern/standards compliance · security · performance · tests present · maintainability.

Categorize every issue by severity:

SeverityMeaning
CriticalBlocking — security, data loss, crashes
HighShould fix before merge — type-safety holes, missing error handling, logic errors
MediumPattern inconsistencies, missing edge cases, undocumented deviations
LowSuggestions, minor polish

Acknowledge what's done well, too — review is constructive, not just a defect list.

Show full SKILL.md (197 more words)Show less

Phase 5 — Decide

  • Approve — no critical/high issues, validation passes, matches intent.
  • Request changes — high issues, or fixable validation failures, or undocumented pattern violations.
  • Block (request-changes, strongly) — critical security/data issues, or wrong fundamental approach.
  • Honor an explicit --approve / --request-changes flag, but never approve over an unresolved critical issue.

Phase 6 — Post to GitHub + save the report

Write the report to .claude/code-reviews/pr-{N}-review.md (summary · issues by severity with file:line + fix · validation table · what's good · recommendation). Then post it:

bash
# approve
gh pr review {N} --approve --body-file .claude/code-reviews/pr-{N}-review.md
# request changes
gh pr review {N} --request-changes --body-file .claude/code-reviews/pr-{N}-review.md
# or just comment (draft PRs / advisory)
gh pr comment {N} --body-file .claude/code-reviews/pr-{N}-review.md

Output + hand off

Print: PR number/URL · issue counts by severity · validation results · the recommendation. Then hand off: "Posted on the PR. A human now reviews the code + this review and merges." If there are issues, the natural next step is piv-fix-review-findings on the report, then re-run validation.

Notes

  • Fresh eyes is the whole point — run this in a clean context (or let the code-reviewer agent be the clean context). Don't review with the session that wrote the code; it rationalizes instead of scrutinizing.
  • This is the agentic gate; it does not replace the human — it gives the human a validated, triaged PR to approve. Going deeper means multiple review agents, tuning the reviewer to your stack, and a validation pyramid behind it.

© coleam00, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .claude/skills/piv-review-pr of coleam00/skills.

Open the folder on GitHubat commit 847be08

Compare with similar skills

Piv Review PR next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Piv Review PR compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Piv Review PR this skillcoleam00/skills676—~1.2kAutomated safety check: PassMIT
PR Babysitteropeninterpreter/openinterpreter69k3 repos~4.2kAutomated safety check: PassApache-2.0
GitHub Review Iterationprisma/orm48k—~2.2kAutomated safety check: PassApache-2.0
PR Review State Fetchprisma/orm48k—~767Automated safety check: PassApache-2.0
PR Finalize Reviewmicrosoft/garnet12k—~3.1kAutomated safety check: PassMIT
Fastlane Pull Request Reviewfastlane/fastlane42k—~550Automated safety check: PassMIT

Similar skills

  • PR Babysitter

    openinterpreter/openinterpreter

    Watches an open GitHub pull request until it merges, handling review comments, diagnosing CI failures and retrying flaky checks along the way.

    69k GitHub starsUsed in 3 repos~4.2k tokens
    DevelopmentAuto-check passed
  • Official

    Runs a loop on a GitHub pull request: fetch review state, triage comments into actions, implement them and resolve threads, repeating until nothing actionable is left.

    48k GitHub stars~2.2k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Official

    Fetches a pull request's canonical review state as JSON, validates it, and renders markdown, a text summary and triage target files from it using bundled scripts.

    48k GitHub stars~767 tokensUpdated yesterday
    DevelopmentAuto-check passed
  • PR Finalize Review

    microsoft/garnet

    Official

    Checks that a pull request's title and description match its implementation and reviews the code for Garnet best practices, reporting findings without posting them.

    12k GitHub stars~3.1k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Reviews a fastlane pull request against its linked issue and the project guides, separating blocking from non-blocking findings and handling vulnerabilities privately.

    42k GitHub stars~550 tokensUpdated today
    DevelopmentAuto-check passed
  • Pull Request Babysitter

    thedotmack/claude-mem

    Keeps watching a pull request, fixing real review and CI problems and resolving stale threads, until it is clean and ready to merge.

    99k GitHub stars~1.1k tokensUpdated 2 days ago
    DevelopmentAuto-check passed

More from coleam00/skills

All 34 skills in this repo
  • Ablate AI Layer

    coleam00/skills

    Measure whether a repository's AI instructions still earn their place, by running the same real task many times with the layer intact and with it stripped, then grading every rule against what…

    676 GitHub stars~1.9k tokensUpdated 3 days ago
    Auto-check passed
  • Build Dark Factory

    coleam00/skills

    Take a PRD and build a dark factory around it - a repository that takes work in as an issue and ships validated code out with nobody at the keyboard - one component at a time, into the user's actual…

    676 GitHub stars~12k tokensUpdated 3 days ago
    Auto-check passed
  • Drive Screen

    coleam00/skills

    Take real control of the desktop - list and focus windows, type, paste, click, scroll, and screenshot - on Windows, macOS or Linux, and drive other coding-agent sessions running in terminals.

    676 GitHub stars~5.4k tokensUpdated 3 days ago
    Auto-check passed
  • Second Brain Audit

    coleam00/skills

    Audit any second brain, notes folder, or agent memory for facts that have quietly stopped being true, then fix the worst one so it stops recurring.

    676 GitHub stars~4.6k tokensUpdated 3 days ago
    Auto-check passed
  • Build Signal Engine

    coleam00/skills

    Build a personal signal engine from scratch - a system that reads every source someone cares about each day (changelogs and release notes, communities, feeds, videos, papers), makes a quick decision…

    676 GitHub stars~2.9k tokensUpdated 3 days ago
    Auto-check passed
  • Worktree Create

    coleam00/skills

    Create one or more git worktrees for parallel development, each on its own branch with gitignored config copied in, dependencies installed, and a health check, by fanning out a setup subagent per…

    676 GitHub stars~958 tokensUpdated 3 days ago
    Auto-check passed

Works with

Categories

Questions about Piv Review PR

What does Piv Review PR do?

Full pull-request review — fetch the PR, run the project's validation, review the diff with fresh eyes (dispatching the code-reviewer agent), categorize issues by severity, post the review to GitHub…. Piv Review PR is an agent skill from coleam00/skills. Full pull-request review — fetch the PR, run the project's validation, review the diff with fresh eyes (dispatching the code-reviewer agent), categorize issues by severity, post the review to GitHub (approve / request-changes / comment), and save a report.

When should I use Piv Review PR?

Piv Review PR fits situations like: tasks that involve Pull requests; tasks that involve Code review.

How do I install Piv Review PR in Claude Code?

Run `npx skills add coleam00/skills --skill piv-review-pr -a claude-code`. Or copy the skill folder (.claude/skills/piv-review-pr in coleam00/skills) into .claude/skills/piv-review-pr in your project. Claude Code loads it when a task matches its description.

How do I install Piv Review PR in Codex?

Run `npx skills add coleam00/skills --skill piv-review-pr -a codex`. Or copy the skill folder (.claude/skills/piv-review-pr in coleam00/skills) into .agents/skills/piv-review-pr in your project. Codex loads it when a task matches its description.

Can I use Piv Review PR in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add coleam00/skills --skill piv-review-pr -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/piv-review-pr, .gemini/skills/piv-review-pr, .github/skills/piv-review-pr and .opencode/skills/piv-review-pr in your project.

What does Piv Review PR need to run?

Going by SKILL.md and its folder, Piv Review PR needs the command-line tools its instructions call (gh).

Does Piv Review PR access the network?

SKILL.md contains no URLs. Its commands use gh, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Piv Review PR safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Piv Review PR use?

Piv Review PR is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Piv Review PR use?

About 1.2k tokens (SKILL.md is roughly 4.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Piv Review PR?

Skills that share tags, products or a category with Piv Review PR: PR Babysitter (openinterpreter/openinterpreter, 69k stars), GitHub Review Iteration (prisma/orm, 48k stars), PR Review State Fetch (prisma/orm, 48k stars) and PR Finalize Review (microsoft/garnet, 12k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Piv Review PR?

coleam00 (a GitHub user) maintains it in coleam00/skills, which has 676 GitHub stars. The repository holds 34 skills in this directory. The repository was last updated on October 7, 2026.

Source: coleam00/skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.