Official agent skill

Thermo Nuclear Review

by cursor in cursor/plugins

Comprehensive security and correctness audit of a branch's changes.

OfficialNo licenceAuto-check passedDevOps & Cloud

Install Thermo Nuclear Review

skills CLI
$ npx skills add cursor/plugins --skill thermo-nuclear-review -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install cursor/plugins thermo-nuclear-review --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/cursor/plugins.git skills-src && mkdir -p .claude/skills && cp -r skills-src/thermos/skills/thermo-nuclear-review .claude/skills/thermo-nuclear-review && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
thermo-nuclear-review
GitHub stars
11k
Used in
1 other repo
Token cost
~1.1k tokens
SKILL.md length
660 words
Files
1
Skills in repo
99
Repo updated
First seen
Licence
None found

At a glance

Comprehensive security and correctness audit of a branch's changes.

  • Deep review requests
  • SKILL.md covers Prompt, Breaking Functionality…, Breaking Devex Guidelines and Feature Leak Guidelines, plus 2 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Branch/PR diff audits focused on bugs

What it does

Thermo Nuclear Review is an agent skill from cursor/plugins, published by the product's own GitHub organization. Comprehensive security and correctness audit of a branch's changes. Use for thermo nuclear, thermonuclear, or deep review requests, or branch/PR diff audits focused on bugs, breaking changes, security issues, devex regressions, and feature-gate leaks.

Its SKILL.md is about 1.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in DevOps & Cloud, covering Platform engineering. The repository describes itself as: Cursor plugin specification and official plugins.

When your agent uses it

  • Deep review requests
  • Branch/PR diff audits focused on bugs
  • Breaking changes
  • Security issues

Example prompts

  • “/thermo-nuclear-review”

What it can do on your machine

Read from SKILL.md and the folder at commit d73344b. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Thermo Nuclear Review loads about 1.1k tokens when it runs. Until then it costs about 68 tokens; SKILL.md has 660 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~68
When it runs · the whole SKILL.md, loaded when a task matches
~1.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 660 words (~1,136 tokens).

“Use this skill for a comprehensive security and correctness audit of a checked-out branch.”

— opening of SKILL.md by cursor
name
thermo-nuclear-review
disable-model-invocation
true

Read the full SKILL.md on GitHub

Files

Just SKILL.md in thermos/skills/thermo-nuclear-review of cursor/plugins.

Open the folder on GitHubat commit d73344b

Used in 1 other repository

We found 1 copy of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in cursor/plugins, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Thermo Nuclear Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Thermo Nuclear Review compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Thermo Nuclear Review this skillcursor/plugins11k1 repos~1.1kAutomated safety check: PassNone
Eks Best Practicesaws-samples/appmod-blueprints115—~5kAutomated safety check: PassMIT-0
Devops EngineerYikai-Liao/symusic1891 repos~1.5kAutomated safety check: PassMIT
Mcaf Devexmanagedcode/Storage138—~911Automated safety check: PassMIT
Sap Btp Best Practicessecondsky/sap-skills462—~3.8kAutomated safety check: PassGPL-3.0
Patch Backstageredhat-developer/rhdh171—~3.3kAutomated safety check: PassApache-2.0

Similar skills

  • Eks Best Practices

    aws-samples/appmod-blueprints

    Official

    Advisory guidance for Amazon EKS architecture and configuration decisions — compute strategy, networking, security, reliability, cost, autoscaling, observability, multi-tenancy, and upgrade planning.

    115 GitHub stars~5k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Devops Engineer

    Yikai-Liao/symusic

    Creates Dockerfiles, configures CI/CD pipelines, writes Kubernetes manifests, and generates Terraform/Pulumi infrastructure templates.

    189 GitHub starsUsed in 1 repo~1.5k tokens
    DevOps & CloudAuto-check passed
  • Mcaf Devex

    managedcode/Storage

    Improve developer experience for multi-component solutions: onboarding, F5 contract, cross-platform tasks, local inner loop, and reproducible setup.

    138 GitHub stars~911 tokensUpdated 3 days ago
    DevOps & CloudAuto-check passed
  • Sap Btp Best Practices

    secondsky/sap-skills

    SAP BTP best practices for enterprise architecture, account management, security, and operations, with verification evidence tracked in the repository ledger.

    462 GitHub stars~3.8k tokensUpdated 4 days ago
    DevOps & CloudAuto-check passed
  • Patch Backstage

    redhat-developer/rhdh

    Workflow to backport Backstage changes into RHDH by syncing a downstream maintenance branch and generating yarn patches.

    171 GitHub stars~3.3k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Developer Productivity

    manager-dot-dev/manager-skills

    Helps engineering managers measure and improve team delivery — produces a history of why common metrics fail, the DORA four-key-metrics framework (deployment frequency, lead time, change failure…

    114 GitHub stars~2.5k tokensUpdated 5 mo ago
    DevOps & CloudAuto-check passed

More from cursor/plugins

All 99 skills in this repo
  • Official

    Keeps a TSV decision log for long or unattended agent runs, one row per decision with what, why, evidence and result, so a reviewer can check the work later.

    11k GitHub starsUsed in 8 repos~1.6k tokens
    Auto-check passed
  • Official

    Digs into why code is shaped the way it is by checking git history, pull requests and connected tools in parallel, then reporting a cited read on the tradeoffs.

    11k GitHub starsUsed in 9 repos~2.6k tokens
    Auto-check passed
  • Official

    Starts three parallel reviewer subagents over the current conversation transcript, then turns their findings into concrete edits to existing skills.

    11k GitHub starsUsed in 5 repos~1.2k tokens
    Auto-check passed
  • Official

    Applies four layers of technical-writing rules to docs, RFCs, readmes, PR descriptions and commit messages so a tired engineer follows them on the first read.

    11k GitHub starsUsed in 10 repos~2.4k tokens
    Auto-check passed
  • Advisor Mode

    cursor/plugins

    Official

    Adds a second, stronger model that the main agent consults before major decisions, when stuck and before finishing, controlled by /advisor commands.

    11k GitHub stars~2.6k tokensUpdated today
    Auto-check: notes
  • Official

    Prepare PRs for review by cleaning noisy history, improving PR descriptions, and adding reviewer guidance without changing code behavior.

    11k GitHub starsUsed in 3 repos~569 tokens
    Auto-check passed

Categories

Questions about Thermo Nuclear Review

What does Thermo Nuclear Review do?

Comprehensive security and correctness audit of a branch's changes. Thermo Nuclear Review is an agent skill from cursor/plugins, published by the product's own GitHub organization. Comprehensive security and correctness audit of a branch's changes.

When should I use Thermo Nuclear Review?

Thermo Nuclear Review fits situations like: deep review requests; branch/PR diff audits focused on bugs; breaking changes; security issues.

How do I install Thermo Nuclear Review in Claude Code?

Run `npx skills add cursor/plugins --skill thermo-nuclear-review -a claude-code`. Or copy the skill folder (thermos/skills/thermo-nuclear-review in cursor/plugins) into .claude/skills/thermo-nuclear-review in your project. Claude Code loads it when a task matches its description.

How do I install Thermo Nuclear Review in Codex?

Run `npx skills add cursor/plugins --skill thermo-nuclear-review -a codex`. Or copy the skill folder (thermos/skills/thermo-nuclear-review in cursor/plugins) into .agents/skills/thermo-nuclear-review in your project. Codex loads it when a task matches its description.

Can I use Thermo Nuclear Review in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add cursor/plugins --skill thermo-nuclear-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/thermo-nuclear-review, .gemini/skills/thermo-nuclear-review, .github/skills/thermo-nuclear-review and .opencode/skills/thermo-nuclear-review in your project.

What does Thermo Nuclear Review need to run?

SKILL.md names no scripts, command-line tools or credentials: Thermo Nuclear Review is instructions for the agent only.

Does Thermo Nuclear Review access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Thermo Nuclear Review safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Thermo Nuclear Review use?

No licence was found for Thermo Nuclear Review or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Thermo Nuclear Review use?

About 1.1k tokens (SKILL.md is roughly 4.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Thermo Nuclear Review?

Skills that share tags, products or a category with Thermo Nuclear Review: Eks Best Practices (aws-samples/appmod-blueprints, 115 stars), Devops Engineer (Yikai-Liao/symusic, 189 stars), Mcaf Devex (managedcode/Storage, 138 stars) and Sap Btp Best Practices (secondsky/sap-skills, 462 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Thermo Nuclear Review?

cursor (a GitHub organization, an official publisher) maintains it in cursor/plugins, which has 10,636 GitHub stars. The repository holds 99 skills in this directory. The repository was last updated on October 10, 2026.

Source: cursor/plugins on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.