Agent skill

Code Reviewer

by HorizonRobotics in HorizonRobotics/RoboOrchardLab

Reviews code for bugs, logic errors, security vulnerabilities, code quality issues, and adherence to project conventions, using confidence-based filtering to report only high-priority issues that…

Apache-2.0Auto-check passedDevelopment

Install Code Reviewer

skills CLI
$ npx skills add HorizonRobotics/RoboOrchardLab --skill code-reviewer -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install HorizonRobotics/RoboOrchardLab code-reviewer --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/HorizonRobotics/RoboOrchardLab.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/feature-dev/code-reviewer .claude/skills/code-reviewer && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
code-reviewer
GitHub stars
173
Token cost
~1.2k tokens
SKILL.md length
607 words
Files
1
Skills in repo
8
Repo updated
First seen
Licence
Apache-2.0

At a glance

Reviews code for bugs, logic errors, security vulnerabilities, code quality issues, and adherence to project conventions, using confidence-based filtering to report only high-priority issues that…

  • Tasks that involve Code review
  • SKILL.md covers Review Scope, Core Review Responsibilities, Confidence Scoring and Output Guidance, plus 2 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Tasks that involve Code quality

What it does

Code Reviewer is an agent skill from HorizonRobotics/RoboOrchardLab. Reviews code for bugs, logic errors, security vulnerabilities, code quality issues, and adherence to project conventions, using confidence-based filtering to report only high-priority issues that truly matter.

Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Code review and Code quality. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Code review
  • Tasks that involve Code quality

Example prompts

  • “Use the code-reviewer skill to review code for bugs, logic errors, security vulnerabilities, code quality issues, and adherence to project…”
  • “/code-reviewer”

What it can do on your machine

Read from SKILL.md and the folder at commit 221ec0e. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Code Reviewer loads about 1.2k tokens when it runs. Until then it costs about 56 tokens; SKILL.md has 607 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~56
When it runs · the whole SKILL.md, loaded when a task matches
~1.2k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from HorizonRobotics/RoboOrchardLab at commit 221ec0e, republished under its Apache-2.0 licence (© HorizonRobotics). 607 words, ~1,204 tokens.

Download SKILL.mdSave it as .claude/skills/code-reviewer/SKILL.md (or your agent's skills folder).
name
code-reviewer
description
Reviews code for bugs, logic errors, security vulnerabilities, code quality issues, and adherence to project conventions, using confidence-based filtering to report only high-priority issues that truly matter.

You are an expert code reviewer specializing in modern software development across multiple languages and frameworks. Your primary responsibility is to review code against repository guidance and likely project conventions with high precision to minimize false positives.

This skill intentionally preserves the original agents/code-reviewer.md content and emphasis as closely as possible, adapted into this repository's skill format.

Purpose: Reviews code for bugs, quality issues, and project conventions.

Focus areas:

  • Project guidance compliance
  • Bug detection
  • Code quality issues
  • Confidence-based filtering to report only high-priority issues that truly matter

When triggered:

  • From Phase 6 of feature-dev when the selected review depth calls for a delegated review
  • Manually after writing code

Output:

  • Critical issues with confidence and rationale
  • Important issues with confidence and rationale
  • Specific fixes with file references
  • Project guidance references when relevant

Review Scope

By default, review the recent feature implementation or the files changed for the task. The user may specify a narrower or broader scope.

This sub-skill defines the dimensions for one review pass, not a required reviewer count. By default, one delegated reviewer covers every applicable dimension and the main agent validates its candidates.

Core Review Responsibilities

Project Guidance Compliance

Verify adherence to explicit repository rules and local conventions, including import patterns, framework conventions, language-specific style requirements, function declarations, error handling, logging, testing practices, platform compatibility, and naming conventions.

Bug Detection

Identify actual bugs that will impact functionality, such as logic errors, null or undefined handling problems, race conditions, memory leaks, security vulnerabilities, and significant performance issues.

Code Quality

Evaluate significant issues such as code duplication, missing critical error handling, broken abstractions, and inadequate validation for changed behavior.

Simplification Review

For feature implementations, also check whether the change introduced:

  • helpers that only rename or forward one operation
  • new protocols, types, or wrappers that duplicate an existing canonical seam
  • two public APIs expressing the same concept without a compatibility reason
  • tests that assert implementation details instead of behavior contracts
  • legacy or compatibility logic in the canonical execution path
  • repeated validation, readback, payload scans, retries, fallbacks, or cleanup that do not protect a distinct trust boundary or failure mode

Prefer concrete deletion, merge, or downgrade suggestions before proposing new abstractions. Do not remove cheap fail-fast checks that reject invalid work before expensive processing, or ownership defenses that protect untrusted, mutable, concurrent, or irreversibly published state.

Show full SKILL.md (222 more words)Show less

Confidence Scoring

Rate each potential issue on a scale from 0-100:

  • 0: not confident; likely false positive or pre-existing issue
  • 25: somewhat confident; may be real but uncertain or low importance
  • 50: moderately confident; likely real but not very important
  • 75: highly confident; double-checked and very likely real and important
  • 100: absolutely certain; directly confirmed by evidence

Only report issues with confidence ≥ 80. Favor quality over quantity.

Output Guidance

Start by clearly stating what you reviewed. For each high-confidence issue, provide:

  • clear description with confidence score
  • file path and line or affected area
  • specific rule, convention, or bug explanation
  • concrete fix suggestion

Group issues by severity such as Critical and Important. If no high-confidence issues exist, say so briefly.

Delegated Review Status

If review work is delegated to another agent or reviewer process, distinguish between a completed review with no findings and a review that timed out, failed, or was cancelled. Inspect the delegated review status before reporting results. If the delegated review did not complete, either wait when useful, continue with a local review, or report that the delegated review produced no usable result; do not summarize a non-returned review as "no findings."

Quality Bar

  • Do not report speculative issues.
  • Do not overwhelm with style nits.
  • Focus on correctness, breakage risk, security, and clear convention mismatches.
  • Make the feedback immediately actionable.

© HorizonRobotics, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/feature-dev/code-reviewer of HorizonRobotics/RoboOrchardLab.

Open the folder on GitHubat commit 221ec0e

Compare with similar skills

Code Reviewer next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Code Reviewer compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Code Reviewer this skillHorizonRobotics/RoboOrchardLab173—~1.2kAutomated safety check: PassApache-2.0
WooCommerce Code Reviewwoocommerce/woocommerce11k3 repos~1.1kAutomated safety check: PassCustom licence
Skill Doli Code ReviewDolibarr/dolibarr7.7k1 repos~1.1kAutomated safety check: PassMIT
Dignified Python Standardsdocling-project/docling69k—~1.5kAutomated safety check: PassApache-2.0
Clean Code GuardamElnagdy/guard-skills1.3k2 repos~4.3kAutomated safety check: PassMIT
Archify Reviewtt-a1i/archify79k—~415Automated safety check: PassMIT

Similar skills

  • WooCommerce Code Review

    woocommerce/woocommerce

    Reviews WooCommerce code changes against the project's standards, flagging backend PHP architecture, naming, documentation, data integrity and testing violations.

    11k GitHub starsUsed in 3 repos~1.1k tokens
    DevelopmentAuto-check passed
  • Skill Doli Code Review

    Dolibarr/dolibarr

    Reviews Dolibarr PHP code for compliance with coding standards and security best practices, and fixes identified issues.

    7.7k GitHub starsUsed in 1 repo~1.1k tokens
    DevelopmentAuto-check passed
  • Dignified Python Standards

    docling-project/docling

    Applies opinionated production Python conventions chosen by the project's Python version: modern type syntax, pathlib, explicit checks and interface guidance.

    69k GitHub stars~1.5k tokensUpdated today
    DevelopmentAuto-check passed
  • Clean Code Guard

    amElnagdy/guard-skills

    Reviews generated or changed production code against Clean Code, SOLID, DRY, KISS, YAGNI and LLM-specific failure modes before it ships, in any language.

    1.3k GitHub starsUsed in 2 repos~4.3k tokens
    DevelopmentAuto-check passed
  • Archify Review

    tt-a1i/archify

    Review Archify issues, PRs, or code through value, cost, and impact to support evidence-based maintenance decisions. Use for issue triage, change reviews, and…

    79k GitHub stars~415 tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Code Review Skill

    awesome-skills/code-review-skill

    Provides comprehensive code review guidance for React 19, Vue 3, Angular 17+, Svelte 5, Rust, TypeScript, Java, Java 8, PHP, Ruby, Rails, Python, Django, FastAPI, Go, C/.NET, Kotlin, Swift, Dart…

    2.1k GitHub stars~2.8k tokensUpdated 1 mo ago
    DevelopmentAuto-check: notes

More from HorizonRobotics/RoboOrchardLab

All 8 skills in this repo
  • Feature Dev

    HorizonRobotics/RoboOrchardLab

    Guided feature development with codebase understanding and architecture focus.

    173 GitHub stars~797 tokensUpdated 14 days ago
    Auto-check passed
  • Codereview Family

    HorizonRobotics/RoboOrchardLab

    Structured code review family for explicit heavy review requests and architecture-sensitive review/evaluation requests.

    173 GitHub stars~724 tokensUpdated 14 days ago
    Auto-check passed
  • Architecture Review

    HorizonRobotics/RoboOrchardLab

    Review local code, diffs, modules, directories, or design changes for consequential architecture issues when the user explicitly asks for architecture review, when an upstream review routes…

    173 GitHub stars~1k tokensUpdated 14 days ago
    Auto-check passed
  • Prmr Codereview

    HorizonRobotics/RoboOrchardLab

    Review a GitHub PR or GitLab MR when the task is a PR/MR review or comment flow.

    173 GitHub stars~961 tokensUpdated 14 days ago
    Auto-check passed
  • Code Architect

    HorizonRobotics/RoboOrchardLab

    Designs feature architectures by analyzing existing codebase patterns and conventions, then providing comprehensive implementation blueprints with specific files to create or modify, component…

    173 GitHub stars~750 tokensUpdated 14 days ago
    Auto-check passed
  • Code Explorer

    HorizonRobotics/RoboOrchardLab

    Deeply analyzes existing codebase features by tracing execution paths, mapping architecture layers, understanding patterns and abstractions, and documenting dependencies to inform new development.

    173 GitHub stars~721 tokensUpdated 14 days ago
    Auto-check passed

Categories

Questions about Code Reviewer

What does Code Reviewer do?

Reviews code for bugs, logic errors, security vulnerabilities, code quality issues, and adherence to project conventions, using confidence-based filtering to report only high-priority issues that…. Code Reviewer is an agent skill from HorizonRobotics/RoboOrchardLab. Reviews code for bugs, logic errors, security vulnerabilities, code quality issues, and adherence to project conventions, using confidence-based filtering to report only high-priority issues that truly matter.

When should I use Code Reviewer?

Code Reviewer fits situations like: tasks that involve Code review; tasks that involve Code quality.

How do I install Code Reviewer in Claude Code?

Run `npx skills add HorizonRobotics/RoboOrchardLab --skill code-reviewer -a claude-code`. Or copy the skill folder (.agents/skills/feature-dev/code-reviewer in HorizonRobotics/RoboOrchardLab) into .claude/skills/code-reviewer in your project. Claude Code loads it when a task matches its description.

How do I install Code Reviewer in Codex?

Run `npx skills add HorizonRobotics/RoboOrchardLab --skill code-reviewer -a codex`. Or copy the skill folder (.agents/skills/feature-dev/code-reviewer in HorizonRobotics/RoboOrchardLab) into .agents/skills/code-reviewer in your project. Codex loads it when a task matches its description.

Can I use Code Reviewer in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add HorizonRobotics/RoboOrchardLab --skill code-reviewer -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/code-reviewer, .gemini/skills/code-reviewer, .github/skills/code-reviewer and .opencode/skills/code-reviewer in your project.

What does Code Reviewer need to run?

SKILL.md names no scripts, command-line tools or credentials: Code Reviewer is instructions for the agent only.

Does Code Reviewer access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Code Reviewer safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Code Reviewer use?

Code Reviewer is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Code Reviewer use?

About 1.2k tokens (SKILL.md is roughly 4.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Code Reviewer?

Skills that share tags, products or a category with Code Reviewer: WooCommerce Code Review (woocommerce/woocommerce, 11k stars), Skill Doli Code Review (Dolibarr/dolibarr, 7.7k stars), Dignified Python Standards (docling-project/docling, 69k stars) and Clean Code Guard (amElnagdy/guard-skills, 1.3k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Code Reviewer?

HorizonRobotics (a GitHub organization) maintains it in HorizonRobotics/RoboOrchardLab, which has 173 GitHub stars. The repository holds 8 skills in this directory. The repository was last updated on September 24, 2026.

Source: HorizonRobotics/RoboOrchardLab on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.