Agent skill

Code Review Specialist

by lhfer in lhfer/claude-howto-zh-cn

Structured code review across security, performance, code quality and maintainability, with a checklist, a finding template and two Python scripts for complexity metrics.

MITAuto-check passedDevelopment

SKILL.md written in Chinese; this summary is our English description.

Install Code Review Specialist

skills CLI
$ npx skills add lhfer/claude-howto-zh-cn --skill code-review-specialist -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install lhfer/claude-howto-zh-cn code-review-specialist --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/lhfer/claude-howto-zh-cn.git skills-src && mkdir -p .claude/skills && cp -r skills-src/03-skills/code-review-specialist .claude/skills/code-review-specialist && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
code-review-specialist
GitHub stars
2.3k
Token cost
~267 tokens
SKILL.md length
63 words
Files
5 (incl. scripts)
Skills in repo
7
Repo updated
First seen
Licence
MIT

At a glance

Structured code review across security, performance, code quality and maintainability, with a checklist, a finding template and two Python scripts for complexity metrics.

  • Works in 4 steps: Security Analysis → Performance Review → Code Quality → …
  • Reviewing a pull request for security, performance and quality problems
  • SKILL.md covers 审查模板 and 参考文件
  • Runs Python scripts from its folder

What it does

The skill organizes a review around four areas: security analysis, performance review, code quality and maintainability. The report has a fixed layout: a summary with an overall assessment, the number of findings and recommended priority areas; a critical-issues section where each issue lists its location, impact, severity and fix; and per-category lists for security, performance, quality and maintainability.

Bundled files support a formal review. A checklist template covers security, performance, quality and tests, a finding template records severity, location, a code sample and impact analysis, analyze-metrics.py counts functions and classes, average line length and a complexity score, and compare-complexity.py compares two versions around a refactor. It is named code-review-specialist so it does not shadow Claude Code's built-in /code-review command, and its text is written in Chinese.

When your agent uses it

  • Reviewing a pull request for security, performance and quality problems
  • Producing a structured findings report with severity and fixes
  • Comparing code complexity before and after a refactor

Example prompts

  • “Review the changes in this pull request and report findings by severity.”
  • “请按安全、性能、质量和可维护性审查 src/auth 目录。”
  • “Compare the complexity of the old and new versions of parser.py.”

Requirements

  • Python, to run the two metrics scripts

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. Security Analysis
  2. Performance Review
  3. Code Quality
  4. Maintainability

What it can do on your machine

Read from SKILL.md and the folder at commit f0da0c6. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 2 files in scripts/ (Python), which the agent can run.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Code Review Specialist loads about 267 tokens when it runs. Until then it costs about 52 tokens; SKILL.md has 63 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~52
When it runs · the whole SKILL.md, loaded when a task matches
~267

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from lhfer/claude-howto-zh-cn at commit f0da0c6, republished under its MIT licence (© lhfer). 63 words, ~267 tokens.

Download SKILL.mdSave it as .claude/skills/code-review-specialist/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
code-review-specialist
description
综合代码审查 skill,覆盖安全、性能、代码质量和可维护性。Use when users ask to review code, analyze code quality, evaluate pull requests, or mention code review, security analysis, or performance optimization.

代码审查专家技能(Code Review Specialist Skill)

本 skill 使用 code-review-specialist 名称,避免遮蔽 Claude Code v2.1.146+ 自带的 /code-review 命令。

这个 skill 用于做结构化代码审查,重点关注:

  1. Security Analysis
  2. Performance Review
  3. Code Quality
  4. Maintainability

审查模板

参考文件

这个 skill 自带模板和脚本,做正式审查时应按需读取:

  • templates/review-checklist.md:结构化检查清单,覆盖安全、性能、质量和测试,避免漏掉大类。
  • templates/finding-template.md:单个问题的记录模板,包含严重程度、位置、代码示例和影响分析。
  • scripts/analyze-metrics.py:统计函数数、类数、平均行长和复杂度分数,可用于给审查补充量化依据。
  • scripts/compare-complexity.py:对比两个版本的复杂度,适合审查重构前后的变化。
总结
  • Overall quality assessment
  • Key findings count
  • Recommended priority areas
严重问题
  • Issue
  • Location
  • Impact
  • Severity
  • Fix
按类别列出问题
安全

列出安全漏洞或风险点

性能

列出性能问题与复杂度风险

质量

列出命名、结构、文档和测试问题

可维护性

列出可维护性问题和重构建议

© lhfer, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 4 other files (scripts) in 03-skills/code-review-specialist of lhfer/claude-howto-zh-cn.

  • SKILL.md
  • scripts/analyze-metrics.py
  • scripts/compare-complexity.py
  • templates/finding-template.md
  • templates/review-checklist.md

Open the folder on GitHubat commit f0da0c6

Compare with similar skills

Code Review Specialist next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Code Review Specialist compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Code Review Specialist this skilllhfer/claude-howto-zh-cn2.3k—~267Automated safety check: PassMIT
WooCommerce Code Reviewwoocommerce/woocommerce11k3 repos~1.1kAutomated safety check: PassCustom licence
Code Review Skillawesome-skills/code-review-skill2.1k—~2.8kAutomated safety check: NotesMIT
Code Reviewerjewbetcha/opentrace1162 repos~1.1kAutomated safety check: NotesMIT
Code Review SkillRain-kl/OpenFlare288—~2.3kAutomated safety check: NotesMIT
Code ReviewerYikai-Liao/symusic1891 repos~1.3kAutomated safety check: PassMIT

Similar skills

  • WooCommerce Code Review

    woocommerce/woocommerce

    Reviews WooCommerce code changes against the project's standards, flagging backend PHP architecture, naming, documentation, data integrity and testing violations.

    11k GitHub starsUsed in 3 repos~1.1k tokens
    DevelopmentAuto-check passed
  • Code Review Skill

    awesome-skills/code-review-skill

    Provides comprehensive code review guidance for React 19, Vue 3, Angular 17+, Svelte 5, Rust, TypeScript, Java, Java 8, PHP, Ruby, Rails, Python, Django, FastAPI, Go, C/.NET, Kotlin, Swift, Dart…

    2.1k GitHub stars~2.8k tokensUpdated 1 mo ago
    DevelopmentAuto-check: notes
  • Code Reviewer

    jewbetcha/opentrace

    Comprehensive code review skill for TypeScript, JavaScript, Python, Swift, Kotlin, Go.

    116 GitHub starsUsed in 2 repos~1.1k tokens
    DevelopmentAuto-check: notes
  • Code Review Skill

    Rain-kl/OpenFlare

    Provides comprehensive code review guidance for React 19, Vue 3, Angular 17+, Svelte 5, Rust, TypeScript, Java, PHP, Python, Django, Go, C/.NET, Kotlin, Swift, NestJS, C/C++, and more.

    288 GitHub stars~2.3k tokensUpdated yesterday
    DevelopmentAuto-check: notes
  • Code Reviewer

    Yikai-Liao/symusic

    Analyzes code diffs and files to identify bugs, security vulnerabilities (SQL injection, XSS, insecure deserialization), code smells, N+1 queries, naming issues, and architectural concerns, then…

    189 GitHub starsUsed in 1 repo~1.3k tokens
    DevelopmentAuto-check passed
  • Code Review

    bennycode/trading-signals

    Repository coding standards for reviewing pull requests. An agent skill from bennycode/trading-signals.

    995 GitHub stars~203 tokensUpdated today
    DevelopmentAuto-check passed

More from lhfer/claude-howto-zh-cn

  • Claude Code Self-Assessment Advisor

    lhfer/claude-howto-zh-cn

    Quizzes you on Claude Code in a quick or deep mode, scores your level across 10 topics and recommends what to learn next, in Chinese.

    2.3k GitHub stars~1.7k tokensUpdated 2 mo ago
    Auto-check passed
  • Blog Post Drafting Workflow

    lhfer/claude-howto-zh-cn

    Turns a topic and reference materials into a versioned blog draft through a fixed outline-first pipeline with per-source summaries.

    2.3k GitHub stars~218 tokensUpdated 2 mo ago
    Auto-check passed
  • CLAUDE.md Writer and Auditor

    lhfer/claude-howto-zh-cn

    Creates, updates or audits a project's CLAUDE.md by analyzing the codebase, drafting for review and flagging anti-patterns, aiming for under 200 lines.

    2.3k GitHub stars~254 tokensUpdated 2 mo ago
    Auto-check passed
  • Fowler-Style Refactoring

    lhfer/claude-howto-zh-cn

    基于 Martin Fowler 方法论做系统化重构。Use when users ask to refactor code, improve structure, reduce technical debt, clean up legacy code, or improve maintainability.

    2.3k GitHub stars~156 tokensUpdated 2 mo ago
    Auto-check passed
  • Claude Code Lesson Quiz

    lhfer/claude-howto-zh-cn

    Runs a ten-question interactive quiz on one lesson of a Claude Code tutorial, scores it, and points out the weak spots with a review of missed questions.

    2.3k GitHub stars~781 tokensUpdated 2 mo ago
    Auto-check passed
  • Brand Voice Guide

    lhfer/claude-howto-zh-cn

    Keeps marketing copy and customer messages in one consistent brand voice, using a defined mission, tone, writing rules and lists of preferred and avoided terms.

    2.3k GitHub stars~178 tokensUpdated 2 mo ago
    Auto-check passed

Categories

Questions about Code Review Specialist

What does Code Review Specialist do?

Structured code review across security, performance, code quality and maintainability, with a checklist, a finding template and two Python scripts for complexity metrics. The skill organizes a review around four areas: security analysis, performance review, code quality and maintainability. The report has a fixed layout: a summary with an overall assessment, the number of findings and recommended priority areas; a critical-issues section where each issue lists its location, impact, severity and fix; and per-category lists for security, performance, quality and maintainability.

When should I use Code Review Specialist?

Code Review Specialist fits situations like: reviewing a pull request for security, performance and quality problems; producing a structured findings report with severity and fixes; comparing code complexity before and after a refactor.

How do I install Code Review Specialist in Claude Code?

Run `npx skills add lhfer/claude-howto-zh-cn --skill code-review-specialist -a claude-code`. Or copy the skill folder (03-skills/code-review-specialist in lhfer/claude-howto-zh-cn) into .claude/skills/code-review-specialist in your project. Claude Code loads it when a task matches its description.

How do I install Code Review Specialist in Codex?

Run `npx skills add lhfer/claude-howto-zh-cn --skill code-review-specialist -a codex`. Or copy the skill folder (03-skills/code-review-specialist in lhfer/claude-howto-zh-cn) into .agents/skills/code-review-specialist in your project. Codex loads it when a task matches its description.

Can I use Code Review Specialist in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add lhfer/claude-howto-zh-cn --skill code-review-specialist -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/code-review-specialist, .gemini/skills/code-review-specialist, .github/skills/code-review-specialist and .opencode/skills/code-review-specialist in your project.

What does Code Review Specialist need to run?

Going by SKILL.md and its folder, Code Review Specialist needs Python for the scripts in its folder. Our summary lists: Python, to run the two metrics scripts.

Does Code Review Specialist access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Code Review Specialist safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Code Review Specialist use?

Code Review Specialist is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Code Review Specialist use?

About 267 tokens (SKILL.md is roughly 1.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Code Review Specialist?

Skills that share tags, products or a category with Code Review Specialist: WooCommerce Code Review (woocommerce/woocommerce, 11k stars), Code Review Skill (awesome-skills/code-review-skill, 2.1k stars), Code Reviewer (jewbetcha/opentrace, 116 stars) and Code Review Skill (Rain-kl/OpenFlare, 288 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Code Review Specialist?

lhfer (a GitHub user) maintains it in lhfer/claude-howto-zh-cn, which has 2,307 GitHub stars. The repository holds 7 skills in this directory. The repository was last updated on August 6, 2026.

Source: lhfer/claude-howto-zh-cn on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.