Agent skill

Code Review Specialist

by luongnv89 in luongnv89/claude-howto

提供全面的代码审查能力,覆盖安全、性能和代码质量分析。适用于用户请求代码审查、代码质量评估、Pull Request 审查,或提到安全分析和性能优化时。

MITAuto-check passedDevelopment

Install Code Review Specialist

skills CLI
$ npx skills add luongnv89/claude-howto --skill code-review-specialist -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install luongnv89/claude-howto code-review-specialist --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/luongnv89/claude-howto.git skills-src && mkdir -p .claude/skills && cp -r skills-src/zh/03-skills/code-review-specialist .claude/skills/code-review-specialist && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
code-review-specialist
GitHub stars
42k
Token cost
~208 tokens
SKILL.md length
65 words
Files
3
Skills in repo
25
Repo updated
First seen
Licence
MIT

At a glance

提供全面的代码审查能力,覆盖安全、性能和代码质量分析。适用于用户请求代码审查、代码质量评估、Pull Request 审查,或提到安全分析和性能优化时。

  • Works in 4 steps: 安全分析 → 性能审查 → 代码质量 → …
  • Tasks that involve Code review
  • SKILL.md covers 审查模板 and 版本历史
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Code Review Specialist is an agent skill from luongnv89/claude-howto. 提供全面的代码审查能力,覆盖安全、性能和代码质量分析。适用于用户请求代码审查、代码质量评估、Pull Request 审查,或提到安全分析和性能优化时。

Its SKILL.md is about 210 tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files (for example `templates/finding-template.md` and `templates/review-checklist.md`).

It sits in Development, covering Code review and Pull requests. The repository describes itself as: A visual, example-driven guide to Claude Code — from basic concepts to advanced agents, with copy-paste templates that bring immediate value. The licence is MIT.

When your agent uses it

  • Tasks that involve Code review
  • Tasks that involve Pull requests

Example prompts

  • “/code-review-specialist”

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. 安全分析
  2. 性能审查
  3. 代码质量
  4. 可维护性

What it can do on your machine

Read from SKILL.md and the folder at commit 556af8d. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Code Review Specialist loads about 208 tokens when it runs. Until then it costs about 25 tokens; SKILL.md has 65 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~25
When it runs · the whole SKILL.md, loaded when a task matches
~208

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from luongnv89/claude-howto at commit 556af8d, republished under its MIT licence (© luongnv89). 65 words, ~208 tokens.

Download SKILL.mdSave it as .claude/skills/code-review-specialist/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.
name
code-review-specialist
description
提供全面的代码审查能力,覆盖安全、性能和代码质量分析。适用于用户请求代码审查、代码质量评估、Pull Request 审查,或提到安全分析和性能优化时。

代码审查 Skill

这个 skill 提供全面的代码审查能力,重点关注:

  1. 安全分析

    • 身份验证 / 授权问题
    • 数据泄露风险
    • 注入漏洞
    • 密码学弱点
    • 敏感数据日志记录
  2. 性能审查

    • 算法效率(Big O 分析)
    • 内存优化
    • 数据库查询优化
    • 缓存机会
    • 并发问题
  3. 代码质量

    • SOLID 原则
    • 设计模式
    • 命名规范
    • 文档
    • 测试覆盖率
  4. 可维护性

    • 代码可读性
    • 函数长度(建议少于 50 行)
    • 圈复杂度
    • 依赖管理
    • 类型安全

审查模板

对每一段被审查的代码,请提供:

摘要
  • 整体质量评分(1-5)
  • 关键发现数量
  • 建议优先关注的区域
关键问题(如有)
  • 问题:清晰描述
  • 位置:文件和行号
  • 影响:为什么这很重要
  • 严重性:Critical / High / Medium
  • 修复:代码示例
按类别列出发现
安全性(如有问题)

列出安全漏洞及示例

性能(如有问题)

列出性能问题,并说明复杂度

质量(如有问题)

列出代码质量问题,并给出重构建议

可维护性(如有问题)

列出可维护性问题,并给出改进建议

版本历史

  • v1.0.0 (2024-12-10):首次发布,包含安全、性能、质量和可维护性分析

© luongnv89, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 2 other files in zh/03-skills/code-review-specialist of luongnv89/claude-howto.

  • SKILL.md
  • templates/finding-template.md
  • templates/review-checklist.md

Open the folder on GitHubat commit 556af8d

Compare with similar skills

Code Review Specialist next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Code Review Specialist compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Code Review Specialist this skillluongnv89/claude-howto42k—~208Automated safety check: PassMIT
PR Babysitteropeninterpreter/openinterpreter69k3 repos~4.2kAutomated safety check: PassApache-2.0
WooCommerce Code Reviewwoocommerce/woocommerce11k3 repos~1.1kAutomated safety check: PassCustom licence
Open Code Review CLIalibaba/open-code-review45k—~3.1kAutomated safety check: PassApache-2.0
GitHub Review Iterationprisma/orm48k—~2.2kAutomated safety check: PassApache-2.0
Understand Diff AnalysisEgonex-AI/Understand-Anything86k—~1.4kAutomated safety check: PassMIT

Similar skills

  • PR Babysitter

    openinterpreter/openinterpreter

    Watches an open GitHub pull request until it merges, handling review comments, diagnosing CI failures and retrying flaky checks along the way.

    69k GitHub starsUsed in 3 repos~4.2k tokens
    DevelopmentAuto-check passed
  • WooCommerce Code Review

    woocommerce/woocommerce

    Reviews WooCommerce code changes against the project's standards, flagging backend PHP architecture, naming, documentation, data integrity and testing violations.

    11k GitHub starsUsed in 3 repos~1.1k tokens
    DevelopmentAuto-check passed
  • Open Code Review CLI

    alibaba/open-code-review

    Runs the ocr command-line tool to review Git changes, a commit or a branch comparison with an AI model, returning line-level comments and optionally applying fixes.

    45k GitHub stars~3.1k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Official

    Runs a loop on a GitHub pull request: fetch review state, triage comments into actions, implement them and resolve threads, repeating until nothing actionable is left.

    48k GitHub stars~2.2k tokensUpdated today
    DevelopmentAuto-check passed
  • Understand Diff Analysis

    Egonex-AI/Understand-Anything

    Reads your git changes or a pull request against a prebuilt knowledge graph of the project to explain what changed, which components are affected and what is risky.

    86k GitHub stars~1.4k tokensUpdated today
    DevelopmentAuto-check passed
  • Code Review

    flutter/flutter

    Performs a comprehensive, multi-step code review of pull requests or local code changes, using iterative refinement (generation, critique, synthesis) to ensure high-quality, actionable feedback.

    179k GitHub stars~1.4k tokensUpdated today
    DevelopmentAuto-check passed

More from luongnv89/claude-howto

All 25 skills in this repo
  • Systematic Code Refactoring

    luongnv89/claude-howto

    Guides refactoring in phases based on Martin Fowler's method: research, test coverage check, planning and small tested steps, with your approval at each phase.

    42k GitHub stars~3k tokensUpdated 9 days ago
    Auto-check passed
  • Code Refactoring Workflow

    luongnv89/claude-howto

    Guides systematic, test-backed refactoring in the style of Martin Fowler, moving through research, planning and small incremental changes with your approval at each phase.

    42k GitHub stars~3.1k tokensUpdated 9 days ago
    Auto-check passed
  • Blog Post Drafting

    luongnv89/claude-howto

    Guides drafting a blog post from an idea and optional source material: research, brainstorming, outlining and version-tracked drafts, with user approval at each step.

    42k GitHub stars~2.1k tokensUpdated 9 days ago
    Auto-check passed
  • Brand Voice Guide

    luongnv89/claude-howto

    Ensure all communication matches brand voice and tone guidelines. Use when creating marketing copy, customer communications, public-facing content, or when…

    42k GitHub stars~609 tokensUpdated 9 days ago
    Auto-check passed
  • Code Review Specialist

    luongnv89/claude-howto

    Reviews code for security, performance, quality and maintainability, using a checklist, a finding template and two metrics scripts.

    42k GitHub stars~764 tokensUpdated 9 days ago
    Auto-check passed
  • Claude Code Skill Assessment

    luongnv89/claude-howto

    Runs a quick or deep quiz on Claude Code skills, scores ten feature areas and generates a personalized learning path with prioritized next steps.

    42k GitHub stars~5.5k tokensUpdated 9 days ago
    Auto-check passed

Categories

Questions about Code Review Specialist

What does Code Review Specialist do?

提供全面的代码审查能力,覆盖安全、性能和代码质量分析。适用于用户请求代码审查、代码质量评估、Pull Request 审查,或提到安全分析和性能优化时。. Code Review Specialist is an agent skill from luongnv89/claude-howto.

When should I use Code Review Specialist?

Code Review Specialist fits situations like: tasks that involve Code review; tasks that involve Pull requests.

How do I install Code Review Specialist in Claude Code?

Run `npx skills add luongnv89/claude-howto --skill code-review-specialist -a claude-code`. Or copy the skill folder (zh/03-skills/code-review-specialist in luongnv89/claude-howto) into .claude/skills/code-review-specialist in your project. Claude Code loads it when a task matches its description.

How do I install Code Review Specialist in Codex?

Run `npx skills add luongnv89/claude-howto --skill code-review-specialist -a codex`. Or copy the skill folder (zh/03-skills/code-review-specialist in luongnv89/claude-howto) into .agents/skills/code-review-specialist in your project. Codex loads it when a task matches its description.

Can I use Code Review Specialist in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add luongnv89/claude-howto --skill code-review-specialist -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/code-review-specialist, .gemini/skills/code-review-specialist, .github/skills/code-review-specialist and .opencode/skills/code-review-specialist in your project.

What does Code Review Specialist need to run?

SKILL.md names no scripts, command-line tools or credentials: Code Review Specialist is instructions for the agent only.

Does Code Review Specialist access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Code Review Specialist safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Code Review Specialist use?

Code Review Specialist is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Code Review Specialist use?

About 208 tokens (SKILL.md is roughly 832 characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Code Review Specialist?

Skills that share tags, products or a category with Code Review Specialist: PR Babysitter (openinterpreter/openinterpreter, 69k stars), WooCommerce Code Review (woocommerce/woocommerce, 11k stars), Open Code Review CLI (alibaba/open-code-review, 45k stars) and GitHub Review Iteration (prisma/orm, 48k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Code Review Specialist?

luongnv89 (a GitHub user) maintains it in luongnv89/claude-howto, which has 41,779 GitHub stars. The repository holds 25 skills in this directory. The repository was last updated on September 30, 2026.

Source: luongnv89/claude-howto on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.