Agent skill

Generic Code Review

by modiqo in modiqo/skillspec

Review code changes by collecting the review target, researching context, checking risks, and reporting findings before summary.

Apache-2.0Auto-check passedDevelopment

Install Generic Code Review

skills CLI
$ npx skills add modiqo/skillspec --skill generic-code-review -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install modiqo/skillspec generic-code-review --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/modiqo/skillspec.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/code-review .claude/skills/generic-code-review && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
generic-code-review
GitHub stars
706
Token cost
~560 tokens
SKILL.md length
216 words
Files
2
Skills in repo
9
Repo updated
First seen
Licence
Apache-2.0

At a glance

Review code changes by collecting the review target, researching context, checking risks, and reporting findings before summary.

  • Works in 7 steps: Load ./skill.spec.yml from this skill… → When the skillspec CLI is available, run → Strip skill invocation prefixes such as… → …
  • Tasks that involve Code review
  • SKILL.md covers Runtime Contract, Quick Commands, Completion Report and Route Hints
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Generic Code Review is an agent skill from modiqo/skillspec. Review code changes by collecting the review target, researching context, checking risks, and reporting findings before summary.

Its SKILL.md is about 560 tokens, which your agent loads only when the skill is triggered. The skill folder holds 1 other file (for example `skill.spec.yml`).

It sits in Development, covering Code review. The repository describes itself as: SkillSpec makes agent skills followable, testable, and provable with Doctor risk reports, guided imports, structured contracts, and alignment proof. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Code review

Example prompts

  • “/generic-code-review”

Workflow steps

7 steps, taken from the first numbered list in SKILL.md.

  1. Load ./skill.spec.yml from this skill folder before taking task actions.
  2. When the skillspec CLI is available, run
  3. Strip skill invocation prefixes such as /my-skill, $my-skill, or /rote-shell-spec before passing --input.
  4. Preserve the emitted trace run_dir.
  5. When the CLI is available after a trace exists, run skillspec trace align ./skill.spec.yml --decision-trace and report the alignment…
  6. Follow the selected route, matched rules, forbids, elicitations, dependencies, imports, recipes, and closures from skill.spec.yml.
  7. If the CLI is unavailable, read skill.spec.yml directly and apply its rules manually. Do not expand this loader into a second source of…

What it can do on your machine

Read from SKILL.md and the folder at commit f4d9ab5. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are bash).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Generic Code Review loads about 560 tokens when it runs. Until then it costs about 37 tokens; SKILL.md has 216 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~37
When it runs · the whole SKILL.md, loaded when a task matches
~560

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from modiqo/skillspec at commit f4d9ab5, republished under its Apache-2.0 licence (© modiqo). 216 words, ~560 tokens.

Download SKILL.mdSave it as .claude/skills/generic-code-review/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
generic-code-review
description
Review code changes by collecting the review target, researching context, checking risks, and reporting findings before summary.

Code Review

Review code changes by collecting the review target, researching context, checking risks, and reporting findings before summary.

This skill is a thin loader for the colocated skill.spec.yml. The spec is the source of truth for routes, rules, dependencies, imports, resources, recipes, tests, and trace requirements.

Runtime Contract

  1. Load ./skill.spec.yml from this skill folder before taking task actions.

  2. When the skillspec CLI is available, run:

    bash
    skillspec decide ./skill.spec.yml --input='<user task>' --trace-dir "${PWD}/.skillspec/traces"
  3. Strip skill invocation prefixes such as /my-skill, $my-skill, or /rote-shell-spec before passing --input.

  4. Preserve the emitted trace run_dir.

  5. When the CLI is available after a trace exists, run skillspec trace align ./skill.spec.yml --decision-trace <run_dir> and report the alignment status with the trace path.

  6. Follow the selected route, matched rules, forbids, elicitations, dependencies, imports, recipes, and closures from skill.spec.yml.

  7. If the CLI is unavailable, read skill.spec.yml directly and apply its rules manually. Do not expand this loader into a second source of truth.

Quick Commands

bash
skillspec validate ./skill.spec.yml
skillspec imports check ./skill.spec.yml
skillspec test ./skill.spec.yml
skillspec deps check ./skill.spec.yml
skillspec explain ./skill.spec.yml --input='<user task>' --trace-dir "${PWD}/.skillspec/traces"
skillspec trace align ./skill.spec.yml --decision-trace "${PWD}/.skillspec/traces/<run-id>"

Completion Report

When reporting completion, include the selected route, the SkillSpec trace run_dir, the skillspec trace align status (pass, fail, or unproven), key failed or unproven alignment checks, and the concrete execution evidence ids or files.

Route Hints

  • current_pr: Review current pull request
  • diff_to_main: Review diff to main
  • specific_paths: Review specific paths
  • second_opinion: Provide review synthesis from supplied evidence

© modiqo, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file in .claude/skills/code-review of modiqo/skillspec.

  • SKILL.md
  • skill.spec.yml

Open the folder on GitHubat commit f4d9ab5

Compare with similar skills

Generic Code Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Generic Code Review compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Generic Code Review this skillmodiqo/skillspec706—~560Automated safety check: PassApache-2.0
PR Babysitteropeninterpreter/openinterpreter69k3 repos~4.2kAutomated safety check: PassApache-2.0
Code Review ChecklistshareAI-lab/learn-claude-code78k5 repos~1.1kAutomated safety check: PassMIT
Backend Code Reviewlangflow-ai/langflow156k—~3.5kAutomated safety check: NotesMIT
Understand Diff AnalysisEgonex-AI/Understand-Anything85k1 repos~1.4kAutomated safety check: PassMIT
Mole Bug Patternstw93/Mole69k—~2kAutomated safety check: PassGPL-3.0

Similar skills

  • PR Babysitter

    openinterpreter/openinterpreter

    Watches an open GitHub pull request until it merges, handling review comments, diagnosing CI failures and retrying flaky checks along the way.

    69k GitHub starsUsed in 3 repos~4.2k tokens
    DevelopmentAuto-check passed
  • Code Review Checklist

    shareAI-lab/learn-claude-code

    Reviews code against a five-part checklist covering security, correctness, performance, maintainability and testing, and reports findings in a fixed format.

    78k GitHub starsUsed in 5 repos~1.1k tokens
    DevelopmentAuto-check passed
  • Backend Code Review

    langflow-ai/langflow

    Review backend code for quality, security, maintainability, and best practices based on established checklist rules.

    156k GitHub stars~3.5k tokensUpdated today
    DevelopmentAuto-check: notes
  • Understand Diff Analysis

    Egonex-AI/Understand-Anything

    Reads your git changes or a pull request against a prebuilt knowledge graph of the project to explain what changed, which components are affected and what is risky.

    85k GitHub starsUsed in 1 repo~1.4k tokens
    DevelopmentAuto-check passed
  • A catalog of recurring bug shapes in the Mole Mac cleaner, used to review safety-sensitive diffs for deletion safety, unbounded commands, shell traps and weak tests.

    69k GitHub stars~2k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Backend Code Review

    langgenius/dify

    Reviews backend code under api/ for concrete, reproducible defects, routes to rule packs for architecture, schema, repositories and SQLAlchemy, and ranks findings from P0 to P3.

    158k GitHub stars~676 tokensUpdated today
    DevelopmentAuto-check passed

More from modiqo/skillspec

All 9 skills in this repo
  • Code Review

    modiqo/skillspec

    Multi-agent code review with deep analysis. An agent skill from modiqo/skillspec.

    706 GitHub stars~3k tokensUpdated 1 mo ago
    Auto-check passed
  • Research Codebase

    modiqo/skillspec

    Document and explain the codebase as-is using parallel sub-agents.

    706 GitHub stars~1.7k tokensUpdated 1 mo ago
    Auto-check passed
  • Rote Browse

    modiqo/skillspec

    A skill your agent uses when the task needs to browse a website with rote, browse Gmail or an email web app with rote, attach to an active browser, inspect logged-in web app state, snapshot or slice…

    706 GitHub stars~2.2k tokensUpdated 1 mo ago
    Auto-check passed
  • Rote Shell

    modiqo/skillspec

    A skill your agent uses when the task needs to run a local command and remember the result, inspect CLI output with provenance, follow a log or process stream, start or observe a background job…

    706 GitHub stars~2.3k tokensUpdated 1 mo ago
    Auto-check passed
  • Commit Convention

    modiqo/skillspec

    A skill your agent uses when writing commit messages, creating PR titles, pushing commits, or creating PRs — ensures conventional commit format and that formatting/linting pass before any push

    706 GitHub stars~398 tokensUpdated 1 mo ago
    Auto-check passed
  • Rote Shell

    modiqo/skillspec

    A skill your agent uses for CLI and shell work through rote: running local commands with rote exec, capturing stdout/stderr/files, following logs and background processes, checking dependency…

    706 GitHub stars~7.2k tokensUpdated 1 mo ago
    Auto-check passed

Categories

Questions about Generic Code Review

What does Generic Code Review do?

Review code changes by collecting the review target, researching context, checking risks, and reporting findings before summary. Generic Code Review is an agent skill from modiqo/skillspec. Review code changes by collecting the review target, researching context, checking risks, and reporting findings before summary.

When should I use Generic Code Review?

Generic Code Review fits situations like: tasks that involve Code review.

How do I install Generic Code Review in Claude Code?

Run `npx skills add modiqo/skillspec --skill generic-code-review -a claude-code`. Or copy the skill folder (.claude/skills/code-review in modiqo/skillspec) into .claude/skills/generic-code-review in your project. Claude Code loads it when a task matches its description.

How do I install Generic Code Review in Codex?

Run `npx skills add modiqo/skillspec --skill generic-code-review -a codex`. Or copy the skill folder (.claude/skills/code-review in modiqo/skillspec) into .agents/skills/generic-code-review in your project. Codex loads it when a task matches its description.

Can I use Generic Code Review in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add modiqo/skillspec --skill generic-code-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/generic-code-review, .gemini/skills/generic-code-review, .github/skills/generic-code-review and .opencode/skills/generic-code-review in your project.

What does Generic Code Review need to run?

SKILL.md names no scripts, command-line tools or credentials: Generic Code Review is instructions for the agent only.

Does Generic Code Review access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Generic Code Review safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Generic Code Review use?

Generic Code Review is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Generic Code Review use?

About 560 tokens (SKILL.md is roughly 2.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Generic Code Review?

Skills that share tags, products or a category with Generic Code Review: PR Babysitter (openinterpreter/openinterpreter, 69k stars), Code Review Checklist (shareAI-lab/learn-claude-code, 78k stars), Backend Code Review (langflow-ai/langflow, 156k stars) and Understand Diff Analysis (Egonex-AI/Understand-Anything, 85k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Generic Code Review?

modiqo (a GitHub organization) maintains it in modiqo/skillspec, which has 706 GitHub stars. The repository holds 9 skills in this directory. The repository was last updated on August 9, 2026.

Source: modiqo/skillspec on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.