Agent skill

PR Review Orchestrator

by revfactory in revfactory/harness-engineering-with-cc

PR·diff·변경 파일 목록을 받아 정적 분석, 보안 검토, 테스트 영향 검토를 병렬로 수행하고 하나의 리뷰 리포트로 통합한다.

Apache-2.0Auto-check: notesDevelopment

Install PR Review Orchestrator

skills CLI
$ npx skills add revfactory/harness-engineering-with-cc --skill pr-review-orchestrator -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install revfactory/harness-engineering-with-cc pr-review-orchestrator --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/revfactory/harness-engineering-with-cc.git skills-src && mkdir -p .claude/skills && cp -r skills-src/ex-06-12-pr-review-skill-md/.claude/skills/pr-review-orchestrator .claude/skills/pr-review-orchestrator && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
pr-review-orchestrator
GitHub stars
112
Token cost
~795 tokens
SKILL.md length
412 words
Files
1
Skills in repo
7
Repo updated
First seen
Licence
Apache-2.0

At a glance

PR·diff·변경 파일 목록을 받아 정적 분석, 보안 검토, 테스트 영향 검토를 병렬로 수행하고 하나의 리뷰 리포트로 통합한다.

  • Works in 6 steps: 사전 조건 → 팀 생성 → 작업 큐 배치 → …
  • Tasks that involve Pull requests
  • SKILL.md covers 목표, 입력, 산출물 and Phase 0. 사전 조건, plus 7 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

PR Review Orchestrator is an agent skill from revfactory/harness-engineering-with-cc. PR·diff·변경 파일 목록을 받아 정적 분석, 보안 검토, 테스트 영향 검토를 병렬로 수행하고 하나의 리뷰 리포트로 통합한다. 사용자가 'PR 리뷰', 'diff 점검', '변경사항 리뷰', '코드 리뷰 자동화'를 요청하면 이 스킬을 사용한다. 단일 파일의 간단한 스타일 조언은 code-reviewer 스킬로 처리하고, 전체 코드베이스 보안 감사는 security-auditor 스킬로 위임한다.

Its SKILL.md is about 800 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Pull requests and Code review. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Pull requests
  • Tasks that involve Code review

Example prompts

  • “diff 점검”
  • “/pr-review-orchestrator”

Requirements

  • Pre-approved tools (allowed-tools): Read, Grep, Glob, Bash

Workflow steps

6 steps, taken from the step headings in SKILL.md.

  1. 사전 조건
  2. 팀 생성
  3. 작업 큐 배치
  4. 팀원 간 메시지 규칙
  5. 통합 게이트
  6. 종료

What it can do on your machine

Read from SKILL.md and the folder at commit d81b72b. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Grep
    • Glob
    • Bash

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are json).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

PR Review Orchestrator loads about 795 tokens when it runs. Until then it costs about 62 tokens; SKILL.md has 412 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~62
When it runs · the whole SKILL.md, loaded when a task matches
~795

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NotePre-approves every shell command (allowed-tools: Bash)SKILL.md
    allowed-tools: Read, Grep, Glob, Bash

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from revfactory/harness-engineering-with-cc at commit d81b72b, republished under its Apache-2.0 licence (© revfactory). 412 words, ~795 tokens.

Download SKILL.mdSave it as .claude/skills/pr-review-orchestrator/SKILL.md (or your agent's skills folder).
name
pr-review-orchestrator
description
PR·diff·변경 파일 목록을 받아 정적 분석, 보안 검토, 테스트 영향 검토를 병렬로 수행하고 하나의 리뷰 리포트로 통합한다. 사용자가 'PR 리뷰', 'diff 점검', '변경사항 리뷰', '코드 리뷰 자동화'를 요청하면 이 스킬을 사용한다. 단일 파일의 간단한 스타일 조언은 code-reviewer 스킬로 처리하고, 전체 코드베이스 보안 감사는 security-auditor 스킬로 위임한다.
allowed-tools
Read, Grep, Glob, Bash

PR Review Orchestrator

목표

변경사항 하나를 네 에이전트 팀으로 검토한다. 오케스트레이터는 직접 코드를 고치지 않는다. 팀을 만들고, 작업 큐를 배치하고, 팀원 간 직접 메시지를 허용하고, 최종 리포트만 통합한다.

입력

  • diff_path 또는 PR diff 텍스트
  • 변경 파일 목록
  • 선택 입력: 리뷰 기준, 금지된 변경 영역, 릴리스 위험도

산출물

  • _workspace/pr-review/static.md
  • _workspace/pr-review/security.md
  • _workspace/pr-review/tests.md
  • _workspace/pr-review/final-review.md
  • _workspace/pr-review/team-log.jsonl

Phase 0. 사전 조건

  1. 변경 파일 목록을 읽고 리뷰 범위를 확정한다.
  2. _workspace/pr-review/ 디렉터리 존재를 확인한다.
  3. diff가 없거나 변경 파일이 0개면 사용자에게 중단 사유를 보고한다.
  4. 파일 수가 40개를 넘으면 먼저 범위를 나누고, 이번 실행에서는 가장 위험도가 높은 묶음 하나만 리뷰한다.

Phase 1. 팀 생성

TeamCreate로 pr-review-team을 만든다. 팀원 네 명을 AgentTool로 스폰한다.

이름역할출력
static-reviewer버그·성능·스타일 검토_workspace/pr-review/static.md
security-reviewer입력 검증·권한·비밀 노출 검토_workspace/pr-review/security.md
test-reviewer테스트 영향·누락 회귀 검토_workspace/pr-review/tests.md
review-integrator세 리포트 병합·중복 제거_workspace/pr-review/final-review.md

각 팀원 프롬프트에는 공통 규칙을 넣는다.

  • 발견 즉시 관련 팀원에게 SendMessage로 알린다.
  • 최종 판단은 파일에 저장한다.
  • Critical 발견 시 오케스트레이터와 관련 팀원에게 동시에 보고한다.
  • 코드 수정은 하지 않는다.

Phase 2. 작업 큐 배치

TaskCreate로 네 작업을 만든다.

  1. static-pass: static-reviewer 담당. diff 전체의 버그·성능·스타일 검토.
  2. security-pass: security-reviewer 담당. 외부 입력·권한·비밀 노출 검토.
  3. test-pass: test-reviewer 담당. 변경 파일과 테스트 매핑, 누락 테스트 검토.
  4. integrate-review: review-integrator 담당. 앞 세 작업 완료 후 실행. depends_on = ["static-pass", "security-pass", "test-pass"].

Phase 3. 팀원 간 메시지 규칙

SendMessage는 리더를 거치지 않는다.

  • static-reviewer가 데이터 구조(shape) 변경을 발견하면 test-reviewer에게 테스트 영향 확인을 요청한다.
  • security-reviewer가 인증·권한 변경을 발견하면 test-reviewer에게 보안 회귀 테스트 존재 여부를 묻는다.
  • test-reviewer가 테스트 불가능한 설계를 발견하면 static-reviewer에게 구조 리스크 확인을 요청한다.
  • Critical 이슈는 오케스트레이터에도 요약 메시지를 보낸다.

메시지 형식은 고정한다.

json
{
    "type": "finding",
    "severity": "Critical|High|Medium|Low",
    "file": "path/to/file.ts",
    "line": 42,
    "claim": "문제를 주장하는 한 문장",
    "request": "상대 팀원이 확인할 질문"
}
Show full SKILL.md (152 more words)Show less

Phase 4. 통합 게이트

review-integrator는 세 리포트를 모두 읽고 다음 순서로 통합한다.

  1. Critical·High를 먼저 배치한다.
  2. 같은 원인의 중복 이슈는 하나로 합친다.
  3. 증거가 없는 제안은 제외한다.
  4. 테스트 누락만 있는 항목은 "권고"로 낮추고, 실제 버그 증거가 있으면 "차단"으로 올린다.
  5. 최종 리포트에는 must-fix, should-fix, watch 세 섹션만 둔다.

Phase 5. 종료

  1. 네 팀원에게 shutdown_request를 SendMessage로 보낸다.
  2. 각 팀원이 진행 중 파일 쓰기를 끝냈는지 확인한다.
  3. TeamDelete로 팀을 해체한다.
  4. _workspace/pr-review/team-log.jsonl에 팀 생성·작업 배치·종료 시각을 append-only로 남긴다.

실패 처리

  • 팀원 1명 실패: 같은 역할을 한 번 재시도한다.
  • 같은 팀원 2회 실패: 해당 리포트 누락을 final-review에 명시하고 진행한다.
  • 팀원 2명 이상 실패: TeamDelete 후 사용자에게 중단 보고한다.
  • Critical 발견: 나머지 리뷰는 계속하되 최종 판정은 must-fix를 포함한 차단 상태로 둔다.
  • TeamDelete 실패: 숨기지 않고 수동 정리 필요 항목을 보고한다.

최종 응답 형식

사용자에게는 세 가지만 보고한다.

  1. 차단 이슈 수와 파일 위치.
  2. 권고 이슈 수.
  3. 전체 리포트 경로 _workspace/pr-review/final-review.md.

© revfactory, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in ex-06-12-pr-review-skill-md/.claude/skills/pr-review-orchestrator of revfactory/harness-engineering-with-cc.

Open the folder on GitHubat commit d81b72b

Compare with similar skills

PR Review Orchestrator next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

PR Review Orchestrator compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
PR Review Orchestrator this skillrevfactory/harness-engineering-with-cc112—~795Automated safety check: NotesApache-2.0
PR Babysitteropeninterpreter/openinterpreter69k3 repos~4.2kAutomated safety check: PassApache-2.0
WooCommerce Code Reviewwoocommerce/woocommerce11k3 repos~1.1kAutomated safety check: PassCustom licence
Open Code Review CLIalibaba/open-code-review46k—~3.1kAutomated safety check: PassApache-2.0
GitHub Review Iterationprisma/orm48k—~2.2kAutomated safety check: PassApache-2.0
Understand Diff AnalysisEgonex-AI/Understand-Anything86k—~1.4kAutomated safety check: PassMIT

Similar skills

  • PR Babysitter

    openinterpreter/openinterpreter

    Watches an open GitHub pull request until it merges, handling review comments, diagnosing CI failures and retrying flaky checks along the way.

    69k GitHub starsUsed in 3 repos~4.2k tokens
    DevelopmentAuto-check passed
  • WooCommerce Code Review

    woocommerce/woocommerce

    Reviews WooCommerce code changes against the project's standards, flagging backend PHP architecture, naming, documentation, data integrity and testing violations.

    11k GitHub starsUsed in 3 repos~1.1k tokens
    DevelopmentAuto-check passed
  • Open Code Review CLI

    alibaba/open-code-review

    Runs the ocr command-line tool to review Git changes, a commit or a branch comparison with an AI model, returning line-level comments and optionally applying fixes.

    46k GitHub stars~3.1k tokensUpdated today
    DevelopmentAuto-check passed
  • Official

    Runs a loop on a GitHub pull request: fetch review state, triage comments into actions, implement them and resolve threads, repeating until nothing actionable is left.

    48k GitHub stars~2.2k tokensUpdated today
    DevelopmentAuto-check passed
  • Understand Diff Analysis

    Egonex-AI/Understand-Anything

    Reads your git changes or a pull request against a prebuilt knowledge graph of the project to explain what changed, which components are affected and what is risky.

    86k GitHub stars~1.4k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Code Review

    flutter/flutter

    Performs a comprehensive, multi-step code review of pull requests or local code changes, using iterative refinement (generation, critique, synthesis) to ensure high-quality, actionable feedback.

    179k GitHub stars~1.4k tokensUpdated today
    DevelopmentAuto-check passed

More from revfactory/harness-engineering-with-cc

  • Code Review Team

    revfactory/harness-engineering-with-cc

    PR diff에 대해 정적분석·설계·보안 3 리뷰어 + 리팩토러 4인 팀을 운영한다. An agent skill from revfactory/harness-engineering-with-cc.

    112 GitHub stars~1.1k tokensUpdated 4 mo ago
    Auto-check passed
  • Tip Collect

    revfactory/harness-engineering-with-cc

    Claude Code 사용 팁의 소재를 신뢰 가능한 소스에서 모으는 절차. An agent skill from revfactory/harness-engineering-with-cc.

    112 GitHub stars~204 tokensUpdated 4 mo ago
    Auto-check passed
  • Tip Format

    revfactory/harness-engineering-with-cc

    tips/ 하위 팁 문서의 표준 포맷과 프론트매터 규약. An agent skill from revfactory/harness-engineering-with-cc.

    112 GitHub stars~153 tokensUpdated 4 mo ago
    Auto-check passed
  • Tip Publish

    revfactory/harness-engineering-with-cc

    작성된 팁 문서를 tips/에 저장하고 tips/README.md 인덱스를 갱신하는 발행 절차. An agent skill from revfactory/harness-engineering-with-cc.

    112 GitHub stars~144 tokensUpdated 4 mo ago
    Auto-check passed
  • Commit Message

    revfactory/harness-engineering-with-cc

    스테이지된 변경을 바탕으로 Conventional Commits 형식의 커밋 메시지를 2인 팀(author·reviewer)으로 생성.

    112 GitHub stars~222 tokensUpdated 4 mo ago
    Auto-check: notes
  • Mini Multi Mode

    revfactory/harness-engineering-with-cc

    다중 모드 오케스트레이터 — README 작성/변경로그 생성/PR 본문 작성. An agent skill from revfactory/harness-engineering-with-cc.

    112 GitHub stars~143 tokensUpdated 4 mo ago
    Auto-check passed

Categories

Questions about PR Review Orchestrator

What does PR Review Orchestrator do?

PR·diff·변경 파일 목록을 받아 정적 분석, 보안 검토, 테스트 영향 검토를 병렬로 수행하고 하나의 리뷰 리포트로 통합한다. PR Review Orchestrator is an agent skill from revfactory/harness-engineering-with-cc. PR·diff·변경 파일 목록을 받아 정적 분석, 보안 검토, 테스트 영향 검토를 병렬로 수행하고 하나의 리뷰 리포트로 통합한다.

When should I use PR Review Orchestrator?

PR Review Orchestrator fits situations like: tasks that involve Pull requests; tasks that involve Code review.

How do I install PR Review Orchestrator in Claude Code?

Run `npx skills add revfactory/harness-engineering-with-cc --skill pr-review-orchestrator -a claude-code`. Or copy the skill folder (ex-06-12-pr-review-skill-md/.claude/skills/pr-review-orchestrator in revfactory/harness-engineering-with-cc) into .claude/skills/pr-review-orchestrator in your project. Claude Code loads it when a task matches its description.

How do I install PR Review Orchestrator in Codex?

Run `npx skills add revfactory/harness-engineering-with-cc --skill pr-review-orchestrator -a codex`. Or copy the skill folder (ex-06-12-pr-review-skill-md/.claude/skills/pr-review-orchestrator in revfactory/harness-engineering-with-cc) into .agents/skills/pr-review-orchestrator in your project. Codex loads it when a task matches its description.

Can I use PR Review Orchestrator in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add revfactory/harness-engineering-with-cc --skill pr-review-orchestrator -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/pr-review-orchestrator, .gemini/skills/pr-review-orchestrator, .github/skills/pr-review-orchestrator and .opencode/skills/pr-review-orchestrator in your project.

What does PR Review Orchestrator need to run?

SKILL.md names no scripts, command-line tools or credentials: PR Review Orchestrator is instructions for the agent only. Its frontmatter pre-approves these tools: Read, Grep, Glob, Bash.

Does PR Review Orchestrator access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is PR Review Orchestrator safe to install?

Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does PR Review Orchestrator use?

PR Review Orchestrator is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does PR Review Orchestrator use?

About 795 tokens (SKILL.md is roughly 3.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to PR Review Orchestrator?

Skills that share tags, products or a category with PR Review Orchestrator: PR Babysitter (openinterpreter/openinterpreter, 69k stars), WooCommerce Code Review (woocommerce/woocommerce, 11k stars), Open Code Review CLI (alibaba/open-code-review, 46k stars) and GitHub Review Iteration (prisma/orm, 48k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains PR Review Orchestrator?

revfactory (a GitHub user) maintains it in revfactory/harness-engineering-with-cc, which has 112 GitHub stars. The repository holds 7 skills in this directory. The repository was last updated on May 26, 2026.

Source: revfactory/harness-engineering-with-cc on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.