Agent skill

Alego Code Review

by singula-ai in singula-ai/alego

A skill your agent uses when reviewing a pull request in the alego repo — orients the reviewer to this codebase's standards (AGENTS.md conventions, defensive patterns, ADRs, quality gates) and the…

MITAuto-check passedDevelopment

Install Alego Code Review

skills CLI
$ npx skills add singula-ai/alego --skill alego-code-review -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install singula-ai/alego alego-code-review --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/singula-ai/alego.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/alego-code-review .claude/skills/alego-code-review && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
alego-code-review
GitHub stars
109
Token cost
~2.4k tokens
SKILL.md length
1,126 words
Files
1
Skills in repo
20
Repo updated
First seen
Licence
MIT

At a glance

A skill your agent uses when reviewing a pull request in the alego repo — orients the reviewer to this codebase's standards (AGENTS.md conventions, defensive patterns, ADRs, quality gates) and the…

  • Works in 7 steps: New prose receives semantic review. Use… → Docs match the code. Config, defaults,… → Core type docs match. Changes to spine… → …
  • Reviewing a pull request in the alego repo — orients the reviewer to this codebases standards (AGENTS.md conventions
  • SKILL.md covers Sources of truth, Blocking requirements, Manual checks and Reporting findings
  • Calls pnpm

What it does

Alego Code Review is an agent skill from singula-ai/alego. Use when reviewing a pull request in the alego repo — orients the reviewer to this codebase's standards (AGENTS.md conventions, defensive patterns, ADRs, quality gates) and the review-specific checks that code alone can't show

Its SKILL.md is about 2.4k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Quality gates, Architecture decision records and Agent instruction files. The repository describes itself as: Build AI Agents like playing LEGOs. Everything is a Plugin. The licence is MIT.

When your agent uses it

  • Reviewing a pull request in the alego repo — orients the reviewer to this codebases standards (AGENTS.md conventions
  • Defensive patterns
  • Quality gates) and the review-specific checks that code alone cant show

Example prompts

  • “/alego-code-review”

Workflow steps

7 steps, taken from the first numbered list in SKILL.md.

  1. New prose receives semantic review. Use alego-prose-standard to critically review every added or changed Markdown passage, JSDoc, comment…
  2. Docs match the code. Config, defaults, errors, wire fields, events, and public behavior update the package README and JSDoc in the same…
  3. Core type docs match. Changes to spine or seam vocabulary update the appropriate subsystems page and any type-equiv entry. Internal types…
  4. Registrations clean up. Verify each new registry contribution passes the disposal tests required by packages/AGENTS.md.
  5. Invariant companions are semantic. For every touched ./invariant, require an owner event-stream or mutable-data relationship with…
  6. Required evidence exists. Verify the author ran the relevant local checks for the diff and that CI covers the exhaustive matrix; review…
  7. Client UI copy is locale-owned. Reject product text embedded in JSX, templates, helper returns, accessibility attributes, or primitive…

What it can do on your machine

Read from SKILL.md and the folder at commit a79fe9a. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • pnpm

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use pnpm, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Alego Code Review loads about 2.4k tokens when it runs. Until then it costs about 61 tokens; SKILL.md has 1,126 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~61
When it runs · the whole SKILL.md, loaded when a task matches
~2.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from singula-ai/alego at commit a79fe9a, republished under its MIT licence (© singula-ai). 1,126 words, ~2,352 tokens.

Download SKILL.mdSave it as .claude/skills/alego-code-review/SKILL.md (or your agent's skills folder).
name
alego-code-review
description
Use when reviewing a pull request in the alego repo — orients the reviewer to this codebase's standards (AGENTS.md conventions, defensive patterns, ADRs, quality gates) and the review-specific checks that code alone can't show

Reviewing an Alego PR

This skill is guidance, not a complete checklist. Verify and fetch the PR's live base and exact head, then run pnpm --silent run change-scope --base <verified-base-ref> --head <verified-head-ref> before reading the diff and enough surrounding code to understand the design. The report identifies paths and dirty layers but does not replace semantic review. Re-establish the base and rerun it after a retarget or merge. Prioritize correctness, lifecycle, security, and broken required behavior over style; a short review with one substantiated blocker is better than a list of nits.

Sources of truth

Blocking requirements

  1. New prose receives semantic review. Use alego-prose-standard to critically review every added or changed Markdown passage, JSDoc, comment, prompt, description, diagnostic, and visible string. Verify required coverage, accuracy, placement, and editorial quality against the owning code or behavior; automated checks do not establish those properties.
  2. Docs match the code. Config, defaults, errors, wire fields, events, and public behavior update the package README and JSDoc in the same diff. Comments state non-obvious contracts; flag implementation narration, test walkthroughs, review history, and duplicated rationale for deletion or a link to their one home.
  3. Core type docs match. Changes to spine or seam vocabulary update the appropriate subsystems page and any type-equiv entry. Internal types need no catalog entry.
  4. Registrations clean up. Verify each new registry contribution passes the disposal tests required by packages/AGENTS.md.
  5. Invariant companions are semantic. For every touched ./invariant, require an owner event-stream or mutable-data relationship with independent observations at the point where that package can observe it; service or method presence, plugin metadata or effects, fixed pure examples, and probes that call the same operation they claim to verify belong in load, behavior, or unit tests. When no plausible relationship exists, require the package to omit the companion and publication wiring and record its package-specific reason in the README. Reject empty installers and invented checks (repository rule; package invariant rules).
  6. Required evidence exists. Verify the author ran the relevant local checks for the diff and that CI covers the exhaustive matrix; review the semantic gaps neither can detect.
  7. Client UI copy is locale-owned. Reject product text embedded in JSX, templates, helper returns, accessibility attributes, or primitive defaults. Require typed dictionary keys, the standard t seat or explicit localized props, verify-client-ui-i18n, and behavior evidence in each affected locale; preserve user/model/wire data and code tokens verbatim.
Show full SKILL.md (611 more words)Show less

Manual checks

  • Intent and interface contracts: trace both sides of every changed interface. Confirm the implementation matches the PR and any Agent Note, including errors, cancellation, ownership, and disposal.
  • Lifecycle and concurrency: for async setup, callbacks, processes, or teardown, apply defensive-patterns.md. Check races before publication, cancellation during awaits, independent error reporting, callback containment, ownership before reentry, complete detach cleanup, and quiescent disposal.
  • Capability and consumer fit: trace every current consumer, then flag consumer-specific behavior leaking into the interface under the package rules. Flag the inverse too: a new public method on a generic service (registry, session, agent) whose only caller is one internal consumer is an unnecessary API expansion — require a private capability closure handed to that consumer at construction instead.
  • Scope, ownership, and necessity: map each abstraction, state machine, option, defensive copy, and compatibility path to its current contract, production consumer, and owning plugin or service. Challenge unrelated features and speculative generality, then test the PR against the root rules.
  • Configuration and public choices: ask what current-consumer evidence or prior art supports each default, public operation set, format, or imported external concept. Require an explicit choice or deferral when that evidence is absent.
  • Model perspective: inspect the exact prompts, tool schemas, results, and diagnostics the model receives across affected modes. Flag concepts outside the model's task, then verify stable text verbatim and dynamic behavior through snapshots or end-to-end coverage.
  • Enforcement: follow every denial path to the operation that executes it; exercise direct and alternate callers that can bypass schemas, prompts, facades, wrappers, or listener ordering.
  • Borrowed and derived state: determine whether each retained value is borrowed or owned under the package contract, then trace notifications and every cache, prompt, UI echo, replay, and query view to the documented success point and authoritative source.
  • Bounds cover the final operation: locate the owner of the complete emitted or retained result, including wrappers and metadata. Probe tiny and exact limits, oversized single chunks, and multibyte text for byte limits.
  • Real entry path: tests exercise the shipped Loader, bin, worker, ACP bridge, or subprocess where relevant. A hand-mounted plugin does not catch invalid Loader exports; a function plugin must named-export its namespace and have no default export.
  • Test strength: assertions fail on the intended regression and verify external state, logs, events, or disposal rather than restating the implementation or trusting an agent's report. Coverage is necessary but not evidence that the scenario is correct.
  • Test reliability: for a resource-owning, asynchronous, platform-sensitive, or flaky test, apply alego-ci-test-reliability to the real worker/job topology, resource allocation, global-state restoration, synchronization, timeout budget, and quiescent teardown.
  • Invariant lifecycle and negative controls: verify candidate observations are rejected before publication where possible, session-backed checks reconstruct durable history after late loading or HMR, and a deliberately invalid case fails through the real runner for the intended rule.
  • Implemented Agent Notes match shipped reality: when a PR implements a proposed Agent Note, move and rewrite it as present-tense shipped state in the same diff, then verify paths, names, and mechanisms against the implementation.
  • Transcript changes: editor-visible or model-visible changes update snapshots or explain why no snapshot applies. Review expected-output diffs as behavior changes, not formatting noise.
  • Bilingual changes: compare meaning and terminology on both sides; a green pairing hash does not prove translation quality.

Reporting findings

State the defect, location, impact, and evidence. Place a localized defect inline on the tightest relevant diff range; use a PR-level comment for cross-cutting architecture, scope, or review-wide synthesis. Separate blockers from suggestions and omit issues already enforced by a green gate. Use the existing GitHub review thread for replies. When receiving review, verify each claim and fix or rebut it on technical grounds without performative agreement.

© singula-ai, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/alego-code-review of singula-ai/alego.

Open the folder on GitHubat commit a79fe9a

Compare with similar skills

Alego Code Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Alego Code Review compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Alego Code Review this skillsingula-ai/alego109—~2.4kAutomated safety check: PassMIT
Dsh Code ReviewZhou-Yujing114514/deepseek-harness-linux119—~2.1kAutomated safety check: PassMIT
Compound Engineering Code ReviewEveryInc/compound-engineering-plugin25k—~2kAutomated safety check: PassMIT
PR Deep VerificationQwenLM/qwen-code28k—~18kAutomated safety check: PassApache-2.0
Code Reviewimbenrabi/Financial-Modeling-Prep-MCP-Server150—~2.6kAutomated safety check: PassApache-2.0
Pre-PR Reviewyuga-hashimoto/and-code123—~710Automated safety check: PassMIT

Similar skills

  • Dsh Code Review

    Zhou-Yujing114514/deepseek-harness-linux

    A skill your agent uses when reviewing a pull request in the deepseek-harness repo — orients the reviewer to this codebase's standards (AGENTS.md conventions, defensive patterns, ADRs, quality…

    119 GitHub stars~2.1k tokensUpdated 3 days ago
    DevelopmentAuto-check passed
  • Compound Engineering Code Review

    EveryInc/compound-engineering-plugin

    Runs a staged pull request or diff review using selected reviewer personas, checking the change against its stated intent and project standards before producing findings.

    25k GitHub stars~2k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • PR Deep Verification

    QwenLM/qwen-code

    Runs a sandboxed, evidence-based check of one qwen-code pull request, proving its main change against the base build and writing a report with a machine-readable verdict.

    28k GitHub stars~18k tokensUpdated today
    DevelopmentAuto-check passed
  • Code Review

    imbenrabi/Financial-Modeling-Prep-MCP-Server

    Review a PR or working diff against this repo's intent layer (the AGENTS.md hierarchy), toolception pitfalls, and core invariants.

    150 GitHub stars~2.6k tokensUpdated 3 mo ago
    DevelopmentAuto-check passed
  • Pre-PR Review

    yuga-hashimoto/and-code

    Runs local checks and a repo-reviewer subagent over the whole branch diff before a pull request is opened, then records the approval in the PR description.

    123 GitHub stars~710 tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Review GitHub PR

    NVIDIA/OpenShell

    Official

    Review a GitHub pull request by summarizing its diff and key design decisions.

    16k GitHub stars~1.7k tokensUpdated today
    DevelopmentAuto-check passed

More from singula-ai/alego

All 20 skills in this repo
  • Record Browser Gif

    singula-ai/alego

    Record browser or Web UI interaction demos as optimized GIFs using the available browser-control workflow, optional Playwright Videos for higher capture frame rates, and deterministic encoding, then…

    109 GitHub starsUsed in 1 repo~4.1k tokens
    Auto-check: notes
  • A skill your agent uses when adding, auditing, pruning, archiving, restoring, or reviewing Agent Notes in alego; checks every new note for superseded active records, deletes small UI and purely…

    109 GitHub starsUsed in 1 repo~1.7k tokens
    Auto-check passed
  • A skill your agent uses when landing a stack of dependent GitHub PRs (A ← B ← C, where each bases on the one below) onto master, merging a PR whose base is another open PR's branch, or whenever a…

    109 GitHub starsUsed in 1 repo~2k tokens
    Auto-check passed
  • A skill your agent uses when creating, changing, or validating an agent preset or other Cordis composition for this harness, including deciding host versus preset placement and checking that an…

    109 GitHub starsUsed in 1 repo~1.4k tokens
    Auto-check passed
  • Office DOCX

    singula-ai/alego

    Create, read, edit, and check Word documents (.docx), including reports, letters, and formatted tables.

    109 GitHub starsUsed in 1 repo~1.5k tokens
    Auto-check passed
  • Office PPTX

    singula-ai/alego

    Create, read, edit, and check PowerPoint presentations (.pptx), including slide text, tables, images, and charts.

    109 GitHub starsUsed in 1 repo~1.7k tokens
    Auto-check passed

Questions about Alego Code Review

What does Alego Code Review do?

A skill your agent uses when reviewing a pull request in the alego repo — orients the reviewer to this codebase's standards (AGENTS.md conventions, defensive patterns, ADRs, quality gates) and the…. Alego Code Review is an agent skill from singula-ai/alego.

When should I use Alego Code Review?

Alego Code Review fits situations like: reviewing a pull request in the alego repo — orients the reviewer to this codebases standards (AGENTS.md conventions; defensive patterns; quality gates) and the review-specific checks that code alone cant show.

How do I install Alego Code Review in Claude Code?

Run `npx skills add singula-ai/alego --skill alego-code-review -a claude-code`. Or copy the skill folder (.agents/skills/alego-code-review in singula-ai/alego) into .claude/skills/alego-code-review in your project. Claude Code loads it when a task matches its description.

How do I install Alego Code Review in Codex?

Run `npx skills add singula-ai/alego --skill alego-code-review -a codex`. Or copy the skill folder (.agents/skills/alego-code-review in singula-ai/alego) into .agents/skills/alego-code-review in your project. Codex loads it when a task matches its description.

Can I use Alego Code Review in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add singula-ai/alego --skill alego-code-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/alego-code-review, .gemini/skills/alego-code-review, .github/skills/alego-code-review and .opencode/skills/alego-code-review in your project.

What does Alego Code Review need to run?

Going by SKILL.md and its folder, Alego Code Review needs the command-line tools its instructions call (pnpm).

Does Alego Code Review access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Alego Code Review safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Alego Code Review use?

Alego Code Review is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Alego Code Review use?

About 2.4k tokens (SKILL.md is roughly 9.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Alego Code Review?

Skills that share tags, products or a category with Alego Code Review: Dsh Code Review (Zhou-Yujing114514/deepseek-harness-linux, 119 stars), Compound Engineering Code Review (EveryInc/compound-engineering-plugin, 25k stars), PR Deep Verification (QwenLM/qwen-code, 28k stars) and Code Review (imbenrabi/Financial-Modeling-Prep-MCP-Server, 150 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Alego Code Review?

singula-ai (a GitHub organization) maintains it in singula-ai/alego, which has 109 GitHub stars. The repository holds 20 skills in this directory. The repository was last updated on September 28, 2026.

Source: singula-ai/alego on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.