Review code quality, security, and maintainability before committing.

MITAuto-check passedDevelopment

Install Review

skills CLI
$ npx skills add Thank-you-Linus/Linus-Dashboard --skill review -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install Thank-you-Linus/Linus-Dashboard review --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/Thank-you-Linus/Linus-Dashboard.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/review .claude/skills/review && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
review
GitHub stars
211
Token cost
~1.5k tokens
SKILL.md length
409 words
Files
1
Skills in repo
7
Repo updated
First seen
Licence
MIT

At a glance

Review code quality, security, and maintainability before committing.

  • Works in 12 steps: Code Quality → Documentation → Error Handling → …
  • Reviewing code changes
  • SKILL.md covers Your Role, Review Checklist, Review Process and Common Issues to Watch For, plus 5 more sections
  • Calls npm and git

What it does

Review is an agent skill from Thank-you-Linus/Linus-Dashboard. Review code quality, security, and maintainability before committing. Use when reviewing code changes, checking code quality, performing security review, or validating changes before commit.

Its SKILL.md is about 1.5k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Code quality, Code review and Security review. It works with Home Assistant. The repository describes itself as: Elevate your smart home experience with a modern, responsive dashboard built on Home Assistant. Effortlessly manage your devices, areas and floors with an intuitive interface…. The licence is MIT.

When your agent uses it

  • Reviewing code changes
  • Checking code quality
  • Performing security review
  • Validating changes before commit

Example prompts

  • “/review”

Requirements

  • Python 3

Workflow steps

12 steps, taken from the step headings in SKILL.md.

  1. Code Quality
  2. Documentation
  3. Error Handling
  4. Async/Await
  5. Home Assistant Patterns
  6. Security
  7. Performance
  8. Testing
  9. Get Changed Files
  10. Analyze Changes
  11. Check Build and Tests
  12. Provide Feedback

What it can do on your machine

Read from SKILL.md and the folder at commit da3ca3c. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npm
    • git

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use npm and git, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Review loads about 1.5k tokens when it runs. Until then it costs about 49 tokens; SKILL.md has 409 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~49
When it runs · the whole SKILL.md, loaded when a task matches
~1.5k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from Thank-you-Linus/Linus-Dashboard at commit da3ca3c, republished under its MIT licence (© Thank-you-Linus). 409 words, ~1,486 tokens.

Download SKILL.mdSave it as .claude/skills/review/SKILL.md (or your agent's skills folder).
name
review
description
Review code quality, security, and maintainability before committing. Use when reviewing code changes, checking code quality, performing security review, or validating changes before commit.

Code Review Before Commit

Review code quality, security, and maintainability before committing changes to Linus Dashboard.


Your Role

Senior code reviewer ensuring quality, security, and maintainability.

Context Required:

  1. .aidriven/memorybank.md
  2. .aidriven/rules/ - All rule files
  3. Changed files (git diff)

Review Checklist

1. Code Quality

Readability:

  • Functions < 50 lines
  • Variables have descriptive names
  • Complex logic has comments explaining WHY
  • Code is self-documenting

Structure:

  • Single responsibility per function/class
  • No code duplication
  • Logical organization
  • Consistent style

Type Safety:

  • All functions have type hints
  • No Any without justification
  • Return types specified
  • Proper use of Optional/Union
2. Documentation
  • Module docstrings present
  • Public functions/classes documented
  • Docstrings follow Google style
  • Complex algorithms explained
  • No outdated comments
3. Error Handling
  • Specific exceptions (no bare except)
  • Errors logged with context
  • User-friendly error messages
  • Resources cleaned up (try/finally)
  • No silent failures
4. Async/Await
  • No blocking I/O in async functions
  • All async functions awaited
  • asyncio.gather() for parallel ops
  • Proper timeout handling
  • CancelledError handled
5. Home Assistant Patterns
  • Integration lifecycle correct (setup/unload)
  • Data stored in hass.data[DOMAIN][entry_id]
  • Cleanup registered with entry.async_on_unload()
  • Entities have unique_id
  • Services registered properly
  • Coordinator pattern used correctly
6. Security
  • No hardcoded credentials
  • User input validated
  • SQL injection prevented
  • XSS vulnerabilities addressed
  • API keys stored securely
  • No sensitive data in logs
7. Performance
  • No N+1 queries
  • Expensive operations cached
  • Database queries optimized
  • No memory leaks
  • Async for I/O operations
8. Testing
  • Changes manually tested
  • Edge cases considered
  • Error paths tested
  • No regressions

Review Process

Step 1: Get Changed Files
bash
# See what changed
git status

# View diff
git diff

# Check specific files
git diff path/to/file.py
Show full SKILL.md (169 more words)Show less
Step 2: Analyze Changes

For each changed file:

  1. Read the diff
  2. Understand the purpose
  3. Check against standards
  4. Look for issues
  5. Note improvements
Step 3: Check Build and Tests
bash
# TypeScript
npm run build
npm run type-check
npm run lint:check

# Run smoke tests
npm run test:smoke
Step 4: Provide Feedback

Format:

File: path/to/file.py

✅ Good:
- Clear function names
- Proper type hints
- Good error handling

⚠️ Issues:
1. Line 42: Missing docstring
2. Line 78: Blocking I/O in async function
3. Line 103: Exception too broad

💡 Suggestions:
- Consider caching this result
- Extract this logic to separate function

Common Issues to Watch For

Python Issues

Async/Await:

python
# ❌ Bad - blocking I/O
async def fetch_data():
    response = requests.get(url)  # Blocks event loop

# ✅ Good - async I/O
async def fetch_data():
    async with aiohttp.ClientSession() as session:
        async with session.get(url) as response:
            return await response.json()

Error Handling:

python
# ❌ Bad - bare except
try:
    do_something()
except:
    pass

# ✅ Good - specific exception
try:
    do_something()
except ValueError as err:
    _LOGGER.error("Invalid value: %s", err)
    raise

Type Hints:

python
# ❌ Bad - no types
def process_data(data):
    return data.get("value")

# ✅ Good - with types
def process_data(data: dict[str, Any]) -> str | None:
    """Process data and return value."""
    return data.get("value")
TypeScript Issues

Type Safety:

typescript
// ❌ Bad - any type
function process(data: any): any {
    return data.value;
}

// ✅ Good - proper types
function process(data: DataType): string | undefined {
    return data.value;
}

Null Safety:

typescript
// ❌ Bad - no null check
const value = entity.state.toUpperCase();

// ✅ Good - null check
const value = entity.state?.toUpperCase() ?? "unknown";

Security Review Checklist

  • No secrets in code
  • API keys from config
  • User input sanitized
  • SQL queries parameterized
  • HTML output escaped
  • HTTPS for external calls
  • Authentication checked
  • Authorization verified

Performance Review Checklist

  • No synchronous I/O in async code
  • Database queries optimized
  • Caching used appropriately
  • No unnecessary API calls
  • Efficient algorithms
  • Memory usage reasonable

Final Review

Before approving:

Code Quality:

  • Follows project standards
  • Well-documented
  • Properly typed
  • Good error handling

Functionality:

  • Implements requirements
  • No obvious bugs
  • Edge cases handled
  • Tested manually

Maintainability:

  • Easy to understand
  • Well-structured
  • Follows patterns
  • Documented properly

Security:

  • No vulnerabilities
  • Input validated
  • Secrets protected

Review Outcome

APPROVE - Code meets all standards REQUEST CHANGES - Issues must be fixed COMMENT - Suggestions for improvement


Quick Commands

bash
# Check what changed
git diff

# Check specific file
git diff path/to/file

# See commit history
git log --oneline -10

# Run quality checks
npm run lint:check
npm run type-check
npm run build

# Run tests
npm run test:smoke

© Thank-you-Linus, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .claude/skills/review of Thank-you-Linus/Linus-Dashboard.

Open the folder on GitHubat commit da3ca3c

Compare with similar skills

Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Review compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Review this skillThank-you-Linus/Linus-Dashboard211—~1.5kAutomated safety check: PassMIT
Code Review Specialistluongnv89/claude-howto42k—~764Automated safety check: PassMIT
Codebase Review SwarmZaxbyHub/opencode-swarm496—~2.8kAutomated safety check: PassMIT
Code Review with Beads Tasksmaslennikov-ig/claude-code-orchestrator-kit260—~2kAutomated safety check: PassCustom licence
Code Review Specialist in Vietnameseluongnv89/claude-howto42k—~474Automated safety check: PassMIT
Code Reviewerforyourhealth111-pixel/Vibe-Skills3.6k—~1.4kAutomated safety check: NotesApache-2.0

Similar skills

  • Code Review Specialist

    luongnv89/claude-howto

    Reviews code for security, performance, quality and maintainability, using a checklist, a finding template and two metrics scripts.

    42k GitHub stars~764 tokensUpdated today
    DevelopmentAuto-check passed
  • Codebase Review Swarm

    ZaxbyHub/opencode-swarm

    Runs an evidence-gated, quote-grounded audit of a codebase for security, QA, accessibility, performance and more, and writes a verified report without changing source files.

    496 GitHub stars~2.8k tokensUpdated today
    DevelopmentAuto-check passed
  • Code Review with Beads Tasks

    maslennikov-ig/claude-code-orchestrator-kit

    Reviews staged changes, a branch, a PR or a path for bugs, security gaps and performance issues, then writes an evidence-based report and creates Beads tasks.

    260 GitHub stars~2k tokensUpdated 7 mo ago
    DevelopmentAuto-check passed
  • Reviews code for security, performance, quality and maintainability, then reports findings in a fixed template with a rating, severity levels and suggested fixes.

    42k GitHub stars~474 tokensUpdated today
    DevelopmentAuto-check passed
  • Code Reviewer

    foryourhealth111-pixel/Vibe-Skills

    Default code-quality route for broad code review, PR review, maintainability, correctness, and regression-risk checks.

    3.6k GitHub stars~1.4k tokensUpdated 1 mo ago
    DevelopmentAuto-check: notes
  • Code Review Skill

    awesome-skills/code-review-skill

    Provides comprehensive code review guidance for React 19, Vue 3, Angular 17+, Svelte 5, Rust, TypeScript, Java, Java 8, PHP, Ruby, Rails, Python, Django, FastAPI, Go, C/.NET, Kotlin, Swift, Dart…

    2.1k GitHub stars~2.8k tokensUpdated 1 mo ago
    DevelopmentAuto-check: notes

More from Thank-you-Linus/Linus-Dashboard

  • Debug

    Thank-you-Linus/Linus-Dashboard

    Debug errors, bugs, and unexpected behavior systematically in Home Assistant integration.

    211 GitHub stars~1.3k tokensUpdated yesterday
    Auto-check passed
  • Implement

    Thank-you-Linus/Linus-Dashboard

    Implement approved plans with precision and quality for Linus Dashboard Home Assistant integration.

    211 GitHub stars~1.5k tokensUpdated yesterday
    Auto-check passed
  • Release Beta

    Thank-you-Linus/Linus-Dashboard

    Create a beta pre-release for community testing with intelligent version detection.

    211 GitHub stars~2k tokensUpdated yesterday
    Auto-check passed
  • Release Check

    Thank-you-Linus/Linus-Dashboard

    Check if project is ready for release with comprehensive pre-release validation.

    211 GitHub stars~637 tokensUpdated yesterday
    Auto-check passed
  • Release Rollback

    Thank-you-Linus/Linus-Dashboard

    Rollback a failed release by deleting tags and reverting version changes.

    211 GitHub stars~789 tokensUpdated yesterday
    Auto-check passed
  • Release Stable

    Thank-you-Linus/Linus-Dashboard

    Create a stable production release with intelligent detection (finalize beta or direct release).

    211 GitHub stars~2.4k tokensUpdated yesterday
    Auto-check passed

Works with

Questions about Review

What does Review do?

Review code quality, security, and maintainability before committing. Review is an agent skill from Thank-you-Linus/Linus-Dashboard. Review code quality, security, and maintainability before committing.

When should I use Review?

Review fits situations like: reviewing code changes; checking code quality; performing security review; validating changes before commit.

How do I install Review in Claude Code?

Run `npx skills add Thank-you-Linus/Linus-Dashboard --skill review -a claude-code`. Or copy the skill folder (.claude/skills/review in Thank-you-Linus/Linus-Dashboard) into .claude/skills/review in your project. Claude Code loads it when a task matches its description.

How do I install Review in Codex?

Run `npx skills add Thank-you-Linus/Linus-Dashboard --skill review -a codex`. Or copy the skill folder (.claude/skills/review in Thank-you-Linus/Linus-Dashboard) into .agents/skills/review in your project. Codex loads it when a task matches its description.

Can I use Review in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Thank-you-Linus/Linus-Dashboard --skill review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/review, .gemini/skills/review, .github/skills/review and .opencode/skills/review in your project.

What does Review need to run?

Going by SKILL.md and its folder, Review needs the command-line tools its instructions call (npm and git). Our summary lists: Python 3.

Does Review access the network?

SKILL.md contains no URLs. Its commands use npm and git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Review safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Review use?

Review is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Review use?

About 1.5k tokens (SKILL.md is roughly 5.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Review?

Skills that share tags, products or a category with Review: Code Review Specialist (luongnv89/claude-howto, 42k stars), Codebase Review Swarm (ZaxbyHub/opencode-swarm, 496 stars), Code Review with Beads Tasks (maslennikov-ig/claude-code-orchestrator-kit, 260 stars) and Code Review Specialist in Vietnamese (luongnv89/claude-howto, 42k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Review?

Thank-you-Linus (a GitHub organization) maintains it in Thank-you-Linus/Linus-Dashboard, which has 211 GitHub stars. The repository holds 7 skills in this directory. The repository was last updated on October 10, 2026.

Source: Thank-you-Linus/Linus-Dashboard on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.