Cross-Language Coding Standards
zereight/gitlab-mcp
Shared reference for naming, function size, complexity and error handling rules that reviewer agents apply across TypeScript, Python, Go, Rust, Java, C# and Swift.
Runs a structured critique of code, architecture or APIs to surface what familiarity hides, such as panics, security holes and design debt.
$ npx skills add yologdev/yoyo-evolve --skill blindspot -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install yologdev/yoyo-evolve blindspot --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/yologdev/yoyo-evolve.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/blindspot .claude/skills/blindspot && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "blindspot" agent skill from https://github.com/yologdev/yoyo-evolve/tree/main/skills/blindspot into .claude/skills/blindspot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "blindspot", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/yologdev/yoyo-evolve/tree/main/skills/blindspotType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add yologdev/yoyo-evolve --skill blindspot -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install yologdev/yoyo-evolve blindspot --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yologdev/yoyo-evolve.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/blindspot .agents/skills/blindspot && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "blindspot" agent skill from https://github.com/yologdev/yoyo-evolve/tree/main/skills/blindspot into .agents/skills/blindspot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "blindspot", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add yologdev/yoyo-evolve --skill blindspot -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install yologdev/yoyo-evolve blindspot --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yologdev/yoyo-evolve.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/blindspot .cursor/skills/blindspot && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "blindspot" agent skill from https://github.com/yologdev/yoyo-evolve/tree/main/skills/blindspot into .cursor/skills/blindspot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "blindspot", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/yologdev/yoyo-evolve.git --path skills/blindspot--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add yologdev/yoyo-evolve --skill blindspot -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install yologdev/yoyo-evolve blindspot --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yologdev/yoyo-evolve.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/blindspot .gemini/skills/blindspot && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "blindspot" agent skill from https://github.com/yologdev/yoyo-evolve/tree/main/skills/blindspot into .gemini/skills/blindspot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "blindspot", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install yologdev/yoyo-evolve blindspotInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add yologdev/yoyo-evolve --skill blindspot -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/yologdev/yoyo-evolve.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/blindspot .github/skills/blindspot && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "blindspot" agent skill from https://github.com/yologdev/yoyo-evolve/tree/main/skills/blindspot into .github/skills/blindspot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "blindspot", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add yologdev/yoyo-evolve --skill blindspot -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install yologdev/yoyo-evolve blindspot --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yologdev/yoyo-evolve.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/blindspot .opencode/skills/blindspot && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "blindspot" agent skill from https://github.com/yologdev/yoyo-evolve/tree/main/skills/blindspot into .opencode/skills/blindspot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "blindspot", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
blindspotRuns a structured critique of code, architecture or APIs to surface what familiarity hides, such as panics, security holes and design debt.
Blindspot asks the agent to critique a target the way an outsider would: not style or syntax, but design decisions that cause trouble later. The target can be a file, a directory, a module or concept such as error handling in the REPL, or the agent's own codebase. It is suggested before changing unfamiliar code, as a last-mile audit once a feature seems done, and for searching for sibling problems when an issue reports a class of bug.
Findings are grouped by lenses including error handling gaps (unwrap and expect on fallible operations, swallowed errors, panic paths reachable from user input), security blind spots (hardcoded secrets, unsanitized input passed to shell commands, path traversal, unsafe blocks without comments, vulnerable dependencies) and architecture debt (god objects, circular dependencies, leaky abstractions, dead code, tight coupling). A roast level sets how much is reported: gentle gives only critical items and warnings, standard adds smells and is the default, and brutal includes nitpicks. Style and formatting issues belong to linters and formatters instead.
12 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 637e940. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md (its code samples are bash).
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Blindspot Code Critique loads about 2.2k tokens when it runs. Until then it costs about 36 tokens; SKILL.md has 930 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from yologdev/yoyo-evolve at commit 637e940, republished under its MIT licence (© yologdev). 930 words, ~2,198 tokens.
.claude/skills/blindspot/SKILL.md (or your agent's skills folder).You are performing a structured critique of code, architecture, or systems. Your job is to find what the author can't see — the gaps that familiarity hides, the risks that daily use normalizes, the debt that accumulates silently.
This is not a linter. Linters catch syntax and style. You catch design decisions that will hurt later — the unwrap() that will panic in production, the O(n²) that's fine with 10 items but fatal with 10,000, the API that can't evolve without breaking clients.
/skill run blindspot with a targetexplore-codebase first)What to analyze. One of:
src/tools.rssrc/format/self — yoyo's own codebase (defaults to src/)Controls the threshold for reporting:
Examine the target through these lenses:
unwrap() / expect() on fallible operations in non-test codeOk(()) but swallow errors silently? without .context() or .map_err())../)String when &str would sufficeCargo.lock entries or version pinningDetermine what you're analyzing and how large it is.
# For a file
wc -l <target_file>
# For a directory
find <target_dir> -name '*.rs' | xargs wc -l | sort -rn | head -20
# For "self"
find src/ -name '*.rs' | xargs wc -l | sort -rn | head -20For sub-agent dispatch, store the file contents in SharedState and dispatch focused questions:
For each of the 7 dimensions, scan the target with appropriate tools:
# Error handling: find unwrap/expect in non-test code
grep -rn '\.unwrap()' <target> | grep -v '#\[cfg(test)\]' | grep -v 'tests/'
grep -rn '\.expect(' <target> | grep -v '#\[cfg(test)\]' | grep -v 'tests/'
# Security: find potential secrets
grep -rn 'password\|secret\|token\|api_key' <target> --include='*.rs'
# Architecture: find large files (potential god objects)
find <target> -name '*.rs' -exec wc -l {} \; | sort -rn | head -10
# Scalability: find nested loops
grep -rn 'for.*{' <target> --include='*.rs' -A 5 | grep -B 1 'for.*{'
# Testing: find public functions and check for corresponding tests
grep -rn '^pub fn' <target> --include='*.rs'These are starting points. Use judgment — not every grep hit is a real finding. Read context around hits before reporting.
Assign each finding a severity:
Format output as:
🔍 BLINDSPOT REPORT — [target]
Roast level: [gentle|standard|brutal]
Analyzed: [N files, M lines]
## Critical (fix now)
- **[category]** `file:line` — [description of the issue and why it matters]
## Warning (fix soon)
- **[category]** `file:line` — [description]
## Smell (consider)
- **[category]** `file:line` — [description]
## Acknowledged (known, accepted)
- [items explicitly documented as accepted trade-offs in the codebase]
---
Summary: N critical, M warnings, K smellsBefore including a finding, ask:
The goal is signal, not volume. Ten precise findings beat fifty grep hits.
When the target exceeds 30KB:
shared_state.set("blindspot.group-1", <file contents>)"You are analyzing [files] for [dimension]. Report findings as JSON:
{findings: [{file, line, severity, category, description}]}"Hard depth cap: 3. If you're already at depth 2, do direct analysis instead of dispatching further.
src/tools.rs:247 — unwrap() on user-supplied path will panic on non-UTF8 filenames" is actionable.© yologdev, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in skills/blindspot of yologdev/yoyo-evolve.
Open the folder on GitHubat commit 637e940
Blindspot Code Critique next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Blindspot Code Critique this skillyologdev/yoyo-evolve | 1.9k | — | ~2.2k | Automated safety check: Pass | MIT | |
| Cross-Language Coding Standardszereight/gitlab-mcp | 2k | 1 repos | ~1.4k | Automated safety check: Pass | MIT | |
| Code Qualitypiomin/claude-ai-spring-boot | 1.3k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | |
| Code Quality Reviewrsmdt/the-startup | 536 | — | ~525 | Automated safety check: Pass | MIT | |
| Aif Best Practicesunxed/f4 | 240 | — | ~2.3k | Automated safety check: Pass | BSD-3-Clause | |
| Mole Bug Patternstw93/Mole | 69k | — | ~2k | Automated safety check: Pass | GPL-3.0 |
zereight/gitlab-mcp
Shared reference for naming, function size, complexity and error handling rules that reviewer agents apply across TypeScript, Python, Go, Rust, Java, C# and Swift.
piomin/claude-ai-spring-boot
Comprehensive code review for Java - clean code principles, API contracts, null safety, exception handling, and performance.
rsmdt/the-startup
Unified code review skill for correctness, design, readability, security, performance, testability, accessibility, and error-handling conventions.
unxed/f4
Code quality guidelines and best practices for writing clean, maintainable code.
tw93/Mole
A catalog of recurring bug shapes in the Mole Mac cleaner, used to review safety-sensitive diffs for deletion safety, unbounded commands, shell traps and weak tests.
woocommerce/woocommerce
Reviews WooCommerce code changes against the project's standards, flagging backend PHP architecture, naming, documentation, data integrity and testing violations.
yologdev/yoyo-evolve
Diagnoses a recurring failure such as a stuck task, repeated CI error or frequent reverts by sending sub-agents through the logs and returning one root-cause diagnosis.
yologdev/yoyo-evolve
Sets a warm, plain-spoken voice for an agent's journal entries and GitHub issue replies, with rules on openings, jargon, honesty and endings.
yologdev/yoyo-evolve
Builds a structural map of a large or unfamiliar codebase by dispatching sub-agents to summarize regions, keeping the main context small.
yologdev/yoyo-evolve
Decides when a Rust crate is due for a release and gates publishing to crates.io, using a short git-based cadence check run at the start of a session.
yologdev/yoyo-evolve
Sets ground rules for a coding agent that edits its own Rust source: read the code and journal first, write tests first, commit small changes and check compilation after each file.
yologdev/yoyo-evolve
Analyze your own source code and capabilities to find bugs, gaps, and improvement opportunities
Categories
Runs a structured critique of code, architecture or APIs to surface what familiarity hides, such as panics, security holes and design debt. Blindspot asks the agent to critique a target the way an outsider would: not style or syntax, but design decisions that cause trouble later. The target can be a file, a directory, a module or concept such as error handling in the REPL, or the agent's own codebase.
Blindspot Code Critique fits situations like: reviewing unfamiliar code before changing it; auditing a feature after it seems done; searching for sibling problems when an issue reports a class of bug; checking error handling, security and architecture debt in a module.
Run `npx skills add yologdev/yoyo-evolve --skill blindspot -a claude-code`. Or copy the skill folder (skills/blindspot in yologdev/yoyo-evolve) into .claude/skills/blindspot in your project. Claude Code loads it when a task matches its description.
Run `npx skills add yologdev/yoyo-evolve --skill blindspot -a codex`. Or copy the skill folder (skills/blindspot in yologdev/yoyo-evolve) into .agents/skills/blindspot in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add yologdev/yoyo-evolve --skill blindspot -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/blindspot, .gemini/skills/blindspot, .github/skills/blindspot and .opencode/skills/blindspot in your project.
SKILL.md names no scripts, command-line tools or credentials: Blindspot Code Critique is instructions for the agent only.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Blindspot Code Critique is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.2k tokens (SKILL.md is roughly 8.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Blindspot Code Critique: Cross-Language Coding Standards (zereight/gitlab-mcp, 2k stars), Code Quality (piomin/claude-ai-spring-boot, 1.3k stars), Code Quality Review (rsmdt/the-startup, 536 stars) and Aif Best Practices (unxed/f4, 240 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
yologdev (a GitHub user) maintains it in yologdev/yoyo-evolve, which has 1,888 GitHub stars. The repository holds 15 skills in this directory. The repository was last updated on October 7, 2026.
Source: yologdev/yoyo-evolve on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.