code-review-assistant
Review Pull Requests with AI Guidance
Code reviews can miss security, performance, and maintainability issues. This skill helps Claude, Codex, or Claude Code produce structured review feedback.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "code-review-assistant" from https://skillstore.io/skills/zhangchenlai-dev-code-review-assistant.md and its manifest at https://skillstore.io/api/skills/zhangchenlai-dev-code-review-assistant/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "code-review-assistant". Review a pull request that changes authentication behavior.
Expected outcome:
- High priority: Verify that failed login attempts do not reveal account status.
- Medium priority: Add tests for expired sessions and repeated login failures.
- Question: Should this change update the security documentation?
Using "code-review-assistant". Review a pull request that adds a new data processing path.
Expected outcome:
- Performance concern: Confirm that large inputs are processed without blocking shared resources.
- Best practice: Add clear error handling for malformed input.
- Merge readiness: Request tests that cover normal, empty, and invalid data.
Security Audit
SafeThe static entropy finding is a false positive caused by a short Markdown file with non-English text and symbols. No scripts, network calls, external commands, hidden payloads, or prompt injection attempts were found in SKILL.md.
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/zhangchenlai-dev-code-review-assistant/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/zhangchenlai-dev-code-review-assistant?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/zhangchenlai-dev-code-review-assistant?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/zhangchenlai-dev-code-review-assistant/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/zhangchenlai-dev-code-review-assistant.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA · BibTeX · CFF)
APA citation
Hermes-Sedimentary. (2026). code-review-assistant security audit report (audit version 5) [Author version 1.0.0]. Skillstore. https://skillstore.io/skills/zhangchenlai-dev-code-review-assistant/audits/5BibTeX citation
@techreport{hermes-sedimentary-zhangchenlai-dev-code-review-assistant-2026,
author = {Hermes-Sedimentary},
title = {code-review-assistant security audit report (audit version 5)},
institution = {Skillstore},
year = {2026},
number = {5},
url = {https://skillstore.io/skills/zhangchenlai-dev-code-review-assistant/audits/5},
note = {Author version 1.0.0}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "code-review-assistant security audit report (audit version 5)"
version: "1.0.0"
type: report
authors:
- name: "Hermes-Sedimentary"
date-released: "2026-07-08"
url: "https://skillstore.io/skills/zhangchenlai-dev-code-review-assistant/audits/5"
identifiers:
- type: other
value: "skillstore:zhangchenlai-dev-code-review-assistant:audit:5"
description: "Skillstore immutable audit report identifier"
Compare variants
2 installable variantsEach author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.
Why this variant is first
zhangchenlai-dev-code-review-assistant
2026-09-09
dnyoussef-code-review-assistant
2026-09-09
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Review a Pull Request
Check a proposed change for defects, risks, and maintainability concerns before merge.
Prepare Team Feedback
Create clear review comments that help a teammate improve a change.
Screen Security and Performance
Use an initial AI pass to surface security and performance topics for deeper review.
Try These Prompts
Review this pull request for correctness, clarity, and maintainability. List the most important issues first.
Review this change for security risks. Look for unsafe input handling, secret exposure, access control problems, and risky dependencies.
Review this pull request for performance concerns and best practice gaps. Include specific review comments and suggested fixes.
Perform a senior review of this pull request. Assess correctness, security, performance, test coverage, operational risk, and merge readiness.
Best Practices
- Provide the pull request diff and the intended behavior.
- Ask for prioritized findings with severity and rationale.
- Verify important findings with tests or a human reviewer.
Avoid
- Do not merge changes based only on AI review output.
- Do not omit project context when requesting a review.
- Do not treat broad comments as substitutes for concrete tests.
Frequently Asked Questions
What does this skill help review?
Does it run an automated scanner?
Can it replace a human reviewer?
Which tools can use it?
What context should I provide?
Is it suitable for small teams?
Developer Details
Author
Hermes-SedimentaryLicense
MIT
Author version
v1.0.0
Skillstore revision
r1
Ref
64ca8af0f54a325752f08bd54e52151061ea659a
Maintenance freshness
7/20/2026
Usage
3 downloads · 0 views
File structure
📄 SKILL.md