code-review

レビュー · 59
Registry に収録

Review local git changes before opening a PR or merging. First review all local tracked and untracked files; if none exist, review the current branch against a requested base branch or the Git Town parent branch. Use zero to three review subagents only when risk, diff size, langu

Verified installs0
スター13
バージョン1.0.0
品質58/100 · 有望
信頼59/100 · Do not auto-install
監査73/100 · 要レビュー

供給アセットの概要

リサーチとナレッジ作業

Deep research, source comparison, literature review, RAG, knowledge search, and reports.

カテゴリを見る

シナリオ

リサーチ Agent

I need my agent to research a topic, compare sources, and produce a concise report.

Agent 適合

Claude Code + CLI + Codex

Codex、Claude Code、Cursor、CLI、またはカスタム Agent に対応します。

インストール

準備完了

npx skills add rijkvanzanten/rolling-wave-engineering --skill code-review

メンテナンス

新しい

最終プッシュから 6 日

リスク

要レビュー

Dependency or permission surface needs review

GitHub 品質

13

58/100 品質 · 67/100 信頼

対象タグ

リサーチリサーチ Agentagent-skill

レビュー注記

Dependency or permission surface needs review · Permission surface may require sandboxing

Agent 導入スコアカード

信頼、監査、インストール準備状況を一目で確認

公開リポジトリのメタデータ、OpenAgentSkill のレビューシグナル、保守の鮮度、インストール準備状況を組み合わせたスコアです。候補選定の目安であり、人によるレビューの代替ではありません。

品質

有望
58

有用な候補ですが、採用前に代替と比較してください。

信頼

Do not auto-install
59

Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.

監査

要レビュー
73

インストール準備、安全メタデータ、保守、採用リスクの機械可読なレビュー。

OpenAgentSkill Trust Score v5

インストール前に人のレビュー

Choose a stronger alternative or inspect the source manually before any install attempt.

CodexClaude CodeCursorOpenAgentSkill CLI

スター

GitHub スター 13

リポジトリ活動

スター 13、フォーク 0

メンテナンス

最終プッシュから 6 日

ライセンス

MIT

インストール

npx skills add rijkvanzanten/rolling-wave-engineering --skill code-review

インストール安全性

標準パッケージまたはランタイムのインストールパス

権限範囲

secrets or environment access, shell or command execution

Agent の成果

Agent の成果データはまだありません

ドキュメント

README/SKILL.md の文脈が十分です

リスク概要

本番前にレビュー

  • Low GitHub adoption signal
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, shell or command execution
  • GitHub adoption: 13 GitHub stars

インストール準備状況

インストールパスを利用可能

  • インストールパスを利用できます
  • リポジトリの根拠を利用できます
  • ライセンスが明示されています
  • Agent-Proven の成果エビデンスはまだありません

Agent 可読メタデータ

このスキルの機械可読な判断データ。

このブロックまたは埋め込み JSON を使い、Agent がこのスキルをインストールすべきか、代替を選ぶべきか、先に人のレビューを求めるべきかを判断できます。

JSON を開く

適したタスク

  • リサーチ Agent ワークフロー
  • Claude Code チーム
  • builders willing to evaluate younger projects
  • 検索ソース

適した Agent

CodexClaude CodeCursorOpenAgentSkill CLICLI

インストール判断

コマンド
npx skills add rijkvanzanten/rolling-wave-engineering --skill code-review
ポリシー
ブロック
人によるレビュー
はい

信頼とリスク

信頼
59/100
監査
73/100
リスクレベル
要レビュー

成果ループ

エンドポイント
/api/agent/outcome
イベント ID
resolve
成果
5

インストールコマンド

npx skills add rijkvanzanten/rolling-wave-engineering --skill code-review

使わない場合

  • ベンダー提供の SLA が必要なチーム
  • production agents without a repository review
  • Low GitHub adoption signal
  • 高リスク権限のヒント: Shell or command execution, Secrets or environment access
  • Dependency or permission surface needs review

Agent セーフティ v2

29/100 · 自動インストールを避ける

Blocked for auto-installブロック

This skill should not be selected by an agent without explicit human security review.

Do not auto-install. Inspect the source, dependencies, and permission surface first.

API で解決

Shell またはコマンド実行

Skill メタデータに端末、CLI、Shell、サブプロセス、またはコマンド実行のワークフローが含まれます。

ネットワークアクセス

Skill はリモートページ、API、リポジトリ、外部サービスにアクセスする可能性があります。

ファイルシステムアクセス

Skill はプロジェクトファイル、ドキュメント、生成物、ローカルワークスペース状態を読み書きする可能性があります。

Secrets or environment access

Skill metadata references credentials, tokens, environment variables, or secret-bearing workflows.

  • 高リスク権限のヒント: Shell or command execution, Secrets or environment access
  • Dependency or permission surface needs review

インストール先

Agent ワークフローにこのスキルをインストール

公開インストールエンドポイントからコマンド、安全チェックリスト、対象プロンプト、正規リンクを取得します。

skill install

OpenAgentSkill CLI

Resolve policy, run the source installer safely, and report a verified install receipt.

$ npx --yes https://github.com/Leon-Drq/openagentskill/releases/download/cli-v0.2.1/openagentskill-0.2.1.tgz install rijkvanzanten-code-review

Agent 解決プラン

インストール前に Agent に適合性を検証させます。

Resolve API は第一候補、代替、安全ポリシー、監査メモ、インストール先、Agent がそのまま使えるプロンプトを返します。

テキストプランを開く

Agent が確認すべきこと

  • Resolve API でタスク適合と代替を確認。
  • 監査・信頼スコアと安全ポリシーの警告を確認。
  • Codex、Claude Code、Cursor、CLI のインストール先互換性を確認。

プロンプトをコピー

Task: Use code-review in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20code-review%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/rijkvanzanten-code-review/install
Install command: npx skills add rijkvanzanten/rolling-wave-engineering --skill code-review
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.

Agent 引き継ぎ

別のディレクトリではなく、インストール経路を Agent に渡します。

公開インストールエンドポイントからコマンド、安全チェックリスト、対象プロンプト、正規リンクを取得します。

Install API を開く

Agent プロンプト

Use code-review for this task. Review https://www.openagentskill.com/api/skills/rijkvanzanten-code-review/install, then install with: npx skills add rijkvanzanten/rolling-wave-engineering --skill code-review

Registry メタデータ

自動スキル選択用の Agent 可読プロファイル。

Registry API 経由で判断、信頼、監査、ユースケース、インストールのシグナルを提供し、UI をスクレイピングせずに Agent が順位付けできます。

Manifest を開く

Agent 適合

60/100

リサーチ Agent

プラットフォーム

Claude Code

監査レポート

要レビュー · 73/100

インストール準備、安全メタデータ、保守、採用リスクの機械可読なレビュー。

監査レポートを見る評価レポートを見る

Agent 判断パネル

Fallback candidate for Research agents

まずこのスキルでプロトタイプを作り、代替候補を用意してください。

60
準備状況
プロトタイプ
段階

スタック内の役割

代替候補

主な適合

リサーチ Agent

信頼ラベル

まずプロトタイプ

インストールパス

コマンド準備済み

使う場面

  • リサーチ Agent ワークフロー
  • Claude Code チーム
  • builders willing to evaluate younger projects

根拠

  • 最近のリポジトリ活動
  • インストールコマンドまたは GitHub リポジトリが利用可能
  • 品質プロファイル 58/100
  • OpenAgentSkill エンゲージメント 8 件

先にレビュー

  • Low GitHub adoption signal

実装パス

  1. 1サンドボックスの Agent にインストールし、リサーチ Agent タスクを一度最初から最後まで実行します。
  2. 2Compare output quality, latency, and failure behavior against at least one alternative.
  3. 3Promote it into production only after reviewing repository permissions, license, and maintenance signals.

信頼プロファイル

Do not auto-install

Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.

59
OpenAgentSkill Trust Score

GitHub 採用度

修正

GitHub スター 13

スター/フォーク活動

修正

スター 13、フォーク 0; 現在のメタデータでは Issue 活動を利用できません

最近のメンテナンス

合格

最終プッシュから 6 日

ライセンスの明確さ

合格

MIT

良いシグナル

  • AI レビュー承認済み
  • インストールパスを利用できます
  • リポジトリの根拠を利用できます
  • 最近保守されたリポジトリ
  • インストールコマンドに明確な高リスクパターンはありません
  • 成果ループは準備済みですが、最初の実行が必要です

インストール前にレビュー

  • Low GitHub adoption signal
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, shell or command execution
  • GitHub adoption: 13 GitHub stars
  • Stars/forks activity: 13 stars, 0 forks; issue activity unavailable in current metadata
  • Dependency/runtime risk: command execution surface, credential or environment access
  • Permission surface: secrets or environment access, shell or command execution
  • 実際の Agent 成果レポートはまだありません
  • 無人インストールの前に人によるレビューが必要です

推奨アクション

Choose a stronger alternative or inspect the source manually before any install attempt.

品質プロファイル

有望 Agent ワークフロー向けの候補

有用な候補ですが、採用前に代替と比較してください。

58
GitHub スター
13
鮮度
6 日前
インストール準備完了
はい
ライセンス
MIT
インストール前にレビュー: Low GitHub adoption signal

ワークフロー適合

このスキルを使うシナリオ

ワークフロー適合

完全なワークフローに追加

代替候補

インストール前に比較

このタスクに適する可能性のある類似スキル。

すべて比較

概要

--- name: code-review description: Review local git changes before opening a PR or merging. First review all local tracked and untracked files; if none exist, review the current branch against a requested base branch or the Git Town parent branch. Use zero to three review subagents only when risk, diff size, language specificity, or uncertainty justifies the token cost, then report high-confidence bugs, regressions, risky assumptions, and missing tests. Use when the user asks for code review, local review, branch sanity check, pre-PR review, or review of work-in-progress changes. ---

# Code Review

## Overview

Review local changes as a reviewer, not as an implementer. Prefer the smallest current review surface: local worktree changes first, then branch changes against a base branch only when the worktree has no tracked or untracked changes. When no base branch is named, use the Git Town parent branch before falling back to the default branch. Local worktree review includes staged tracked changes, unstaged tracked changes, and untracked files. Start with a local review pass, then use zero to three language/risk-specific subagents only when they are likely to improve review quality enough to justify the token cost. Do not run tests or linters unless the user explicitly changes the scope.

Invoking this skill is permission to use review subagents when useful; it is not a requirement to spawn them. A local-only review is valid for small, obvious, low-risk, or already well-tested diffs.

## Scope

Determine review depth from the request:

- Default to lightweight review. - Switch to in-depth review when the user explicitly asks for deeper review.

Determine review range in this order:

1. Check local tracked and untracked changes:

```bash git diff --cached -U10 git diff -U10 git diff --cached --name-only git diff --name-only git ls-files --others --exclude-standard ```

2. If any staged tracked, unstaged tracked, or untracked files exist, review all of them as `local changes`. - Include staged tracked changes from `git diff --cached -U10`. - Include unstaged tracked changes from `git diff -U10`. - Include untracked file contents by reading the files directly or producing a pseudo-diff against `/dev/null`. - Do not exclude untracked files just because they are not staged. 3. If there are no local tracked or untracked changes, review the current branch against the base branch named by the user. 4. If the user did not name a base branch, resolve the current branch's parent with Git Town:

```bash CURRENT_BRANCH=$(git rev-parse --abbrev-ref HEAD) BASE_BRANCH=$(git-town config get-parent "$CURRENT_BRANCH" 2>/dev/null || true) ```

5. If Git Town does not return a parent branch, fall back to `main`, then `origin/main`.

For branch review, compute:

```bash CURRENT_BRANCH=$(git rev-parse --abbrev-ref HEAD) BASE_BRANCH="${USER_BASE_BRANCH:-$(git-town config get-parent "$CURRENT_BRANCH" 2>/dev/null || true)}" if [ -z "$BASE_BRANCH" ]; then BASE_BRANCH=main fi if ! git rev-parse --verify "$BASE_BRANCH" >/dev/null 2>&1 && git rev-parse --verify origin/main >/dev/null 2>&1; then BASE_BRANCH=origin/main fi BASE=$(git merge-base HEAD "$BASE_BRANCH") git diff -U10 "$BASE" git diff --name-only "$BASE" ```

If the named base, Git Town parent, and fallback default branches cannot be resolved, stop and ask for a valid base branch.

## Workflow

1. Check for staged tracked, unstaged tracked, and untracked files. 2. If any local changes exist, build the review packet from the staged diff, unstaged diff, and untracked file contents. Do not include branch commits in this mode. 3. If no local tracked or untracked changes exist, resolve the base branch from the user's request, or use `git-town config get-parent "$(git rev-parse --abbrev-ref HEAD)"` when no base is requested, then build the branch review diff from the merge base. 4. In local changes mode, list untracked files with `git ls-files --others --exclude-standard` and include their contents in the review packet. 5. Build a compact review scope: - review mode: `local changes` or `branch` - base branch and merge base, when in branch mode - inferred intent in one sentence - risk focus in one sentence - changed file list - untracked file list and confirmation that untracked file contents are included when in local changes mode 6. Do a local review pass first. Read surrounding files only where needed to understand behavior, contracts, and tests. 7. Decide whether subagents are worth it. Use zero to three reviewers based on the rubric below. 8. If using subagents, send each a narrow packet with only the files, diff excerpts, contract context, and risk lens it needs. Launch multiple selected reviewers in parallel, collect outputs, and close each subagent once its result is captured. 9. Validate or disprove returned findings against source before reporting. 10. Produce findings with high confidence only.

If subagents are unavailable, continue locally. Mention that only if it materially affects confidence or the user explicitly asked for subagents. For in-depth review, prefer more local source context before adding reviewers by default.

## Sub-Agent Selection

Use 0-3 reviewers total. Do not spawn reviewers merely because a language matches. Pick the smallest reviewer set that addresses real risk:

- `0` reviewers: docs-only changes, tiny diffs, mechanical renames, obvious follow-up fixes, generated updates, or low-risk code where the local pass gives high confidence. - `1` reviewer: normal non-trivial code change with one dominant risk or one language/framework-specific concern. - `2` reviewers: meaningful behavior change with two independent risk areas, such as Rust API shape plus tests, Vue reactivity plus accessibility, or public API contract plus security. - `3` reviewers: large/cross-module diffs, auth/security/data mutation, external APIs, migrations, concurrency, or explicit deep/adversarial review.

Prefer a language-specific reviewer when language/framework details are the dominant risk. Prefer generic risk reviewers when correctness, security, contracts, reliability, or testing are more important than language mechanics.

Use these plugin agents when available from the `rolling-wave-engineering` plugin:

- `correctness-reviewer`: default for behavior-changing code, logic, state, and regression risk. - `testing-reviewer`: default when behavior changes, tests changed, or coverage is uncertain. - `maintainability-reviewer`: default for non-trivial code changes or existing-file complexity. - `typescript-reviewer`: when files include `.ts`, `.tsx`, or TypeScript blocks in Vue SFCs. - `vue-reviewer`: when files include `.vue`, Vue composables, Pinia stores, Vue Router, or Nuxt files. - `rust-reviewer`: when files include `.rs`, `Cargo.toml`, `Cargo.lock`, `build.rs`, Rust FFI/bindgen code, unsafe Rust, async Rust, or concurrency-heavy Rust. - `security-reviewer`: when changes touch auth, permissions, public endpoints, secrets, user input, rendering untrusted content, or URL handling. - `api-contract-reviewer`: when changes touch API routes, request/response types, serializers, exported types, or public interfaces. - `reliability-reviewer`: when changes touch retries, timeouts, async handlers, jobs, cleanup, lifecycle, or error handling. - `adversarial-reviewer`: when the diff is large or touches high-risk areas such as auth, data mutation, external APIs, or cross-cutting state.

Use these document/spec reviewers only when reviewing rolling-wave docs, specs, plans, or slice artifacts rather than code:

- `coherence-reviewer` - `scope-guardian-reviewer` - `feasibility-reviewer` - `spec-flow-analyzer`

Fallback split when plugin agents are unavailable:

- Correctness and regressions - Contracts and data flow - Coverage and operational risk

Each sub-agent should be told to report only high-confidence findings in its assigned lens and to skip style-only comments or speculative refactors. Keep prompts narrow; do not ask every reviewer to review the whole diff.

Require each sub-agent to return a compact structured shape:

```json { "reviewer": "agent-name", "findings": [ { "severity": "P1|P2|P3", "file": "path", "line": 42, "title": "short issue", "why": "why this matters", "confidence": "high|medium", "pre_existing": false } ], "testing_gaps": [], "residual_risks": [] } ```

## Review Focus

Prioritize:

- Behavioral regressions - Incorrect edge-case handling - Broken assumptions across call sites or data flow - Missing validation, authorization, or error handling - State, caching, concurrency, or lifecycle bugs - Schema, API, and backward-compatibility risks - Missing or insufficient tests where the change meaningfully alters behavior

Distribute those priorities through selected specialists instead of asking every agent to cover everything.

Deprioritize:

- Pure style nits - Speculative refactors - Comments about formatting unless they hide a real problem

Do not invent issues to fill space. If no actionable findings are present, say so plainly and mention any residual uncertainty or testing gaps.

## Output

Present findings first, ordered by severity. For each finding, include:

- Severity - File reference and line reference when available - Short explanation of the issue and why it matters

After findings, include:

- Open questions or assumptions, if any - Brief change summary only if useful

Apply these filters before reporting:

- Report only issues you would defend with high confidence. - Medium-confidence findings may be reported only if two reviewers independently flag the same issue or it is a possible P0/P1 class defect. - Skip low-signal nits unless the user asked for exhaustive review. - Prefer a smaller set of sharp findings over a broad, noisy list. - Treat findings as duplicates when they cite the same file, nearby lines within about 3 lines, and the same underlying failure. Merge them, keep the higher severity, and note both reviewers if useful. - Re-check any borderline finding against the source before surfacing it. - Before reporting, verify cited lines, calibrate severity, remove linter/formatter-only issues, and ensure every finding has a concrete failure mode. - Put pre-existing issues in a separate `Pre-existing` section and do not count them against the reviewed change.

State the review mode explicitly: `local changes` or `branch changes against <base>`. If untracked files exist in local changes mode, include them in a `Coverage / Scope` note and state that their contents were reviewed. Include reviewer usage briefly: `Reviewers: 0 local-only`, `Reviewers: 1 <name>`, etc. End with `Verdict: Ready`, `Verdict: Ready with fixes`, or `Verdict: Not ready`.

## Constraints

- Perform code review only. - Do not modify files unless the user changes the task. - Do not run tests or linters. - Do not post to GitHub or any external system.

技術詳細

バージョン
1.0.0
ライセンス
MIT
最終更新
2026年8月20日
公開日
2026年8月20日

判断の要約

代替候補

60
準備完了
プロトタイプ
段階

最近のリポジトリ活動

監査

インストールレビュー

インストールと採用のレビュー

73
要レビュー
セキュリティ
74/100
メンテナンス
100/100
インストール
92/100
完全な監査を開く評価レポートを見る

Agent 実証エビデンス

Agent 実証エビデンス

Resolve、レビュー、インストール、限定実行後の成果レポート。

0
実証済み
Needs first agent run自動インストール: 先にレビュー最新: 不明
成功率
直近の失敗
成果
0
出力品質
失敗
0
非該当
0
インストール数
0
リスクによりブロック
0
設定が必要
0
本番
0

Agent の実行結果はまだありません。最初の実行では /api/agent/outcome を通じて成功、設定要件、リスクによるブロック、失敗、非該当を報告できます。

インストール

Agent ワークフローに追加

無料・オープンソース. 本番 Agent にインストールする前にレポートを確認してください。

成長ループ

共有キット

X

code-review 用のシナリオベース草案です。X へ手動投稿できます。

キュレーターノート
code-review: Review local git changes before opening a PR or merging. First review all local tracked and u...

13 stars

https://www.openagentskill.com/skills/rijkvanzanten-code-review?ref=x
X 下書きを開く
任意:インストールコマンド付きの返信
Listing + install path for code-review:
https://www.openagentskill.com/skills/rijkvanzanten-code-review?ref=x

Install: npx skills add rijkvanzanten/rolling-wave-engineering --skill code-review
返信の下書きを開く

掲載元

Registry により登録

申請可能

この掲載は公開ソースから登録されており、メンテナー申請が承認されるまで公式として表示されません。

作成者
rijkvanzanten
インデックス作成者
OpenAgentSkill コミュニティインデックス

帰属は公開リポジトリまたは作成者プロフィールにリンクされています。作成者は掲載を申請して所有権シグナルを更新できます。

このスキルを申請

所有者の申請

このスキル掲載を申請

この Registry により登録 掲載は rijkvanzanten に帰属していますが、まだ公式として表示されていません。申請すると、確認済み所有者シグナルが追加され、今後の公開、インストール、監査更新の信頼性が高まります。

クリエイター被リンクキット

README にエビデンスバッジを追加

開発者がリポジトリを評価する場所で、正規掲載、現在の信頼・監査シグナル、実際の Agent-Proven エビデンスを表示します。

[![Listed on OpenAgentSkill](https://www.openagentskill.com/api/badge/rijkvanzanten-code-review?metric=listed&label=Listed)](https://www.openagentskill.com/skills/rijkvanzanten-code-review)
[![OpenAgentSkill Trust](https://www.openagentskill.com/api/badge/rijkvanzanten-code-review?metric=trust&label=Trust)](https://www.openagentskill.com/skills/rijkvanzanten-code-review)
[![OpenAgentSkill Audit](https://www.openagentskill.com/api/badge/rijkvanzanten-code-review?metric=audit&label=Audit)](https://www.openagentskill.com/skills/rijkvanzanten-code-review/audit)
[![Agent Proven](https://www.openagentskill.com/api/badge/rijkvanzanten-code-review?metric=proven&label=Agent%20Proven)](https://www.openagentskill.com/skills/rijkvanzanten-code-review)

作者

R

rijkvanzanten

@rijkvanzanten

プラットフォーム適合

健全性シグナル

GitHub スター
13
品質スコア
32/100
最終 GitHub プッシュ
2026年8月17日
フレームワークのヒント
不明
OpenAgentSkill 閲覧数
7
インストールコピー数
0
外部クリック
0

コミュニティシグナル

このスキルが Agent ワークフローに役立つかを共有してください。集約されたフィードバックがランキングを改善します。

信頼と安全性

Do not auto-install

59
  • GitHub 採用度GitHub スター 13修正
  • スター/フォーク活動スター 13、フォーク 0; 現在のメタデータでは Issue 活動を利用できません修正
  • 最近のメンテナンス最終プッシュから 6 日合格
  • ライセンスの明確さMIT合格
  • README/SKILL.md の完全性メタデータには十分な利用・ワークフロー文脈があります合格
  • 依存関係/ランタイムのリスクcommand execution surface, credential or environment access確認