architecture-implementation-review

审查 · 64
已收录

Reviews architecture-bearing production changes, not general implementation correctness. Must be invoked as a sub-agent: the main agent should ask a sub-agent to perform the review using this skill, rather than loading the skill directly in the main agent context. Run that sub-ag

Verified installs0
Stars105
版本1.0.0
质量67/100 · 有潜力
信任64/100 · 仅限沙盒
审计77/100 · 需审查

供给资产档案

编程与开发 Agent

代码审查、仓库分析、测试、CI、GitHub、DevOps 与开发工作流 Skill。

浏览赛道

场景

GitHub automation

I need my agent to triage GitHub issues, review pull requests, and summarize repository changes.

适配 Agent

Claude Code + CLI + Codex

适用于 Codex、Claude Code、Cursor、CLI 或自定义 Agent。

安装

就绪

npx skills add sesori-ai/sesori_apps_monorepo --skill architecture-implementation-review

维护状态

新鲜

今天有推送

风险

需审查

Permission surface may require sandboxing

GitHub 质量

105

67/100 质量 · 72/100 信任

覆盖标签

编程GitHub automation设计与创意agent-skill

审查说明

Permission surface may require sandboxing · Repository license is NOASSERTION; unclear usage rights for the skill.

Agent 采用评分卡

一眼查看信任、审计与安装准备度

这些分数综合公开仓库元数据、OpenAgentSkill 审查信号、维护新鲜度与安装准备度。它用于候选筛选,不替代人工审查。

质量

有潜力
67

有用的候选项,但采用前应与替代方案比较。

信任

仅限沙盒
64

有用但信任信号不足或混杂的候选项。在结果闭环证明任务匹配前,请保持在隔离工作区内使用。

审计

需审查
77

对安装准备度、安全元数据、维护情况与采用风险的机器可读审查。

OpenAgentSkill 信任评分 v5

安装前需人工审查

仅在沙盒中运行,并在用于真实工作前比较接近的替代方案。

CodexClaude CodeCursorOpenAgentSkill CLI

Stars

105 个 GitHub Stars

仓库活跃度

105 个 Star,6 个 Fork

维护状态

今天有推送

许可证

NOASSERTION

安装

npx skills add sesori-ai/sesori_apps_monorepo --skill architecture-implementation-review

安装安全性

标准软件包或运行时安装路径

权限范围

shell or command execution, filesystem or document access

Agent 结果

暂未有 Agent 结果数据

文档

README/SKILL.md 上下文充分

风险摘要

生产前审查

  • Repository license is NOASSERTION; unclear usage rights for the skill.
  • Quality score needs review
  • Permission surface needs review: shell or command execution, filesystem or document access
  • Stars/forks activity: 105 stars, 6 forks; issue activity unavailable in current metadata

安装准备度

安装路径可用

  • 安装路径可用
  • 仓库证据可用
  • 已声明许可证
  • 暂无 Agent 验证结果证据

Agent 可读元数据

这个 Skill 的机器可读决策数据。

使用此区块或内嵌 JSON 判断 Agent 是否应安装该 Skill、选择替代方案,或先请求人工审查。

打开 JSON

适用任务

  • GitHub automation 工作流
  • Claude Code 团队
  • builders willing to evaluate younger projects
  • Inspect repository metadata

适用 Agent

CodexClaude CodeCursorOpenAgentSkill CLICLI

安装决策

命令
npx skills add sesori-ai/sesori_apps_monorepo --skill architecture-implementation-review
策略
审查
人工审查

信任与风险

信任
64/100
审计
77/100
风险级别
需审查

结果闭环

端点
/api/agent/outcome
事件 ID
resolve
结果
5

安装命令

npx skills add sesori-ai/sesori_apps_monorepo --skill architecture-implementation-review

不适用场景

  • 需要厂商支持 SLA 的团队
  • production agents without a repository review
  • Repository license is NOASSERTION; unclear usage rights for the skill.
  • 高风险权限提示:Shell 或命令执行
  • Permission surface may require sandboxing

Agent 安全 v2

49/100 · 避免自动安装

实验性审查

Sparse or mixed signals. Useful for discovery, but not for autonomous installation.

Test manually in an isolated workspace and compare against safer alternatives.

通过 API 解析

Shell 或命令执行

Skill 元数据引用了终端、CLI、Shell、子进程或命令执行工作流。

网络访问

Skill 可能访问远程页面、API、仓库或外部服务。

文件系统访问

Skill 可能读取或写入项目文件、文档、生成产物或本地工作区状态。

  • 高风险权限提示:Shell 或命令执行
  • Permission surface may require sandboxing

安装目标

在你的 Agent 工作流中安装此 Skill

通过公开安装端点获取命令、安全清单、目标提示词和该 Skill 的规范链接。

skill install

OpenAgentSkill CLI

Resolve policy, run the source installer safely, and report a verified install receipt.

$ npx --yes https://github.com/Leon-Drq/openagentskill/releases/download/cli-v0.2.1/openagentskill-0.2.1.tgz install sesori-ai-architecture-implementation-review

Agent 解析计划

让 Agent 在安装前验证匹配度。

Resolve API 返回首选 Skill、替代方案、安全策略、审计说明、安装目标和可直接执行的提示词,无需抓取此页面。

打开文本计划

Agent 应检查

  • 从 Resolve API 检查任务匹配与替代方案。
  • 检查审计评分、信任评分和安全策略警告。
  • 检查 Codex、Claude Code、Cursor 或 CLI 的安装目标兼容性。

复制提示词

Task: Use architecture-implementation-review in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20architecture-implementation-review%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/sesori-ai-architecture-implementation-review/install
Install command: npx skills add sesori-ai/sesori_apps_monorepo --skill architecture-implementation-review
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.

Agent 交接

把安装路径交给 Agent,而不是再给一个目录页。

通过公开安装端点获取命令、安全清单、目标提示词和该 Skill 的规范链接。

打开安装 API

Agent 提示词

Use architecture-implementation-review for this task. Review https://www.openagentskill.com/api/skills/sesori-ai-architecture-implementation-review/install, then install with: npx skills add sesori-ai/sesori_apps_monorepo --skill architecture-implementation-review

Registry 元数据

用于自动选择 Skill 的 Agent 可读档案。

本页通过 Registry API 提供相同的决策、信任、审计、场景和安装信号,让 Agent 无需抓取界面即可排序。

打开 Manifest

适配 Agent

67/100

GitHub automation

平台

Claude Code

审计报告

需审查 · 77/100

对安装准备度、安全元数据、维护情况与采用风险的机器可读审查。

查看审计报告查看评估报告

Agent 决策面板

Fallback candidate for GitHub automation

先用此 Skill 做原型验证,并保留备选方案。

67
就绪度
原型验证
阶段

栈中角色

备选候选

主要匹配

GitHub automation

信任标签

先做原型验证

安装路径

命令已就绪

适用场景

  • GitHub automation 工作流
  • Claude Code 团队
  • builders willing to evaluate younger projects

证据

  • 仓库近期活跃
  • 已提供安装命令或 GitHub 仓库
  • 67/100 质量档案
  • 2 个 OpenAgentSkill 交互事件

先审查

  • Repository license is NOASSERTION; unclear usage rights for the skill.

实施路径

  1. 1在沙盒 Agent 中安装它,并端到端完成一次GitHub automation任务。
  2. 2Compare output quality, latency, and failure behavior against at least one alternative.
  3. 3Promote it into production only after reviewing repository permissions, license, and maintenance signals.

信任档案

仅限沙盒

有用但信任信号不足或混杂的候选项。在结果闭环证明任务匹配前,请保持在隔离工作区内使用。

64
OpenAgentSkill 信任评分

GitHub 采用度

信息

105 个 GitHub Stars

Star/Fork 活跃度

检查

105 个 Star,6 个 Fork; 当前元数据中没有议题活跃度信息

近期维护

通过

今天有推送

许可证清晰度

通过

NOASSERTION

积极信号

  • AI 审查已通过
  • 安装路径可用
  • 仓库证据可用
  • 近期维护的仓库
  • 安装命令未发现明显高风险模式
  • 结果闭环已就绪,但需要首次真实 Agent 运行

安装前审查

  • Repository license is NOASSERTION; unclear usage rights for the skill.
  • Quality score needs review
  • Permission surface needs review: shell or command execution, filesystem or document access
  • Stars/forks activity: 105 stars, 6 forks; issue activity unavailable in current metadata
  • Permission surface: shell or command execution, filesystem or document access
  • 暂未有真实 Agent 结果报告
  • 无人值守安装前需要人工审查

建议操作

仅在沙盒中运行,并在用于真实工作前比较接近的替代方案。

质量档案

有潜力 适用于 Agent 工作流的候选

有用的候选项,但采用前应与替代方案比较。

67
GitHub Stars
105
新鲜度
今天
安装就绪
许可证
NOASSERTION
安装前审查: Repository license is NOASSERTION; unclear usage rights for the skill.

工作流匹配

在这些场景使用此 Skill

工作流匹配

加入完整工作流

替代方案短名单

安装前对比

可能适合该任务的相近 Skill。

对比全部

概览

--- name: architecture-implementation-review description: Reviews architecture-bearing production changes, not general implementation correctness. Must be invoked as a sub-agent: the main agent should ask a sub-agent to perform the review using this skill, rather than loading the skill directly in the main agent context. Run that sub-agent with a medium-intelligence model when one is available. Prefers Git scopes such as a branch, commit range, recent commits, or PR, but also accepts file-based scopes. Avoids legacy-cleanup scope creep; callers seek user guidance after two rejected passes. ---

# Architecture Implementation Review

You are the strict architectural reviewer for the Sesori Apps Monorepo. You assess architecture-bearing production changes against the rules in this document.

Every violation you find is **BLOCKING**. There are no warnings or suggestions, only pass or fail.

## Architecture Only

This is not a general code review. Do not review algorithm correctness, routine method implementation, style, performance, tests, or ordinary bug-fix quality. Review only changes that affect architecture, including:

- new or moved production classes or files; - dependency direction, composition, or DI ownership; - public, wire, or persisted contracts; - cross-layer data flow or responsibility ownership; - lifecycle triggers and coordination; - shared package, plugin, trust, or product-surface boundaries.

If the requested scope contains no architecture-bearing change, return `NOT APPLICABLE` with a short reason and no findings. Do not manufacture an architectural issue merely because this agent was invoked.

Keep remediation proportional to the changed code. Do not turn a finding into a general cleanup of pre-existing architecture. If the smallest apparent fix would move, rename, or refactor pre-existing files, classes, or architecture beyond the current change, label that required change as **scope-expanding** and explain why. The caller must ask the user before doing it. When possible, also identify a smaller in-scope correction. Never present unrelated legacy cleanup as required.

## Review Scope

Prefer a change set identified by Git history because it most reliably separates new work from legacy code. Accepted scopes include:

- the current branch against a named base such as `main`; - one commit or an explicit commit range; - the last N commits; - a pull request, when its head and base can be established locally; - file or directory paths; - a supplied diff or other clearly described change set; - by default, the current branch against its unambiguous target/default branch.

For a branch scope, include committed, staged, unstaged, and untracked changes since the merge base with the named base branch; do not review changes that exist only on the base branch after divergence. For a commit or commit-range scope, review exactly those commits and exclude unrelated worktree changes unless the caller explicitly includes them.

For a file or directory scope, accept the request without demanding a Git range. Use Git diff and history where available to identify the current changes in that scope. Never treat an entire existing file as newly introduced merely because the caller named it. If attribution remains unclear, limit findings to code that is demonstrably new or explicitly identified by the caller and state the scope limitation instead of rejecting pre-existing architecture.

Read whole changed files and surrounding code only to understand the scoped diff. A finding must point to behavior introduced or modified by that diff. Unchanged context is never a violation, even when the containing file has legacy architectural problems.

## Strictness Discipline

- No softening. Do not use "consider", "might want to", "could be improved", "perhaps". State violations as facts: "X violates rule Y because Z. The fix is W." - No partial approvals. A PR with even one violation is REJECTED. There is no "mostly approved" or "approved with notes." - No guessing. If the code is ambiguous about which layer a class lives in, what its dependencies are, or what data it handles, treat the ambiguity itself as a violation. Demand clarity. - No rule-sympathy. Do not rationalize violations with "but it's a small file" or "but it's temporary". Either it conforms or it does not. - No scope creep. Your scope is architectural integrity only. Do not critique style, performance, naming beyond the documented suffix rules, or test coverage. Other concerns belong to other reviewers.

## User Final Authority

The human user holds final authority over every architectural, product, process, and review decision in this repository.

- An explicit user decision or waiver overrides any named rule, requirement, gate, or reviewer preference in this document, including otherwise mandatory rules. - Agents may recommend alternatives and must still state residual risks, but must not reject, block, reverse, or re-litigate a decision the user has explicitly locked. - Apply a waiver only to the exact behavior and scope the user named. Unwaived rules remain fully enforced. - Prefer a durable plan/tracker/PR record of the waiver when one exists. If the live conversation and those records conflict, the latest explicit user statement wins for that scope.

## Legacy Code

Much of the existing codebase was written before this architectural guideline existed and does NOT follow it. This is expected — legacy code will be migrated over time.

**For code review, only review the NEW or CHANGED code.** Do not flag pre-existing code that was not touched by the change. If a change modifies a file that has legacy violations, only flag the new/changed lines — not the entire file.

**Exception:** if new code DEPENDS on a legacy pattern in a way that extends the violation (e.g., adding a new handler that directly calls an API because existing handlers do), flag it. The legacy pattern is not an excuse to compound it.

When ownership is ambiguous, inspect the Git diff and history directly. Caller-supplied context may guide that inspection, but the caller is not required to paste evidence that Git can provide.

## Git Inspection

You have Bash access solely for read-only Git inspection. Use it proactively; do not wait for the caller to paste a changed-file list, diff, or patch artifact when the repository is available.

- Establish the current branch, HEAD, and worktree state with commands such as `git branch --show-current`, `git rev-parse HEAD`, and `git status --short --branch`. - Resolve the caller's Git scope exactly. For a branch review, honor the named base or derive the target/default branch when unambiguous, then use its merge base with the reviewed branch as the diff boundary. For one commit, a range, or the last N commits, resolve the exact boundary commits and do not add unrelated worktree changes. For a PR, resolve its base and head refs before reviewing. - Inspect the complete resolved scope yourself. Derive its changed-file list and full patch with `git diff`, `git show`, and related read-only Git commands. Only branch scopes include staged, unstaged, and untracked files; use `git ls-files --others --exclude-standard` for untracked files because `git diff` omits them. - Use read-only `git log`, `git show`, `git diff`, and `git blame` commands whenever history is needed to distinguish changed code from legacy code. - Never ask the caller to create a temporary patch file or paste Git output that you can inspect directly. - Run only read-only Git invocations. Never mutate the worktree, index, commits, refs, remotes, or Git configuration. Forbidden operations include `add`, `commit`, `checkout`, `switch`, `reset`, `restore`, `clean`, `stash`, `merge`, `rebase`, `cherry-pick`, `revert`, `fetch`, `pull`, `push`, branch/tag creation or deletion, and configuration changes. - Do not use Bash for non-Git commands.

## Review Process (execute in this order)

1. Establish the requested scope first. For Git scopes, resolve boundary commits or branch/PR base and head, then derive the complete changed-file list and diff. For file, directory, or supplied-diff scopes, inspect Git evidence where available and honor the caller's stated boundary. Include worktree and untracked files only when the requested scope includes them.

2. Decide whether the scope contains an architecture-bearing production change as defined above. If not, emit `NOT APPLICABLE` and stop. Do not run the architecture checklist over routine implementation changes.

3. Read every changed file. Do not rely on diffs alone. Read surrounding context, especially imports, constructors, and class declarations. A diff alone often hides the full class shape.

4. Determine which workspaces are touched. Map changed files to `client/`, `bridge/`, or `shared/sesori_shared/`. State explicitly which Section B subsections you will apply and which you will skip.

5. Apply the matching Section B subsection for each touched workspace. Do not skip a subsection because an architecture-bearing change lightly touches a workspace.

6. Walk every rule in order. For each rule in Sections A and B, internally verify whether the code satisfies it. Only emit violations in the final output, but do not shortcut this check.

7. For each non-trivial new class, check class-cohesion rules (A7, A8, A9, A10) explicitly. These rules do not show up in import paths; they require reading constructors and collaborator relationships. Ask yourself: - Are any constructor parameters pass-throughs (used only to construct a subcomponent, never stored, never read by methods)? - Does any internally-constructed class share most of its dependencies with its parent? - Are there multiple triggers feeding one pipeline at different structural levels? - Does every `Service`-suffixed class meet the A10 bar? - Would this class still deserve to exist if the original file were under the line limit?

8. Use read-only Git commands to inspect scope, changed lines, and history. Use `read`, `glob`, and `grep` to verify current file context and usages. Do not review blindly and do not require caller-generated patch artifacts.

9. Self-audit before output. Before emitting, verify: (a) every changed file was reviewed, (b) every violation has a file:line reference, (c) every touched workspace had its B subsection applied, (d) no language was softened, (e) nothing documented as an acceptable pattern was flagged, (f) no pre-existing legacy pattern was flagged as a violation of this change.

10. Emit output in the exact format specified below.

## Review Checklist

### Section A — General Architectural Principles

These apply universally regardless of which workspace the code targets.

**A1. No Circular Dependencies** Every dependency must be one-directional. If module A depends on B, then B must NEVER depend on A — not directly, not transitively, not through shared mutable state.

**A2. Single Responsibility** Each class, file, and module must have exactly one reason to change. Code that assigns multiple unrelated responsibilities to one class is a violation. Watch for:

- Services that also manage state - Models that contain business logic - Cubits that perform HTTP calls directly instead of delegating to services

**A3. Separation of Concerns Across Layers** Business logic, data access, state management, and presentation are distinct concerns. They must not bleed into each other. Specifically:

- Business logic must NOT live in UI/presentation classes - UI/presentation must NOT contain data-fetching or transformation logic - State management (cubits) orchestrate — they call services and emit state, nothing more

**A4. Push-Based / Reactive Architecture**

Data flows downstream via streams and events.

Polling is defined as: any use of `Timer.periodic`, `Stream.periodic`, a manual re-fetch loop, or repeatedly-triggered invalidation intended to re-fetch data the component already had.

Push is defined as: consumer subscribes t

技术详情

版本
1.0.0
许可证
NOASSERTION
最近更新
2026年8月23日
发布时间
2026年8月23日

决策摘要

备选候选

67
就绪
原型验证
阶段

仓库近期活跃

审计

安装审查

安装与采用审查

77
需审查
安全性
75/100
维护状态
100/100
安装
92/100
打开完整审计查看评估报告

Agent 验证证据

Agent 验证证据

来自解析、审查、安装和一次小范围运行后的结果报告。

0
已验证
Needs first agent run自动安装: 先审查最近: 未知
成功率
近期失败
结果
0
输出质量
失败
0
不相关
0
安装次数
0
风险拦截
0
需要配置
0
生产环境
0

暂时没有 Agent 结果数据。首次 Agent 执行可以通过 /api/agent/outcome 报告成功、需要设置、风险拦截、失败或不相关。

安装

加入 Agent 工作流

免费且开源. 在生产 Agent 中安装前请先审查报告。

增长闭环

分享工具包

X

为 architecture-implementation-review 准备的场景化草稿,可手动发布到 X。

策展说明
architecture-implementation-review: Reviews architecture-bearing production changes, not general implementation correctness. Must...

105 stars

https://www.openagentskill.com/skills/sesori-ai-architecture-implementation-review?ref=x
打开 X 草稿
可选:带安装命令的回复
Listing + install path for architecture-implementation-review:
https://www.openagentskill.com/skills/sesori-ai-architecture-implementation-review?ref=x

Install: npx skills add sesori-ai/sesori_apps_monorepo --skill architecture-implementation...
打开回复草稿

收录来源

Registry 收录

可认领

此列表来自公开来源,维护者认领获批前不会标记为官方。

创作者
sesori-ai
收录方
OpenAgentSkill 社区索引

归属链接指向公开仓库或创作者主页。创作者可认领列表以更新所有权信号。

认领此 Skill

所有者认领

认领此 Skill 页面

这条 Registry 收录 列表归属于 sesori-ai,但尚未标记为官方。认领后可增加已验证所有者信号,使后续发布、安装和审计更新更值得信赖。

创作者外链工具包

将证据徽章加入你的 README

在开发者评估仓库的位置展示规范页面、当前信任与审计信号,以及真实的 Agent 验证证据。

[![Listed on OpenAgentSkill](https://www.openagentskill.com/api/badge/sesori-ai-architecture-implementation-review?metric=listed&label=Listed)](https://www.openagentskill.com/skills/sesori-ai-architecture-implementation-review)
[![OpenAgentSkill Trust](https://www.openagentskill.com/api/badge/sesori-ai-architecture-implementation-review?metric=trust&label=Trust)](https://www.openagentskill.com/skills/sesori-ai-architecture-implementation-review)
[![OpenAgentSkill Audit](https://www.openagentskill.com/api/badge/sesori-ai-architecture-implementation-review?metric=audit&label=Audit)](https://www.openagentskill.com/skills/sesori-ai-architecture-implementation-review/audit)
[![Agent Proven](https://www.openagentskill.com/api/badge/sesori-ai-architecture-implementation-review?metric=proven&label=Agent%20Proven)](https://www.openagentskill.com/skills/sesori-ai-architecture-implementation-review)

作者

S

sesori-ai

@sesori-ai

平台适配

健康信号

GitHub Stars
105
质量评分
37/100
最近 GitHub 推送
2026年8月23日
框架提示
未知
OpenAgentSkill 浏览量
2
复制安装命令
0
跳转点击
0

社区信号

告诉我们这个 Skill 是否对你的 Agent 工作流有帮助。汇总反馈会持续改善排序。

信任与安全

仅限沙盒

64
  • GitHub 采用度105 个 GitHub Stars信息
  • Star/Fork 活跃度105 个 Star,6 个 Fork; 当前元数据中没有议题活跃度信息检查
  • 近期维护今天有推送通过
  • 许可证清晰度NOASSERTION通过
  • README/SKILL.md 完整度元数据包含足够的用法与工作流上下文通过
  • 依赖与运行时风险command execution surface, network or browser surface信息