code-review
Code review the current proposed code change
Install / Use
npx skills add specstoryai/getspecstoryInstalls into whichever agent you are using.
Claude Commands
Claude Code slash commands
Quality Score
Category
Development & EngineeringSupported Platforms
Our assessment of code-review
code-review scores 70/100 on our quality scale, 3401st of 4,355 Development & Engineering skills we index.
Its Claude Commands is 4.0 KB long, lightly structured (2 headings) with 1 code example: a solid amount of guidance for an agent.
With 1,342 GitHub stars, it is one of the more widely adopted skills in the catalogue.
Maintenance, license and trust
- The repository was last updated 3 days ago, so code-review is actively maintained.
- It is released under the Apache-2.0 license, a permissive license that allows use, modification and commercial use with attribution.
- Its trust signals score 100/100, with no cautions. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.
Safety scan
No issues foundOur scan of the whole file found no instruction hijacking, hidden characters, credential access, data exfiltration or destructive commands.
Automated pattern scan on 2026-10-01. It catches known dangerous patterns, not every risk — read a skill before letting an agent act on it.
code-review compared with similar skills
All 4 of these similar skills score higher than code-review; compare them before choosing.
| Skill | Score | Stars | Updated | Format |
|---|---|---|---|---|
| code-review (this skill)by specstoryai | 70 | 1.3k | 3d ago | Claude Commands |
| claude-memby thedotmack | 100 | 95.1k | today | CLAUDE.md |
| Agent-Reachby Panniantong | 100 | 87.2k | 15d ago | CLAUDE.md |
| Understand-Anythingby Egonex-AI | 100 | 84.9k | 3d ago | CLAUDE.md |
| headroomby headroomlabs-ai | 100 | 74.2k | today | CLAUDE.md |
Frequently asked questions
- How do I install code-review?
- Run
npx skills add specstoryai/getspecstory. The install tabs above show the steps for each supported agent. - Which AI agents does code-review work with?
- It is written for Claude Code and Cursor, as a Claude Commands file. Other agents that read the same format can often use it too.
- Is code-review safe to use?
- Our scan of the whole file found no instruction hijacking, hidden characters, credential access, data exfiltration or destructive commands. It is Apache-2.0-licensed and scores 100/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
- Is code-review still maintained?
- The repository was last updated 3 days ago, so code-review is actively maintained.
Skill content
View source on GitHuballowed-tools: Bash(git status:), Bash(git diff:), Bash(grep:), Bash(awk:), Bash(sed:*) description: Code review the current proposed code change
Context
- Current git status: !
git status - Current git diff: !
git diff - Current untracked files: !
git ls-files --others --exclude-standard
Your task
Examine the current proposed code changes and new files using git commands.
Ignore any changes to:
- .specstory/history files
- .claude/ files
- .cursor/ files
- ./specstory binary
- CLAUDE.md
- AGENT.md
Please code review this change.
Review line by line and explain to me the purpose of each change. Use file names and line numbers to reference the changes, but also sequentially number every observation so we can easily reference them.
In the line by line review, pay attention to:
- clarity of variable names
- Go lang idiomatic code
- code clarity and simplicity, readable over clever
- "why" comments, not "how" comments
- missing comments
- missing log output
- missing analytics tracking
- single function exit point where possible (immediate guard clauses are OK)
- goroutines tracked by a
sync.WaitGroupusewg.Go(func() { ... }), neverwg.Add(1)paired with adefer wg.Done()— flag anyAdd/Donepair, especially one where theDonesits in a different function from itsAdd - verify the code has to exist, is actually needed, and is in use
- verify the code is DRY, and doesn't replicate the same or similar code
- for test cases, ensure a data-driven approach is being used rather than lots of repetitive test code
Format your line by line review like this example:
cmd/remote.go
Line 12 (removed): Removed unused import of pkg/service package
- (1) ✅ Good - Cleaning up unused imports is proper Go hygiene
Lines 157-162 (modified): Changed from loading config directly to using RPC client
// Old: config, err := service.LoadConfig(dir)
// New: rpcClient, err := client.NewRPCClient(dir)
- (2) ✅ Good architectural decision - Now operates via daemon RPC instead of direct file access
- (3) ✅ Proper defer cleanup pattern for RPC client
- (4) ✅ Variable name rpcClient is clear and follows conventions
Lines 164-189 (new): Added remote status check before disabling
- (5) ✅ Good UX - Detects current connection state to provide better feedback
- (6) ✅ Type assertions use the two-value form (ok pattern) for safety
- (7) ⚠️ Nested if statements become deeply indented (4 levels) - could be refactored for readability
- (8) ✅ Variable names wasConnected, oldURL are descriptive
- (9) ❓ Missing error handling - if remote.status call fails, we continue anyway. Should we?
---
pkg/remote/sync.go
Lines 260-265 (modified): Success messages now come after RPC call
- (10) ✅ Comment "config is now saved" is helpful context
- (11) ⚠️ Misleading comment placement - comment says "config is now saved" but we can't be certain from this code's perspective (that happens in the daemon)
In addition to the line by line review, suggest the 2-5 most important improvements for this code review.
In addition to the most important improvements, let's also think about if any of these changes could benefit from new, updated or expanded unit tests. We focus our unit tests on complicated logic, and combinatorial scenarios, not on coverage or completeness for completeness sake. Better to not have a unit test than to have tests that are simplistic or tautological. We also don't test 3rd party library or language features, only our own code.
For any new test cases that were added, confirm the tests are:
- Not trivial - They test real logic in our code and aren't just testing Go lang or 3rd party libraries
- Not tautological - They would catch real bugs
- Well-designed - Each assertion accurately verifies specific logic and complexity in the code being tested
- Reliable - They won't be flaky, don't rely on external state, and don't catch false positives.
- Not repetitive - They test different scenarios, and use data-driven testing rather than repetitive test code.
Related Skills
claude-mem
95.1kPersistent Context Across Sessions for Every Agent – Captures everything your agent does during sessions, compresses it with AI, and injects relevant context back into future sessions. Works with Claude Code, OpenClaw, Codex, Gemini, Hermes, Copilot, OpenCode + More
Agent-Reach
87.2kGive your AI agent eyes to see the entire internet. Read & search Twitter, Reddit, YouTube, GitHub, Bilibili, XiaoHongShu — one CLI, zero API fees.
Understand-Anything
84.9kGraphs that teach > graphs that impress. Turn any code into an interactive knowledge graph you can explore, search, and ask questions about. Works with Claude Code, Codex, Cursor, Copilot, Gemini CLI, and more.
headroom
74.2kCompress tool outputs, logs, files, and RAG chunks before they reach the LLM. 20% fewer tokens for coding agents, 60-95% fewer tokens for JSON, same answers. Library, proxy, MCP server.
Languages
Trust signals
From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.
