Review Harness Engineering diffs, PRs, commits, and readiness claims for introduced risk. Use when correctness, validation proof, security posture, traceability, closure safety, or review-thread resolution must be assessed before merge or handoff.
72
88%
Does it follow best practices?
Run evals on this skill
Adds up to 20 points to the overall score
View guide
Low
Low-risk findings worth noting
Find introduced risk before summaries. Code review should be precise enough for Codex inline findings and broad enough to catch traceability, validation, readiness gaps, and repeated context failures.
Use when handling PRs, branches, diffs, commits, readiness, and disputed review feedback. Keep scope tight: inspect changed files, direct evidence, and at most the focused surfaces needed for the active review lane before widening.
Diff, repo guidance, Linear issue, spec, plan, PR evidence, validation output, live PR review state, Codex provenance or session-collector evidence when cited, and any supplied review-mode contract.
Return schema_version: 1 when structured, plus mode, side-effect class, severity-ranked findings, traceability, blockers, verdict, reproduction status, security review, behavior proof, work candidate, repeated-failure route, blackboard delta, git staging status, staged paths, and next handoff. Use .harness/review/**.md with Artifact Identity frontmatter for durable review artifacts.
Always make steering and proof searchable: include interactive_status, selection_evidence, route, stage, scope, traceability, validation, safe_to_continue, and blocked_reason. In headless review, use autonomous_assumption only with evidence and confidence; if mutation or readiness authority is ambiguous, ask once or return blocked.
For repeated failures, classify the follow-up as linear_required, reinforce_required, or both_required; include the proposed issue type plus he-reconcile or he-reinforce evidence when applicable.
file:line findings.simplify, coding-harness, gate-selection, first-principles, plugin-hook, and agent-native lenses only when the diff proves their trigger.../../references/skills/he-code-review/review-mode-contract.md and emit one auditable non-mutating action per target..harness/review/**, apply artifact routing plus BLUF review contracts without hiding severity-ranked findings.Fail fast: stop at the first failed gate and do not proceed. Verify gates, references, subagent evidence, and command outcomes.
If required evidence, Linear linkage, or next-stage routing is missing, stop and return the blocker with the smallest recovery step.
Review-only mode must remain byte-clean. Autofix, PR mutation, thread resolution, or tracker updates require explicit repair or mutation authority. For direct-handle use, apply the OpenAI-style design contract: classify the strongest side effect and separate read-only analysis, artifact writes, repo edits, external updates, destructive actions, and completion-gating recommendations before proceeding. Commit review, closure/execute, autonomous, plan-only, result-review, and security-review modes are non-mutating unless a separate executor or applicator is explicitly authorized.
Redact secrets. Apply the context-disposition policy: move important still-valid context to references, and intentionally discard stale, duplicated, unsafe, superseded, or low-signal text.
.harness/specs/JSC-246-account-settings.md, .harness/plan/JSC-246-account-settings.md, CircleCI, and CodeRabbit threads."Plugins/harness-engineering/skills/he-plan; findings first, then tell me whether the traceability and validation evidence are enough."Reference assets/ only for skill packaging and browseability; review evidence belongs in findings, commands, and PR/thread links.
Before artifact writes, mutation, scheduling, handoff, or closure claims, apply
../../references/stage-arc-boundary-contract.md. Structured outputs and
handoffs must include stage_arc_boundary with left_arc, active_arc,
right_arc, coding_lens, and testing_lens; block when left evidence is
stale, active mutation exceeds authority, right-side proof is missing, or a
required persona lens is not covered.
Read when:
../../references/skills/he-code-review/review-mode-contract.md../../references/skills/he-code-review/review-policy-index.md../../references/skills/he-code-review/review-loop-patterns.mdPlugins/harness-engineering/references/deferred-context-index.mdPlugins/harness-engineering/references/subagent-call-contract.mdPlugins/harness-engineering/references/artifact-routing-contract.md, Plugins/harness-engineering/references/bluf-review-contract.md, Plugins/harness-engineering/references/visual-reference-contract.mdPlugins/harness-engineering/references/codex-provenance-contract.md, Plugins/harness-engineering/references/pr-safety-trace-contract.mdPlugins/harness-engineering/references/pragmatic-programmer-review-contract.mdPlugins/harness-engineering/references/domain-context-contract.md, Plugins/harness-engineering/references/domain-model-production-contract.mdInfrastructure/references/harness-engineering/he-code-review-doctrine.md46e4be2
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.