Conduct thorough, constructive code reviews for quality and security. Use when reviewing pull requests, checking code quality, identifying bugs, or auditing security. Handles best practices, SOLID principles, security vulnerabilities, performance analysis, and testing coverage.
91
88%
Does it follow best practices?
Impact
98%
1.03xAverage score across 3 eval scenarios
Passed
No known issues
Security vulnerability detection
SQL injection in login
100%
100%
SQL injection in profile
100%
100%
XSS via innerHTML
100%
100%
Hardcoded secret key
100%
100%
Hardcoded admin token
100%
100%
Insecure direct object reference
100%
100%
Passwords stored in plaintext
100%
100%
Outdated/vulnerable dependencies
100%
100%
Severity prioritization
100%
100%
Concrete fix suggestions
100%
100%
Positive acknowledgement
0%
0%
No debug mode in production
100%
100%
Code quality anti-patterns and naming
God class identification
100%
100%
Deep nesting / early returns
100%
100%
Magic numbers flagged
100%
100%
Dead code removal
100%
100%
DRY / code duplication
100%
100%
Poor naming conventions
100%
100%
Silent exception suppression
100%
100%
Function length / single responsibility
75%
87%
Resource management
100%
100%
Severity classification
100%
100%
Positive feedback included
100%
100%
Testing standards and structured feedback
Test naming critique
100%
100%
Descriptive test name example
100%
100%
Missing docstring on parse_date
75%
100%
Missing or incomplete docstring on export_events_to_csv
100%
100%
Missing error case tests
100%
100%
Test class naming
100%
100%
Specific line references
80%
100%
Issue prioritization
100%
100%
Constructive feedback with suggestions
100%
100%
Positive acknowledgement
75%
100%
Comment quality note
50%
100%
c033769
Table of Contents
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.