Skip to content
Back to skills

Code Review

ASecurity

Review code changes for correctness, maintainability, and operational risk.

  • 2 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 6, 2026
ai-agentsjavascripttypescriptjavacode-reviewsecurity

Security analysis

A100/100

Scanned September 6, 2026

npx -y skills add dileepkpandiya/skilleval --skill code-review --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Code Review?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Code Review
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/dileepkpandiya-code-review/badge)](https://www.skillsdirectory.com/skills/dileepkpandiya-code-review)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: code-review
description: Review code changes for correctness, maintainability, and operational risk.
version: 0.1.0
triggers:
  - review code
  - inspect pull request
  - assess implementation quality
agents:
  - claude
  - codex
---
# Code Review Skill

Use this skill when asked to review source code, pull requests, or implementation plans.
Focus on actionable findings rather than broad compliments or style preferences.

## Review priorities

1. Identify correctness bugs that can be demonstrated from the changed code.
2. Check edge cases around empty input, malformed input, concurrency, and persistence.
3. Evaluate whether errors are surfaced with enough context for a maintainer to act.
4. Look for security issues such as injection, path traversal, credential leaks, and unsafe defaults.
5. Confirm that tests cover the behavior that the change claims to introduce.

## Language-specific guidance

When reviewing TypeScript code:
- Verify strict mode compliance - flag implicit `any` types explicitly
- Check null and undefined handling - JSON.parse can return null
- Ensure all function parameters and return types are explicitly typed
- Flag catch clause bindings that use implicit any (use `catch (err: unknown)`)
- Prefer typed interfaces over inline type annotations for complex objects

When reviewing JavaScript code:
- Recommend TypeScript migration path if the codebase context supports it
- Flag missing null checks that TypeScript strict mode would catch

## Response format

Start with the highest-impact findings first.
For each finding, include the file, line, severity, and a concise explanation.
If no blocking findings exist, say so clearly and mention the most important residual risks.

## Review behavior

Prefer concrete examples over speculation.
Do not request rewrites unless the current design creates a real maintenance or safety problem.
Call out missing tests only when the uncovered behavior is important.
Avoid nitpicks about formatting if the repository already has automated formatting.
**Only report findings you can directly verify from the code shown. Do not infer or assume missing context.**

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…