Skip to content
Back to skills

Code Review

ASecurity

Proactive code quality review. Triggers on significant code changes to check security, performance, architecture, and project patterns.

  • 34 stars
  • 0 votes
  • 0 copies
  • 6 views
  • Added February 7, 2026
developmenttypescriptgoswiftkotlinsqlreactnextjscode-reviewapibackend

Works with

  • api

Security analysis

A100/100

Scanned February 12, 2026

npx -y skills add muyen/vibe-to-prod --skill code-review --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Code Review?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Code Review
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/muyen-code-review/badge)](https://www.skillsdirectory.com/skills/muyen-code-review)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: code-review
description: Proactive code quality review. Triggers on significant code changes to check security, performance, architecture, and project patterns.
---

# Code Review Skill

Automatically reviews code quality when significant changes are made.

## When to Activate

This skill should activate when:
- User writes or modifies 50+ lines of code
- User implements a new feature or handler
- User asks for code review or feedback
- Changes touch authentication, payments, or security

## Review Dimensions

### 1. Security (Critical)
- [ ] No hardcoded secrets or credentials
- [ ] Input validation on all user inputs
- [ ] SQL injection / NoSQL injection prevention
- [ ] XSS prevention in any output
- [ ] Auth checks on protected endpoints

### 2. Project Patterns (Critical)
- [ ] Generated types used (not `map[string]interface{}`)
- [ ] Routes registered properly
- [ ] Response schemas defined correctly
- [ ] OpenAPI spec updated for API changes

### 3. Performance
- [ ] No N+1 queries
- [ ] Appropriate indexes for queries
- [ ] Reasonable pagination limits
- [ ] No unnecessary data fetching

### 4. Architecture
- [ ] Single responsibility principle
- [ ] Proper error handling
- [ ] Appropriate logging
- [ ] Testable design

### 5. Platform Specific

**Backend (Go)**
- [ ] Uses Echo framework patterns
- [ ] Proper middleware usage
- [ ] Structured logging with Zap

**iOS (Swift)**
- [ ] SwiftUI best practices
- [ ] Source files < 400 lines
- [ ] Proper state management

**Android (Kotlin)**
- [ ] Jetpack Compose patterns
- [ ] Proper DI configuration
- [ ] Feature parity with iOS

**Web (TypeScript)**
- [ ] Next.js conventions followed
- [ ] Proper typing (no `any`)
- [ ] React best practices

## Output Format

```markdown
## Code Review Summary

### Critical Issues
- [List any blocking issues]

### Warnings
- [List non-blocking concerns]

### Suggestions
- [List optional improvements]

### Pattern Compliance
- [Check against CLAUDE.md rules]
```

## Reference

See `.claude/commands/code-review.md` for detailed review criteria.

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…