reviewlisted
Install: claude install-skill LeeYudok/agents-scaffold
# Code Review (wrapper)
Runs the code-reviewer + security-audit agents in sequence for a complete review.
## Execution order
### Step 1 — Identify the scope of change
```bash
git diff --stat HEAD~1 # or git diff --stat main...HEAD
git diff --name-only HEAD~1
```
Stop if there are no changes.
### Step 2 — Code review (code-reviewer agent)
Invoke `Agent code-reviewer`:
- Security: hardcoded keys/tokens, missing input validation
- Performance: N+1 queries, unnecessary synchronous I/O
- Quality: `any` types, functions over 50 lines, duplication, dead code
- Convention: violations of `.claude/rules/` conventions
### Step 3 — Security audit (security-audit agent)
Invoke `Agent security-audit`:
- grep scan of the 12 P0 security items
- weak cryptography, SQL injection, CORS wildcards
### Step 4 — Combined report
```
## Code Review Summary — {{PROJECT_NAME}}
### Code Review
N CRITICAL / M WARNING / K SUGGESTION
### Security Audit
N P0 violations / M P1 violations
### Merge Recommendation
✅ Ready to merge / ❌ Hold for CRITICAL or P0 violations
```
If there is even one CRITICAL or P0 violation, **recommend holding the merge**.
## Quick review (when an argument is given)
`/review quick` — skip security-audit, run code-reviewer only.
## Learned warnings
(Notes discovered during execution accumulate here)