← ClaudeAtlas

code-reviewlisted

Step-by-step instructions for performing a structured code review, including the exact checklist, severity classification, and required output format.
syniol/llm-software-project · ★ 0 · Code & Development · score 70
Install: claude install-skill syniol/llm-software-project
# Code Review Skill Use this skill when asked to review a diff, PR, or set of changed files. Follow every step in order. Do not skip sections. ## Step 1: Establish Context Before reviewing any code, read the following in order: 1. The PR description (or task description if reviewing locally). 2. `.agent/context/CODEBASE-MAP.md` to understand where the changed files fit. 3. Any referenced ADRs in `.agent/context/adr/` if the change touches architecture. ## Step 2: Run the Checklist For every changed file, evaluate each category below. Log every finding with a severity level. ### Security (`persona: security-auditor`) - [ ] No hardcoded secrets, tokens, or credentials. - [ ] All user input validated at the boundary (Zod schema present). - [ ] No raw SQL string concatenation. - [ ] No `dangerouslySetInnerHTML` or equivalent without justification. - [ ] Auth/authorisation middleware applied to all new routes. ### Correctness - [ ] Does the logic match the stated intent of the PR? - [ ] Are edge cases handled (empty arrays, null values, concurrent requests)? - [ ] Are errors caught and handled, not silently swallowed? ### Architecture - [ ] Does the change respect layer boundaries (controller → service → repository)? - [ ] Is there any circular dependency introduced? - [ ] Does it contradict any accepted ADR? ### Testing - [ ] Are new behaviours covered by unit tests? - [ ] Do tests follow the `should_X_when_Y` naming convention? - [ ] Is coverage maintained above 80%? #