Agent skill · Security

code-review-expert

Expert code review of current git changes with a senior engineer lens. Detects SOLID violations, security risks, and proposes actionable improvements.

dtsolagithub.com/dtsolaGitHub ↗
claude-codeNOASSERTION
Install
npx skills add dtsola/xiaoyaosearch --skill code-review-expert --agent claude-code

Same command for any agent — swap --agent for codex, cursor, copilot.

Facts
Files in the skill folder: 7
SKILL.md size: 5 KB
Bundled scripts: none
Path: .claude/skills/code-review-expert/SKILL.md
Open the folder on GitHub →
Where it comes from
Stars: 1,013
Language: Python

Weekly change comes from our own snapshots, not the repository page — it measures attention, not adoption.

From the SKILL.md

# Code Review Expert ## Overview Perform a structured review of the current git changes with focus on SOLID, architecture, removal candidates, and security risks. Default to review-only output unless the user asks to implement changes. ## Severity Levels | Level | Name | Description | Action | |-------|------|-------------|--------| | **P0** | Critical | Security vulnerability, data loss risk, correctness bug | Must block merge | | **P1** | High | Logic error, significant SOLID violation, performance regression | Should fix before merge | | **P2** | Medium | Code smell, maintainability concern, minor SOLID violation | Fix in this PR or create follow-up | | **P3** | Low | Style, naming, minor suggestion | Optional improvement | ## Workflow ### 1) Preflight context - Use `git status -sb`, `git diff --stat`, and `git diff` to scope changes. - If needed, use `rg` or `grep` to find related modules, usages, and contracts. - Identify entry points, ownership boundaries, and critical paths (auth, payments, data writes, network). **Edge cases:** - **No changes**: If `git diff` is empty, inform user and ask if they want to review staged changes or a specific commit range. - **Large diff (>500

What's inside
Steps it walks through
  1. Overview
  2. Severity Levels
  3. Workflow
  4. 1) Preflight context
  5. 2) SOLID + architecture smells
  6. 3) Removal candidates + iteration plan
  7. 4) Security and reliability scan
  8. 5) Code quality scan
  9. 6) Output format
  10. 7) Next steps confirmation
  11. Resources
  12. references/
Ships with 6 files
  • README.md
  • agents/agent.yaml
  • references/code-quality-checklist.md
  • references/removal-plan.md
  • references/security-checklist.md
  • references/solid-checklist.md
More from xiaoyaosearch
All skills →
About this skill
What does the code-review-expert skill do?

Expert code review of current git changes with a senior engineer lens. Detects SOLID violations, security risks, and proposes actionable improvements.

How do I install it?

Run `npx skills add dtsola/xiaoyaosearch --skill code-review-expert --agent claude-code` — it drops the skill into your project so the agent can pick it up. Swap the --agent value for codex, cursor or copilot if you use one of those.

Where does this skill come from?

From dtsola/xiaoyaosearch, a repository with 1,013 stars. We read it straight from the repository tree rather than a submitted listing, so what you see here is what is actually published.

Is a popular skill a good skill?

Not necessarily. Stars measure attention, not adoption — a repository can trend for a week and be abandoned. That is why we show the weekly change from our own snapshots next to the total, instead of a single flattering number.

Keep going