code-review-patterns
Multi-dimensional code assessment across security, quality, performance, and maintainability with confidence-gated reporting (>=80%) and Router Contract generation.
npx skills add a5c-ai/babysitter --skill code-review-patterns --agent claude-code
Same command for any agent — swap --agent for codex, cursor, copilot.
Weekly change comes from our own snapshots, not the repository page — it measures attention, not adoption.
- Injection vulnerabilities (SQL, XSS, command) - Authentication and authorization patterns - Secrets handling (no hardcoded credentials) - Input validation and sanitization ### Quality (weight: 25%) - Naming conventions and consistency - Code structure (SRP, cohesion, coupling) - Error handling completeness - Type safety (no `any` escapes) ### Performance (weight: 20%) - Algorithmic complexity (flag O(n^2) or worse) - Resource and memory leaks - Database query efficiency (N+1) - Caching opportunities ### Maintainability (weight: 25%) - Documentation (JSDoc/TSDoc for public APIs) - Test coverage adequacy - Readability (function length, nesting depth) - Tech debt markers (TODO, FIXME) ## Confidence Gating - Only report issues with confidence >= 80% - Empty catch blocks are always critical (100% confidence) - Classify: critical, high, medium, low - Include actionable remediation for each issue ## Router Contract Every review must produce: STATUS, BLOCKING, REQUIRES_REMEDIATION, issue counts. ## When to Use - Code review step in BUILD workflow - Fix review in DEBUG workflow - Full REVIEW workflow ## Agents Used - `code-reviewer` (primary consumer) - `silent-failure-hunter` (error hand
- Quality (weight: 25%)
- Performance (weight: 20%)
- Maintainability (weight: 25%)
- Confidence Gating
- Router Contract
- When to Use
- Agents Used
What does the code-review-patterns skill do?
Multi-dimensional code assessment across security, quality, performance, and maintainability with confidence-gated reporting (>=80%) and Router Contract generation.
How do I install it?
Run `npx skills add a5c-ai/babysitter --skill code-review-patterns --agent claude-code` — it drops the skill into your project so the agent can pick it up. Swap the --agent value for codex, cursor or copilot if you use one of those.
Where does this skill come from?
From a5c-ai/babysitter, a repository with 1,642 stars. We read it straight from the repository tree rather than a submitted listing, so what you see here is what is actually published.
Is a popular skill a good skill?
Not necessarily. Stars measure attention, not adoption — a repository can trend for a week and be abandoned. That is why we show the weekly change from our own snapshots next to the total, instead of a single flattering number.
