Review and Protect Pull Requests
Run automated reviews on every PR to flag security problems, risky diffs, and missing tests. The idea is to have a second pair of eyes that never gets tired and catches the things humans skip when reviewing fast.
Useful for
- You merge PRs without a thorough review because your team is small and busy
- You worry about accidentally shipping a hardcoded secret or a broken dependency
- You want consistent code review standards across your whole codebase
Suggested Skills
Pick skills from the phases below based on what you need. Each phase has an example prompt you can copy and try with your agent.
Review skills analyze diffs for bugs, style issues, and logic problems. Scan skills check for secrets, vulnerabilities, and risky changes. Gate skills generate risk scores and merge recommendations.
Review
Analyze code changes for bugs and quality issues.
Scan
Check for secrets, vulnerabilities, and risky patterns.
Gate
Score risk and decide if it is safe to merge.