code-review-for-gitcodeHandles full GitCode PR code reviews by automating security scans, manual analysis, selecting top issues, formatting results, and optionally posting review c...
Install via ClawdBot CLI:
clawdbot install guitenbay/code-review-for-gitcodeGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Sends data to undocumented external endpoint (potential exfiltration)
POST → https://api.gitcode.com/api/v5/repos/{owner}/{repo}/pulls/{number}/commentsPotentially destructive shell commands in tool definitions
eval(Calls external URL not in known-safe list
https://gitcode.com/api/v5/repos/<ownerAudited Apr 18, 2026 · audit v1.0
Generated Mar 21, 2026
Maintainers of open-source repositories on GitCode can use this skill to systematically review community contributions, ensuring code quality and security before merging pull requests. It automates initial vulnerability scans while enforcing mandatory manual review for logic and design issues, streamlining the review process for volunteer-driven projects.
Development teams in enterprises can integrate this skill into their CI/CD pipelines to enforce code review standards across internal projects. It helps catch security flaws early, reduces technical debt by identifying code duplication and design flaws, and ensures consistent feedback is posted directly to PRs for team collaboration.
Instructors or teaching assistants on coding platforms like GitCode can use this skill to provide structured feedback on student assignments submitted via pull requests. The 5-step process allows for automated checks on common errors followed by detailed manual reviews, helping learners improve code quality and security practices.
Freelance developers working with clients on GitCode can employ this skill to deliver professional code reviews as part of their services. It ensures thorough analysis by combining automated scans for critical issues with manual oversight for business logic and performance, enhancing client trust and project outcomes.
Startup teams building minimum viable products (MVPs) on GitCode can use this skill to maintain code quality with limited resources. The automated step quickly flags security risks, while the manual review focuses on scalability and edge cases, helping startups iterate rapidly without compromising on code standards.
Offer this skill as a cloud-based service where users pay a subscription fee to access automated scanning and formatted review outputs for their GitCode repositories. Revenue comes from tiered plans based on repository size or number of PRs reviewed per month, targeting small to medium-sized development teams.
Provide consulting services to help organizations integrate this skill into their existing workflows, with revenue from one-time setup fees and ongoing support contracts. This model targets enterprises needing custom adaptations, such as adding specific security rules or integrating with other tools in their stack.
Release the core skill as open-source to build a community, then monetize through premium features like advanced security scans, priority support, or integrations with other platforms. Revenue is generated from upgrades by power users or companies requiring enhanced capabilities beyond the free version.
💬 Integration Tip
Ensure GitCode API tokens are securely stored and the scripts are tested in a staging environment before full deployment to avoid accidental PR comments.
Scored Jun 19, 2026
Control desktop applications on Windows — launch, close, focus, resize, move windows, simulate keyboard/mouse input, manage processes, control VSCode, read clipboard, and capture screen info. Use when the user wants to interact with any running program, switch windows, type text, press shortcuts, open files in VSCode, manage running processes, or get system display information.
Conduct rigorous, adversarial code reviews with zero tolerance for mediocrity. Use when users ask to "critically review" my code or a PR, "critique my code", "find issues in my code", or "what's wrong with this code". Identifies security holes, lazy patterns, edge case failures, and bad practices across Python, R, JavaScript/TypeScript, SQL, and front-end code. Scrutinizes error handling, type safety, performance, accessibility, and code quality. Provides structured feedback with severity tiers (Blocking, Required, Suggestions) and specific, actionable recommendations.
Coding style memory that adapts to your preferences, conventions, and patterns for consistent coding.
Pragmatic coding standards for writing clean, maintainable code — naming, functions, structure, anti-patterns, and pre-edit safety checks. Use when writing new code, refactoring existing code, reviewing code quality, or establishing coding standards.
Claude Code integration for OpenClaw. This skill provides interfaces to: - Query Claude Code documentation from https://code.claude.com/docs - Manage subagents and coding tasks - Execute AI-assisted coding workflows - Access best practices and common workflows Use this skill when users want to: - Get help with coding tasks - Query Claude Code documentation - Manage AI-assisted development workflows - Execute complex programming tasks
Plan, draft, version, and refine written content with enforced versioning and quality audits.