Home / initializ / forge · forge-skills/local/embedded/code-review-github/SKILL.md · GitHub

code-review-github skillA

code-review-github is agent-read markdown (skill) from initializ/forge: GitHub PR workflow orchestration for code review — list PRs, post comments, apply labels, and guarded auto-merge.

Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.

What the file says

# Code Review GitHub Integration

Orchestrates GitHub PR workflows for AI code review. Provides tools to list pull requests, post inline review comments, apply labels based on review findings, and (with explicit opt-in) auto-merge clean PRs.

All GitHub API interactions go through the `gh` CLI. Direct HTTP requests and web searches are denied to ensure all operations are auditable and respect GitHub's rate limiting.

## Authentication

```bash
export GH_TOKEN="ghp_..."
```

The token needs **read-write** access since this skill posts comments, applies labels, and can merge PRs:

| Scope (classic PAT) | Fine-grained permission | Why |
|----------------------|------------------------|-----|
| `repo` | Pull requests: Read & Write | List PRs, post review comments, merge |
| `repo` | Contents: Read | Read PR diff and file contents |
| `repo` | Issues: Write | Apply and remove labels |
| `read:org` (optional) | Organization: Read | Org-level label policies |

**Minimum fine-grained token permissions:** `pull_requests: write`, `contents: read`, `issues: write` on the target repository.
…

Read the whole file at its exact version.

How to install

Latest version
mdr add initializ/forge/code-review-github@git:20260304.ef09c7b
Exact content
mdr add initializ/forge/code-review-github@sha256:c754d3c3a7c63260

Pin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.

Badge

mdr badge

[![mdr](https://markdownregistry.com/badge/art_d6u52btflvhqnxcc.svg)](https://markdownregistry.com/a/art_d6u52btflvhqnxcc)

1 badge views in 30 days

Versions

versioncommittedcommitsizeaudit
git:20260304.ef09c7b latest2026-03-04 ef09c7b 8,561 BA view · diff
git:20260304.9f425d92026-03-04 9f425d9 8,550 BA view · diff
git:20260303.c49912c2026-03-03 c49912c 8,544 BA view

Audit of the latest version

A  17 of 17 checks passed. Deterministic, no model, same answer every run.
  • pass: Frontmatter block present
  • pass: Frontmatter declares a name
  • pass: Frontmatter declares a description
  • pass: Size between 200 bytes and 200 KB (8561 bytes)
  • pass: No zero-width or bidi control characters
  • pass: No instruction hidden inside an HTML comment
  • pass: No link to an exfiltration or paste host
  • pass: No credential-shaped string
  • pass: No instruction to send local credentials anywhere
  • pass: No text hidden with inline styles
  • pass: No prompt-injection phrasing
  • pass: No curl or wget piped into a shell
  • pass: No recursive delete of root, home or parent
  • pass: No instruction to read or print local credentials
  • pass: No base64 blob over 200 characters
  • pass: No link to a raw IP address
  • pass: No script tag

Source

GitHub

initializ/forge · 221 stars · license Apache-2.0 · pushed 2026-09-24 · branch main

API

GET https://markdownregistry.com/api/v1/artifacts/art_d6u52btflvhqnxcc
GET https://markdownregistry.com/api/v1/resolve?ref=initializ/forge/code-review-github
GET https://markdownregistry.com/api/v1/blob/c754d3c3a7c632602883cea3ccee1a5defcecf01a6fab0a38f9b2fa856edc390

Your agent does the legwork. You hear about the deals worth your word. Hand yours the standing instructions at modelranch.com and it joins the network that reads files like this one.

More from initializ/forge

CLAUDE.md claude
initializ/forge · CLAUDE.md
git:20260718.1a6d886 · audit A · 221 stars
my-skill skill
initializ/forge · forge-skills/local/embedded/_template/SKILL.md · One-line description of what this skill does
git:20260304.ef09c7b · audit A · 221 stars
code-agent skill
initializ/forge · forge-skills/local/embedded/code-agent/SKILL.md · General-purpose coding agent that reads, writes, and edits code, and searches codebases.
git:20260916.5cf2529 · audit A · 221 stars
code-plan skill
initializ/forge · forge-skills/local/embedded/code-plan/SKILL.md · Turn a task description and repository into a structured implementation plan (files to create, files to modify, tests…
git:20260520.48a434a · audit A · 221 stars
code-review-standards skill
initializ/forge · forge-skills/local/embedded/code-review-standards/SKILL.md · Discover and apply organization coding standards from .forge-review/ configuration
git:20260304.ef09c7b · audit A · 221 stars
code-review skill
initializ/forge · forge-skills/local/embedded/code-review/SKILL.md · AI-powered code review for diffs and individual files using LLM analysis
git:20260609.0907832 · audit A · 221 stars
codegen-html skill
initializ/forge · forge-skills/local/embedded/codegen-html/SKILL.md · Scaffold and iterate on standalone Preact + HTM applications with zero build dependencies
git:20260304.ef09c7b · audit A · 221 stars
codegen-react skill
initializ/forge · forge-skills/local/embedded/codegen-react/SKILL.md · Scaffold and iterate on Vite + React applications
git:20260304.ef09c7b · audit A · 221 stars
github skill
initializ/forge · forge-skills/local/embedded/github/SKILL.md · Create issues, PRs, clone repos, and manage git workflows
git:20260520.597a75c · audit A · 221 stars
k8s-cost-visibility skill
initializ/forge · forge-skills/local/embedded/k8s-cost-visibility/SKILL.md · Estimate Kubernetes infrastructure costs by querying cluster node, pod, PVC/PV, and LoadBalancer data, applying cloud…
git:20260311.1066357 · audit A · 221 stars
k8s-incident-triage skill
initializ/forge · forge-skills/local/embedded/k8s-incident-triage/SKILL.md · Read-only Kubernetes incident triage using kubectl. Accepts natural language or structured input. Produces root-cause…
git:20260304.ef09c7b · audit A · 221 stars
k8s-pod-rightsizer skill
initializ/forge · forge-skills/local/embedded/k8s-pod-rightsizer/SKILL.md · Analyze Kubernetes workload metrics and produce policy-constrained CPU/memory rightsizing recommendations with optional…
git:20260311.1066357 · audit A · 221 stars

Every file in initializ/forge

Browse by kind, by grade A, or by owner.