code-review

PR checklist and severity guidance for kickstart-next contributions.

npx skills add https://github.com/contentstack/kickstart-next --skill code-review

Code review – kickstart-next

When to use

  • Before you open a PR or when reviewing someone else’s changes.

Instructions

Checklist

  • Run npm run lint and npm run build locally (CI does not run these automatically).
  • Preview mode: confirm components/Preview.tsx and initLivePreview still behave; production path: confirm server getPage + Page render correctly for /.
  • If you add or rename environment variables, update .env.example and user-facing docs where needed.
  • No secrets in the repo; scan diffs for accidental tokens.
  • Rich text paths still sanitize HTML (isomorphic-dompurify) before dangerouslySetInnerHTML.
  • If new image hosts or CDNs appear, update next.config.mjs remotePatterns (and env-driven hostname if used).
  • Content/schema changes should be reflected in lib/types.ts and any Live Preview $ bindings in components.
  • Dependency changes: consider impact on Snyk / SCA workflows (see .github/workflows).

Severity (optional labels)

  • Blocker: security regression (XSS, token leak), broken preview or production home route, build or lint failure.
  • Major: incorrect Contentstack behavior, missing env documentation, type/schema drift that can break preview editing.
  • Minor: style, copy, non-user-facing refactors, small UX nits.

More skills from contentstack

cms-assets
contentstack
Advise developers on organizing, delivering, and transforming assets in Contentstack. Cover folder structure, Image Delivery API transformations, publishing…
cms-branches-aliases
contentstack
Advise developers on using Contentstack branches for isolated content development and aliases for zero-downtime content deployments. Cover branch strategy,…
cms-data-modeling-best-practices
contentstack
Guide developers to model content in Contentstack using the simplest reusable structure. The skill explains when to use content types, references, global…
cms-live-preview-visual-builder-support-assistant
contentstack
Diagnose and guide Contentstack Live Preview and Visual Builder implementations. Trace preview context, identify the broken contract, and recommend the…
cms-releases
contentstack
Advise developers on using Contentstack Releases for coordinated, atomic content deployment. Cover release creation, item management, staged deployment,…
cms-roles-permissions
contentstack
Advise developers on designing roles, permissions, teams, and token access in Contentstack. Explain built-in roles, custom roles, permission merging,…
cms-taxonomy
contentstack
Advise developers on using Contentstack Taxonomy for structured, hierarchical content classification and delivery-side filtering. Covers taxonomy vs tags,…
cms-tokens-authentication
contentstack
Advise developers on choosing the right Contentstack authentication method and token type for frontend, backend, automation, and third-party app use cases.…