code-review

作成者: microsoft

コード変更を複数の視点からレビューし、コンテキストブートストラップ、深さ階層の厳密性、構造化された所見の出力を行います。

npx skills add https://github.com/microsoft/hve-core --skill code-review

Code Review Skill Entry

This SKILL.md is the entrypoint for the Code Review skill.

The skill provides a reusable review workflow for pull requests, branch diffs, and local changes across functional, standards, accessibility, security, and readiness perspectives. It separates the review target and profile from perspective and depth selection, and centralizes change-brief preparation, severity normalization, and output contracts so review agents stay thin and consistent.

Shared principles

Review work should stay anchored in evidence and should avoid premature conclusions. Keep the review grounded in file and line evidence, use proportional depth based on risk, read the full diff range before narrowing, and keep factual orientation separate from structured findings.

Normative references

  1. Output Formats: reporting structure, merged report skeleton, and persisted artifact contract.
  2. Severity Taxonomy: severity levels, verdict normalization, and risk classification.
  3. Lens Checklists: perspective-specific review questions for functional, standards, accessibility, security, and readiness reviews.
  4. Context Bootstrap: Tier 0 procedure for proving the change surface, drafting a change brief, and scoping hotspots.
  5. Depth Tiers: basic, standard, and comprehensive verification rigor dials.
  6. Walkthrough Protocol: firm orientation floor, full-diff reading contract, and Register 1 narrative guidance.
  7. Dispatch Loop: human-steered dispatch board, manifest schema, and walk-back loop contract.
  8. Emission Modes: capability-gated dual-mode emission and persisted emission record.
  9. Cross-Skill Forks: specialist review registry and package-aware gating for follow-up reviews.
  10. Review Targets and Profiles: target resolution, profile expansion, task serialization, and emission identity.
  11. Change-Risk Evidence Checklist: advisory evidence categories for selecting review depth with human confirmation.

Skill layout

  • SKILL.md: this file (skill entrypoint).
  • references/: durable review knowledge documents.
    • output-formats.md: output schema, report skeleton, and persistence behavior.
    • severity-taxonomy.md: severity and verdict normalization model.
    • lens-checklists.md: per-perspective review checklists.
    • context-bootstrap.md: Tier 0 context bootstrap and human-scoping workflow.
    • depth-tiers.md: Tier 1/2/3 verification-depth guidance.
    • walkthrough-protocol.md: orientation-first walkthrough contract and Register 1 narrative expectations.
    • dispatch-loop.md: dispatch board, manifest schema, and walk-back loop.
    • emission-modes.md: native and canonical emission strategies.
    • cross-skill-forks.md: specialist review registry and gating rules.
    • review-targets.md: review target, profile, and task-state rules.
    • change-risk-model.md — advisory evidence checklist for selecting review depth with human confirmation.

microsoftのその他のスキル

oss-growth
microsoft
OSS成長ハッカーのペルソナ
agent-framework-azure-ai-py
microsoft
Microsoft Agent Framework Python SDK(agent-framework-azure-ai)を使用してAzure AI Foundryエージェントを構築します。AzureAIAgentsProviderを使用した永続的なエージェントの作成、ホスト型ツール(コードインタープリター、ファイル検索、ウェブ検索)の使用、MCPサーバーの統合、会話スレッドの管理、ストリーミング応答の実装時に使用します。関数ツール、構造化出力、マルチツールエージェントをカバーします。
development
airunway-aks-setup
microsoft
AKS上でAI Runwayをセットアップ — ベアクラスターからモデル実行まで。クラスター検証、コントローラーインストール、GPU評価、プロバイダー設定、初回デプロイをカバー。対象: 「AI Runwayのセットアップ」「AKSクラスターのオンボード」「AI Runwayのインストール」「airunway setup」「AKSへのモデルデプロイ」「AKSでのGPU推論」「AKSでのKAITOセットアップ」「AKSでのLLM実行」「AKSでのvLLM」「AKSでのモデルサービング設定」「AI Runwayコントローラー」。
devops
appinsights-instrumentation
microsoft
Azure Application Insightsを使用したWebアプリのインストルメンテーションに関するガイダンス。テレメトリパターン、SDKセットアップ、構成リファレンスを提供します。対象: アプリのインストルメンテーション方法、App Insights SDK、テレメトリパターン、App Insightsとは何か、Application Insightsガイダンス、インストルメンテーション例、APMベストプラクティス。
devops
applicationinsights-web-ts
microsoft
Application Insights JavaScript SDK(@microsoft/applicationinsights-web)を使用してブラウザ/Webアプリを計測します。Real User Monitoring(RUM)— ページビュー、クリック、AJAX/fetch依存関係、例外、カスタムイベント、およびバックエンドのOpenTelemetryトレースに関連付けられたブラウザ側のGenAIエージェントトレースに使用します。SDKローダースクリプトとnpmセットアップ、フレームワーク拡張機能(React、React Native、Angular)、Click Analytics、テレメトリ初期化子、およびブラウザから生成されるエージェント/ツール/モデルスパンのOTel GenAIセマンティック規約をカバーします。
devops
azure-ai-anomalydetector-java
microsoft
Azure AI Anomaly Detector SDK for Javaを使用して異常検出アプリケーションを構築します。単変量/多変量異常検出、時系列分析、またはAIを活用したモニタリングを実装する際に使用します。
development
azure-ai-language-conversations-py
microsoft
azure-ai-language-conversations Python SDKを使用して会話言語理解(CLU)を実装します。ConversationAnalysisClientを使用して会話の意図とエンティティを分析する場合、NLP機能を構築する場合、またはアプリケーションに言語理解を統合する場合に使用します。
development
azure-ai-ml-py
microsoft
Azure Machine Learning SDK v2 for Python。MLワークスペース、ジョブ、モデル、データセット、コンピュート、パイプラインに使用します。 トリガー: 「azure-ai-ml」、「MLClient」、「ワークスペース」、「モデルレジストリ」、「トレーニングジョブ」、「データセット」。
development