Use after completing file changes - strongest for source code (AST-aware linting, security, tests), lighter support for markdown/config. Dispatches CodeRabbit reviewer subagent...
This skill dispatches a CodeRabbit reviewer subagent to analyze your uncommitted changes and return a structured list of issues. It's the first step in the change → review → triage → fix pipeline.
When to use: After making ANY file changes (code, skills, documentation, config), before considering work complete.
After completing changes, invoke this skill:
Do NOT skip review because "it's just documentation" or "it's a small change". Even lighter analysis catches issues.
Outputs: Structured JSON with categorized issues (Critical/Important/Minor).
Stage all changes before review. The --type uncommitted flag analyzes both staged and unstaged changes, but staging ensures nothing is missed:
# Stage all changes
git add -A
# Verify staged changes
git diff --cached --stat
Document in your mind what was just implemented. This context helps the reviewer subagent understand scope.
CRITICAL: Always use gob add for CodeRabbit commands - they take 1-3 minutes.
# Start CodeRabbit in background
gob add coderabbit --prompt-only --type uncommitted
# Continue working or wait for results
gob await-any
The --prompt-only flag makes output succinct and token-efficient.
When CodeRabbit completes, parse the output into this JSON structure:
{
"critical": [
{"file": "...", "line": NNN, "issue": "...", "suggestion": "..."}
],
"important": [...],
"minor": [...]
}
Include only genuine issues CodeRabbit found. Do not invent.
Verify:
file, line, issue, and suggestionPass structured issue list to next skill (coderabbit-triage).
{
"critical": [
{
"file": "src/webhooks.ts",
"line": 42,
"issue": "Missing HMAC signature verification for webhook authenticity",
"suggestion": "Add HMAC-SHA256 signature verification using crypto module. Compare against timestamp to prevent replay attacks."
}
],
"important": [
{
"file": "src/webhooks.ts",
"line": 89,
"issue": "Race condition in concurrent webhook handling. Multiple async calls can update state simultaneously.",
"suggestion": "Implement idempotency key handling. Store processed keys in cache with TTL to deduplicate retries."
},
{
"file": "src/webhooks.ts",
"line": 156,
"issue": "Missing error logging for webhook failures. Makes debugging production issues difficult.",
"suggestion": "Add structured logging with timestamp, error type, and webhook ID. Include full error stack."
}
],
"minor": []
}
Objectivity: CodeRabbit is the source of truth. Don't filter or reinterpret findings.
Completeness: Return all issues CodeRabbit found, regardless of difficulty.
Clarity: Preserve CodeRabbit's exact issue descriptions and suggestions.
Structure: Always return JSON with three severity levels, even if some are empty arrays.
When CodeRabbit finds nothing: Return empty arrays for all severity levels.
{
"critical": [],
"important": [],
"minor": []
}
When issues span multiple files: Group by file but preserve line numbers.
When suggestion is vague: Include CodeRabbit's exact wording. Don't interpret or improve it.
--prompt-only flag for efficiencyThis skill feeds directly into coderabbit-triage:
coderabbit-request
↓ (outputs JSON)
coderabbit-triage
↓ (outputs task plan)
coderabbit-fix (parallel or sequential)