Token导航 LogoToken导航TokenDH.com
研究检索需要联网github未标认证来源可访问许可证需确认审计异常

codex-reviewCodex 审查

Agent Skill

codex-review 用于查找、检索和筛选相关信息,适合在 Codex、Claude、Cursor、Gemini CLI 中需要根据关键词、任务场景或来源线索快速定位候选结果时使用。可结合来源仓库、安装命令和原始 README 继续核验具体用法。安装前建议确认权限范围、维护状态,以及是否会触发联网、命令执行或文件读写。

总安装

1,082

周安装

46

GitHub Stars

公开资料未说明

下载量

379
CodexClaudeCursorGemini CLI

安装说明

本站只整理中文说明和来源信息,不托管安装包,也不代用户安装。

GitHub

来源数

2

许可证

unknown

最后核验

2026-05-01

来源状态

来源可访问

安装方式

通过对话安装

复制提示词发给支持本地命令或 Skills 的 AI 助手,先确认命令和权限,再让它执行。

请帮我安装这个 Agent Skill:codex-review(Codex 审查)
来源仓库:https://github.com/ulpi-io/skills
仓库路径:skills/codex-review
安装命令:
npx skills add https://github.com/ulpi-io/skills --skill codex-review
安装前请先检查当前环境是否支持对应 CLI,并向我确认将要执行的命令、安装目录、联网范围和文件读写权限;确认后再执行。

命令行安装

复制命令到本机终端执行。该命令会通过 npx skills 从第三方来源获取 Skill;本站只展示命令,不托管安装包,也不自动执行。

skills.shnpx skills
npx skills add https://github.com/ulpi-io/skills --skill codex-review

简介

用于查找和筛选相关信息,适合基于关键词或任务场景定位内容。

  • 可在 Codex、Claude 等环境中使用,支持快速检索。
  • 安装命令:npx skills add https://github.com/ulpi-io/skills --skill codex-review。
  • 建议确认权限和维护状态,避免触发敏感操作。
  • 注意是否涉及外部系统调用或文件读写。

SKILL.md

Non-negotiable rules:

  1. Read the real diff before writing Codex instructions.
  2. Make the instructions specific to the changed areas and likely risks.
  3. Never pass secrets or credential values into review instructions.
  4. Carry forward exclusion lists on later rounds.
  5. Verify returned findings before acting on them.

Codex Review

Inputs

  • $request: Optional scope hint such as last commit, uncommitted, auth focus, or round 2

Goal

Use codex review to get an external review pass that:

  • reads the right diff scope
  • focuses on the actual risk areas in the change set
  • returns structured findings instead of generic commentary

Step 0: Verify Codex availability

Check:

  • which codex
  • whatever minimal auth or environment check is needed for the current setup

If the CLI is unavailable or not authenticated, explain the blocker and stop.

Success criteria: Codex can be invoked successfully from the current repository.

Step 1: Resolve review scope

Determine whether to review:

  • the full branch against its base
  • uncommitted changes
  • a specific commit

Read the real diff summary and changed-file list before building instructions.

If there is no diff, stop and say so explicitly.

Success criteria: The exact review target is explicit and backed by a real diff.

Step 2: Write focused review instructions

Build a small temporary instruction file that includes:

  • what changed
  • the most relevant risk areas
  • any previously fixed issues to exclude on later rounds
  • an instruction to verify findings against the actual code
  • a compact expected output format

Keep the instructions concrete. Generic prompts produce weak reviews.

Success criteria: The instruction file is specific to the actual change set.

Step 3: Run codex review

Use the right invocation shape for the selected scope:

  • --base <branch> for branch review
  • --uncommitted for working-tree review
  • --commit <sha> for a single commit

Key flags:

  • sandbox_permissions -- codex needs disk read access to verify findings: -c 'sandbox_permissions=["disk-full-read-access","disk-full-write-access","network-full-access"]'
  • instructions -- point to the focused instruction file from Step 2: -c 'instructions="/tmp/codex-review-instructions.md"'
  • --title "<description>" -- descriptive review title

Always capture stderr with 2>&1 (codex logs to stderr).

If the review is expected to be long-running, background execution is acceptable.

Success criteria: Codex runs against the intended scope and returns parseable output.

Step 4: Summarize findings

Report:

  • review scope
  • findings by priority
  • file and line references when available
  • explicit clean result when no material findings are returned

If the user wants fixes, verify each finding locally before changing code.

Success criteria: The user gets a clear, scoped review summary instead of raw CLI output.

Step 5: Iterate only with exclusions

On later rounds:

  • add fixed findings to the exclusion section
  • narrow the scope to new changes where possible
  • avoid paying for repeated generic full-branch reviews

Success criteria: Follow-up rounds look for new issues rather than re-reporting old ones.

Guardrails

  • Do not run this skill proactively; it is explicit-user-only.
  • Do not put secrets, tokens, or private config values in the instruction file.
  • Do not trust findings blindly without local verification.
  • Do not use Codex review as a substitute for reading the diff first.

Output Contract

Report:

  1. the review scope
  2. the main focus areas given to Codex
  3. findings by priority with locations when available
  4. explicit clean result if nothing material was found
  5. whether a next round should exclude previously fixed issues

适合场景

01

用户想查找某类 Agent Skill 时

02

需要根据任务场景推荐可安装能力包时

03

需要对比不同来源的安装命令和来源信息时

能力概览

能力 1

按任务关键词查找相关 Skills

能力 2

展示可复制的安装命令

能力 3

保留来源站点、仓库和原始说明,方便继续核验

能力 4

展示第三方安全扫描或审计结果

安装后应在对应宿主中按原始 README 的触发条件使用;具体调用方式请以来源页面和 README 为准。

平台分布

Codex

35.34%
按下载量换算134

Claude

30.32%
按下载量换算115

Cursor

18.38%
按下载量换算70

Gemini CLI

9.37%
按下载量换算36

安全审计

Gen Agent Trust Hub

未通过

Socket

通过

Snyk

通过

权限和风险

需要联网

该 Skill 可能需要联网访问来源站点、仓库或外部 API;具体网络访问范围需要结合源码和 README 复核。

安装前确认

本站仅展示第三方公开信息,不托管安装包,不提供自动安装或运行环境。安装前应自行审查源码、依赖和命令行为。来源安全扫描存在 warning/failed 结果,不能写成本站确认安全。当前只有一个来源,正式发布前建议补源仓库或其他目录站核验。

来源信息

继续浏览同类 Skills