Enterprise Code Review Engine for Openclaw

An enterprise-grade automated code review agent that uses the SPEAR framework to evaluate security, performance, and reliability across any programming language.

1kalin
v1.0.0
Feb 13, 2026
0
1.6k
0

Install & Download

1. ClawHub CLI

The fastest way to install a skill directly from the registry.

npx clawhub@latest install afrexai-code-reviewer

2. Manual Installation

Copy the skill folder to one of these locations

Global
~/.openclaw/skills/
Workspace
<project>/skills/

Priority: Workspace > Local > Bundled

3. Prompt Installation

Copy this prompt to OpenClaw to install it automatically.

Help me install afrexai-code-reviewer using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).

Prefer to download?

Get the raw skill files in a ZIP archive.

What is Enterprise Code Review Engine?

The Enterprise Code Review Engine is a sophisticated AI agent designed to automate the heavy lifting of peer reviews. By integrating this into your Openclaw Skills library, you gain access to the SPEAR framework—a rigorous evaluation system covering Security, Performance, Error Handling, Architecture, and Reliability.

It acts as a tireless senior developer, scanning PRs, local diffs, and specific files for vulnerabilities and architectural smells without requiring any external dependencies. This skill ensures consistency across your codebase, catching critical issues like SQL injection, N+1 queries, and unhandled promises before they reach production. It is an essential addition for teams looking to maintain high standards through Openclaw Skills.

Enterprise Code Review Engine Use Cases

  • Automated GitHub PR reviews using the gh CLI integration.
  • Pre-commit local diff analysis to catch errors before pushing code.
  • Targeted security audits for sensitive files like authentication or payment logic.
  • Bulk reviewing legacy codebases for architectural debt and God functions.
  • Standardizing review quality across multi-language enterprise repositories using Openclaw Skills.

How Enterprise Code Review Engine Works

  1. The agent receives code input via a GitHub PR ID, a local git diff, or a direct file path.
  2. It applies the SPEAR framework to analyze the code across five dimensions: Security, Performance, Error Handling, Architecture, and Reliability.
  3. A raw score is calculated based on weighted severity findings, where Critical issues carry the highest penalty.
  4. The agent generates a comprehensive Markdown report including a 0-100 score and a final verdict.
  5. Specific code fixes and prioritized recommendations are provided for every identified issue.

Enterprise Code Review Engine Setup

To get started with this skill in your Openclaw Skills environment, ensure you have the GitHub CLI installed for remote reviews. Use the following commands to trigger the engine:

# Review a specific GitHub Pull Request
gh pr diff 42 --repo owner/repo | [agent-trigger] "Review this PR"

# Review local staged changes before committing
git diff --cached | [agent-trigger] "Review these changes"

# Review a specific file for security issues
[agent-trigger] "Review src/auth/login.ts for security vulnerabilities"

Enterprise Code Review Engine Data Schema & Taxonomy

The skill organizes its analysis into a structured format to ensure clarity within the Openclaw Skills ecosystem:

Component Description
SPEAR Scoreboard A summary table scoring each dimension from 1-10 with key findings.
Finding Severity Classified as CRITICAL (-3pts), HIGH (-2pts), MEDIUM (-1pt), or LOW (-0.5pts).
Verdict Thresholds Final scores from 0-100 (e.g., 90-100 is EXCELLENT; 0-39 is BLOCK).
Fix Snippets Markdown code blocks providing the exact refactored code required to resolve a finding.

Enterprise Code Review Engine Advanced Features

  • Multi-level security depth analysis ranging from Quick OWASP checks to deep Threat Model mapping.
  • Business logic and operability checks to ensure code matches ticket requirements and is debuggable in production.
  • Automated database migration analysis for potential table locks, missing indexes, or non-reversible changes.
  • Support for language-specific anti-patterns in TypeScript, Python, Go, Java, and SQL.
  • Integration capabilities for heartbeat or cron jobs to automatically review open PRs via Openclaw Skills.

SKILL.md


Loading

Related Openclaw Skills

METADATA

Github Stars: 0
forks: 0

Featured*