No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by vikingmute · Agent Tool · ★ 220
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is review-forge safe to install? View the security audit →
Review Forge is an Agent Skill for structured, auditable code review workflows. It orchestrates multi-pass LLM review, finding synthesis, human-approved fix selection, implementation, regression testing, independent verification, and status tracking. What It Does Reviews local changes, branches, PRs, or commit ranges. Synthesizes multiple review perspectives into one fix checklist. Uses checkboxes as the human approval boundary for fixes. Fixes only approved items. Requires tests after fixes unless testing is blocked and documented. Verifies fixes independently when possible. Keeps process artifacts isolated under . Commands : create one model-specific review file. : merge review files in one feature folder into . : fix checked items, run tests, and update status. : verify fixed items, inspect or rerun tests, and update status. Default Review Scope When no target or base is specified: If there are uncommitted or staged changes, Review Forge reviews the working tree diff. If the working tree is clean, it reviews . If does not exist, it tries . If no reasonable base can be inferred, it asks for one. Explicit PRs, branches, commit ranges, or base refs always override these defaults.
| Stars | 220 |
| Forks | 11 |
| Category | Agent Tool |
| Quality Score | 69.9210076429675/100 |
| Last Updated | 2026-05-29 |
| Created | 2026-05-29 |
| Est. Tokens | ~2k |
These tools work well together with review-forge for enhanced workflows:
Looking for a review-forge alternative? If you're comparing review-forge with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
A collection of standardized Agent Skills to teach GitHub Copilot, Claude, Gemini and Cursor about modern Andr
Coding Agents skills for Synalinks OSS
A collection of Agent skills and Claude Code plugins for HashiCorp products.
Claude Code Skill Factory — A powerful open-source toolkit for building and deploying production-ready Claude
Lightweight registry to discover, install, and manage all public Claude plugins and agent skills for your favo
A Claude Code skill that turns PDFs, docs, and codebases into Obsidian study vaults
Explore other popular agent tool tools:
review-forge is review-forge is an Agent Skill for structured, auditable code review workflows. It is categorized as a Agent Tool with 220 GitHub stars.
You can find installation instructions and usage details in the review-forge GitHub repository at github.com/vikingmute/review-forge. The project has 220 stars and 11 forks, indicating an active community.
The top alternatives to review-forge on Agent Skills Hub include awesome-android-agent-skills, synalinks-skills, agent-skills. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: