Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add ClarentCinematics/Codex-Skills-for-Enterprise --skill pr-review-briefgit clone --depth 1 https://github.com/ClarentCinematics/Codex-Skills-for-EnterpriseWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/clarentcinematics/codex-skills-for-enterprise/pr-review-brief)<a href="https://agentmods.dev/skills/clarentcinematics/codex-skills-for-enterprise/pr-review-brief"><img src="https://agentmods.dev/badge/skills/clarentcinematics/codex-skills-for-enterprise/pr-review-brief/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/clarentcinematics/codex-skills-for-enterprise/pr-review-brief"><img src="https://agentmods.dev/badge/skills/clarentcinematics/codex-skills-for-enterprise/pr-review-brief.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00063 | $0.00371 |
| Opus 5 | $0.00032 | $0.00186 |
| Sonnet 5 | $0.00013 | $0.00074 |
| Haiku 4.5 | $0.00006 | $0.00037 |
Grade A, and why
pr-review-brief scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 11d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
PR Review Brief
Workflow
- Identify intent, changed surface area, affected users/systems, and stated rollout plan.
- Summarize behavior changes separately from refactors, formatting, generated files, or test-only changes.
- Inspect risk by correctness, security, data, performance, compatibility, operability, and maintainability.
- Check whether tests, docs, migrations, rollout notes, and observability match the risk.
- Produce a concise reviewer brief with focused questions and suggested comments.
Output Standard
Use this structure by default:
- Change Summary: what changed and why.
- Review Focus: files, flows, or behaviors that deserve attention.
- Risk Assessment: severity, evidence, and potential impact.
- Missing Coverage: tests, docs, migrations, monitoring, or rollout gaps.
- Merge Blockers: issues that should block approval.
- Suggested Comments: concise review comments grounded in evidence.
- Approval Readiness: ready, ready with nits, needs changes, or unclear.
Rules
- Do not claim a bug exists unless the evidence supports it.
- Separate blocking concerns from preferences and cleanup suggestions.
- Avoid generic review advice that does not reference the change.
- Flag security, privacy, migration, and production-risk concerns explicitly.
References
Read references/review-rubric.md when the PR is large, cross-cutting, security-sensitive, or lacks tests.
What ships with it
2 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 11d ago First seen · 38 lines · 63 tokens per session scan A 5dfcb0e93d48
pr-review-brief is a skill published in the GitHub repository ClarentCinematics/Codex-Skills-for-Enterprise (2 stars, last pushed 2mo ago), licensed MIT. It adds 63 tokens to every session and 371 once invoked, about $0.0003 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
luna
Reviews code for objective correctness, security, and reliability.
max
Cleans up and improves existing code without changing behavior.
continual-learning
Nightly refinement of an existing per-repo review-style prompt using this reviewer's own finding outcomes. Read confirmed (resolved-by-commit / thumbs-up) and dismissed (thumbs-down) findings, promote the bug patterns the team actually fixes, demote the false-positive patterns, reconcile against the current prompt…
agent-watchdog
Use when asked to watch, babysit, audit, review, compare, or fix another agent's work from a Codex session ID, Claude Code session/transcript, chat/thread link, PR, branch, log, or pasted run summary. Monitor until the other agent is done or blocked, reconstruct what the user asked, independently investigate the same…
comet-verify
Comet Phase 4: Verify and Close. Invoke with /comet-verify. Verify implementation matches design, handle development branch.
cross-model-review
A second-opinion code review that asks a different AI model to independently inspect a change, then compares both reviews. It focuses on logic, security, consistency, and omissions.