Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add Jerrylalala/compound-engineering --skill ce-reviewgit clone --depth 1 https://github.com/Jerrylalala/compound-engineeringWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/jerrylalala/compound-engineering/ce-review)<a href="https://agentmods.dev/skills/jerrylalala/compound-engineering/ce-review"><img src="https://agentmods.dev/badge/skills/jerrylalala/compound-engineering/ce-review.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00021 | $0.13690 |
| Opus 5 | $0.00010 | $0.06845 |
| Sonnet 5 | $0.00004 | $0.02738 |
| Haiku 4.5 | $0.00002 | $0.01369 |
Grade A, and why
ce:review scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 827 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Code Review
Reviews code changes using dynamically selected reviewer personas. Spawns parallel sub-agents that return structured JSON, then merges and deduplicates findings into a single report.
When to Use
- Before creating a PR
- After completing a task during iterative implementation
- When feedback is needed on any code changes
- Can be invoked standalone
- Can run as a read-only or autofix review step inside larger workflows
Argument Parsing
Parse $ARGUMENTS for the following optional tokens. Strip each recognized token before interpreting the remainder as the PR number, GitHub URL, or branch name.
| Token | Example | Effect |
|---|---|---|
mode:autofix |
mode:autofix |
Select autofix mode (see Mode Detection below) |
mode:report-only |
mode:report-only |
Select report-only mode |
mode:headless |
mode:headless |
Select headless mode for programmatic callers (see Mode Detection below) |
base:<sha-or-ref> |
base:abc1234 or base:origin/main |
Skip scope detection — use this as the diff base directly |
plan:<path> |
plan:docs/plans/2026-03-25-001-feat-foo-plan.md |
Load this plan for requirements verification |
[C] |
[C] |
CODEX_ENABLED = true. 标记 Codex 将作为外部审查方参与(由 workflows:review [C] 调用)。激活 6.5a 安全规则:将所有 safe_auto 降级为 gated_auto,防止可能缺乏 codebase 上下文的建议被自动应用。 |
[G] |
[G] |
GEMINI_ENABLED = true. 标记 Gemini 将作为外部审查方参与(由 workflows:review [G] 调用)。激活 6.5a 安全规则(同 [C])。 |
[T] |
[T] |
TEAM_GATE_ENABLED = true. Load .team-contract.md and execute Deterministic Patch Gate in Stage 5 (see below). Has no effect in mode:report-only or mode:headless. Patch Gate runs in both mode:autofix and interactive mode. |
[T+] |
[T+] |
等同于 [T](ce:review 阶段无风险卫角色,Patch Gate 行为与 [T] 相同,TEAM_GATE_ENABLED = true)。 |
All tokens are optional. Each one present means one less thing to infer. When absent, fall back to existing behavior for that stage.
Conflicting mode flags: If multiple mode tokens appear in arguments, stop and do not dispatch agents. If mode:headless is one of the conflicting tokens, emit the headless error envelope: Review failed (headless mode). Reason: conflicting mode flags — <mode_a> and <mode_b> cannot be combined. Otherwise emit the generic form: Review failed. Reason: conflicting mode flags — <mode_a> and <mode_b> cannot be combined.
What ships with it
6 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 8d ago First seen · 827 lines · 21 tokens per session scan A aec5d1ef1594
ce:review is a skill published in the GitHub repository Jerrylalala/compound-engineering (5 stars, last pushed 3mo ago), licensed MIT. It adds 21 tokens to every session and 13,690 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
autoreview
Pre-commit/ship code review: Codex default; optional Claude or Pi.
rework-rate
Measure and interpret PR rework rate — the emerging 5th DORA metric.
omh-code-review
This is a Hermes-native code-review workflow skill.
revdiff-plan
Review the last Codex assistant message (plan, analysis, or proposal) with inline annotations in a TUI overlay. Extracts the most recent response from Codex rollout files and opens it in revdiff for review and annotation. Activates on "revdiff-plan", "review plan with revdiff", "annotate plan", "review last response"…
code-reviewer
Code review specialist focused on patterns, bugs, security, and performance.
agent-teams-simplify-and-harden
Implementation + audit loop using parallel agent teams with structured simplify, harden, and document passes. Spawns implementation agents to do the work, then audit agents to find complexity, security gaps, and spec deviations, then loops until code compiles cleanly, all tests pass, and auditors find zero issues or…