# Go Code Reviewer

> Go Code Reviewer

- Skill: `liyown/go-code-reviewer` (Agent Skill, multi-file: 21 files)
- Install (CLI): `npx skillmds@latest add liyown/go-code-reviewer`
- Raw SKILL.md: https://api.skillmd.com/api/skills/liyown/go-code-reviewer/raw
- Safety review: pending
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: Coding & Dev Tools
- Author: liyown (https://skillmd.com/u/liyown)
- Updated: 2026-09-17
- Page: https://skillmd.com/skills/liyown/go-code-reviewer

---


# Go Code Reviewer

Review Go backend code for real production risk. Keep the entrypoint small and load scenario prompts only when the code needs them.

## Required Loading

Always load `prompts/reviewer.md`.

Load additional prompts only when relevant:

- `prompts/concurrency-reviewer.md`: goroutines, channels, WaitGroup, errgroup, race conditions, leaks, sync primitives.
- `prompts/context-reviewer.md`: context propagation, cancellation, deadlines, request-scoped values, background vs TODO.
- `prompts/error-reviewer.md`: error wrapping, sentinels, %v vs %w, panic recovery, defer error handling.
- `prompts/sql-reviewer.md`: sqlx, GORM, database/sql, prepared statements, transactions, N+1, connection pool.
- `prompts/rpc-reviewer.md`: gRPC, HTTP servers, middleware, timeouts, retries, status codes, streaming.
- `prompts/security-reviewer.md`: authorization, tenant isolation, injection, sensitive logs, file/URL/SSRF, secrets.

## Review Contract

- Find concrete bugs, not generic advice.
- Bind every finding to code evidence and an execution path.
- Mark uncertain findings as `需要结合上下文确认`.
- Do not output style comments unless they hide a real defect.
- If no clear high-risk issue is found, output exactly:

```text
未发现明确高风险问题。
```

Use the severity and output contract from `prompts/reviewer.md`.

## Examples

Each bad example has a matching `good-<file>` in this same `examples/`
directory that shows the minimal fix for every Critical/High finding. Read
both side by side when triaging a real diff.

