bmad-bmm-code-review

Automate adversarial code reviews to detect security and quality issues.

Updated Jan 4, 2026
One-click install
npx skills add https://github.com/rahmatullahboss/multi-store-saas --skill bmad-bmm-code-review-rahmatullahboss
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: bmad-bmm-code-review
Source: https://github.com/rahmatullahboss/multi-store-saas/tree/main/.agents/skills/bmad-bmm-code-review
Command: npx skills add https://github.com/rahmatullahboss/multi-store-saas --skill bmad-bmm-code-review-rahmatullahboss

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill automates the process of conducting adversarial code reviews, ensuring that specific issues are identified efficiently and accurately.

Core Features & Use Cases

  • Workflow Automation: Loads and executes predefined review workflows from core configuration files.
  • Issue Detection: Finds potential vulnerabilities or issues in code based on workflow-defined criteria.
  • Use Case: When a developer requests a code review, this Skill performs an automated adversarial analysis to find security flaws and code quality issues, reducing manual effort.

Quick Start

Use the code review skill to analyze your codebase by providing its root directory path.

Frequently Asked Questions about bmad-bmm-code-review

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate adversarial code review to find security vulnerabilities?

Automated adversarial code review finds security vulnerabilities by loading predefined workflows from core configuration files to analyze your project files against specific issue criteria. You simply provide the root directory path to trigger the analysis.

What is an adversarial code review workflow and how does it detect issues?

An adversarial code review workflow is a predefined set of criteria loaded from core configuration files to actively probe your codebase. It detects potential security flaws and code quality issues by executing these targeted checks against your project files.

Does automated code review require specific configurations to check for compliance and vulnerabilities?

Automated code review requires access to core workflow configurations to execute predefined criteria for compliance and vulnerability detection. It also needs the ability to load and read your project files directly from the root directory path provided.

How do I run static analysis for security flaws using a code review workflow?

To run static analysis for security flaws, provide your project root directory path to the skill. It will load the workflow configurations and perform an automated adversarial analysis to identify vulnerabilities and code quality issues.

What's the best way to streamline vulnerability detection during software development?

Streamlining vulnerability detection is achieved by automating the adversarial code review process. By loading predefined workflows, the skill efficiently identifies security flaws and compliance issues, reducing manual effort for developers and security engineers.

Can I use this automated code review for any software project directory?

You can use this automated code review on any software project by providing its root directory path. The skill is designed for developers and security engineers to load project files and execute vulnerability detection and compliance checks.