- Home
- Skills
- Code Quality & Review
- codebase improvement advisor
Works with the AI tools you already use
codebase improvement advisor
Senior-level codebase auditor that generates evidence-backed improvement plans and prioritized technical roadmaps.
$12
codebase improvement advisor
Example session with this skill installed
Run a standard audit of the current repository. Focus on high-leverage tech debt and performance bottlenecks. Generate plans for the top three findings.
- Read your context and instructions
- Compiled the codebase improvement advisor
- Generated the document
I have completed a standard audit of the repository. I analyzed the directory structure, package manifests, and CI configurations to identify high-leverage improvements. I have vetted all findings against source evidence and prioritized them by impact and confidence.
Codebase Audit Results
| ID | Title | Category | Impact | Effort | Risk | Confidence |
|---|---|---|---|---|---|---|
| PERF-01 | N+1 Query in Dashboard Loader | Performance | High | M | Low | High |
| DEBT-01 | Circular Dependency in Auth Module | Tech Debt | Med | S | Med | High |
| TEST-02 | Missing Integration Tests for Payment Flow | Test Coverage | High | L | Low | High |
| SEC-01 | Unvalidated Input in Search API | Security | Critical | S | Low | High |
[PERF-01] N+1 Query in Dashboard Loader
- Evidence:
src/api/dashboard.ts:42- ThegetUserStatscall is inside amapfunction over the workspace list. - Impact: Significant latency increase for users with more than 5 workspaces.
- Effort: M.
- Risk: LOW - standard refactor to join query.
- Confidence: HIGH.
Fix sketch: Refactor the data fetcher to use a single batch query for all workspace IDs instead of individual calls.
[SEC-01] Unvalidated Input in Search API
- Evidence:
src/controllers/search.ts:18- Query parameterqis passed directly to the database driver. - Impact: Potential SQL injection risk.
- Effort: S.
- Risk: LOW - fix involves adding a validation schema.
- Confidence: HIGH.
- Fix sketch: Implement Zod validation for all incoming search query parameters.
[DEBT-01] Circular Dependency in Auth Module
- Evidence:
src/auth/service.tsimports fromsrc/user/service.ts, which imports back fromsrc/auth/utils.ts. - Impact: Increases build times and prevents clean modularization.
- Effort: S.
- Risk: MED - requires careful re-ordering of exports.
- Confidence: HIGH.
- Fix sketch: Move shared types to a new
src/common/types/auth.tsfile to break the loop.
Next steps
- I have created detailed execution plans for PERF-01, SEC-01, and DEBT-01 in the
plans/directory. - Review
plans/README.mdfor the suggested execution order. - You can now hand these plans to an executor agent or a developer.
codebase-improvement-advisor.pdf
PDF · document
Example file from a real run - the skill writes it into your workspace.
Connects securely to your tools. The creator never sees your data.
What you get
About this skill
The problem
Large codebases accumulate tech debt and architectural drift that manual reviews often miss. Engineering teams struggle to turn vague audit findings into actionable, self-contained implementation plans that other developers or agents can actually execute.
What it does
- Performs multi-category audits covering security, performance, test coverage, and developer experience.
- Vets findings against concrete file evidence to eliminate false positives and "hallucinated" bugs.
- Prioritizes work by leverage, calculating impact-to-effort ratios for every identified issue.
- Generates self-contained, machine-executable implementation plans with clear stop conditions and verification gates.
- Reviews existing pull requests or branches to identify introduced risks before they merge.
Frameworks & tools
Works with any language or framework by analyzing root manifests, CI configs, and directory structures. Specifically leverages plans/ or advisor-plans/ directories for artifact storage.
Why this beats prompting it yourself
Most LLM audits provide "vibes" and generic advice. This skill enforces a rigorous evidence-backed protocol, requiring the agent to open and confirm every file and line number cited. It separates the advisor role from the executor role, ensuring plans are robust enough to stand alone without session context.
Use cases
- Conducting deep security and performance audits on legacy repositories.
- Onboarding new agents or engineers by creating a verified roadmap of high-leverage fixes.
- Performing pre-merge risk assessments on complex feature branches.
- Standardizing tech debt documentation into executable handoff templates.
Known limitations
This skill is strictly read-only for source code. It will not implement fixes, commit changes, or run mutating commands in your working tree.
How to install
Works the same in every agent - Claude, Cursor, Codex, Copilot and 20+ more.
- 1
Download the ZIP
Free skills download straight away. Paid skills unlock right after purchase.
- 2
Unzip into your skills folder
Every agent reads skills from one folder on your machine. Drop the unzipped folder in there.
- 3
Ask your agent to use it
Restart the agent if it was already running. It picks the skill up automatically - no config needed.
Skills folder by agent
Click the path to copy it. Create the folder if it does not exist yet.
Reviews
No reviews yet
Be one of the first to try it. Every listed skill passes our trust checks below.
Security scanned
Passed our 8-point scan before listing
Fresh listing
Recently published to Agensi
30-day refund
Not a fit? Get your money back
Trust & safety
Security scanned
Verified clean 1 month ago
- Passed all security checks, Safe to install