s977043/river-review
レビューを、組織の判断資産へ。Review Judgment as Code for AI-assisted development — codify your team's review standards as repo-owned skills and run them across the SDLC.
ARCHETYPE
Fort Knox
Deny lists, pre-tool hooks, sandboxing. Nothing touches prod without a signature.
GUARDRAILS
5/5
Blocks destructive commands · Protects secrets · Pre-tool screening hook · No YOLO mode · Sandbox or ask-first rules · details
Copy this rig
# review before running: this installs third-party code
$ npx degit s977043/river-review/.claude ./rig-river-review # inspect, then merge into .claude/ MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.
$ npx degit s977043/river-review/.claude/skills/ask-codex .claude/skills/ask-codex $ npx degit s977043/river-review/.claude/skills/river-review-discipline .claude/skills/river-review-discipline $ npx degit s977043/river-review/.claude/skills/skill-creator .claude/skills/skill-creator $ npx degit s977043/river-review/.claude/skills/skill-ops-planner .claude/skills/skill-ops-planner $ npx degit s977043/river-review/.claude/skills/skill-optimizer .claude/skills/skill-optimizer $ npx degit s977043/river-review/examples/skills/architecture-sample .claude/skills/architecture-sample $ npx degit s977043/river-review/examples/skills/code-quality-sample .claude/skills/code-quality-sample $ npx degit s977043/river-review/examples/skills/test-review-sample .claude/skills/test-review-sample
$ curl -fsSL --create-dirs -o .claude/agents/river-review.md https://raw.githubusercontent.com/s977043/river-review/main/agents/river-review.md Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.
{
"permissions": {
"deny": [
"Bash(curl:*)",
"Bash(wget:*)",
"Bash(rm -rf:*)",
"Bash(sudo:*)",
"Bash(pkill:*)",
"Bash(kill:*)",
"Bash(rm:*)",
"Read(./.env)",
"Read(./.env.*)",
"Read(./secrets/**)",
"Read(./**/*credential*)",
"Read(./**/*secret*)",
"Read(./**/*.pem)",
"Read(./**/*.key)",
"Read(./config/master.key)",
"Bash(git push origin main:*)",
"Bash(git push origin main)"
]
},
"hooks": {
"PreToolUse": [
{
"matcher": "Bash",
"hooks": [
{
"type": "command",
"command": ".claude/hooks/no-force-push.sh"
},
{
"type": "command",
"command": ".claude/hooks/gh-account-guard.sh"
}
]
}
]
}
} Skills (8)
ask-codexriver-review-disciplineskill-creatorskill-ops-plannerskill-optimizerSample Architecture Consistency ReviewSample Code Quality PassSample Test Coverage Review
Subagents (1)
| river-review model: inherit | Review agent for River Review's capability pack. Runs your team's versioned review skills (the Skill Registry) as perspective-based reviewer roles and verifies findings against the diff. Use proactive |
Hooks (3)
| event | matcher | runs |
|---|---|---|
| PreToolUse | Bash | .claude/hooks/no-force-push.sh |
| PreToolUse | Bash | .claude/hooks/gh-account-guard.sh |
| PostToolUse | Write|Edit|MultiEdit | .claude/hooks/format.sh |
Slash commands (15)
/merge-check/plan-merge-order/preflight/propose-issue/range-review/register-plugin-asset/release-kick/verify-agent-report/challenge/check/pr/review-local/review-team/setup-team/skill
Permissions
deny (17)
Bash(curl:*)
Bash(wget:*)
Bash(rm -rf:*)
Bash(sudo:*)
Bash(pkill:*)
Bash(kill:*)
Bash(rm:*)
Read(./.env)
Read(./.env.*)
Read(./secrets/**)
Read(./**/*credential*)
Read(./**/*secret*)
Read(./**/*.pem)
Read(./**/*.key)
Read(./config/master.key)
Bash(git push origin main:*)
Bash(git push origin main)
ask (0)
—
allow (25)
Bash(git:*)
Bash(gh:*)
Bash(npm:*)
Bash(pnpm:*)
Bash(yarn:*)
Bash(make:*)
Bash(node:*)
Bash(rg:*)
Bash(fd:*)
Bash(ls:*)
Bash(cat:*)
Bash(head:*)
Bash(tail:*)
Bash(find:*)
Bash(grep:*)
Bash(tree:*)
Bash(wc:*)
Bash(jq:*)
Bash(mv:*)
Bash(mkdir:*)
Bash(chmod:*)
Bash(cp:*)
Bash(ln:*)
mcp__plugin_github_github__pull_request_read
mcp__plugin_github_github__list_pull_requests
Similar rigs
PleasePrompto/ductor
Control Claude Code, Codex CLI and Gemini CLI from Telegram. Live streaming, persistent memory, cron jobs, webhooks, Docker sandboxing.
Minimalist 1.9k tok ·
Abdullah-967/my-claudec0de-setup-2026
Transform Claude Code into a professional autonomous agent. This setup includes structured context handoffs, a features.json tracking system, and built-in workflows for synchronization and semantic commits.
Pragmatist 750 tok ·
dukcode/claude-dotfiles
Personal configuration files for Claude Code — skills, hooks, and settings.claude-config
Minimalist 155 tok ·
joshmedeski/dotfiles
Josh's dotfiles for his developer environment
Minimalist 1.1k tok ·