Install
$ agentstack add skill-postpartum-genushyacinthus29-dotnet-skills-dotnet-mcaf-human-review-planning ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
MCAF: Human Review Planning
Trigger On
- a large AI-generated code drop needs a human review plan
- the reviewer cannot inspect every line and needs prioritization
- the user asks which files are highest risk before doing manual review
- the user names a generated folder and wants a saved review plan for it
Value
- produce a concrete project delta: code, docs, config, tests, CI, or review artifact
- reduce ambiguity through explicit planning, verification, and final validation skills
- leave reusable project context so future tasks are faster and safer
Do Not Use For
- normal small pull-request review
- automated bug finding without creating a human review sequence
Inputs
- the target folder, feature area, or bounded context under review
- the main user journeys or operational flows involved
- any known architecture context, adjacent entities, or existing system rules
- any exact output path the user wants for the saved plan
Quick Start
- Read the nearest
AGENTS.mdand confirm scope and constraints. - Run this skill's
Workflowthrough theRalph Loopuntil outcomes are acceptable. - Return the
Required Result Formatwith concrete artifacts and verification evidence.
Workflow
- Read enough of the target area and its immediate boundaries to understand the generated code before planning review.
- Map the natural flow of operations first:
- sign up or authentication
- create
- update
- register or configure
- execute primary business action
- complete, archive, or finalize
- Use that flow to derive the most efficient human review sequence.
- Use the reviewer's domain knowledge as a force multiplier:
- compare the generated code against known architecture and existing entities
- look for places where the new feature should behave like nearby existing flows
- prioritize boundaries where generated code may drift from established system rules
- Identify high-risk review zones:
- entry points and orchestration layers
- persistence and state transitions
- cross-boundary integrations
- permissions, validation, and invariants
- side effects such as email, payments, jobs, or notifications
- Produce two separate outputs:
- prioritized review flow
- prioritized files or modules to inspect
- Present both outputs in chat.
- If the user asks for a durable artifact, save the plan to the exact docs path they requested; otherwise use
docs/AREA/HUMAN_REVIEW_PLAN.md.
Deliver
- a prioritized human review sequence
- a prioritized list of files or modules to inspect first
- both sections presented separately in chat
- a saved
HUMAN_REVIEW_PLAN.mdwhen requested
Validate
- the plan is grounded in actual code reading, not only the folder names
- the review order follows actual user or system flows
- high-risk files are explained, not only listed
- priorities account for likely mismatch against existing architecture or analogous entities
- the plan helps a human skip low-value line-by-line review
- the saved plan is readable without extra chat context
Ralph Loop
Use the Ralph Loop for every task, including docs, architecture, testing, and tooling work.
- Brainstorm first (mandatory):
- analyze current state
- define the problem, target outcome, constraints, and risks
- generate options and think through trade-offs before committing
- capture the recommended direction and open questions
- Plan second (mandatory):
- write a detailed execution plan from the chosen direction
- list final validation skills to run at the end, with order and reason
- Execute one planned step and produce a concrete delta.
- Review the result and capture findings with actionable next fixes.
- Apply fixes in small batches and rerun the relevant checks or review steps.
- Update the plan after each iteration.
- Repeat until outcomes are acceptable or only explicit exceptions remain.
- If a dependency is missing, bootstrap it or return
status: not_applicablewith explicit reason and fallback path.
Required Result Format
status:complete|clean|improved|configured|not_applicable|blockedplan: concise plan and current iteration stepactions_taken: concrete changes madevalidation_skills: final skills run, or skipped with reasonsverification: commands, checks, or review evidence summaryremaining: top unresolved items ornone
For setup-only requests with no execution, return status: configured and exact next commands.
Load References
- read
references/review-plan-format.mdfor the output shape - read
references/risk-signals.mdwhen deciding what deserves human attention first
Example Requests
- "Plan a human review for this 40K-line AI-generated feature."
- "I cannot review every file. Tell me what to inspect first."
- "Trace the signup-to-completion flow and save a HUMANREVIEWPLAN.md."
- "Look through the generated folder, give me two separate prioritized review lists, and save them under docs for this area."
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: Postpartum-genushyacinthus29
- Source: Postpartum-genushyacinthus29/dotnet-skills
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.