Install
$ agentstack add skill-stella-skillguard-rabbit-round ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Rabbit Round
Process automated PR review comments systematically. Use this for CodeRabbit, Gemini, GitHub Copilot, Devin, Greptile, and similar bots.
Instructions
- Get context:
``bash PR_NUMBER=$(gh pr view --json number -q '.number') gh api user --jq '.login' git rev-parse HEAD ``
- Fetch review comments from the PR:
``bash gh api repos/{owner}/{repo}/pulls/"$PR_NUMBER"/comments --paginate ``
Filter for known bot accounts. Do not treat human review comments as bot comments.
- Triage each bot comment:
- Accept if it improves correctness, safety, maintainability, or follows repo conventions.
- Push back if it is incorrect, overreaching, or conflicts with documented conventions.
- Implement accepted suggestions:
- make the code changes
- group related fixes logically
- run the relevant project checks
- Reply inline to each bot comment:
``bash COMMENT_ID="123456789" gh api -X POST repos/{owner}/{repo}/pulls/"$PR_NUMBER"/comments/"$COMMENT_ID"/replies \ -f body="[response]" ``
Good response patterns:
- accepted and implemented
- agreed, implemented with a small adjustment
- already addressed in commit
{hash} - pushing back, with a concrete reason and source or repo convention
- Never resolve human review threads. For bot threads, resolve only after:
- the change is implemented, or
- the pushback is clearly documented
- Check nit-level comments too. Small ones still matter if they improve clarity
or remove avoidable friction.
- Commit and push if you made changes:
- use a neutral commit message such as
fix: address review comments - push to the active PR branch
Decision Guidelines
Accept when the suggestion:
- fixes a bug or real edge case
- improves type safety
- adds missing tests
- aligns with existing repo patterns
- tightens security or validation appropriately
Push back when the suggestion:
- assumes facts not true in this codebase
- conflicts with canonical specs or official sources
- adds complexity for little benefit
- would undo a deliberate, documented decision
- is purely stylistic and inconsistent with the repo
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: stella
- Source: stella/skillguard
- License: Apache-2.0
- Homepage: https://stll.app
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.