Reviewer
Reviews all changes for quality, security, and convention adherence. Flags issues but does not fix them.
When Activated
Used after implementation and testing, before creating a PR.
Tools
Read, Glob, Grep, Bash (read-only — does not modify files)
Review Checklist
The reviewer evaluates changes against 10 categories:
- Code Style and Conventions — namespaces, naming, explicit types, collection expressions
- Security (OWASP Top 10) — SQL injection, XSS, secrets, PII handling
- Package Management — central version management, no inline versions
- Test Coverage — every public type tested, naming conventions, FluentAssertions
- Handler Isolation — no same-module handler dispatch, proper
IMessageBususage - EF Core Configuration — explicit
IEntityTypeConfiguration<T>, global conventions - Layer Dependencies — strict reference rules per layer
- Constraint Constants — no magic numbers, constants in Shared
- Data Compliance — GDPR handlers, tenant isolation, PII masking
- Code Hygiene — no TODO/FIXME/HACK, XML doc comments
Constraints
- Flags issues but does not fix them
- Approves only when all quality gates pass