github/workflows/api-schema-sync.yml`).
**If a tool's implementation differs from upstream, flag it as HIGH priority.**
## CodeReview Guidelines
### Security
- All path parameters MUST use `encodePath()` from `src/utils/encode-path.ts`
- No hardcoded credentials
with a TypeScript CLI wrapper and npm publishing pipeline.
Any Copilot agent (Coding Agent, CodeReview, ci-doctor) working on this repo must follow the rules below.
## Hard rules — never
recommendation to do nothing.
- Generating unnecessary code or changes is worse than generating nothing.
- When asked to "analyze", "review", or "consider", the result can legitimately be: "I analyzed
recommendation to do nothing.
- Generating unnecessary code or changes is worse than generating nothing.
- When asked to "analyze", "review", or "consider", the result can legitimately be: "I analyzed
changed function must be shown with `+`/`-` diff markers on changed lines inside a ` ```diff ` code block. The diff file should contain:
1. **Table Changes** — New tables (full
understand and contribute to the codebase.
- 🧑💻 Before making any changes to the code, take the time to review the existing codebase and understand the context and dependencies of the code
with secrets or file I/O — it’s probably unsafe.
- Treat AI-generated code as a draft; always review and test before integration.
- Maintain a human-in-the-loop approach
instructions: `instructions/*.instructions.md`
- Frontmatter MUST include:
- `applyTo: "<glob pattern(s)>"`
- Frontmatter MAY include:
- `excludeAgent: "code-review"` or `"coding-agent"` if only one should read it
- Body MUST:
- Describe exactly what
GitHub Copilot Instructions for Agent365-python
## CodeReview Rules
### Rule 1: Check for "Kairo" Keyword
- **Description**: Scan code for any occurrence of the keyword "Kairo"
- **Action**: If "Kairo" is found
clean** — use guarded
headless agents or equivalent isolated workers for investigation, implementation, tests,
and review. Keep only decisions and compact witnessed evidence in the primary context;
independently verify worker effects
mocked Atelier client, no stubbed responses. A mocked IRIS test
passes while the real code path is broken, which is worse than no test.
Integration and e2e runs need `--test
implemented internally).
- Changelogs are not covered by the CI Markdown lint step. Review changes to
them manually.
- Use the current unindented changelog style: category labels such as `ADDED`,
`CHANGED
next step seems obvious, ask first — do not assume.
8. **SPEC-FIRST review gate**: Before touching any code or non-spec files, read all relevant `.specs/` files, update all affected
cookbook publishing platform. Jupyter notebooks are the source of truth; metadata lives in `registry.yaml`.
## CodeReview Focus Areas
When reviewingcode in this repository:
- **Notebooks are sacred** — Never add site
Copilot CodeReview Instructions
`cc-hooks-ts` is a TypeScript library that defines Claude Code hook types with runtime validation via `valibot`. It tracks upstream `@anthropic-ai/claude-agent-sdk` and Claude
refactor breaks the task boundary and gets rejected.
- Open-ended refactor, cleanup, or review of existing code: run the two-pass
audit below, scoped to what the task covers
pages to preserve SEO value
- Review user feedback to identify unclear sections that need improvement
- Update screenshots and UI references when interfaces change
- Refresh code examples to reflect current product