search
code reviewers
Trends
- 1Massive open-source pull request sparks AI slop debateβOk, this got to be a repo diff record. +238,856 -260 https:// github.com/saga-soft/novelWrit er/pull/3067 # AI # Slop #
A pull request on the open-source project novelWriter by saga-soft is drawing attention for its sheer scale: roughly 238,856 lines added against just 260 removed, a size developers are calling a possible repo diff record. Commenters suspect bulk AI-generated code, tagging it as "AI slop", and are debating whether maintainers can meaningfully review changes of this magnitude.
- 2Greg Kroah-Hartman on security in the age of LLMsβGreg Kroah-Hartman β Security in the LLM Age [video]
Greg Kroah-Hartman, the longtime Linux kernel maintainer who oversees stable releases, has given a talk examining how large language models affect software security. He discusses what the rise of AI-generated code means for vulnerabilities, code review practices, and maintaining trust in widely used open-source components. The talk is drawing attention among developers weighing the risks of AI-written code in critical infrastructure.
- 3Developers question quality of AI coding agentsβΌAsk HN: Is anybody producing good code with coding agents?
A discussion among software developers is asking whether anyone is actually producing good code with AI coding agents. The question taps into ongoing debate about whether tools like GitHub Copilot, Cursor and other AI assistants deliver production-quality results or mainly speed up work that still needs heavy review. Replies so far are limited, but the topic reflects wider uncertainty in the industry about how reliable AI-generated code really is.
- 4Perspica launches as a semantic diff tool for code reviewβShow HN: Perspica β A semantic diff for reviewing code
Developer sshah03 has released Perspica, an open-source tool that produces semantic diffs of code, aimed at making code review easier by highlighting meaningful changes rather than raw line-by-line differences. The project is available on GitHub and is being showcased to the Hacker News community, where early reactions and discussion are forming around its usefulness for reviewers.
- 5System76 bans LLM-generated code in COSMIC projectsβΌSystem76 COSMIC projects will no longer accept LLM-generated content in code submissions
System76 has announced that its COSMIC desktop projects will no longer accept code submissions containing LLM-generated content. The Linux hardware and software developer says contributions must be written without AI assistance. The move reflects a growing frustration among open source maintainers, who argue that machine-generated code adds review burden and quality problems while contributors submit pull requests that are difficult to verify or maintain.
- 6
OpenAI has made its automatic code review feature free for all Codex users. The tool reviews code changes automatically, giving developers feedback without a paid tier. The move is being discussed as a way to pull more developers into OpenAI's coding ecosystem at a time when automated code review and AI coding assistants are a highly competitive market.
- 7CodeDiff tool launched promising sub-100ms syntax-aware diffsβShow HN: CodeDiff β Fast (<100ms), robust (99.95%) syntax-aware code diff
A developer has released CodeDiff, an open-source code comparison tool that claims to produce syntax-aware diffs in under 100 milliseconds with 99.95 percent robustness. The tool is available on GitHub and is being presented to the Hacker News community for feedback and scrutiny.
- 8
Developers are voicing strong approval for OpenAI's Codex app, calling it one of the best AI coding tools available. The conversation highlights how the app helps programmers write, review, and debug code faster, with many comparing it favorably to rival assistants. Discussion centers on its practical usefulness in daily development workflows rather than hype, suggesting growing adoption among working engineers.
- 9IBM's AI clearinghouse uncovers hundreds of Java flawsβIBMβs AI-powered vulnerability clearinghouse finds hundreds of Java flaws
IBM's AI-powered vulnerability clearinghouse has identified hundreds of security flaws in Java software. The finding highlights the growing role of artificial intelligence in scanning open-source code for vulnerabilities at scale, giving developers advance warning of weaknesses that attackers could exploit. Security teams are expected to review the affected Java components.
- 10Meta patched Muse VM escape vulnerability ahead of launchβΌMeta Rushed to Fix a Muse VM Escape Vulnerability Before Launch
Meta moved quickly to fix a virtual machine escape vulnerability in its Muse system before the product launched, according to a report by Gadget Review. A VM escape flaw would let malicious code break out of a sandboxed environment and access the host system, making it a serious security concern. The fix suggests the issue was identified during pre-launch testing, though details on severity or discovery remain limited.
- 11Orbi AI agent turns GitHub issues into merged pull requestsβΌOrbi takes a GitHub issue and hands back a reviewed, merged pull request. One agent writes the fix,... # ai # opensource
Orbi, an AI coding agent, reportedly takes a GitHub issue and returns a reviewed, merged pull request, with one agent writing the fix and another handling review. A follow-up post examining the system's harness asks what its reviewer missed, suggesting developers are scrutinising how reliable the automated pipeline is. The discussion is drawing interest from the open-source and AI engineering communities.
- 12New Emacs tool hutch brings local code reviews to MagitβΌhutch: local code reviews in emacs for the mildly disenfranchised https://kitallis.in/p/hutch-a-local-code-review-interf
Developer Kitallis has released hutch, an Emacs interface for doing local code reviews within Magit, aimed at developers who prefer reviewing code without leaving their editor or relying on hosted platforms. The tool is being shared among open-source communities, where it has drawn modest attention from Emacs and programming enthusiasts interested in lightweight, editor-based review workflows.
- 13New series tackles the pain of unreadable pull requestsβThe Quest Begins (The "Why") Ever opened a pull request and felt like you were trying to read ancient Sith runes? Iβve b
A developer has kicked off a written series on why open-source and team code contributions are so hard to review, opening with the familiar experience of deciphering vague commit messages like "fix stuff" and digging through git blame for hours. The piece promises to explore the reasons behind poor pull request hygiene, and early readers are sharing their own frustrations with undocumented code changes.
- 14Software Architecture Fails in Unexpected Places, Engineers SayβSoftware architecture rarely breaks where we expect it to. A system can have clean code, elegant abstractions, carefully
Engineers are discussing how software systems can fail despite clean code, elegant abstractions, well-designed APIs, automated tests and polished deployment pipelines. The argument is that even code that passes every review can start behaving strangely once user numbers grow, meaning architecture tends to break under real-world load rather than at obvious design flaws. The observation is resonating with developers who have seen theoretically sound systems collapse in production.
- 15AI coding assistants may hide risks beneath pristine-looking codeβYou prompt your favorite AI coding assistant: "Write a service that processes bulk user telemetry, validates incoming re
A discussion circulating among developers examines what happens when you prompt an AI coding assistant to write a service that processes bulk user telemetry, validates incoming records and handles batch publishing. The code arrives within seconds and looks clean, but the point being raised is that polished syntax and modern structure can mask problems in how the service actually behaves, encouraging engineers to look beyond surface quality when reviewing machine-generated code.
- 16GitHub launches ReviewBench, an open benchmark for AI code reviewβΌReviewBench: An open benchmark for AI code review
GitHub has introduced ReviewBench, an open benchmark for measuring how well AI models perform code review. The benchmark is intended to give developers and researchers a standard, reproducible way to compare the quality of AI-generated code review feedback, as AI assistants are increasingly used in real software development workflows.
- 17Carbonato Botnet Uses AI to Hijack Unprotected Docker HostsββͺοΈ Carbonato Botnet Uses AI to Hijack Unprotected Docker Hosts π¨οΈ ThreatDown researchers have analyzed the new Carbonato
Researchers at ThreatDown have analyzed the new Carbonato botnet, which compromises poorly secured Docker hosts. The malware targets systems where the Docker API is exposed without authentication on port 2375, taking over containers and using AI-generated code in its operations. Security teams are being urged to lock down exposed Docker APIs and review firewall rules to prevent infections.
- 18How to Write Your First Coding Agent SkillβYou have house rules for your coding agent: how commit messages should look, what a code review... # ai # tutorial # pro
A new tutorial walks developers through creating their first 'agent skill' β a set of house rules that tells an AI coding assistant how the team works, from commit message formatting to what a code review must include. The guide is aimed at developers integrating AI agents into everyday software workflows and is being shared in programming and productivity communities.
- 19Microsoft Exchange flaw lets attackers read other users' mailboxesβCVE-2026-96940 is an Exchange Server privilege escalation flaw rated CVSS 8.8. An authenticated attacker can potentially
A newly disclosed vulnerability in Microsoft Exchange Server, tracked as CVE-2026-96940, carries a high severity score of 8.8. Security researchers say an authenticated attacker could bypass authorization checks and read other users' mailboxes and attachments within the same on-premises Exchange organisation. The flaw does not allow pre-authentication remote code execution, but experts are warning administrators to review exposure and patch promptly.
- 20Webinar shows how to use AI coding agents in XcodeβMit Coding-Agenten Software entwickeln, bereitstellen und prΓΌfen Erfahren Sie im Live-Webinar, wie Sie in Xcode die KI-A
Heise is hosting a live webinar on developing, deploying and reviewing software with AI coding agents in Xcode. The session covers Claude Code, GitHub Copilot and OpenAI Codex, with a focus on using the tools without compromising security or data privacy. The announcement is circulating among developers interested in AI-assisted programming workflows.
- 21
OpenAI's Codex, the company's AI coding agent built on its GPT models, is generating renewed discussion as developers and tech commentators weigh it against ChatGPT. The conversation centres on how the two tools fit together: ChatGPT as the general assistant and Codex as a specialised tool for writing and reviewing code inside developers' workflows.
- 22Karpathy: AI coding shifts human work to oversightβAndrej Karpathy made a simple point on X : as AI does more of the work, our job moves to oversight... # ai # programming
Former OpenAI researcher Andrej Karpathy argued on X that as AI writes more of the code, the programmer's job shifts from typing to reviewing and supervising the machine's output. The remark is circulating among developers, many of whom see it as a fair description of how AI coding tools are already changing day-to-day software engineering and what skills will matter next.
- 23
Memes about 'vibe coding' β building software by prompting AI models and accepting generated code without close review β are circulating widely among developers, sparking a fresh debate over whether AI-assisted programming is a legitimate productivity boost or a shortcut that produces unverified, fragile code. Supporters joke about shipping features without reading the output, while critics warn the practice risks quality, security and maintainability as more teams adopt AI code generation tools.
- 24Developer says Claude built a paid Mac app in 11 days, no code writtenβHow I made a paid Mac app in 11 days with Caude β without writing a single line of code Claude helped me vibe-code a Mac
A developer says they used Anthropic's Claude to build a paid Mac application in 11 days without writing any code themselves, shipping it as 'vibe-coded' software that passed Apple's App Store review. The account walks through the journey from idea to a purchasable product, drawing attention to how quickly AI tools can now take an app from concept to store shelf.
- 25Developer sells human review service for AI-written pull requestsβΌI sell a human second pass on one AI-written PR (Riven Desk). Before pitching that, I wanted to do... # ai # codereview
A developer is offering a paid human second-pass review of AI-generated pull requests, and says they reviewed three AI-written PRs from public repositories before pitching the service, which they call Riven Desk. The idea taps into growing concern that AI-written code is being merged without careful human scrutiny. Commenters in programming and engineering communities appear engaged with the question of how much review AI code actually needs.
- 26Engineers Explore Edge-Agentic AI Tool for Code Commit AnalysisβBuilding an Edge-Agentic Commit Analyzer: Crushing Gritty Errors in Local Environments # programming # engineering # ai
A newly shared engineering write-up describes building an edge-agentic commit analyzer, a tool that reviews code commits locally using AI agents running on local hardware rather than cloud services. The piece focuses on troubleshooting stubborn errors that arise in local environments. Reaction so far is limited, but the topic touches on ongoing developer interest in running AI coding tools offline for privacy and cost reasons.
- 27AI Agents Drive Developer Shift from Go to RustβAI Agents Make Rust the Go-To Choice Over Go for Dev Teams
Developer teams are increasingly choosing Rust over Go for new projects, with AI coding agents cited as a driving factor. The argument is that AI assistants write safer, more correct code in Rust because the compiler catches errors that would slip through in Go, reducing the need for manual review. Some developers agree, while others argue Go's simplicity still makes it more productive.
- 28Developer ditches code review for AI agents, tries new approachβI stopped reviewing my agents' code. Here's what I do instead Article URL: https:// alexeyindeev.substack.com/p/i- stopp
Engineer Alexey Indeev has written that he no longer reviews code produced by his AI agents, and describes the alternative workflow he uses instead in a Substack essay. The piece has drawn modest attention on Hacker News, where developers are weighing whether traditional code review still makes sense as more work is delegated to autonomous coding agents.
- 29Reviewers question how deeply to check AI-assisted codeβWhen a pull request shows up and an agent helped write it, the first question a lot of reviewers ask... # codereview # a
Developers are debating how to handle pull requests written with the help of AI coding agents. The discussion, circulating among programmers and engineering managers, asks how thoroughly reviewers should scrutinise such contributions, weighing whether agent-written code deserves the same depth of review as human work and what that means for team standards, trust and inclusive review culture.
- 30AI Agent Corrects Its Own Fix as Others VerifyβAn AI agent just publicly corrected its own fix β and two others checked its work I run... # ai # agents # showdev # pro
A software developer describes an AI coding agent that publicly identified and corrected an error in its own fix, with two other agents then reviewing and validating the correction. The account, shared in a developer community under tags like AI, agents and programming, highlights the emerging practice of multi-agent workflows where one AI's output is checked by others before being accepted.
- 31Developer proposes visual interfaces for AI agent outputβBecause I find it difficult to read the textual output of agents after each modification or... # webdev # ai # programmi
A developer is voicing frustration with the text-heavy output of AI coding agents after each code modification, saying it is difficult to read in web development workflows. The proposal gaining attention is to give agents chalkboard-style and avatar-based interfaces, making changes easier to scan and more inclusive for developers reviewing automated edits.
- 32DoorDash Runs 130,000 Engineering Tasks Through Cloud-Based AI AgentsβDoorDashβs Flux Runs 130,000 Engineering Tasks through Cloud-Based Agents DoorDash moved engineering agent tasks from la
DoorDash has moved its AI engineering agents from developers' laptops to Flux, a cloud-based platform that now handles around 130,000 automated tasks a month, including roughly 25,000 weekly code reviews. The system runs agents in isolated micro virtual machines and cloud sandboxes designed to keep autonomous code operations secure. The scale of deployment is drawing attention as one of the larger corporate examples of AI agents doing routine software engineering work.
- 33Malicious VS Code extensions tied to GlassWorm spread via theme disguisesββ οΈ CRITICAL: Pretty Themes, Hidden Loaders: GlassWorm-Linked Extensions Span VS Code Marketplace and Open VSX GlassWorm
Threat actors have published malicious extensions on the Visual Studio Marketplace and Open VSX that pose as legitimate themes but carry hidden loaders linked to the GlassWorm campaign. Developers installing these add-ons risk having malicious code loaded into their development environments. Security researchers are warning users to review installed extensions and treat popular marketplace entries with caution.
- 34SpaceX Reportedly Closes $60B Acquisition of CursorβSpaceX Cursor Acquisition Closes: $60B Deal Adds Enterprise AI to Starlink + AI Revenue Boom
SpaceX has reportedly completed a $60 billion acquisition of Cursor, the AI coding company, in what would fold enterprise AI software into a business better known for rockets and Starlink satellite internet. Reports frame the deal as adding a new AI revenue stream alongside Starlink's connectivity business. Details on regulatory review and how Cursor fits into SpaceX's structure remain limited, so the full scope of the deal is still unclear.
Repos
- edenfunf/reelmimic Show it a video you love. Get a new video in the same style. An AI crew (Claude Code or Codex) plans, builds and reviews
- michael-denyer/pstack-claude Claude Code, Codex, Copilot, Pi, OpenCode, Gemini, and Prime Agent versions of Poteto's pstack. Rigorous agent work
- mvschwarz/openrig Build your own network of agents from Claude Code, Codex and Pi: persistent teams with roles, shared context and owned w
- obra/superpowers An agentic skills framework & software development methodology that works.
- garrytan/gstack Use Garry Tan's exact Claude Code setup: 23 opinionated tools that serve as CEO, Designer, Eng Manager, Release Man
- cursor/plugins Cursor plugin specification and official plugins
- addyosmani/agent-skills Production-grade engineering skills for AI coding agents.
- echris6/motion-video-kit Claude Code skill kit for premium AI-assisted business videos: independent critic loop, motion principles from 28 launch
- egma-ai/jev-code-reviewer Review behavior, not just diffs. Jev prioritizes human attention; OpenAI explains the changes. Local CLI + agent skill +
- ethanplusai/astra-flash-orchestrator Coordinate your models from Codex. Plan, delegate, use host tools, and review work across workspaces. Formerly Astra Fla
- sshah03/perspica Review code changes by what they do, not line by line.
- anthropics/claude-code-action
- devagrawal09/jev-review A staged code-review workflow and local dashboard built with TypeSafe Jev.