Agree the boundaries
Inspect the areas your change touches.
We choose the review areas that fit your change. A focused pull request review and a whole-site launch review are different scopes.
A focused pull request is a useful starting point. Broader access or scope is discussed before the work expands.
Structure & code quality
Duplicated logic, component reuse, data ownership, configuration, error handling, and maintenance cost.
Behavior & regressions
Changed routes, forms, APIs, shared components, and the existing flows that depend on them.
Security concerns
Authentication, authorization, input validation, secret handling, and dependency risks within the agreed scope. This is not a penetration test or a security certification.
Search & measurement
URLs, redirects, canonicals, metadata, structured data, internal links, sitemaps, and conversion events.
Performance & accessibility
Extra requests, script weight, rendering, layout shift, keyboard access, labels, focus, and semantics.
Production readiness
Build output, environment assumptions, runtime behavior, deployment steps, and the checks needed after release.