rvw
Layered, replicated, self-adjudicating code review orchestrator.
rvw turns LLM code review from a single noisy pass into a deterministic
pipeline: activate rule lanes in layers, fire every lane with N replicas in one
concurrent wave, merge findings by content-derived keys, adjudicate each
candidate against the actual source, and publish one synthesized report.
DISCOVER ──▶ MERGE ──▶ ADJUDICATE ──▶ REPORT ──▶ publish
lanes × collapse replicas vote Korean md GitHub review
replicas + folds on real source + coverage (inline anchors)
Why
Single-pass LLM review has three structural problems, each addressed by a measured design decision (see DECISIONS.md):
| Problem | Mechanism | Measured |
|---|---|---|
| One pass misses findings | opt-in 3 replicas per lane, one wave | recall 88% → 99% (ADR-006) |
| Scoped rules go blind outside their scope | mandatory unscoped-sweep lane |
3/3 deep defects only the sweep caught (ADR-005) |
| LLMs fabricate findings | separate adjudication lane, votes grounded in real source | 3/3 fabricated rejected, 0/6 genuine lost (ADR-007) |
Findings are forced through closed rule enums via strict --output-schema —
measured: the schema beats the prompt, and closed enums cost zero recall vs
free-form ids (ADR-004).
Install
pip install rvw # or: uv tool install rvw
Requires Python 3.12+ and a working Codex CLI
(codex exec) as the review runtime.
Every release tag automatically publishes versioned and latest GHCR images. For
systemic pull-request checks, pin the image by version tag or digest and follow the
containerized GitHub Actions guide.
Quickstart
# One command: resolve PR → discover → merge → adjudicate → report
rvw review --target 1119 --repo-dir /path/to/pr-head-checkout
# Plan only (no execution): which lanes activate, how many runs
rvw plan --target 1119 --json
# Deterministic gate for CI: exit 0 PASS / 1 BLOCK
rvw auto --target 1119 --repo-dir /path/to/checkout
# Anchored PR gate: disposable checkout, exact coverage, keyed dispositions
rvw gate --target 1119
# Publish the report as a GitHub review (dry-run by default)
rvw publish --run <run-id> --execute
# Explicit stacked PR chain: plan → review → inspect tip COMMENT payload
rvw stack plan --prs 1119,1120,1121
rvw stack review --prs 1119,1120,1121
rvw stack publish --run <stack-run-id>
Concepts
- Rule — one atomic check (
slop/sot-violation,bug/severe-defect, …) - Lane — a named rule bundle + prompt executed as one review pass; rules form the closed output enum
- Layer — activation tier owning lanes:
base(always) →project(repo predicate) →scope(path predicate) →dynamic(per-PR brief) - Runtime — the execution engine (
codex exec; read-only by default on the host, with the measured outer-container isolation fallback described in the CI guide) - Run — lane × runtime × replica
The registry lives outside the package (default ~/.hermes/review/):
layers.yaml + lanes/**.md (YAML frontmatter + prompt body) + policies/.
Everything is referenced by name so documents, lanes, and runtimes can be
swapped without touching code.
Stacked PR review
rvw stack accepts an explicit ordered list of at least two PRs. Every member
must be open and unmerged in one repository, and each child's base ref/SHA must
equal its parent's head ref/SHA. stack review pins every anchor, runs the
ordinary pipeline once per member with merge-base PR diff semantics, then
rechecks all earlier actionable claims against each descendant checkout as
PRESENT, ABSENT, or UNCERTAIN. Caller order is authoritative even when PR
numbers decrease.
The resulting lineage reports STILL_PRESENT, FIXED_IN, REGRESSED_IN, or
UNCERTAIN without treating hunk-derived finding IDs from different PRs as the
same identity. Stack artifacts live under /tmp/rvw/<stack-run-id>/ by default:
stack-manifest.json, member-runs.json, lineage.json, and
stack-report.md. stack publish writes a body-only COMMENT payload for the
tip PR, pins it to the captured tip commit, and makes no network call unless
--execute is supplied; execute mode revalidates the complete chain first.
stack review prints its run ID before member work so partial artifacts remain
recoverable. Automatic stack discovery, stack gating, disposition inheritance,
and per-origin PR comments are not part of this mode.
Specs
Normative behavior lives in the OpenSpec capability specifications. This README remains the public overview and is not the behavioral source of truth.
Pipeline guarantees
- Validity contract — a run counts only if: exit 0, artifact exists, strict-schema JSON validates, completion marker present. INVALID replicas are never promoted; an all-INVALID lane is re-dispatched exactly once.
- Deterministic merge — findings collapse by
(file, hunk, rule); cross-lane corroboration and replica agreement are computed, not guessed. Display folds (same-pattern-across-files, same-region) never merge verdicts and never chain transitively. - Source-grounded verdicts — adjudication replicas run inside the target checkout; REJECTED requires a verbatim disproving source quote, otherwise it is coerced to UNCERTAIN. Unresolved candidates are reported as unverified, never silently dropped.
- Approve is not expressible — the publish layer hardcodes COMMENT.
rvw autodecides PASS/BLOCK from a YAML threshold policy; nothing in the pipeline can emit an approving review.
Lane health
rvw lanes list # registry overview
rvw sample --lane slop-hygiene --fixture tests/fixtures/deep.ts
# novel-rule gap + replica site variance
rvw doctor # INVALID rate, /other rate, rejection rate
Development
git clone https://github.com/Soju06/rvw && cd rvw
uv sync --all-extras
uv run pytest -q -m "not live" # unit suite
uv run pytest -q -m live # exercises real codex (needs credentials)
Gates: ruff check · ruff format · ty check · pytest. Architecture
decisions are append-only in DECISIONS.md.
License
Metadata
Release files for rvw 0.12.0
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| rvw-0.12.0.tar.gz | 119.0 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| rvw-0.12.0-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 263.6 kB
Release files / rvw-0.12.0.tar.gz
| Download URL | rvw-0.12.0.tar.gz |
|---|---|
| Size | 119.0 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
5c4c73d51672c4f2df8ead743a9670dfe5c736193707cd5652bb3bf8677d23ca
|
|
BLAKE2b-256 checksum How to use checksums |
cc85d3a51d8aeacc01e4077cdf4df9ad0db56d52daa823359cc9ab664925fd2d
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Sep 5, 2026.
Transparency logRelease files / rvw-0.12.0-py3-none-any.whl
| Download URL | rvw-0.12.0-py3-none-any.whl |
|---|---|
| Size | 144.6 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
2cd7e843200475235d4431604f98893044d634cbfcd59666ff7b25fcac0157b0
|
|
BLAKE2b-256 checksum How to use checksums |
ae62e510c5139d6d1749f8a54c42f00a10d01b886892a058581c9363963c7029
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Sep 5, 2026.
Transparency log