Closing as sufficiently addressed.
Current coverage:
budget: 91.8%review: 100%llm: 88.6%gitea: 80.5%cmd/review-bot: 42.4%
Integration test scaffold exists (`//go:build…
Closing — Go deps rarely update, and when they do it's a 30-second go get -u. Renovate setup + maintenance overhead isn't worth it for a single-binary tool with minimal deps.
Closing as wontfix. The threat model (we own the Gitea instance, checksums verify integrity) doesn't justify adding GPG/cosign infrastructure for an internal tool. If we ever publish this…
Closing — this is configurable via --system-prompt-file. The default prompt defines the threshold ("any MAJOR → REQUEST_CHANGES"), and per-repo overrides can redefine severity rules. No code…
Closing as implemented. The --system-prompt-file / SYSTEM_PROMPT_FILE option (added in a prior PR) covers this use case:
review-bot --system-prompt-file SECURITY_REVIEW.md ...
Sin…