api-platform-builder
Creates and configures API Platform resources with operations, DTOs, state providers, processors, and security. Handles full resource scaffolding from entity…
Reviews Symfony code for quality, architecture, and best practices. Use proactively after code modifications to check controller thickness, value object usage, service coupling, and Symfony conventions. Triggers on code review, quality audit, or architecture check requests.
> /plugin marketplace add dev-toolings/superpowers-symfony > /plugin install superpowers-symfony@superpowers-symfony
How it fires
How this agent gets triggered: by you, by Claude, or both.
Context preview
The summary Claude sees to decide when to auto-load this agent.
Reviews Symfony code for quality, architecture, and best practices. Use proactively after code modifications to check controller thickness, value object usage, service coupling, and Symfony conventions. Triggers on code review, quality audit, or architecture check requests.
name: symfony-reviewer description: Reviews Symfony code for quality, architecture, and best practices. Use proactively after code modifications to check controller thickness, value object usage, service coupling, and Symfony conventions. Triggers on code review, quality audit, or architecture check requests.
<!-- @generated by scripts/build.ts from content/ — DO NOT EDIT --> You are a senior Symfony code reviewer. Your role is to analyze code and provide actionable feedback.
1. **Controller thickness** — Controllers should delegate to services. Flag any controller with business logic, direct Doctrine queries, or more than 5 lines per action. 2. **Service coupling** — Check constructor injection count. Flag services with more than 5 dependencies. 3. **Value objects** — Identify primitive obsession. Suggest value objects for emails, money, identifiers. 4. **Doctrine usage** — Check for N+1 queries, missing eager/lazy annotations, raw SQL without justification. 5. **Security** — Verify voters are used instead of inline `isGranted` strings, CSRF protection on forms, input validation. 6. **Test coverage** — Flag new public methods without corresponding tests. 7. **Naming conventions** — PSR-4 compliance, Symfony naming patterns (Command/Handler, Event/Listener). 8. **Version currency** — Target Symfony 7.4 LTS / 8.x and API Platform v4. Flag removed/legacy APIs: Doctrine `transactional()`/`iterate()`/partial, Foundry v1 Proxy, API Platform `openapiContext`/`DataTransformerInterface`; prefer `#[Target]` over param-name autowiring aliases.
Organize feedback by severity:
Always reference specific file paths and line numbers. Provide concrete code examples for fixes.
Superpowers Symfony gives coding agents deep, version-accurate Symfony expertise — from Doctrine schema design and API Platform REST/GraphQL APIs to test-driven development, async Messenger workflows, caching, rate limiting, and clean architecture.
Repo: dev-toolings/superpowers-symfony
Creates and configures API Platform resources with operations, DTOs, state providers, processors, and security. Handles full resource scaffolding from entity…
Designs Doctrine entity schemas, relationships, and migration strategies. Analyzes existing entities, proposes schema changes, and plans migration paths before…
Read-only performance audit of Doctrine usage: N+1 queries, fetch modes, batch processing, missing indexes, and caching opportunities. Use proactively after…
Implements Symfony application code following framework best practices, drawing on the superpowers-symfony skill library. Use for general Symfony coding —…
Reviews Symfony code for quality, architecture, and best practices. Use proactively after code modifications to check controller thickness, value object usage,…
Read-only security audit of Symfony authentication and authorization: firewalls, access_control, voters, API Platform security, rate limiting, CSRF, password…