--- id: wiki-2026-0508-automated-quality-review title: "Automated Quality & Review" category: 10_Wiki/Topics status: needs_review canonical_id: self aliases: [P-REINFORCE-AUTO-WIKI-AUTO-001] duplicate_of: none source_trust_level: A confidence_score: 0.95 tags: [automation, code-review, static-analysis, linting, quality-gate, dev-tools, p-reinforce] raw_sources: [] last_reinforced: 2026-05-01 github_commit: pending inferred_by: Claude Opus 4.7 (auto-normalize 2026-05-08) tech_stack: language: unspecified framework: unspecified --- # [[Automated Quality & Review|Automated Quality & Review]] ## πŸ“Œ ν•œ 쀄 톡찰 (The Karpathy Summary) > "인간 리뷰어보닀 λ¨Όμ € μ½”λ“œμ˜ ꡬ문, μŠ€νƒ€μΌ, μ•Œλ €μ§„ 취약점을 ν•„ν„°λ§ν•˜μ—¬ ν’ˆμ§ˆμ˜ μ΅œμ†Œ 기쀀을 κ°•μ œν•˜κ³ , 리뷰 μ‹œκ°„μ„ κ³ λΆ€κ°€κ°€μΉ˜ 섀계 토둠에 μ§‘μ€‘μ‹œν‚€λŠ” μ§€λŠ₯ν˜• μžλ™ν™” λ°©μ–΄μ„ ." ## πŸ“– κ΅¬μ‘°ν™”λœ 지식 (Synthesized Content) μžλ™ν™”λœ ν’ˆμ§ˆ κ΄€λ¦¬λŠ” ν˜„λŒ€ μ—”μ§€λ‹ˆμ–΄λ§μ˜ 생산성을 κ²°μ •μ§“λŠ” ν•„μˆ˜ μΈν”„λΌμž…λ‹ˆλ‹€. 1. **정적 뢄석 및 λ¦°νŒ… (Static Analysis & Linting)**: * **ꡬ문 및 μŠ€νƒ€μΌ κ°•μ œ**: λ¦°ν„°(Linter)와 포맀터(Formatter)λ₯Ό 톡해 νŒ€μ˜ μ»¨λ²€μ…˜μ„ μžλ™μœΌλ‘œ μœ μ§€ν•˜λ©° μ†Œλͺ¨μ μΈ μŠ€νƒ€μΌ λ…ΌμŸμ„ μ œκ±°ν•©λ‹ˆλ‹€. * **[[SAST (Static Application Security Testing)|SAST (Static Application Security Testing]]**: μ†ŒμŠ€ μ½”λ“œ λ ˆλ²¨μ—μ„œ OWASP Top 10 λ“±μ˜ λ³΄μ•ˆ 결함을 쑰기에 νƒμ§€ν•©λ‹ˆλ‹€. 2. **리뷰 μžλ™ν™” (Review Automation)**: * **ν’ˆμ§ˆ 게이트 (Quality Gate)**: CI/CD νŒŒμ΄ν”„λΌμΈκ³Ό μ—°λ™ν•˜μ—¬ ν…ŒμŠ€νŠΈ 컀버리지, μ½”λ“œ λ³΅μž‘λ„, λ³΄μ•ˆ 기쀀을 μΆ©μ‘±ν•˜μ§€ λͺ»ν•œ PR의 병합을 μ‹œμŠ€ν…œμ μœΌλ‘œ μ°¨λ‹¨ν•©λ‹ˆλ‹€. * **사전 컀밋 ν›… (Pre-commit Hooks)**: μ½”λ“œκ°€ 원격 μ €μž₯μ†Œμ— ν‘Έμ‹œλ˜κΈ° μ „ λ‘œμ»¬μ—μ„œ 즉각적인 ν”Όλ“œλ°±μ„ μ œκ³΅ν•˜μ—¬ μˆ˜μ • μ£ΌκΈ°λ₯Ό λ‹¨μΆ•ν•©λ‹ˆλ‹€. 3. **도ꡬ 톡합 (Tools Integration)**: * GitHub Actions, SonarQube, CodeClimate λ“± λ‹€μ–‘ν•œ 뢄석 도ꡬλ₯Ό PR μ›Œν¬ν”Œλ‘œμš°μ— ν†΅ν•©ν•˜μ—¬ μ½”λ“œ 건강 μƒνƒœλ₯Ό κ°€μ‹œν™”ν•˜κ³  μΆ”μ ν•©λ‹ˆλ‹€. ## ⚠️ λͺ¨μˆœ 및 μ—…λ°μ΄νŠΈ (Contradictions & Updates) - **μ˜€νƒ(False Positive)의 λ…Έμ΄μ¦ˆ**: μžλ™ν™” 도ꡬ가 μ‹€μ œ μœ„ν˜‘μ΄ μ•„λ‹Œ μ½”λ“œλ₯Ό κ²°ν•¨μœΌλ‘œ 지적할 경우 개발자의 ν”Όλ‘œλ„κ°€ μ¦κ°€ν•©λ‹ˆλ‹€. ν”„λ‘œμ νŠΈ λ§₯락에 λ§žλŠ” κ·œμΉ™ μ»€μŠ€ν„°λ§ˆμ΄μ§•κ³Ό μ˜ˆμ™Έ 처리 정책이 μ€‘μš”ν•©λ‹ˆλ‹€. - **μΈκ°„μ˜ λŒ€μ²΄ λΆˆκ°€λŠ₯μ„±**: μžλ™ν™”λŠ” μ •ν•΄μ§„ νŒ¨ν„΄μ€ 잘 μ°Ύμ§€λ§Œ λΉ„μ¦ˆλ‹ˆμŠ€ λ§₯락, μ•„ν‚€ν…μ²˜ μ˜λ„, λ³΅μž‘ν•œ μ ‘κ·Ό μ œμ–΄ λ‘œμ§μ€ μ΄ν•΄ν•˜μ§€ λͺ»ν•©λ‹ˆλ‹€. κΈ°κ³„λŠ” 'κ·œμΉ™ μ€€μˆ˜'λ₯Ό, 인간은 'μ˜λ„μ™€ 섀계'λ₯Ό κ²€μ¦ν•˜λŠ” λΆ„μ—… ꡬ쑰λ₯Ό μœ μ§€ν•΄μ•Ό ν•©λ‹ˆλ‹€. ## πŸ”— 지식 μ—°κ²° (Graph) - [[SAST (Static Application Security Testing)|SAST (Static Application Security Testing]]: 정적 λ³΄μ•ˆ λΆ„μ„μ˜ 심화. - [[CI-CD Pipeline|CI-CD Pipeline]]: μžλ™ν™” 검증이 μ‹€ν–‰λ˜λŠ” 핡심 ν™˜κ²½. - [[Code Review Checklist|Code Review Checklist]]: μžλ™ν™”κ°€ μ²˜λ¦¬ν•˜μ§€ λͺ»ν•˜λŠ” μΈκ°„μ˜ μ˜μ—­. - Shift-Left Security: λ³΄μ•ˆ 점검을 μžλ™ν™”λ‘œ μ‘°κΈ° λ„μž…ν•˜λŠ” μ „λž΅. - [[Technical-Debt|Technical Debt]]: μžλ™ν™”λœ λŒ€μ‹œλ³΄λ“œλ₯Ό 톡해 κ΄€λ¦¬λ˜λŠ” 뢀채. --- ## πŸ€– LLM ν™œμš© 힌트 (How to Use This Knowledge) **μ–Έμ œ 이 지식을 μ“°λŠ”κ°€:** - *(TODO)* **μ–Έμ œ μ“°λ©΄ μ•ˆ λ˜λŠ”κ°€:** - *(TODO)* ## πŸ§ͺ 검증 μƒνƒœ (Validation) - **정보 μƒνƒœ:** needs_review - **좜처 신뒰도:** A - **κ²€ν†  이유:** *(P-Reinforce Phase 1 μžλ™ μ •κ·œν™”. λ³Έλ¬Έ 검증 ν•„μš”.)* ## 🧬 쀑볡 검사 (Duplicate Check) - **κΈ°μ‘΄ μœ μ‚¬ λ¬Έμ„œ:** *(TODO: μΈλ±μ„œ ν΄λŸ¬μŠ€ν„° 리포트 μ°Έμ‘°)* - **처리 방식:** UPDATE (μžλ™ μ •κ·œν™”) - **처리 이유:** Phase 1 μ •κ·œν™” β€” μ˜› ν…œν”Œλ¦Ώ/λˆ„λ½ ν•„λ“œ 보강. ## πŸ•“ λ³€κ²½ 이λ ₯ (Changelog) | λ‚ μ§œ | λ³€κ²½ λ‚΄μš© | 처리 방식 | 신뒰도 | |------|-----------|-----------|--------| | 2026-05-08 | P-Reinforce Phase 1 μ •κ·œν™” (frontmatter + 헀더 ν‘œμ€€ν™”) | UPDATE | A | ## πŸ’» μ½”λ“œ νŒ¨ν„΄ (Code Patterns) **νŒ¨ν„΄ 1:** *(TODO: 이 ν”„λ‘œμ νŠΈ μ»¨λ²€μ…˜ λ°˜μ˜ν•œ ꡬ쑰 μŠ€μΌˆλ ˆν†€)* ```text # TODO ``` ## πŸ€” μ˜μ‚¬κ²°μ • κΈ°μ€€ (Decision Criteria) **선택 Aλ₯Ό 써야 ν•  λ•Œ:** - *(TODO)* **선택 Bλ₯Ό 써야 ν•  λ•Œ:** - *(TODO)* **κΈ°λ³Έκ°’:** > *(TODO)* ## ❌ μ•ˆν‹°νŒ¨ν„΄ (Anti-Patterns) - **[μ•ˆν‹°νŒ¨ν„΄]:** *(TODO: 무엇을 ν•˜λ©΄ μ•ˆ λ˜λŠ”κ°€ + 이유 + λŒ€μ‹  무엇을)*