Guides

Review AI-written code without reading the code

An agent made a change and you don't read code, or can't read all of it. What to check instead of the diff before it goes live: what it does, what it touched, what still works, and how to undo it.

Coding agents write more code in an afternoon than anyone can read line by line, and if you don't read code at all, the diff was never an option. But "looks good" on a change nobody looked at isn't a review, and the first time an agent quietly breaks sign-in, you'll wish you had looked at something.

Reading every line was never the point of a review. A review answers four questions, and you can answer each of them without reading code:

  1. Does it do what I asked?
  2. Did it break something that worked?
  3. Is it safe? No passwords in the code, no customer details in logs, nothing that lets the wrong person in.
  4. Can I take it back? If it's wrong, how quickly does the last good version come back?

Read what it did, in plain words

Ask for a summary written for someone who doesn't read code: what changed, from a visitor's or a customer's point of view, and anything the agent wasn't sure of. Then hold it up against what you asked for. A summary that wanders from the request ("I also reorganized the payment code") is the first thing to question.

In Gaitro, every change comes with that summary, beside the request it came from, and a list of what it touched in words: "the orders table", "the order button on menu.html", rather than lines of code.

Look at what it touched, and how risky that is

Changes of the same size can be harmless or dangerous depending on where they land. New wording on a button is low risk; a change to how refunds are worked out, who can sign in, or where keys are kept is not.

Gaitro marks every change low, medium or high risk and says why: "It changes how money moves", "It changes sign-in or permissions", "It touches secrets or environment configuration". A project can require a second person to approve a high-risk change before it ships. That's where your attention goes.

Let checks say what still works

Instead of reading code to see whether something still works, write down what must stay true, in a sentence:

  • "Refunds never exceed what the customer paid."
  • "Someone who isn't signed in can't see an order."
  • "The menu page says “Order for pickup”."

In Gaitro each of those sentences is a check. The agent writes the test behind it, and every change is tested against every check, each run in a fresh sandbox, on the change merged with the live version. A passing check means the sentence is still true, which is the thing you wanted to know. Write checks for what must never break, like sign-in, money and data that mustn't be lost, and every review covers them without you thinking about it.

You can add a check while you review a change: write the sentence on the draft, and the agent writes its test.

Let safety checks find what a summary can't show

Some problems never show up in a summary: a key pasted into the code, customer emails written to a log, a new package whose name is one letter off a popular one, an endpoint that doesn't check who's asking, a database change that throws data away.

Gaitro looks for all of those in every change before it can ship. A finding holds the change until it's fixed or someone writes down why it's fine, and that reason is kept.

Ask for changes in words

If something's off, say so the way you would to a person: "Make the button text shorter." "Leave the refund rules alone; only change the email." In Gaitro, you leave that as a note on the draft for the agent, and the draft goes back to being built until the agent says it's ready again.

Ship it, knowing you can take it back

Nothing goes live until a person presses Ship it, and Gaitro records who decided. Every version is kept, so if a change turns out wrong, open the last good version and press Restore: the code goes back to how it was, as a new version, and nothing is lost.

The code is still there

Nothing stops you from reading the code. Every line of every change is in Gaitro, and developer view opens up the diffs, logs and commands everywhere. Plain words mean you don't have to read it to decide.

Try it on your own project

Gaitro is free for one person with 3 private projects, and works with the coding agent you already use.

More guides

This page as markdown, for your agent: /guides/review-ai-written-code-without-reading-code.md.