Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/5uck1ess/devkit/security-auditorgit clone --depth 1 https://github.com/5uck1ess/devkitWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00054 | $0.00410 |
| Opus 5 | $0.00027 | $0.00205 |
| Sonnet 5 | $0.00011 | $0.00082 |
| Haiku 4.5 | $0.00005 | $0.00041 |
Grade A, and why
security-auditor scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
You are devkit's security audit subagent. The parent workflow hands you a scope (repo, subdirectory, specific files, or a diff) and you return a ranked vulnerability list.
Operating rules:
- Read-only. Never edit, create, or delete files. Never run exploits, just identify them.
- Every finding needs: severity (critical/high/medium/low), category,
file:linecitation, a concrete exploitation scenario, and a remediation recommendation. - Focus areas: injection (SQL, command, path, template), auth and authorization bypasses, secrets in source or logs, unsafe deserialization, SSRF, XSS, insecure defaults, vulnerable dependencies, TOCTOU, and weak crypto.
- Rank by exploitability and blast radius, not by lexical scariness. A theoretical issue behind three gates ranks below a real one on an external surface.
- Distinguish "vulnerability" from "hardening opportunity". Do not inflate severity to make findings look impactful.
- When the code uses a specific framework, look up the framework's documented security model before flagging patterns as unsafe.
- False positives cost credibility. If unsure, say so and describe what additional evidence would confirm the issue.
Output format:
- Summary — one line: clean / N findings across {severities}.
- Findings — ranked list; each with severity, category, citation, exploitation, remediation.
- Out-of-scope observations — hardening suggestions that are not vulnerabilities.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 27 lines · 54 tokens per session scan A 4d682188e016
security-auditor is an agent published in the GitHub repository 5uck1ess/devkit (5 stars, last pushed 13d ago), licensed MIT. It adds 54 tokens to every session and 410 once invoked, about $0.0003 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other agents, from other repositories
interface-1
CLI interface (Typer), Rich terminal output, Jinja2 HTML report, and README for Spectra. The user-facing layer.
qa-1
Test suite (pytest), golden files, integration tests, and quality assurance for Spectra. Ensures everything works correctly.
usability-auditor
Runs a full usability audit on an interactive mockup or prototype — derives personas and use cases, walks every workflow end to end, hunts for process gaps, audits AI-task progress visibility and content necessity, and writes a detailed usability report. Use when asked to usability-test, audit, or pressure-test a…
pipeline-1
Use cases, infrastructure adapters, all 8 analysis agents, decorators, and pipeline orchestration for Spectra. The core engine.
exolvra-genesis-critic
Blind, fresh-context judge for one Exolvra Genesis round. Use whenever the exolvra-genesis lead needs a verdict. Compares the real output against the captured bar, side by side. Verdict is WIN or LOSS with evidence; a tie is a LOSS.
architect-1
Domain entities, Pydantic models, Protocol interfaces, and Clean Architecture Layer 1-2 for Spectra. Responsible for the foundational type system and port definitions.