droid

droid is an agent for coding agents from github/awesome-copilot. It costs 32 tokens per session (2,012 once invoked), scanned D, original, MIT.

A guidance mode for installing and using the Droid command-line tool, including its non-interactive command mode. It focuses on running Droid from scripts, automated workflows, and continuous integration systems.

In plain words
What is it for?
Use it to install Droid, check that it works, write droid exec commands, and connect Droid with CI/CD pipelines or other scripts.
Why use it?
It helps developers move from manually using a command-line tool to running it reliably in automation. It also explains installation, configuration, verification, and practical command patterns.

Agent

About the project

Awesome GitHub Copilot is a community collection of custom agents, instructions, skills, hooks, workflows, plugins, and configuration for GitHub Copilot. It helps Copilot users customize coding and development tasks. Catalogue entries are individual Copilot add-ons from this collection.

github/awesome-copilot · 38,623 stars · on GitHub

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add agents/github/awesome-copilot/droid
Clone the repo
git clone --depth 1 https://github.com/github/awesome-copilot

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for droid

README.md
[![agentmods](https://agentmods.dev/badge/agents/github/awesome-copilot/droid.svg)](https://agentmods.dev/agents/github/awesome-copilot/droid)
Your own site
<a href="https://agentmods.dev/agents/github/awesome-copilot/droid"><img src="https://agentmods.dev/badge/agents/github/awesome-copilot/droid.svg" alt="Measured on agentmods" height="20"></a>
Per session 32 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 2,012 The whole file, excluding the scripts and references it only reads on demand.
Security scan D 3 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00032 $0.02012
Opus 5 $0.00016 $0.01006
Sonnet 5 $0.00006 $0.00402
Haiku 4.5 $0.00003 $0.00201

Measured yesterday against content hash a6aac08749eb, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade D, and why

droid scanned grade D with 3 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Asks for rootmediumPrivilege escalation

A mod that escalates privileges can change anything on the machine, not only the project.

- **Permission denied**: The install script may need sudo for system-wide installation

Downloads and executes remote codehighSupply chain

curl | sh runs whatever the server returns today, which is not necessarily what it returned when this was reviewed.

curl -fsSL https://app.factory.ai/cli | sh

Makes network callslowCapability

Not a fault in itself. Listed so you know the mod talks to something, and to what.

curl -fsSL https://app.factory.ai/cli | sh
Origin

Copies of this mod

2 near-identical copies found in the catalogue:

  • droid — 100% identical, 0 lines differ
  • droid — 100% identical, 0 lines differ
agents/droid.agent.md · 271 lines

How it starts

The opening of the file, as written. The whole thing — 271 lines — stays where its author put it; the contents beside it link to each section on GitHub.

You are a Droid CLI assistant focused on helping developers install and use the Droid CLI effectively, particularly for automation, integration, and CI/CD scenarios. You can execute shell commands to demonstrate Droid CLI usage and guide developers through installation and configuration.

Shell Access

This agent has access to shell execution capabilities to:

  • Demonstrate droid exec commands in real environments
  • Verify Droid CLI installation and functionality
  • Show practical automation examples
  • Test integration patterns

Installation

Primary Installation Method

curl -fsSL https://app.factory.ai/cli | sh

This script will:

  • Download the latest Droid CLI binary for your platform
  • Install it to /usr/local/bin (or add to your PATH)
  • Set up the necessary permissions

Verification

After installation, verify it's working:

droid --version
droid --help

droid exec Overview

droid exec is the non-interactive command execution mode perfect for:

  • CI/CD automation
  • Script integration
  • SDK and tool integration
  • Automated workflows

Basic Syntax:

droid exec [options] "your prompt here"

Common Use Cases & Examples

Read-Only Analysis (Default)

Safe, read-only operations that don't modify files:

# Code review and analysis
droid exec "Review this codebase for security vulnerabilities and generate a prioritized list of improvements"

# Documentation generation
droid exec "Generate comprehensive API documentation from the codebase"

# Architecture analysis
droid exec "Analyze the project architecture and create a dependency graph"

Safe Operations ( --auto low )

Low-risk file operations that are easily reversible:

# Fix typos and formatting
droid exec --auto low "fix typos in README.md and format all Python files with black"

# Add comments and documentation
droid exec --auto low "add JSDoc comments to all functions lacking documentation"

# Generate boilerplate files
droid exec --auto low "create unit test templates for all modules in src/"

Read the full file on GitHub · 271 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. yesterday First seen · 271 lines · 32 tokens per session scan D a6aac08749eb

Subscribe to this mod's changes

droid is an agent published in the GitHub repository github/awesome-copilot (38,623 stars, last pushed today), licensed MIT. It adds 32 tokens to every session and 2,012 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it D with 3 findings (asks for root, downloads and executes remote code, makes network calls). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.

Related

Other agents, from other repositories

GitHub Actions Engineer

Expert-level software engineering agent specialized in GitHub Actions, cross-repo orchestration, and robust workflow automation.

meshery/meshery · 27 tokens

python-architect

Expert on Python design patterns, modularization, and scalable architecture for the APM CLI codebase. Activate when creating new modules, refactoring class hierarchies, or making cross-cutting architectural decisions.

microsoft/apm · 45 tokens

cdo

APM Chief Documentation Officer. Use this agent as the synthesizer and final arbiter for any multi-persona docs panel -- holds the 3-promise narrative (consume / produce / govern), the chapter-start and chapter-end bridges, the TOC integrity, and the persona ramps (consumer / producer / enterprise). Activate to…

microsoft/apm · 95 tokens

apm-expert

Expert on APM (Agent Package Manager). Helps users install, configure, author, and troubleshoot APM packages, dependencies, compilation, MCP servers, and governance policies.

microsoft/apm · 39 tokens

test-coverage-expert

Test-coverage expert paired with the DevX UX lens. Activate when reviewing PRs that change CLI surface (commands, flags, help text), error wording, exit codes, install/init/run flows, lockfile behavior, auth resolution, hooks, marketplace, or any contract a user can observe -- even when the user does not say "tests"…

microsoft/apm · 151 tokens

devx-ux-expert

Developer Tooling UX expert specialized in package manager mental models (npm, pip, cargo, brew). Activate when designing CLI command surfaces, install/init/run flows, error ergonomics, or first-run experience for the APM CLI.

microsoft/apm · 53 tokens