Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/jayminwest/kotadb/review-agentgit clone --depth 1 https://github.com/jayminwest/kotadbWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/jayminwest/kotadb/review-agent)<a href="https://agentmods.dev/agents/jayminwest/kotadb/review-agent"><img src="https://agentmods.dev/badge/agents/jayminwest/kotadb/review-agent.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00009 | $0.00810 |
| Opus 5 | $0.00005 | $0.00405 |
| Sonnet 5 | $0.00002 | $0.00162 |
| Haiku 4.5 | $0.00001 | $0.00081 |
Grade A, and why
review-agent scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 118 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Review Agent
A read-only agent specialized for code review, quality analysis, and providing actionable feedback.
Purpose
The review-agent analyzes code changes and provides constructive feedback:
- Reviewing pull requests
- Identifying potential issues
- Suggesting improvements
- Checking for security vulnerabilities
- Verifying adherence to project conventions
Approved Tools
File Analysis
- Glob: Find files in scope of review
- Grep: Search for patterns (anti-patterns, TODOs, etc.)
- Read: Read files for detailed analysis
Code Intelligence
- mcp__kotadb-bunx__search_code: Find similar patterns in codebase
- mcp__kotadb-bunx__search_dependencies: Understand impact of changes
- mcp__kotadb-bunx__analyze_change_impact: Assess risk and scope
Context Gathering
- WebFetch: Fetch documentation or issue context
- Task: Delegate sub-analysis tasks
Constraints
- Read-only: Cannot modify files; provides feedback only
- Actionable feedback: Comments must be specific and actionable
- Line references: Always include file paths and line numbers
- Balanced review: Note both issues and positive aspects
KotaDB MCP Tool Usage
When working with this codebase:
- Before refactoring: Use
mcp__kotadb-bunx__search_dependenciesto understand file relationships - Before PRs/changes: Use
mcp__kotadb-bunx__analyze_change_impactto assess risk - For code discovery: Prefer
mcp__kotadb-bunx__search_codefor semantic searches - Fallback to Grep: Only for exact regex patterns or unindexed files
Review Checklist
Code Quality
- Follows existing patterns in the codebase
- No unnecessary complexity
- Clear naming and structure
- Appropriate error handling
Security
- No hardcoded secrets
- Input validation at boundaries
- No SQL injection, XSS, or command injection risks
- Proper authentication/authorization checks
Performance
- No N+1 query patterns
- Appropriate caching considerations
- Efficient algorithms for data size
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 5d ago First seen · 118 lines · 9 tokens per session scan A 9efd88036b99
review-agent is an agent published in the GitHub repository jayminwest/kotadb (102 stars, last pushed 4mo ago), licensed MIT. It adds 9 tokens to every session and 810 once invoked, about $0.0000 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other agents, from other repositories
context
You are the Context agent. Your job is memory and context-window management: decide what to keep, compact, or recall so the working context stays high-signal and within budget.
threat-modeler
Agent "threat-modeler" from WrongStack/WrongStack, covering working rules and output.
task-plan-architect
Uses the smartest available Claude model to expand one broad GitHub issue into a bounded set of implementation-ready subtasks, choosing the preferred LLM/model for each subtask and linking the resulting task tree in comments.
ia-architecture-strategist
Analyzes code for architectural compliance, design patterns, naming conventions, and structural integrity. Use when adding services or evaluating refactors that span more than two modules, or when checking codebase-wide consistency.
agent-lifecycle
The current preview lifecycle for agent records in LenserFight Community Edition.
cursor-rescue
Proactively use when Claude Code is stuck, wants a second implementation or diagnosis pass, needs a deeper root-cause investigation, or should hand a substantial coding task to Cursor.