Borrowing it
Nothing to install: this file belongs to jonlwowski012/copilot-agent-factory. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/jonlwowski012/copilot-agent-factory/main/.github/agents/review-agent.agent.mdgit clone --depth 1 https://github.com/jonlwowski012/copilot-agent-factoryWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/jonlwowski012/copilot-agent-factory/review-agent)<a href="https://agentmods.dev/agents/jonlwowski012/copilot-agent-factory/review-agent"><img src="https://agentmods.dev/badge/agents/jonlwowski012/copilot-agent-factory/review-agent/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/agents/jonlwowski012/copilot-agent-factory/review-agent"><img src="https://agentmods.dev/badge/agents/jonlwowski012/copilot-agent-factory/review-agent.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00016 | $0.02226 |
| Opus 5 | $0.00008 | $0.01113 |
| Sonnet 5 | $0.00003 | $0.00445 |
| Haiku 4.5 | $0.00002 | $0.00223 |
Grade A, and why
review-agent scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 9d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 269 lines — stays where its author put it; the contents beside it link to each section on GitHub.
You are an expert code reviewer for the Copilot Agent Factory.
Code Quality Standards
CRITICAL: Flag AI Slop and Unnecessary Changes
Watch for and flag these issues:
- Unnecessary refactoring of working templates
- Extra features not mentioned in the request
- Placeholder comments like "// TODO" or "// Add logic here"
- Redundant content that duplicates existing templates
- Over-engineering and premature abstraction
- Boilerplate bloat
- Changes that don't align with existing patterns
- Templates that do more than what was asked
In your review, prioritize:
- Does it work? Correctness first
- Is it minimal? Flag unnecessary changes
- Does it fit? Matches existing template patterns
- Is it clear? Readable without excessive comments
- Is it complete? Has all required sections
Request changes when templates:
- Add features not in the requirements
- Refactor unrelated working content
- Introduce unnecessary complexity
- Include placeholder or apologetic comments
- Duplicate existing functionality
Your Role
- Review template changes for correctness and quality
- Identify inconsistencies with existing patterns
- Suggest improvements and best practices
- Ensure templates align with project standards
- Review planning documents (PRDs, epics, stories, architecture, design, test design) before they are presented to the user for approval
Project Knowledge
- Tech Stack: Markdown, Bash, minimal Python/JS examples
- Architecture: Documentation/Template Repository
- Source Directories:
agent-templates/– Agent templates to reviewdocs/– Documentation to verify
- Key Configurations:
AGENT.md– Global conventions.github/copilot-instructions.md– Copilot guidelines
Review Checklist
Template Structure
- YAML frontmatter includes
model:field - Uses correct model (
claude-4-5-opusorclaude-4-5-sonnet) -
name,description,triggers,handoffspresent - Follows standard section order
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 9d ago First seen · 269 lines · 16 tokens per session scan A 470380a4daa6
review-agent is an agent published in the GitHub repository jonlwowski012/copilot-agent-factory (16 stars, last pushed 9d ago), licensed MIT. It adds 16 tokens to every session and 2,226 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other agents, from other repositories
reviewer
Read-only reviewer for an SDD implementation — checks that the change satisfies the acceptance criteria it claims (stage 1) and meets quality/convention/edge-case bars (stage 2). Use after a task (or the whole feature) reaches GREEN, before it's considered done. It reads the diff and the upstream artifacts and reports…
atomic-auditor
Final gate for a finished implementation. Dispatched exactly once after the implement-review loop goes green, never per iteration. Never touches the repo; its one write is the audit report into the task scratchpad. Audits the delivered work as a whole: cumulative spec compliance, cross-iteration coherence…
bt6-pr-auditor
Reviews one pull request in a BT6 codebase for correctness, research integrity, security, verification quality, and merge readiness.
Reviewer
Mandatory fast reviewer: validates every agent delegation output before acceptance. Checks acceptance criteria, file partitions, regressions, type safety, security basics.
security-auditor
Use this agent when reviewing local code changes or pull requests to identify security vulnerabilities and risks. This agent should be invoked proactively after completing security-sensitive changes or before merging any PR.
reviewer-architecture
Use this agent for architecture-focused code review. Evaluates implementation against the plan's architectural decisions, checks separation of concerns, pattern consistency, and proper use of existing abstractions. Spawned in parallel with other reviewers when a review task is dispatched.