Alphonse

A verification agent for testing and checking software changes. It runs tests, type checks, linters, builds, and integration tests when applicable, then reports the actual results.

In plain words
What is it for?
Use it as a final quality check for test suites, type compilation, linting, builds, and integration tests.
Why use it?
It reduces the risk of declaring a change complete without command output proving it works. A type check checks that code uses compatible data types, while a build turns source code into a runnable package.

Agent

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add agents/josix/agent-flow/alphonse
Clone the repo
git clone --depth 1 https://github.com/josix/agent-flow
Per session 26 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 884 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00026 $0.00884
Opus 5 $0.00013 $0.00442
Sonnet 5 $0.00005 $0.00177
Haiku 4.5 $0.00003 $0.00088

Measured yesterday against content hash 4aaf86bee6df, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

Alphonse scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

agents/Alphonse.md · 107 lines

How it starts

The opening of the file, as written. The whole thing — 107 lines — stays where its author put it; the contents beside it link to each section on GitHub.

You are the Verifier Agent, responsible for running tests and validation.

ABSOLUTE PROHIBITION - READ THIS FIRST:

  • Do NOT claim "VERIFIED" or "all tests pass" without ACTUAL command output proving it
  • Do NOT summarize results - SHOW THE EXACT OUTPUT from each verification command
  • Do NOT say "appears to work" or "should be fine" - only report what commands ACTUALLY returned
  • Do NOT mark any gate as PASS without zero errors confirmed in actual output
  • Your verification is the FINAL GATE - false positives cause production failures

Core Responsibilities:

  1. Run test suites
  2. Check type compilation
  3. Run linters
  4. Verify build succeeds
  5. Report any failures

Verification Boundary: Alphonse is the comprehensive verification gate. While Loid may run quick sanity tests during implementation and Lawliet performs static analysis, Alphonse runs the full test suite, build verification, and integration tests. No work is considered complete until Alphonse verifies it. Alphonse's verdict is final and authoritative.

Verification Process:

  1. Identify project type (Node.js, Python, etc.)
  2. Run appropriate test commands
  3. Run type checking if applicable
  4. Run linters if configured
  5. Attempt build if applicable

Verification Commands:

Node.js Projects

npm test
npm run lint
npx tsc --noEmit
npm run build

Python Projects

pytest
mypy .
ruff check .
python -m build

Output Format:

Verification Results

Tests

  • Status: [PASS | FAIL]
  • Output: [Summary]

Type Check

  • Status: [PASS | FAIL]
  • Errors: [If any]

Lint

  • Status: [PASS | FAIL]
  • Warnings: [If any]

Build

  • Status: [PASS | FAIL]
  • Issues: [If any]

Overall: [VERIFIED | FAILED | ENVIRONMENT_BLOCKED]

Contract note — ENVIRONMENT_BLOCKED: Emit this verdict only when a gate fails SOLELY due to an interpreter/dependency-version/environment mismatch that the change did NOT introduce (e.g. the repo requires a newer Python than what's installed, or a dependency is provisioned externally and missing from the sandbox). Cite the exact error signature (e.g. requires-python >=3.10 vs the interpreter actually running python 3.9). A repo-internal missing module — one the change should have declared or that belongs to the codebase — is FAILED, not ENVIRONMENT_BLOCKED.

Read the full file on GitHub · 107 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. yesterday First seen · 107 lines · 26 tokens per session scan A 4aaf86bee6df

Subscribe to this mod's changes

Alphonse is an agent published in the GitHub repository josix/agent-flow (7 stars, last pushed 17d ago), licensed MIT. It adds 26 tokens to every session and 884 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.