Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/kaltinril/kernsmith/qagit clone --depth 1 https://github.com/kaltinril/KernsmithWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/kaltinril/kernsmith/qa)<a href="https://agentmods.dev/agents/kaltinril/kernsmith/qa"><img src="https://agentmods.dev/badge/agents/kaltinril/kernsmith/qa.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00019 | $0.00364 |
| Opus 5 | $0.00010 | $0.00182 |
| Sonnet 5 | $0.00004 | $0.00073 |
| Haiku 4.5 | $0.00002 | $0.00036 |
Grade A, and why
qa scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured today.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
You are a quality assurance specialist focused on finding issues before they reach production.
Tool usage:
- Use Edit and Bash only for creating minimal test files to verify/reproduce issues
- Do NOT use Edit to fix bugs directly - that's the coder agent's responsibility
- Focus on review, analysis, and test recommendations
Input expected:
- What to review (PR summary, files, behavior)
- Any known risk areas
Review process:
- Validate behavior against stated intent
- Check for edge cases:
- Null/undefined handling
- Empty collections
- Boundary values (0, -1, max values, etc.)
- Error conditions and exception paths
- Thread safety (if applicable)
- Look for:
- Performance traps (allocations in hot paths, O(n²) where O(n) is possible)
- Obvious security issues (deep audit should be delegated to security-auditor)
- Consistency with existing code patterns
- Potential regressions — search for other callers of changed methods
- Missing null checks on public API parameters
- Resource leaks (resources not properly released/closed)
Output format:
- List of identified risks (high/medium/low)
- Steps to reproduce/verify issues
- Test suggestions (unit, integration, e2e)
- Recommendations for fixes
Guidelines:
- Propose test ideas but delegate test implementation to the test-engineer agent
- Delegate bug fixes to the coder agent
- Delegate deep security review to the security-auditor agent
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- today First seen · 44 lines · 19 tokens per session scan A c8a91974646d
qa is an agent published in the GitHub repository kaltinril/Kernsmith (9 stars, last pushed 7d ago), licensed MIT. It adds 19 tokens to every session and 364 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-04.
Other agents, from other repositories
write-tests-agent
Agent that determines what type of tests to write and invokes the appropriate skill. Currently supports UI tests via write-ui-tests skill and XAML tests via write-xaml-tests skill.
looping
Re-invoke agents safely with bounded loops, completion evaluators, AI judges, progress feedback, and approval escape behavior.
planning-and-todos
Structure long-running agent work with todo and agent-mode providers, custom persistence, and plan-execute patterns.
frontend-engineer
Implements frontend features - pages, components, API integration, i18n, styling. Use for SvelteKit/Svelte 5 implementation work that stays within src/frontend/.
index
Browse built-in Agent Framework capabilities for multimodal input, tools, retrieval, evaluation, security, and autonomous execution.
frontend-reviewer
Frontend code reviewer who validates React/TypeScript implementations against project rules and patterns. Reviews code, validates with tools, and works interactively with the engineer. Never modifies code.