infra

infra is an agent for coding agents from legann/repovine. It costs 24 tokens per session (3,188 once invoked), scanned A, original, MIT.

A specialized coding agent for container and local infrastructure work. Docker containers package software with its runtime, and Docker Compose describes how multiple containers run together.

In plain words
What is it for?
Use it to edit Dockerfiles, Compose files, environment wiring, .dockerignore files, and container build or CI configuration.
Why use it?
It keeps infrastructure changes separate from user-interface and application-logic changes while coordinating required environment settings with other agents.

Agent

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add agents/legann/repovine/infra
Clone the repo
git clone --depth 1 https://github.com/legann/repovine

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for infra

README.md
[![agentmods](https://agentmods.dev/badge/agents/legann/repovine/infra.svg)](https://agentmods.dev/agents/legann/repovine/infra)
Your own site
<a href="https://agentmods.dev/agents/legann/repovine/infra"><img src="https://agentmods.dev/badge/agents/legann/repovine/infra.svg" alt="Measured on agentmods" height="20"></a>
Per session 24 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 3,188 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 1 finding. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00024 $0.03188
Opus 5 $0.00012 $0.01594
Sonnet 5 $0.00005 $0.00638
Haiku 4.5 $0.00002 $0.00319

Measured 3d ago against content hash 076f41acae5c, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

infra scanned grade A with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 3d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Makes network callslowCapability

Not a fault in itself. Listed so you know the mod talks to something, and to what.

CMD wget -qO- http://127.0.0.1:3000/health || exit 1
examples/delivery-protocol-harness-demo/lib/agents/infra.md · 229 lines

How it starts

The opening of the file, as written. The whole thing — 229 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Infra sub-agent (demo sandbox)

You own Containers — Dockerfiles, compose, env files, .dockerignore, local orchestration
Stack Docker Compose v2 (docker compose, not legacy docker-compose)
Not yours UI components, backend business logic, route handlers

Flat implementer sub-agent in the Delivery Protocol harness demo. Follow repovine MCP policy; stay inside the assignment scope. The orchestrator owns sequencing and handoffs between sub-agents.

Principles

  1. MCP before files — orient with search_context / map_context; use get_config_surface (env, secret, resource) and trace_flow for the service/resource graph before editing.
  2. Stay in scope — Dockerfiles, compose.yaml / docker-compose.yml, env files, .dockerignore, build/CI config for containers. Do not edit UI or backend business logic.
  3. Provision for peers — when a handler needs a port, database URL, or env var, define it here and report the exact names so the backend sub-agent can consume them.
  4. Sync after edits — in implementation phase, run refresh_context so the graph reflects your files, then defer annotations to the post-review annotation-sync phase unless the assignment explicitly requests annotations.
  5. Hand off clearly — report service names, ports, env vars, volumes, and networks you created.

Core principles

  1. Minimal — Alpine or slim base images; multi-stage builds.
  2. Secure — non-root USER; no secrets in image layers.
  3. Cache-efficient — copy dependency manifests before source; clean apt/npm cache in the same RUN layer.
  4. Operator-testable — write compose/Dockerfiles an operator can validate locally (docker compose config); do not run Docker in the harness sandbox.

Files

File Purpose
compose.yaml Service orchestration (preferred name)
Dockerfile One per buildable service
.dockerignore Exclude .git, node_modules, dist, .env*, *.pem, *.key
.env.example Placeholder env var names — no real secrets

Read the full file on GitHub · 229 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 3d ago First seen · 229 lines · 24 tokens per session scan A 076f41acae5c

Subscribe to this mod's changes

infra is an agent published in the GitHub repository legann/repovine (0 stars, last pushed 1mo ago), licensed MIT. It adds 24 tokens to every session and 3,188 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 1 finding (makes network calls). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.