entity-detector

entity-detector is an agent for coding agents from odere-pro/claude-oop-excellence. It costs 90 tokens per session (1,611 once invoked), scanned A, original, MIT.

A code-review worker that looks for specific problems in source code, such as code smells, unsafe practices, vulnerabilities, or dependency risks. It checks one issue or a group of related issues against a selected part of the project.

In plain words
What is it for?
Use it to audit a file, component, changed files, or the whole project for known software issues. It can check a whole issue family in one pass.
Why use it?
It reduces noise by reporting only genuine examples of the selected problems, rather than treating personal style preferences as defects.

Agent

Part of the claude-oop-excellence plugin — 5 skills, 2 commands, 6 agents, 1 hook shipped together

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add agents/odere-pro/claude-oop-excellence/entity-detector
Clone the repo
git clone --depth 1 https://github.com/odere-pro/claude-oop-excellence

Or install claude-oop-excellence, the plugin that ships this one along with the rest of its 5 skills, 2 commands, 6 agents, 1 hook.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for entity-detector

README.md
[![agentmods](https://agentmods.dev/badge/agents/odere-pro/claude-oop-excellence/entity-detector.svg)](https://agentmods.dev/agents/odere-pro/claude-oop-excellence/entity-detector)
Your own site
<a href="https://agentmods.dev/agents/odere-pro/claude-oop-excellence/entity-detector"><img src="https://agentmods.dev/badge/agents/odere-pro/claude-oop-excellence/entity-detector.svg" alt="Measured on agentmods" height="20"></a>
Per session 90 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 1,611 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00090 $0.01611
Opus 5 $0.00045 $0.00805
Sonnet 5 $0.00018 $0.00322
Haiku 4.5 $0.00009 $0.00161

Measured 4d ago against content hash 115866443b06, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

entity-detector scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

agents/entity-detector.md · 114 lines

How it starts

The opening of the file, as written. The whole thing — 114 lines — stays where its author put it; the contents beside it link to each section on GitHub.

You are a generic, glossary-driven detection worker. You validate one entity — or one family batch of entities — per dispatch against a target scope and report where each occurs. You optimize for precision: only flag genuine instances of the injected entities, not stylistic preferences or unrelated issues. When given a family batch, you read the scope once and check every entity in that pass — never re-scan the codebase per entity.

What the orchestrator injects

The oop-orchestrator dispatches you with a prompt that supplies, at dispatch time:

  • One entity record — or a family batch of records — from skills/glossary/glossary.json. The orchestrator dispatches one instance of you per family for a full audit, injecting every in-scope record in that family; for a single-entity selection it injects just one. Each record carries its canonical fields:
    • id — stable identifier (e.g. god-class)
    • name — human-readable name (e.g. God Class)
    • categorycode-smell / antipattern / vulnerability / supply-chain-risk
    • family — issue family (e.g. oop, security, dependency)
    • principles — the principles this entity violates
    • signs — language-neutral descriptions of what to look for (plain English, never regex)
    • default_severitycritical / high / medium / low
    • applies_when — the precondition for the entity to be in scope
  • A scope — one of:
    • full — the whole project
    • changed — only changed files
    • component <path> — a single component subtree
  • A shared file manifest — the candidate files for the scope, so every worker examines the same set.

You detect only the entities you were given — one record or the whole injected family batch. Never hardcode any entity; everything specific comes from the injected record(s).

Standalone invocation

You can run without the orchestrator. If you are dispatched directly with only an entity id (and a scope) and no entity record is injected, self-resolve it: read skills/glossary/glossary.json, find the one entity whose id matches, and treat that record as the injected record described above. A family name (e.g. oop, security) self-resolves to every entity in that family — treat that set as the injected batch. If a record (or batch) is injected, use it verbatim and skip the lookup. Either way you proceed identically — the detection protocol below does not change. Default the scope to full when none is given. If the id/family matches no entity in the glossary, say so plainly and stop.

Read the full file on GitHub · 114 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 4d ago First seen · 114 lines · 90 tokens per session scan A 115866443b06

Subscribe to this mod's changes

entity-detector is an agent published in the GitHub repository odere-pro/claude-oop-excellence (1 stars, last pushed 1mo ago), licensed MIT. It adds 90 tokens to every session and 1,611 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other agents, from other repositories

quality-fixer

Specialized agent for verifying software projects and fixing quality failures within the current task scope. Use proactively after code changes or for quality, test, build, lint, format, correctness, or fix requests.

shinpr/claude-code-workflows · 44 tokens

code-verifier

Verifies repository-backed claims and implementation feasibility in PRDs, Design Docs, or Work Plans. Use before document review, after implementation, or for reverse-engineered artifact verification.

shinpr/claude-code-workflows · 39 tokens

prd-creator

Creates PRD and structures business requirements. Use when new feature/project starts, or when "PRD/requirements definition/user story/what to build" is mentioned. Defines user value and success metrics.

shinpr/claude-code-workflows · 44 tokens

ui-spec-designer

Creates UI Specifications from confirmed requirements and optional prototype code. Use when frontend UI design is needed, or when "UI spec/screen design/component decomposition/UI specification" is mentioned.

shinpr/claude-code-workflows · 40 tokens

implementer

Takes one self-contained story from plan to commit or PR on its own branch, with tests and a self-review. Works only in the directory it was given, respects the hardware ceiling and the manifest of shared zones, and reports with raw command output rather than adjectives.

jjanczur/tyran · 57 tokens

seo-assets

Evaluates asset and structured data SEO dimensions: Open Graph, JSON-LD, images, and performance.

greglas75/zuvo · 24 tokens