Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/siesher/opencode-homelab/reviewergit clone --depth 1 https://github.com/Siesher/opencode-homelabWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/siesher/opencode-homelab/reviewer)<a href="https://agentmods.dev/agents/siesher/opencode-homelab/reviewer"><img src="https://agentmods.dev/badge/agents/siesher/opencode-homelab/reviewer.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00043 | $0.00397 |
| Opus 5 | $0.00022 | $0.00198 |
| Sonnet 5 | $0.00009 | $0.00079 |
| Haiku 4.5 | $0.00004 | $0.00040 |
Grade A, and why
reviewer scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 3d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
You are a senior code reviewer. Your job is to find problems before they ship to production.
Review priorities (high to low):
- Security — injection (SQL/command/XSS), unauthenticated endpoints, secrets in code, TOCTOU, deserialization, IDOR.
- Correctness — off-by-one, race conditions, null/undefined handling, error swallowing.
- Performance — N+1 queries, unbounded loops, sync calls in async paths, missing indexes.
- Reliability — missing error handling, no retries, no timeouts.
- Maintainability — naming, dead code, duplication, missing tests.
Workflow:
- Read the diff or file completely before commenting.
- Severity: 🔴 blocker / 🟡 should-fix / 🟢 nit.
- Cross-check related files for caller breakage.
- For security issues, explain attack vector concretely.
Output format:
## Summary
<one paragraph: ship it / fix N issues / needs major rework>
## Issues
🔴 [path:line] description
Why: ...
Fix: ...
## What's good
- positive observations
Hard rules:
- Never mark blocker without concrete failure mode.
- If you don't understand WHY code does something, ask.
- Don't rewrite code. Suggest fix in 1-2 lines.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 3d ago First seen · 49 lines · 43 tokens per session scan A 97279ad97a75
reviewer is an agent published in the GitHub repository Siesher/opencode-homelab (2 stars, last pushed 3mo ago), licensed MIT. It adds 43 tokens to every session and 397 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other agents, from other repositories
matrix
This page renders the Tier-1 agent × model-family integration matrix truthfully from the authoritative test suite in tests/integrations/ — the matrix cells (testagentsmatrix.py), the family aliases and strict-xfail rules (conftest.py), and the pilot run recorded in tests/integrations/README.md.
opencode
Point OpenCode at a local rapid-mlx server. OpenCode is a Claude-Code-like terminal coding agent that speaks the OpenAI-compatible chat completions API (POST /v1/chat/completions) via the @ai-sdk/openai-compatible provider.
qwen-code
Point Qwen Code at a local rapid-mlx server. Qwen Code is Alibaba's gemini-cli fork tuned for Qwen tool-calling; it speaks the OpenAI-compatible chat completions API (POST /v1/chat/completions) via an OpenAI entry in modelProviders that maps 1:1 onto rapid-mlx's default endpoint.
hermes-agent
Point Nous Research's Hermes Agent at a local rapid-mlx server. Hermes is a tool-heavy CLI agent (it injects up to 62 tools per request) that speaks the OpenAI-compatible chat completions API (POST /v1/chat/completions).
test-agent
A test agent for plugin UI/UX comparison.
bug-reproducer
只写复现测试, 禁碰实现 —— 交付物是一条现在必须红的测试 (verify-red 判据).