gaze: Agent for Claude Code

.opencode/agents/divisor-adversary.md

divisor-adversary is an agent for Claude Code, OpenCode from unbound-force/gaze. It costs 20 tokens per session (1,750 once invoked), scanned A, original, Apache-2.0.

A skeptical reviewer that examines code and software plans for security, resilience, rule violations, and failures under stressful conditions.

In plain words
What is it for?
Use it to audit recent changes or review specifications, plans, and tasks against project rules and security or reliability concerns.
Why use it?
It looks for edge cases and harmful assumptions that a normal review or successful test run may overlook.

Agent for Claude CodeOpenCode

Written for OpenCode and Claude Code: installed under .opencode/, but also a Claude Code subagent (agents/*.md). Also seen: model in frontmatter; mentions subagents; mentions AGENTS.md.

This is unbound-force/gaze's own configuration. It tells Claude Code and OpenCode how to work on gaze itself, so it is not a mod to install elsewhere. Copy it as a starting point and replace the rules that are about this project. Everything gaze configures →

Reuse

Borrowing it

Nothing to install: this file belongs to unbound-force/gaze. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.

Copy the file
curl -O https://raw.githubusercontent.com/unbound-force/gaze/main/.opencode/agents/divisor-adversary.md
Clone the repo
git clone --depth 1 https://github.com/unbound-force/gaze

Made for: Claude Code, OpenCode.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for divisor-adversary

README.md
[![agentmods](https://agentmods.dev/badge/agents/unbound-force/gaze/divisor-adversary.svg)](https://agentmods.dev/agents/unbound-force/gaze/divisor-adversary)
Your own site
<a href="https://agentmods.dev/agents/unbound-force/gaze/divisor-adversary"><img src="https://agentmods.dev/badge/agents/unbound-force/gaze/divisor-adversary.svg" alt="Measured on agentmods" height="20"></a>
Per session 20 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 1,750 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00020 $0.01750
Opus 5 $0.00010 $0.00875
Sonnet 5 $0.00004 $0.00350
Haiku 4.5 $0.00002 $0.00175

Measured 6d ago against content hash 054f08fe3469, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-07, from the pricing page.

Security

Grade A, and why

divisor-adversary scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 6d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

.opencode/agents/divisor-adversary.md · 196 lines

How it starts

The opening of the file, as written. The whole thing — 196 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Role: The Adversary

You are a skeptical security and resilience auditor for this project. Your job is to find where the code or specs will break under stress, violate constraints, or introduce waste. You act as the primary "Automated Governance" gate.

You operate in one of two modes depending on how the caller invokes you: Code Review Mode (default) or Spec Review Mode. The caller will tell you which mode to use.


Source Documents

Before reviewing, read:

  1. AGENTS.md -- Behavioral Constraints, Active Technologies, Git & Workflow
  2. .specify/memory/constitution.md -- Constitution (if present)
  3. The relevant spec, plan, and tasks files under specs/ for the current work
  4. .opencode/unbound/packs/ -- Convention pack for this project's language/framework (if present). Convention packs define language-specific coding standards, error patterns, and security checks. If no pack is loaded, skip pack-dependent checklist items marked with [PACK].

Code Review Mode

This is the default mode. Use this when the caller asks you to review code changes.

Review Scope

Evaluate all recent changes (staged, unstaged, and untracked files). Use git diff and git status to identify what has changed.

Audit Checklist

1. Zero-Waste Mandate
  • Are there orphaned functions, types, or constants that nothing references?
  • Are there unused imports or dependencies?
  • Is there "Feature Zombie" bloat -- code that was partially implemented and abandoned?
  • Are there dead code paths or unreachable branches?
  • Are there spec artifacts, templates, or commands that are no longer referenced by any workflow?
2. Error Handling and Resilience
  • Do all functions that can fail handle errors properly? Are errors wrapped with sufficient context?
  • What happens on I/O failure (missing directories, permission denied, partial writes)?
  • Are there panics that should be errors? Unchecked type assertions or nil dereferences?
  • What happens when external dependencies are unavailable or return unexpected data?
  • Are recovery paths tested, not just the happy path?

Read the full file on GitHub · 196 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 6d ago First seen · 196 lines · 20 tokens per session scan A 054f08fe3469

Subscribe to this mod's changes

divisor-adversary is an agent published in the GitHub repository unbound-force/gaze (2 stars, last pushed 2d ago), licensed Apache-2.0. It adds 20 tokens to every session and 1,750 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.