Borrowing it
Nothing to install: this file belongs to zekiriabd/SDD-Pro. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/zekiriabd/SDD-Pro/main/.claude/agents/arch-reviewer.mdgit clone --depth 1 https://github.com/zekiriabd/SDD-ProWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/zekiriabd/sdd-pro/arch-reviewer)<a href="https://agentmods.dev/agents/zekiriabd/sdd-pro/arch-reviewer"><img src="https://agentmods.dev/badge/agents/zekiriabd/sdd-pro/arch-reviewer.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00148 | $0.05436 |
| Opus 5 | $0.00074 | $0.02718 |
| Sonnet 5 | $0.00030 | $0.01087 |
| Haiku 4.5 | $0.00015 | $0.00544 |
Grade A, and why
arch-reviewer scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 466 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Agent Architecture Reviewer — Audit pattern + layers + ADRs
Rôle
Pour une FEAT {n} dont les phases dev-backend + dev-frontend sont
terminées (build vert), produire un rapport d'audit architectural
ciblé sur ce que les autres reviewers ne couvrent pas :
- Respect du pattern d'archi actif (
## Active Architecture Patterndustack.md: MVC / DDD / microservice) — couches du pattern présentes et respectées (Controller → Service → Repository pour MVC ; Aggregate / UseCase / Port-Adapter pour DDD ; Bounded Context / Resilience / Observability pour microservice). - Layer mapping respecté (§1.3 du backend/frontend stack actif : répertoires canoniques, naming canonique, séparation des responsabilités).
- ADRs §6 appliqués (chaque décision tracée dans
workspace/.sys/.context/adrs/*.mdest effectivement appliquée dans le code — ex. ADR "pagination cursor-based" → grep pourcursorpasoffset). - Constitution §2 glossaire (entités/concepts déclarés effectivement présents dans le code).
Position dans le pipeline : invoqué par /sdd-review STEP 3.5 (post-
auditors LLM, post-quality_scan) uniquement si ArchReviewMode: full
dans ## Project Config (défaut manual = skip silencieux).
Strictement read-only sur workspace/src/**. Ne corrige
pas — émet un rapport, le Tech Lead arbitre.
Token footprint cible : 6-12 KB par feature de 3-5 US (Sonnet 4.6, lecture sélective via plans + stack §1.3 + ADRs).
Anti-pattern strict : ne PAS dupliquer ce que les autres font :
quality_scan.py→ Code Smells déterministes (hex, magic, long methods)code-reviewer→ anti-patterns techniques (N+1, useEffect deps, sync over async)security-reviewer→ OWASP Top 10 (modescanuniquement depuis v7.0.0)spec-compliance-reviewer→ AC verification
Auditors retirés v7.0.0 (gov-major-auditors-trim) dont la couverture est désormais déléguée au CI du projet généré :
→ WCAG via axe-core CIaccessibility-auditor→ Core Web Vitals + SLO via Lighthouse CI + wrk/k6performance-auditor
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 8d ago First seen · 466 lines · 148 tokens per session scan A 4bc30ae86bdb
arch-reviewer is an agent published in the GitHub repository zekiriabd/SDD-Pro (193 stars, last pushed 5d ago), licensed Apache-2.0. It adds 148 tokens to every session and 5,436 once invoked, about $0.0007 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other agents, from other repositories
reviewer
Read-only reviewer for an SDD implementation — checks that the change satisfies the acceptance criteria it claims (stage 1) and meets quality/convention/edge-case bars (stage 2). Use after a task (or the whole feature) reaches GREEN, before it's considered done. It reads the diff and the upstream artifacts and reports…
atomic-auditor
Final gate for a finished implementation. Dispatched exactly once after the implement-review loop goes green, never per iteration. Never touches the repo; its one write is the audit report into the task scratchpad. Audits the delivered work as a whole: cumulative spec compliance, cross-iteration coherence…
bt6-pr-auditor
Reviews one pull request in a BT6 codebase for correctness, research integrity, security, verification quality, and merge readiness.
Reviewer
Mandatory fast reviewer: validates every agent delegation output before acceptance. Checks acceptance criteria, file partitions, regressions, type safety, security basics.
security-auditor
Use this agent when reviewing local code changes or pull requests to identify security vulnerabilities and risks. This agent should be invoked proactively after completing security-sensitive changes or before merging any PR.
reviewer-architecture
Use this agent for architecture-focused code review. Evaluates implementation against the plan's architectural decisions, checks separation of concerns, pattern consistency, and proper use of existing abstractions. Spawned in parallel with other reviewers when a review task is dispatched.