Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add commands/komunite/kalfa/auditgit clone --depth 1 https://github.com/komunite/kalfaWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/commands/komunite/kalfa/audit)<a href="https://agentmods.dev/commands/komunite/kalfa/audit"><img src="https://agentmods.dev/badge/commands/komunite/kalfa/audit.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00020 | $0.00642 |
| Opus 5 | $0.00010 | $0.00321 |
| Sonnet 5 | $0.00004 | $0.00128 |
| Haiku 4.5 | $0.00002 | $0.00064 |
Grade A, and why
audit scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Kalite incelemesini Denetçi agent'ına devret.
Adımlar
Adım 1: Kapsamı belirle
Kullanıcı belirli bir kapsam belirttiyse (dosya, görev veya alan):
- Bunu denetim hedefi olarak kullan
Kapsam belirtilmediyse:
- Varsayılan olarak "bugünün çalışması" — bağlam için günlük notu oku
Adım 2: Denetim seviyesini seç
| Seviye | Ne zaman | Derinlik |
|---|---|---|
| T1 | Günlük kapanış, hızlı kontrol | Belirgin sorunları tara, 2-3 dk |
| T2 | Bir özellik veya çok adımlı görev tamamlandığında | Bütünlük, tutarlılık, yan etkileri kontrol et |
| T3 | Haftalık inceleme, büyük değişikliklerden sonra | Tam regresyon kontrolü, Bilgi Tabanı taraması |
| T4 | Aylık veya sistem değişikliklerinden sonra | Derin altyapı denetimi, dosyalar arası tutarlılık |
Açık /audit çağrıları için varsayılan T2'dir.
Adım 3: Denetçi'ye devret
Denetçi agent'ını uygun seviye ve kapsamla başlat:
Agent(auditor): [Seviye] denetimi [kapsam].
Bağlam:
- [Yapılanın kısa açıklaması]
- [İlgili temel dosyalar]
Kontrol et:
1. Bütünlük — tüm gereksinimler karşılandı mı?
2. Tutarlılık — değişiklikler mevcut kalıplarla uyumlu mu?
3. Yan etkiler — değişiklikler alt süreçleri bozdu mu?
4. Bilgi — terfi ettirilecek veya aday gösterilecek öğrenimler var mı?
Bulguları belirli dosya:satır referanslarıyla PASS/WARN/FAIL olarak raporla.
Adım 4: Sonuçları işle
- PASS: Başarıyı kaydet, varsa önerileri not et
- WARN: Uyarıları kaydet, günlük nota ekle
- FAIL: Başarısızlıkları kaydet, olay günlüğüne ekle, Görev Panosu'nda düzeltici görevler oluştur
Adım 5: Günlükleri güncelle
Denetim sonuçlarını günlük nota yeni bir bölüm olarak ekle:
## Denetim — SS:DD (T[seviye])
- Sonuç: [PASS/WARN/FAIL]
- Bulgular: [maddeler]
- Eylemler: [oluşturulan düzeltici görevler]
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 4d ago First seen · 69 lines · 20 tokens per session scan A 9369ac1c3bcb
audit is a command published in the GitHub repository komunite/kalfa (244 stars, last pushed 4mo ago), licensed MIT. It adds 20 tokens to every session and 642 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other commands, from other repositories
spec-forge
Use when generating software specifications — full chain (Idea→Decompose→Tech Design + Feature Specs) or individual documents.
dd-init
Initialize product documentation structure in current directory.
dd-spec-test
Generate test spec (requires confirmed status).
git
Git operations with intelligent commit messages and workflow optimization.
checklist
Generate a custom checklist for the current feature based on user requirements.
clarify
Identify underspecified areas in the current feature spec by asking up to 5 highly targeted clarification questions and encoding answers back into the spec.