Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add instructions/liuyi0808/android-review/agents-mdgit clone --depth 1 https://github.com/liuyi0808/android-reviewWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/liuyi0808/android-review/agents-md)<a href="https://agentmods.dev/instructions/liuyi0808/android-review/agents-md"><img src="https://agentmods.dev/badge/instructions/liuyi0808/android-review/agents-md.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00876 | $0.00876 |
| Opus 5 | $0.00438 | $0.00438 |
| Sonnet 5 | $0.00175 | $0.00175 |
| Haiku 4.5 | $0.00088 | $0.00088 |
Grade A, and why
android-review AGENTS.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 58 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Android Review — Agent Guide
Expert-level Android code review across seven domains: architecture, Compose UI,
Kotlin quality, performance, security, privacy compliance, and Google Play
compliance. Each domain is a self-contained skill under skills/<name>/, driven
by a SKILL.md with detailed reference docs loaded on demand.
This file is the entry point for Codex CLI and any agent that reads AGENTS.md.
The same skills also ship as a Claude Code plugin (see .claude-plugin/).
Skills
Each skill lives in skills/<name>/SKILL.md. Load the matching skill when the
task fits its trigger, then read files under that skill's references/ only when
the review reaches that topic (progressive disclosure — do not preload everything).
| Skill | Path | Load when |
|---|---|---|
| architecture | skills/architecture/SKILL.md |
Designing app structure; creating ViewModel/Repository/UseCase; setting up Hilt DI; planning module boundaries; reviewing layer dependencies; offline-first data; error-handling strategy; starting a new feature module. |
| compose-ui | skills/compose-ui/SKILL.md |
Writing or reviewing Compose UI; state hoisting; side effects (LaunchedEffect, DisposableEffect); type-safe navigation; responsive layouts; accessibility; animations; reusable composables. |
| kotlin-quality | skills/kotlin-quality/SKILL.md |
Reviewing Kotlin in PRs; auditing coroutine/structured concurrency; Flow operators; null safety; type design (sealed/data/value classes); collection & functional patterns. |
| performance | skills/performance/SKILL.md |
Cold start > 500ms; UI jank; memory leaks/OOM; ANR rate > 0.47%; recomposition waste; missing baseline profiles; battery drain; pre-release performance review. |
| play-store | skills/play-store/SKILL.md |
Pre-submission Google Play compliance; permissions; Data Safety; Financial Features Declaration / loan apps; sensitive-permission and spyware policy; account deletion; code-level audit. Updated for the 2025-2026 policy cycle. |
| privacy-audit | skills/privacy-audit/SKILL.md |
Three-way privacy compliance audit for loan apps: privacy policy vs in-app disclosure dialogs vs code implementation; banned loan-app permissions; READ_SMS filtering; third-party SDK data sharing. Runs a fixed 5-step workflow and writes a report file. |
| security-audit | skills/security-audit/SKILL.md |
Sensitive-data storage; cryptography/Keystore; authentication/biometrics; network security (TLS, cert pinning); WebView hardening; Content Provider security; RE resilience; user privacy. OWASP MASVS v2.0. |
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 5d ago First seen · 58 lines · 876 tokens per session scan A 4ab64e971d06
android-review AGENTS.md is an instructions file published in the GitHub repository liuyi0808/android-review (11 stars, last pushed 9d ago), licensed MIT. It adds 876 tokens to every session, about $0.0044 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other instructions, from other repositories
MobiAI-Core CLAUDE.md
Claude Code instructions for ArisGuimera/MobiAI-Core, covering mobiai — mobile development ai ecosystem, bootstrap and principles.
freetube CLAUDE.md
Instructions for leshkodev/freetube, covering claude.md, 1. what this project is, 2. non-negotiable constraints, 3. tech stack (locked) and 4. project structure.
ConsultMe CLAUDE.md
Claude Code instructions for Tarek-Bohdima/ConsultMe, covering claude.md, project context, common commands, module graph and conventions enforced by tooling.
phone-mcp CLAUDE.md
Claude Code instructions for premex-ab/phone-mcp, covering claude.md, project overview, build commands, architecture and module layout.
dev-challenge CLAUDE.md
Claude Code instructions for micheltlutz/dev-challenge, covering claude.md, the one rule to internalise, slash commands, subagents and skills.
android-media-pack CLAUDE.md
Instructions for sunnat629/android-media-pack, covering claude.md, what this repository is, commands, markdown lint (config in .markdownlint-cli2.jsonc) and shell script lint.