Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add skills/adambien/airails/java-conventionsnpx skills add AdamBien/airails --skill java-conventionsgit clone --depth 1 https://github.com/AdamBien/airailsWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00165 | $0.02495 |
| Opus 5 | $0.00082 | $0.01247 |
| Sonnet 5 | $0.00033 | $0.00499 |
| Haiku 4.5 | $0.00016 | $0.00249 |
Grade A, and why
java-conventions scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 153 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Scope
- Language-level rules for Java 25 only — syntax, style, naming, visibility, structure, methods, streams, exceptions, comments.
- Architecture (BCE, layering, packaging) is not in this skill — see
bce. - Build, packaging, framework, and protocol rules are not in this skill — see
java-cli-script,java-cli-app,microprofile-server,zb, etc. - When a composed skill specifies a rule, the composed skill wins; this skill is the fallback baseline.
Java Version & Syntax
- target Java 25; assume all features are GA — never use
--enable-preview - use modern syntax naturally:
var, records, sealed types, pattern matching, text blocks, switch expressions - use
varfor local variable declarations where the type is obvious from the right-hand side - use module imports (e.g.
import module java.net.http;) over individual type imports - do not import packages from
java.base— it is automatically available - use switch expressions with arrow syntax (
case X -> ...) over oldcase X:statements withbreak - use pattern matching for
instanceof—if (o instanceof String s)over cast-and-assign - use pattern matching in
switchfor type-based dispatch - use the diamond operator
<>for generic type inference - never use raw generic types — always parameterize
- prefer
void main()/void main(String... args)overpublic static void main(String[] args); instance main, not static
Java SE APIs
- use Java SE APIs over writing custom code — the standard library has it, usually in
java.util,java.nio.file,java.net.http, orjava.time - prefer the most specific Java SE type for the domain —
PathoverString,URIoverString,Durationoverlong millis,Instant/LocalDateoverDate/long
Visibility & Modifiers
- avoid
privatemethods (includingprivate statichelpers) — prefer package-private (default) so same-package unit tests can exercise them directly, including edge cases, without round-tripping through the public API - avoid
privatefields — prefer package-private so same-package tests can read or seed state without reflection or extra accessors - reserve
privatefor genuinely sensitive state (credentials, security tokens, invariants that must never be observed externally); the burden of justification is onprivate, not on package-private - do not use
finalon fields — exception:static finalfor constants likeLOGGER - do not use
finalon local variables or parameters - do not use constructor injection — prefer field injection in CDI contexts
- avoid mutable static fields
What ships with it
1 file beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 153 lines · 165 tokens per session scan A b53b2f720d5d
java-conventions is a skill published in the GitHub repository AdamBien/airails (47 stars, last pushed 12d ago), licensed MIT. It adds 165 tokens to every session and 2,495 once invoked, about $0.0008 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
aws-cloudformation-auto-scaling
Provides AWS CloudFormation patterns for Auto Scaling including EC2, ECS, and Lambda. Use when creating Auto Scaling groups, launch configurations, launch templates, scaling policies, lifecycle hooks, and predictive scaling. Covers template structure with Parameters, Outputs, Mappings, Conditions, cross-stack…
aws-cloudformation-bedrock
Provides AWS CloudFormation patterns for Amazon Bedrock resources including agents, knowledge bases, data sources, guardrails, prompts, flows, and inference profiles. Use when creating Bedrock agents with action groups, implementing RAG with knowledge bases, configuring vector stores, setting up content moderation…
aws-cloudformation-cloudfront
Provides AWS CloudFormation patterns for CloudFront distributions, origins (ALB, S3, Lambda@Edge, VPC Origins), CacheBehaviors, Functions, SecurityHeaders, parameters, Outputs and cross-stack references. Use when creating CloudFront distributions with CloudFormation, configuring multiple origins, implementing caching…
aws-cloudformation-cloudwatch
Provides AWS CloudFormation patterns for CloudWatch monitoring, metrics, alarms, dashboards, logs, and observability. Use when creating CloudWatch metrics, alarms, dashboards, log groups, log subscriptions, anomaly detection, synthesized canaries, Application Signals, and implementing template structure with…
aws-cloudformation-ecs
Provides AWS CloudFormation patterns for ECS clusters, task definitions, services, container definitions, auto scaling, blue/green deployments, CodeDeploy integration, ALB integration, service discovery, monitoring, logging, template structure, parameters, outputs, and cross-stack references. Use when creating ECS…
aws-cloudformation-lambda
Provides AWS CloudFormation patterns for Lambda functions, layers, API Gateway integration, event sources, cold start optimization, monitoring, logging, template validation, and deployment workflows. Use when creating Lambda functions with CloudFormation, configuring event sources, implementing cold start…