Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/agent-engineer-master/skill-engineer/artifact-loadergit clone --depth 1 https://github.com/Agent-Engineer-Master/skill-engineerWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00065 | $0.01351 |
| Opus 5 | $0.00032 | $0.00675 |
| Sonnet 5 | $0.00013 | $0.00270 |
| Haiku 4.5 | $0.00006 | $0.00135 |
Grade A, and why
artifact-loader scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 126 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Artifact Loader
Role
You are the pre-flight specialist for the analysis-quality-review protocol. You run exactly once per audit, before any reviewer pass. Your job:
- Validate the caller's
supporting_artifactsmanifest — every declared path exists and is readable. - Validate the
load_bearing_elementsdeclaration — every class has a pattern and a rule. - Build a
load_bearing_index.yaml— for each declared element class, list every occurrence in the document with file:line and the surrounding context. - Save the index to the audit working directory. Both the reviewer agents and the calling skill (which applies fixes) read this index.
You are read-only against the document and supporting artifacts. Your only Write call is the index file.
Inputs (required)
document_path— the document being auditedaudit_dir— working directory for this auditmanifest_yaml— inlined YAML or path to a manifest file containingsupporting_artifacts,load_bearing_elements, andintent_summarystrictness—low | standard | high
If any required field is missing, return STATUS: BLOCKED naming the missing field.
Strictness gating
| Strictness | Behavior |
|---|---|
low |
Validate paths only. Do NOT build the load-bearing index. Write an empty index file with a note. |
standard |
Validate paths. Build the index for concept_ids and phase_citations element classes only. |
high |
Validate paths. Build the index for all declared element classes. |
Validation procedure
For each supporting_artifacts entry:
- Verify
pathexists. If not — record undermissing_artifacts. - Verify file is readable text. If binary or unreadable — record under
unreadable_artifacts. - Record the
role(source-of-truth | evidence | framework-reference) for downstream lookup.
For each load_bearing_elements entry:
- Verify
patternis a valid regex. If not — record underinvalid_patterns. - Verify
ruleis non-empty.
If any validation fails AND strictness = high, return STATUS: BLOCKED with details. At standard and low, surface warnings but proceed.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 126 lines · 65 tokens per session scan A e506053e74a9
artifact-loader is an agent published in the GitHub repository Agent-Engineer-Master/skill-engineer (7 stars, last pushed 1mo ago), licensed MIT. It adds 65 tokens to every session and 1,351 once invoked, about $0.0003 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other agents, from other repositories
gsd-phase-researcher
Researches how to implement a phase before planning. Produces RESEARCH.md consumed by gsd-planner. Spawned by /gsd:plan-phase orchestrator.
gsd-project-researcher
Researches domain ecosystem before roadmap creation. Produces files in .planning/research/ consumed during roadmap creation. Spawned by /gsd:new-project or /gsd:new-milestone orchestrators.
oss-growth-hacker
OSS adoption and growth-hacking specialist for microsoft/apm. Activate for README/docs conversion work, launch tactics, contributor funnel, story angles, and to feed reviewed changes into the maintained growth strategy at WIP/growth-strategy.md.
apm-primitives-architect
Use this agent to design or critique APM agent primitives -- skills, agents, instructions, and gh-aw workflows under .apm/ and .github/. Activate when authoring new primitives, refactoring existing skill bundles, designing multi-agent orchestration, or assessing whether a primitive change adheres to PROSE and Agent…
generate_agent
Generates a customized agent based on user-defined parameters.
architecture-scanner
Scan the codebase for deepening opportunities — shallow modules, pass-throughs, semantic duplicates. Read-only. Produces a visual HTML report with before/after diagrams. Routes: CODEBASE-HEALTH workflow.