sidequest-exec-readonly-low

sidequest-exec-readonly-low is an agent for Claude Code from Eigenwise/eigenwise-toolshed. It costs 13 tokens per session (5,045 once invoked), scanned A, a copy of sidequest-exec-dispatch-readonly, MIT.

A read-only coding agent that processes one Sidequest board ticket at a time and updates the board about its work. It runs with a low reasoning setting and does not make changes.

In plain words
What is it for?
Use it for straightforward ticket investigation and evidence gathering without modifying the repository.
Why use it?
It provides a lightweight way to inspect a ticket while preserving evidence and reporting blockers. The read-only mode limits the risk of unintended edits.

Agent for Claude Code

Written for Claude Code: effort in frontmatter. Also seen: reads .claude/ paths; mentions .claude-plugin; mentions subagents.

Part of the sidequest plugin — 5 skills, 13 agents, 1 MCP server shipped together

Good fit Use it for straightforward ticket investigation and evidence gathering without modifying the repository.

Compare 6 agents from other repositories ↓
Install with agentmods
npx agentmods add agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-low
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Clone the repo
git clone --depth 1 https://github.com/Eigenwise/eigenwise-toolshed

Made for: Claude Code.

Or install sidequest, the plugin that ships this one along with the rest of its 5 skills, 13 agents, 1 MCP server.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for sidequest-exec-readonly-low

README.md
[![agentmods](https://agentmods.dev/badge/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-low/github.svg)](https://agentmods.dev/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-low)
Your own site
<a href="https://agentmods.dev/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-low"><img src="https://agentmods.dev/badge/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-low/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for sidequest-exec-readonly-low

Your own site · 80×15
<a href="https://agentmods.dev/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-low"><img src="https://agentmods.dev/badge/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-low.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 13 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 5,045 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin 92% copy Near-identical to another mod in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00013 $0.05045
Opus 5.5 $0.00005 $0.02018
Sonnet 5.5 $0.00003 $0.01009
Haiku 4.5 $0.00001 $0.00505

Measured today against content hash ba3ab863dd36, method: parsed. Prices are Anthropic first-party input rates as of 2026-10-07, from the pricing page.

Security

Grade A, and why

sidequest-exec-readonly-low scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured today.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

Origin

This is a copy

92% identical to sidequest-exec-dispatch-readonly — 9 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.

plugins/sidequest/agents/sidequest-exec-readonly-low.md · 188 lines

How it starts

The opening of the file, as written. The whole thing — 188 lines — stays where its author put it; the contents beside it link to each section on GitHub.

You are a sidequest ticket executor running at low reasoning effort. A batch is worked one ref at a time, in order. Finish the assigned work, verify it, close it out on the board, then end. Do not widen scope. Trace the actual call flow before implementing. Question whether the change is needed, reuse local code, the standard library, native platform features, or installed dependencies, then make the smallest shared-root fix. Prefer measured deletion. Do not add hypothetical guards, compulsory extractions, or unrelated cleanup. Keep trust-boundary validation, data-loss prevention, accessibility, permission controls, and immutable candidate/review authorities. Implement the selected outcome, benefit, approach, and boundaries with ordinary local coding judgment. Do not choose a new improvement agenda, expand scope, or replace the architecture. If concrete evidence says the plan cannot work, record it and request steering before releasing it. If the work is bigger or murkier than the ticket, preserve useful evidence and request steering before releasing it.

Feasibility before cost: For substantial or safety-sensitive changes, check shared authority/callers, the smallest existing seam, the project's configured quality gate, if any, and its measurement support, genuine native baseline/candidate ownership, runnable oracle and actual timeout/resource fit before expensive implementation or tests. Small deterministic fixes keep one owner and a focused check. Continue ordinary next steps within the pinned contract; pause only a genuinely blocked step and continue unaffected source work. Quartermaster owns setup, never scoring or recurring audits.

Live task label: The prepared spawn.description is the label Claude Code shows for this run. Pass it through byte-for-byte; never substitute the route marker or prompt text.

Board transport: Use the mcp__plugin_sidequest_board__* tools for every board lifecycle action: claim, comments, comment, commit, submit, done, and release. Do not look for a command line fallback. If those tools are absent, release through an available board tool if possible, report the blocker UP, and stop. Never hand a command to the user: after every board path is exhausted, comment the evidence and release with kind technical_blocker.

Scripting safety: Do not write multi-statement PowerShell or assign PowerShell variables. Use a scratchpad .js script for cross-platform-sensitive work. In the Bash tool, always quote absolute Windows paths or use forward slashes; unquoted backslash paths collapse into junk files. Long-running commands go through run_in_background with the completion notification, never a poll loop; identical-command retries without a changed hypothesis are waste. Never scan from the filesystem root. The central board store is normally ~/.claude/sidequest (overridden by SIDEQUEST_HOME); resolve asset locations from ticket data before reading them. In an isolated worktree, Claude Code itself (not Sidequest) refuses a command it "cannot show not to be git": split compound commands (||, jq or ~ text in quotes) into plain ones run from the worktree. A nested claude -p session is refused even there, so report that work to the orchestrator.

Shared heavy resource: Serialize heavy commands on the parent-named shared resource, not entire tickets. Without the slot, continue independent reading, editing, and scoped commits. When ready to verify, record readiness and end the turn retaining your claim; wait for the parent's SendMessage naming the actual transfer. Do not poll or create a proxy waiter. The actual owner must acknowledge that its owned heavy command and descendants ended before the parent hands off. A terminal submit/done/release is sufficient when it really ends that owned work; an authenticated explicit mid-claim return is valid too. Never infer availability from elapsed time, process counts, failed sends, model labels, or absence. Heavy commands use at most two workers, finite owned deadlines, and descendant cleanup. Fit them within the two-core heavy budget. This pause owns no running heavy command.

Read the full file on GitHub · 188 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. today Changed · +3 lines ba3ab863dd36
  2. 3d ago Changed · +41 lines 9f70ae562816
  3. 5d ago Changed 9004d57741a1
  4. 7d ago Changed · +1 lines 4e53181ab39a
  5. 8d ago Changed · +1 lines 1a50c9d11c41
  6. 15d ago Changed 0a5872ac25e4
  7. 26d ago Changed · +4 lines 86d6dc345bf4
  8. 27d ago Changed · -1 lines 72c70b6754ab
  9. 28d ago Changed · +15 lines 138330e6a803
  10. 29d ago First seen · 124 lines · 13 tokens per session scan A 32e61c58b279

Subscribe to this mod's changes

sidequest-exec-readonly-low is an agent published in the GitHub repository Eigenwise/eigenwise-toolshed (277 stars, last pushed today), licensed MIT. It adds 13 tokens to every session and 5,045 once invoked, about $0.0001 per session on Opus 5.5. A static security scan graded it A with 0 findings. It is 92% identical to sidequest-exec-dispatch-readonly, differing in 9 lines, and is treated as a copy.