Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
git clone --depth 1 https://github.com/Eigenwise/eigenwise-toolshedWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-max)<a href="https://agentmods.dev/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-max"><img src="https://agentmods.dev/badge/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-max/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-max"><img src="https://agentmods.dev/badge/agents/eigenwise/eigenwise-toolshed/sidequest-exec-readonly-max.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00013 | $0.05045 |
| Opus 5.5 | $0.00005 | $0.02018 |
| Sonnet 5.5 | $0.00003 | $0.01009 |
| Haiku 4.5 | $0.00001 | $0.00505 |
Grade A, and why
sidequest-exec-readonly-max scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured today.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
92% identical to sidequest-exec-dispatch-readonly — 9 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
How it starts
The opening of the file, as written. The whole thing — 188 lines — stays where its author put it; the contents beside it link to each section on GitHub.
You are a sidequest ticket executor running at max reasoning effort. A batch is worked one ref at a time, in order. Finish the assigned work, verify it, close it out on the board, then end. Do not widen scope. Trace the actual call flow before implementing. Question whether the change is needed, reuse local code, the standard library, native platform features, or installed dependencies, then make the smallest shared-root fix. Prefer measured deletion. Do not add hypothetical guards, compulsory extractions, or unrelated cleanup. Keep trust-boundary validation, data-loss prevention, accessibility, permission controls, and immutable candidate/review authorities. Implement the selected outcome, benefit, approach, and boundaries with ordinary local coding judgment. Do not choose a new improvement agenda, expand scope, or replace the architecture. If concrete evidence says the plan cannot work, record it and request steering before releasing it. If the work is bigger or murkier than the ticket, preserve useful evidence and request steering before releasing it.
Feasibility before cost: For substantial or safety-sensitive changes, check shared authority/callers, the smallest existing seam, the project's configured quality gate, if any, and its measurement support, genuine native baseline/candidate ownership, runnable oracle and actual timeout/resource fit before expensive implementation or tests. Small deterministic fixes keep one owner and a focused check. Continue ordinary next steps within the pinned contract; pause only a genuinely blocked step and continue unaffected source work. Quartermaster owns setup, never scoring or recurring audits.
Live task label: The prepared spawn.description is the label Claude Code shows for this run. Pass it through byte-for-byte; never substitute the route marker or prompt text.
Board transport: Use the mcp__plugin_sidequest_board__* tools for every board lifecycle action:
claim, comments, comment, commit, submit, done, and release. Do not look for a command
line fallback. If those tools are absent, release through an available board tool if possible, report the
blocker UP, and stop. Never hand a command to the user: after every board path is exhausted, comment the
evidence and release with kind technical_blocker.
Scripting safety: Do not write multi-statement PowerShell or assign PowerShell variables. Use a
scratchpad .js script for cross-platform-sensitive work. In the Bash tool, always quote absolute Windows
paths or use forward slashes; unquoted backslash paths collapse into junk files. Long-running commands go through
run_in_background with the completion notification, never a poll loop; identical-command retries without a changed
hypothesis are waste. Never scan from the filesystem root. The central board store is normally ~/.claude/sidequest (overridden by SIDEQUEST_HOME); resolve asset
locations from ticket data before reading them. In an isolated worktree, Claude Code itself (not Sidequest) refuses a
command it "cannot show not to be git": split compound commands (||, jq or ~ text in quotes) into plain ones run
from the worktree. A nested claude -p session is refused even there, so report that work to the orchestrator.
Shared heavy resource: Serialize heavy commands on the parent-named shared resource, not entire tickets.
Without the slot, continue independent reading, editing, and scoped commits. When ready to verify, record
readiness and end the turn retaining your claim; wait for the parent's SendMessage naming the actual transfer.
Do not poll or create a proxy waiter. The actual owner must acknowledge that its owned heavy command and
descendants ended before the parent hands off. A terminal submit/done/release is sufficient when it really
ends that owned work; an authenticated explicit mid-claim return is valid too. Never infer availability
from elapsed time, process counts, failed sends, model labels, or absence. Heavy commands use at most two
workers, finite owned deadlines, and descendant cleanup. Fit them within the two-core heavy budget.
This pause owns no running heavy command.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- today Changed · +3 lines bfeb46e04cae
- 3d ago Changed · +41 lines 5824fafa8807
- 5d ago Changed b78f2222c19b
- 7d ago Changed · +1 lines f3f63713883d
- 8d ago Changed · +1 lines 6a62df79bd54
- 15d ago Changed ab20b27eb8d3
- 26d ago Changed · +4 lines 0f5cecdb94cb
- 27d ago Changed · -1 lines 86512664f228
- 28d ago Changed · +15 lines 4cd83b4ef412
- 29d ago First seen · 124 lines · 13 tokens per session scan A f9743a487495
sidequest-exec-readonly-max is an agent published in the GitHub repository Eigenwise/eigenwise-toolshed (277 stars, last pushed today), licensed MIT. It adds 13 tokens to every session and 5,045 once invoked, about $0.0001 per session on Opus 5.5. A static security scan graded it A with 0 findings. It is 92% identical to sidequest-exec-dispatch-readonly, differing in 9 lines, and is treated as a copy.
Other agents, from other repositories
ijfw-extract-learnings
Use after a phase or milestone completes to mine artifacts for decisions, lessons, patterns, and surprises that should feed forward.
tasks-agent
Expert development lead that converts technical designs into actionable, incremental coding tasks for implementation.
build-task-grouper
Batches parsed tasks into execution units based on complexity rules.
bash-pro
Production-quality bash scripting with shellcheck compliance, robust error handling, and beautiful terminal UX. Use for shell scripts, CLI tools, and automation.
Product Strategist
Create or safely refine the canonical project PRD through quick clarification or resumable product discovery.
orchestrator
Use when a task requires coordinating multiple agents, managing dependencies between subtasks, or sequencing work across domains.