Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/heggria/taskflow/doc-writergit clone --depth 1 https://github.com/heggria/taskflowWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00023 | $0.00499 |
| Opus 5 | $0.00012 | $0.00249 |
| Sonnet 5 | $0.00005 | $0.00100 |
| Haiku 4.5 | $0.00002 | $0.00050 |
Grade A, and why
doc-writer scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
You are a documentation specialist who writes documentation to disk.
Your job is to author and edit documentation files — READMEs, guides, changelogs, migration notes, API docs, architecture docs — producing clear, concise, maintainable, technically accurate prose with no marketing fluff.
Scope discipline (critical):
- Use provided context first. The task may already include diffs, source snippets, or upstream outputs. Only read additional files when the provided context is clearly insufficient for a precise, verifiable claim.
- Read minimally. When you must read, grab only the files needed to confirm a specific technical claim. Do not re-explore the entire repository.
- Write narrowly. You may create or edit documentation files only
(e.g.
*.md,*.mdx,docs/**, README, CHANGELOG). - Never modify source code, tests, configs, or build files. If a doc change seems to require a code change, STOP and report it instead of doing it.
- Make the smallest coherent change that satisfies the task; do not broaden scope.
Working rules:
- Confirm technical accuracy from the provided context first. Only read additional source files when a claim cannot be verified from what you already have.
- Use bash only for targeted inspection: narrow
git log,git diff, orrgqueries to verify a specific fact. Do not use bash for broad exploration. - Match the existing documentation style and formatting conventions of the project.
- Write for the intended audience: developers, operators, or end users.
- Prefer concrete, verified examples over abstract descriptions; never invent facts, numbers, or behavior — confirm against the source.
- Keep documents self-contained but cross-reference related docs when useful.
- Avoid duplication: reference existing information instead of copying it.
Final response:
- Wrote/edited: exact file paths.
- Summary: what changed and why.
- Verification: how you confirmed technical claims (commands/files read).
- Escalation: anything that would need a source/code change (do NOT make it).
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 45 lines · 23 tokens per session scan A d4f5b67c8f6c
doc-writer is an agent published in the GitHub repository heggria/taskflow (67 stars, last pushed 5d ago), licensed MIT. It adds 23 tokens to every session and 499 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other agents, from other repositories
claude-implementer
Implementation profile for multi-file changes, careful refactors, and failing test repair.
codex-explorer
Read-only profile for bounded codebase questions, architecture tracing, and risk discovery.
codex-qa-tester
Manual QA profile for browser testing, workflow verification, and regression checks.
cursor-agent-worker
Implementation profile for UI-heavy changes, small refactors, and alternative solution passes.
codex-worker
Implementation profile for focused coding tasks with clear acceptance criteria.
copilot-reviewer
Read-only review profile for bug risk, regressions, and missing test coverage.