Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/khadinakbarlabs/shopify-app-builder/codexgit clone --depth 1 https://github.com/khadinakbarlabs/shopify-app-builderWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/khadinakbarlabs/shopify-app-builder/codex)<a href="https://agentmods.dev/agents/khadinakbarlabs/shopify-app-builder/codex"><img src="https://agentmods.dev/badge/agents/khadinakbarlabs/shopify-app-builder/codex.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00000 | $0.00380 |
| Opus 5 | $0.00000 | $0.00190 |
| Sonnet 5 | $0.00000 | $0.00076 |
| Haiku 4.5 | $0.00000 | $0.00038 |
Grade A, and why
codex scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 3d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Codex guide
Codex receives the 32 portable skills through the native Codex plugin manifest. Claude-specific slash commands and specialist-agent definitions are not presented as native Codex components.
Install
codex plugin marketplace add khadinakbarlabs/shopify-app-builder
codex plugin add shopify-app-builder@shopify-app-builder
Portable fallback:
npx skills add khadinakbarlabs/shopify-app-builder --skill '*' --agent codex --copy --yes
Best use cases
- Repository-wide Shopify implementation and refactoring with file-level verification.
- Security-sensitive authentication, webhook, billing, and scope audits.
- Debugging GraphQL, CLI, extension, and embedded-app failures from terminal evidence.
- Pre-release checks where builds, tests, source inspection, and live-surface verification must be kept distinct.
Operating guidelines
- Name
using-shopify-app-builderon the first broad Shopify request, or name a focused skill directly. - Ask Codex to inspect the repository before selecting framework- or version-specific advice.
- Preserve unrelated dirty-worktree changes and require focused tests for edits.
- Keep deployment, Partner Dashboard, App Store submission, billing, and advertising actions behind explicit authorization.
- Use official Shopify documentation for time-sensitive API and platform claims.
Example prompts
Use using-shopify-app-builder to route this request, then fix our webhook HMAC verification and test it.
Use built-for-shopify-standards to audit this app; report blockers before changing files.
Use admin-graphql to replace this REST product sync with a cost-aware GraphQL flow.
Verify
codex plugin list
Confirm shopify-app-builder is installed, start a new task, and ask Codex to identify the relevant skills for an OAuth loop.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 3d ago First seen · 48 lines · 0 tokens per session scan A e1484004029f
codex is an agent published in the GitHub repository khadinakbarlabs/shopify-app-builder (1 stars, last pushed 24d ago), licensed MIT. It costs nothing until one of its globs matches a file; then it loads 380 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other agents, from other repositories
agents-directory
Developer reference for all 11 Oh My OpenAgent agent definitions, factory patterns, tool restrictions, and model routing.
momus
Momus is a practical work plan reviewer. Its job is to answer one question.
hephaestus
Hephaestus is a goal-oriented autonomous executor. Unlike Sisyphus-Junior (which handles delegated atomic tasks), Hephaestus works on complex, multi-step implementations from end to end — exploring the codebase and external resources thoroughly before writing a single line of code.
multimodal-looker
Multimodal Looker is a read-only media interpretation agent. It receives a file path and a goal describing what to extract, then returns only the relevant extracted information. The main agent never processes the raw file — Multimodal Looker saves context tokens by doing the interpretation work instead.
gestor-pedidos
Especialista em gestão de pedidos na Tray. Utilize para operações complexas envolvendo o ciclo completo do pedido: criação, atualização de status, emissão de notas fiscais, geração de etiquetas de envio e fluxo de cancelamento.
seo-ecommerce
You audit product schemas, Merchant Center feeds, out-of-stock URL management, and faceted navigation crawl efficiency.