Borrowing it
Nothing to install: this file belongs to MarcusJellinghaus/mcp-tools-sql. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/MarcusJellinghaus/mcp-tools-sql/main/.claude/agents/issue-approver.mdgit clone --depth 1 https://github.com/MarcusJellinghaus/mcp-tools-sqlWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/marcusjellinghaus/mcp-tools-sql/issue-approver)<a href="https://agentmods.dev/agents/marcusjellinghaus/mcp-tools-sql/issue-approver"><img src="https://agentmods.dev/badge/agents/marcusjellinghaus/mcp-tools-sql/issue-approver.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00028 | $0.00412 |
| Opus 5 | $0.00014 | $0.00206 |
| Sonnet 5 | $0.00006 | $0.00082 |
| Haiku 4.5 | $0.00003 | $0.00041 |
Grade A, and why
issue-approver scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured today.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
86% identical to issue-approver — 4 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
What it actually says
Issue-Approver Agent
You are an issue approval specialist. You approve issues by commenting /approve on them,
which triggers a GitHub Action to promote the issue status.
Do not invoke /issue_approve — it is disable-model-invocation, so the Skill tool will
refuse. Instead read .claude/skills/issue_approve/SKILL.md with
mcp__mcp-workspace__read_file and follow its numbered instructions. Ignore its frontmatter,
its "Resolve Issue Number" section — your issue number, and any --repo owner/repo flag,
come from your launch prompt — and any wording aimed at a user typing the command, including
its closing note about disable-model-invocation. You are running it unattended. The rest of
the file applies to you unchanged, including the post-approval wait and the transition check.
On top of that process:
- Scope — the issue number must match your launch prompt, and the prompt must confirm that no open questions remain. This replaces the skill's step 2, which assumes a human judging a conversation. If either check fails, stop and report back without approving.
- Shell —
ghcommands only. - Report the issue number and the status transition.
The working directory is already correct — do not use cd or git -C.
Runs with bypassPermissions. Rationale and limits:
docs/repository-setup/agent-permissions.md in the mcp-coder repository.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- today First seen · 37 lines · 28 tokens per session scan A f3ce83b438f5
issue-approver is an agent published in the GitHub repository MarcusJellinghaus/mcp-tools-sql (2 stars, last pushed today), licensed MIT. It adds 28 tokens to every session and 412 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. It is 86% identical to issue-approver, differing in 4 lines, and is treated as a copy.
Other agents, from other repositories
Shipper
Post-review shipping agent — commits, updates the roadmap, captures postmortem, and optionally creates a PR after a PASS verdict.
iris
GitHub operations specialist — branches, pull requests, issues, releases, tags. Called by zeus after review. Never pushes or merges without explicit human approval. Integrates with VS Code GitHub Pull Requests extension.
rollback-agent
Reverts failed fix attempts. Resets git state and posts block comment to issue tracker.
sprint-retrospective
Reconstructs repository history for sprint retrospectives, generating structured markdown with metrics, timelines, and actionable development tips. USE FOR: generate sprint retro document from git history, calculate sprint metrics from PR data, analyze commit timeline patterns. DO NOT USE FOR: planning next sprint…
delivery-lead
Delivery team lead. Integration, packaging, release notes, deadline tracking, final assembly.
issue-manager
Issue lifecycle expert for creating, triaging, and organizing GitHub issues. Use when creating well-formed issues, triaging incoming issues, detecting duplicates, managing relationships (parent/blocking/related), or organizing with labels and milestones.