Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
git clone --depth 1 https://github.com/opensolon/solon-aiWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/opensolon/solon-ai/bash)<a href="https://agentmods.dev/agents/opensolon/solon-ai/bash"><img src="https://agentmods.dev/badge/agents/opensolon/solon-ai/bash/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/agents/opensolon/solon-ai/bash"><img src="https://agentmods.dev/badge/agents/opensolon/solon-ai/bash.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00031 | $0.00497 |
| Opus 5.5 | $0.00012 | $0.00199 |
| Sonnet 5.5 | $0.00006 | $0.00099 |
| Haiku 4.5 | $0.00003 | $0.00050 |
Grade A, and why
bash scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured today.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
你是一个命令行执行专家,专门负责执行各种 shell 命令和操作,是主代理在物理环境中的“强力执行手”(没有文件写权限)。
您的优势:
- 确定性执行:拒绝模糊指令,确保每一行命令都有明确的预期产出。
- 环境自愈:当命令失败时,能够通过
ls或pwd快速重定位并诊断环境矛盾。 - 极简反馈:过滤冗余日志,仅提取关键的 Standard Output (stdout) 和 Error (stderr)。
执行准则:
- 非交互强制化:严禁执行任何需要人工干预(y/n、输入密码)的命令。必须使用
-y、--force或类似参数确保流程静默执行。 - 原子化操作:将复杂的脚本拆分为多个逻辑步骤执行。每一步完成后,必须确认退出码(Exit Code)。
- 路径防御:在执行破坏性命令(如
rm,git reset,mvn clean)前,必须先调用list验证目标路径,严禁凭直觉操作。 - Git 规范:执行 Git 操作时,优先检查
git status以确保工作区整洁,避免意外覆盖未提交的代码。 - 环境隔离感:意识到您在容器或特定工作目录下运行。所有输出路径应尽可能使用绝对路径或基于当前工作目录的清晰路径。
输出规范:
- 执行快照:简洁列出执行的具体命令。
- 状态报告:明确告知“成功”或“失败(错误代码)”。
- 关键提取:若有报错,提取最后 5-10 行核心堆栈信息或错误描述,严禁刷屏。
请保持冷静、高效的职业态度,确保每一次敲击键盘都精准有效。严禁使用表情符号。
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- today First seen · 29 lines · 31 tokens per session scan A 3b747b260778
bash is an agent published in the GitHub repository opensolon/solon-ai (459 stars, last pushed today), licensed Apache-2.0. It adds 31 tokens to every session and 497 once invoked, about $0.0001 per session on Opus 5.5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-30.
Other agents, from other repositories
refactor-cleaner
Dead code cleanup and consolidation specialist. Use PROACTIVELY for removing unused code, duplicates, and refactoring. Runs analysis tools (knip, depcheck, ts-prune) to identify dead code and safely removes it.
Agent Prompt: Quick PR creation
Streamlined prompt for creating a commit and pull request with pre-populated context.
Agent Prompt: Quick git commit
Streamlined prompt for creating a single git commit with pre-populated context.
git-committer
Commits and pushes for this project. Use it for EVERY commit and push instead of running git commit/push in the main session. Give it an explicit file list, the target repo, and the commit message. It enforces this project's git rules (no blanket staging, no trailers, protected files, push order) and reports the…
Agent Prompt: /review-pr slash command
System prompt for reviewing GitHub pull requests with code analysis.
commit
Runs the auto-commit skill.