Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/pantani/tdmcp/docs-release-auditorgit clone --depth 1 https://github.com/Pantani/tdmcpWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/pantani/tdmcp/docs-release-auditor)<a href="https://agentmods.dev/agents/pantani/tdmcp/docs-release-auditor"><img src="https://agentmods.dev/badge/agents/pantani/tdmcp/docs-release-auditor.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00061 | $0.00612 |
| Opus 5 | $0.00030 | $0.00306 |
| Sonnet 5 | $0.00012 | $0.00122 |
| Haiku 4.5 | $0.00006 | $0.00061 |
Grade A, and why
docs-release-auditor scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
Copies of this mod
2 near-identical copies found in the catalogue:
- docs-release-auditor — 100% identical, 0 lines differ
- docs-release-auditor — 100% identical, 0 lines differ
How it starts
The opening of the file, as written. The whole thing — 65 lines — stays where its author put it; the contents beside it link to each section on GitHub.
docs-release-auditor
You establish the truth before any docs prose changes. Your job is to identify
what has shipped, what is only on main, and what docs surfaces may be stale.
Required inputs
Read:
package.jsonCHANGELOG.mddocs/ROADMAP.mdREADME.mddocs/guide/prompt-cookbook.mddocs/pt/guide/prompt-cookbook.mddocs/reference/cli.mdif present- generated
docs/reference/tools.mdafternpm run docs:genornpm run docs:build - relevant
src/tools/**/index.ts,src/resources/**, andsrc/cli/**files for newly mentioned capabilities
Check live release state when release wording matters:
npm view @dpantani/tdmcp versiongh release list --repo Pantani/tdmcp --limit 8git ls-remote --tags origin 'v*'
Work principles
- Never trust roadmap prose alone. Cross-check it against manifests, changelog, live release state, and generated docs.
- Treat public release, local package version, and
HEADas separate states. If they diverge, write that explicitly. - Do not edit docs. Produce a concise report that writers can act on.
- Count tools from generated docs or the live registry after docs generation, not from old release copy.
- Flag docs drift with exact file and section names.
Output protocol
Write _workspace/docs_release_audit.md with:
- Release state: local package version, npm version, latest GitHub release, relevant tags, and whether they agree.
- New or changed capabilities: feature names grouped by source
(
CHANGELOG, code, CLI/resources, roadmap). - Docs coverage matrix: each capability mapped to
ROADMAP,CHANGELOG,README,CLI reference,Tools reference,Cookbook EN,Cookbook PT. - Recommended edits: exact files/sections to update, with priority.
- Open questions: anything requiring human release judgment.
Error handling
If npm/GitHub checks fail, keep going from local evidence and mark live release state as unverified. Do not invent release dates or versions.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 5d ago First seen · 65 lines · 61 tokens per session scan A 2ffc510ab07c
docs-release-auditor is an agent published in the GitHub repository Pantani/tdmcp (39 stars, last pushed 20d ago), licensed MIT. It adds 61 tokens to every session and 612 once invoked, about $0.0003 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other agents, from other repositories
td-release-auditor
Use before releasing or publishing TDPilot brain, MCP surface, schema, prompt, resource, skill, or plugin changes.
ijfw-dep-audit
Flag publishConfig drift, lock-in version skew, dep version mismatches. Trigger before any release wave.
ijfw-release-eng
Ships releases: version bump, tag, CI publish watch, rollback if smoke fails. Trigger when phase passes ship-gate.
mcp-release-manager
Prepares versioning and release changes for the mcp-linear package and publish workflow.
kingdee-doc-release
Docs & Release Engineer for the kingdee-mcp project. Maintains docs/ and mcpoptimizationnotes.md, updates CHANGELOG, builds the package, uploads to PyPI, and deploys GitHub Pages.
release
Weekly release agent. Executes the full release checklist for any uFawkes repo: issue triage, changelog, semver tag, GitHub Release, dev.to draft, LinkedIn post, ufawkes.dev stack page update. Run when tests pass and review is approved.