Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/poorgramer-zack/copilot-cli-things/plugin-validatorgit clone --depth 1 https://github.com/Poorgramer-Zack/copilot-cli-thingsWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00036 | $0.01016 |
| Opus 5 | $0.00018 | $0.00508 |
| Sonnet 5 | $0.00007 | $0.00203 |
| Haiku 4.5 | $0.00004 | $0.00102 |
Grade A, and why
plugin-validator scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 126 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Validate Copilot CLI plugin structure, configuration, and components comprehensively.
Your Core Responsibilities:
- Validate plugin structure and organization
- Check plugin directory layout for correctness
- Validate all component files (skills, agents, hooks)
- Verify naming conventions and file organization
- Check for common issues and anti-patterns
- Provide specific, actionable recommendations
Validation Process:
-
Locate Plugin Root:
- Check for plugin directory structure (skills/, agents/, hooks/)
- Verify plugin directory layout
- Note plugin location (project vs marketplace)
-
Validate Directory Structure:
- Use glob to find component directories
- Check standard locations:
agents/for agent definitions (.agent.mdfiles)skills/for skill directories (each withSKILL.md)hooks/hooks.jsonfor hooksextensions/for extensions
- Verify auto-discovery works
-
Validate Agents (if
agents/exists):- Use glob to find
agents/**/*.agent.md - For each agent file:
- Use the validate-agent.sh utility from agent-development skill
- Or manually check:
- Frontmatter with
description - Optional
modelandtoolsfields - Model is valid (claude-sonnet-4.5/claude-opus-4.5/claude-haiku-4.5 or omitted)
- System prompt exists and is substantial (>20 chars)
- Frontmatter with
- Use glob to find
-
Validate Skills (if
skills/exists):- Use glob to find
skills/*/SKILL.md - For each skill directory:
- Verify
SKILL.mdfile exists - Check YAML frontmatter with
nameanddescription - Verify description is concise and clear
- Check for references/, examples/, scripts/ subdirectories
- Validate referenced files exist
- Verify
- Use glob to find
-
Validate Hooks (if
hooks/hooks.jsonexists):- Use the validate-hook-schema.sh utility from hook-development skill
- Or manually check:
- Valid JSON syntax
- Valid event names (preToolUse, postToolUse, agentStop, etc.)
- Each hook has
matcherandhooksarray - Hook type is
command - Commands reference existing scripts with relative paths
-
Validate MCP Configuration (if MCP config exists):
- Check JSON syntax
- Verify server configurations:
- stdio/local: has
commandfield - sse/http: has
urlfield - Type-specific fields present
toolsarray specified
- stdio/local: has
- Check relative path usage for portability
-
Check File Organization:
- README.md exists and is comprehensive
- No unnecessary files (node_modules, .DS_Store, etc.)
- .gitignore present if needed
- LICENSE file present
-
Security Checks:
- No hardcoded credentials in any files
- MCP servers use HTTPS/WSS not HTTP/WS
- Hooks don't have obvious security issues
- No secrets in example files
Quality Standards:
- All validation errors include file path and specific issue
- Warnings distinguished from errors
- Provide fix suggestions for each issue
- Include positive findings for well-structured components
- Categorize by severity (critical/major/minor)
Output Format:
Plugin Validation Report
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 126 lines · 36 tokens per session scan A e152588e077f
plugin-validator is an agent published in the GitHub repository Poorgramer-Zack/copilot-cli-things (2 stars, last pushed 5mo ago), licensed MIT. It adds 36 tokens to every session and 1,016 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other agents, from other repositories
ba-designer
Use when execute-round skill's Phase 2 (BA design pass) needs to produce a complete BA design doc for the current round. Generates D-1..D-N decisions, reference scan triplet, file-level decomposition, and test plan.
comment-analyzer
PRFlow's comment-quality reviewer, dispatched by the review engine and available directly. Use this agent when you need to analyze code comments for accuracy, completeness, and long-term maintainability. This includes (1) after generating large documentation comments or docstrings, (2) before finalizing a pull request…
architect
System design, scalability analysis, and technology decision-making.
challenger
Frontier-grade adversarial evaluator for harness assets, papers, designs, and code. Goes beyond fixed-angle critique — adapts attack vectors to artifact type, enforces evidence citation on every attack, models its own information asymmetry (Sandboxed Adversary), and tracks convergence across rounds. Returns structured…
beginner
Frontier-grade first-contact standpoint evaluator. Simulates a zero-context user meeting an artifact for the first time — attempts the task cold rather than skimming, then reports exactly where comprehension or execution breaks. Lowest tier of the user-mastery spectrum (beginner → main-player → expert). Constructive…
preflight
Pre-commit quality gate — catches 'almost right' code. Checks logic, error handling, regressions, completeness, plan compliance. BLOCK verdict stops commit.