Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/theagenticguy/opencodehub/doc-reference-public-apigit clone --depth 1 https://github.com/theagenticguy/opencodehubWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00000 | $0.01943 |
| Opus 5 | $0.00000 | $0.00971 |
| Sonnet 5 | $0.00000 | $0.00389 |
| Haiku 4.5 | $0.00000 | $0.00194 |
Grade A, and why
doc-reference-public-api scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 112 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Packet · {{ repo }} · reference/public-api.md
1. Objective
Produce {{ docs_root }}/reference/public-api.md: one H3 per exported symbol for the top 30 public exports of {{ repo }}, each with a fenced code block that quotes the symbol's signature verbatim, a one-sentence description, and a `path:LOC` citation. When {{ repo }} is not a CLI, append an ## HTTP H2 rendered from route_map at the bottom of the file.
2. Scope
- Create:
{{ docs_root }}/reference/public-api.md - Do not touch: any other file under
{{ docs_root }}/, any source file in the repo,.context.md,.prefetch.md, or any.packets/*.mdother than this one. In particular, do not write to{{ docs_root }}/reference/cli.md— the CLI packet owns that file.
3. Input specification
| Source | Read how | Cache state |
|---|---|---|
| Shared context | Read {{ context_path }} |
always first |
| Prefetch ledger | Read {{ prefetch_path }} |
always first |
| Project profile | {{ context_path }} § Repo profile |
cached |
| Exported symbols (public surface) | {{ prefetch_path }} § exports or mcp__codehub__sql({query: "SELECT name, kind, file_path, start_line FROM nodes WHERE kind IN ('Function','Class','Method') AND name NOT LIKE '\\_%' ORDER BY file_path LIMIT 500"}) |
cached if digest present |
| Per-symbol signatures | mcp__codehub__signature({symbol: <id>}) |
mid-run (only if cache miss) |
| Per-symbol usage count | mcp__codehub__context({symbol: <id>}) |
mid-run (only if cache miss) |
| HTTP route inventory | {{ prefetch_path }} § route_map or mcp__codehub__route_map({repo: "{{ repo }}"}) |
cached if digest present |
| Source fallback for missing signatures | Read <file> at start_line..start_line+20 |
mid-run |
4. Process
Read {{ context_path }}andRead {{ prefetch_path }}. Confirm{{ repo }}profile; checkproject_profile.entry_pointsfor the CLI flag.- Pull the exported-symbol list from
.prefetch.md § exports. If absent, run thesqlquery in the input spec and cache the digest in this packet's Work log. - Filter to symbols whose file path is a barrel (
packages/*/src/index.ts,src/index.ts,mod.rs,__init__.py, or equivalent). Keep that subset as the real exports. - For the top 30 exports (ordered by inbound relation count if cached, else by file path): fetch
signature({symbol: <id>})andcontext({symbol: <id>}). Record signature, inbound count, andpath:start_linein the Work log. Reuse cached digests wherever.prefetch.mdalready recorded them. - Determine HTTP rendering: if
project_profile.entry_pointsincludes a CLI, skip the HTTP section — the CLI packet owns route rendering. Otherwise, read theroute_mapdigest (or callroute_map({repo: "{{ repo }}"})once) and prepare an## HTTPH2. - Draft one H3 per export. Format:
### <symbol-name>, then a fenced code block quoting the signature verbatim, then a one-sentence description, then the`path:LOC`citation on its own line. - If rendering HTTP, append
## HTTPas the final H2, with one H3 per route (### METHOD /path), a one-sentence description, and a`path:LOC`citation. Order routes bypath, thenmethod. Write {{ docs_root }}/reference/public-api.mdwith H1 ={{ repo }} · Public API.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 112 lines · 0 tokens per session scan A e1694d53ad79
doc-reference-public-api is an agent published in the GitHub repository theagenticguy/opencodehub (3 stars, last pushed 20d ago), licensed Apache-2.0. It costs nothing until one of its globs matches a file; then it loads 1,943 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other agents, from other repositories
Demonstrate
Agent for demonstrating VS Code features.
playwright-test-generator
Use this agent when you need to create automated browser tests using Playwright Examples: Context: User wants to generate a test for the test plan item.
.NET-Notebook-Migration-Agent
Expert .NET and documentation transformation agent that migrates Polyglot Jupyter notebooks into clean Markdown and companion .NET sample code.
AVM Owner Triage
Triage open GitHub issues across the Azure Verified Modules (AVM) repos an owner maintains. Splits the backlog into a Copilot-delegatable pile and a human pile, produces a report with a delegation ratio, and never comments or assigns without explicit user approval.
Ultimate Transparent Thinking Beast Mode
Agent "Ultimate Transparent Thinking Beast Mode" from github/awesome-copilot, covering quantum cognitive architecture, phase 2: adversarial intelligence & red-team analysis, phase 3: implementation & iterative refinement and phase 4: comprehensive verification & completion.
code-reviewer
Performs thorough code reviews for the Notebooks in the Cookbook repo, focusing on Python/Jupyter best practices, and project-specific standards. Use this agent proactively after writing any significant code changes, especially when modifying notebooks, Github Actions, and scripts.