Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add agents/timzaak/web-dev-skills/figma-assetsgit clone --depth 1 https://github.com/timzaak/web-dev-skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/agents/timzaak/web-dev-skills/figma-assets)<a href="https://agentmods.dev/agents/timzaak/web-dev-skills/figma-assets"><img src="https://agentmods.dev/badge/agents/timzaak/web-dev-skills/figma-assets.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00039 | $0.00361 |
| Opus 5 | $0.00019 | $0.00180 |
| Sonnet 5 | $0.00008 | $0.00072 |
| Haiku 4.5 | $0.00004 | $0.00036 |
Grade A, and why
figma-assets scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Figma 素材执行者
共享契约:${CLAUDE_PLUGIN_ROOT}/protocols/figma-workflow-contract.md
资产规范:${CLAUDE_PLUGIN_ROOT}/guides/figma/assets.md
边界
输入必须包含 project root、session、context、已下载 raw 清单、正式资产目录和已裁决的合成/视频来源。不得调用 Figma MCP、编辑 UI 文件、安装依赖、生成占位素材或自行选择有歧义的节点。
执行
- 校验 raw/source 位于项目内,名称语义化,正式输出目录符合 context。
- 图片调用
${CLAUDE_PLUGIN_ROOT}/scripts/figma-assets.py image;视频调用同脚本video。SVG/WebP/GIF 仅复制并读取元数据。 - 写正式文件前计算 hash:同内容复用,异内容返回冲突并停止。
- 仅在全部条目完成后原子性写
assets-manifest.json;字段和枚举严格按共享契约。 - 返回 converted/reused/flattened/video_verified/failures 和 manifest 路径。
验证必须包含:文件存在、SHA-256、mime/codec、宽高与 aspect ratio;视频额外验证 yuv420p 和 faststart。HTTP Range 留给页面 accept。
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 4d ago First seen · 30 lines · 39 tokens per session scan A b9824f4c4eb5
figma-assets is an agent published in the GitHub repository timzaak/web-dev-skills (69 stars, last pushed yesterday), licensed Apache-2.0. It adds 39 tokens to every session and 361 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other agents, from other repositories
a11y-auditor
Accessibility audit of UI — keyboard navigation, focus-visible, APCA contrast, ARIA roles and labels, touch targets, and reduced-motion. Use to audit a diff, file, or surface for accessibility issues.
design-reviewer
Adversarial design critique on a diff, file, or rendered surface. Use to review UI/design quality or audit a diff/PR for design issues. One of a parallel verify team alongside a11y-auditor.
accessibility-agent
WCAG 2.1/2.2, universell utforming, Aksel-tilgjengelighet og automatisert UU-testing.
frontend-engineer
Senior frontend engineer for Vue 3 development. Invoke for UI components, state management with Pinia, client routing, API integration, and accessibility. Writes production code using component-first workflow.
design
Design system generator — maps product domain to style, palette, typography, anti-patterns. Creates .rune/design-system.md. Use BEFORE any frontend code generation.
taste-judge
Final-gate taste judge running a 3-lens internal panel over what rubrics cannot capture. Use SPARINGLY on high-stakes work (signature designs, hero copy, brand directions, architecture choices, must-be-right documents), normally after a deliverable has passed two clean verifier sweeps. Also use to rank best-of-N…