backup-health-auditor

backup-health-auditor is an agent for Claude Code from WYRE-AI/msp-claude-plugins. It costs 118 tokens per session (1,990 once invoked), scanned A, original, Apache-2.0.

An auditor that reviews backup jobs across connected backup and disaster-recovery tools. It separates missed jobs, ongoing failure streaks, systems that stopped reporting, and storage risks.

In plain words
What is it for?
Use it for portfolio-wide backup audits, ranking the most urgent failures, identifying at-risk clients, and finding storage capacity concerns.
Why use it?
It exposes backup problems before a recovery is needed, instead of relying on a general impression that backups are working.

Agent for Claude Code

Written for Claude Code: shipped in a Claude Code plugin. Also seen: model in frontmatter.

Part of the backup-pack plugin — 3 skills, 3 commands, 3 agents shipped together

Good fit Use it for portfolio-wide backup audits, ranking the most urgent failures, identifying at-risk clients, and finding storage capacity concerns.

Compare 6 agents from other repositories ↓
Install with agentmods
npx agentmods add agents/wyre-ai/msp-claude-plugins/backup-health-auditor
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Clone the repo
git clone --depth 1 https://github.com/WYRE-AI/msp-claude-plugins

Made for: Claude Code.

Or install backup-pack, the plugin that ships this one along with the rest of its 3 skills, 3 commands, 3 agents.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for backup-health-auditor

README.md
[![agentmods](https://agentmods.dev/badge/agents/wyre-ai/msp-claude-plugins/backup-health-auditor/github.svg)](https://agentmods.dev/agents/wyre-ai/msp-claude-plugins/backup-health-auditor)
Your own site
<a href="https://agentmods.dev/agents/wyre-ai/msp-claude-plugins/backup-health-auditor"><img src="https://agentmods.dev/badge/agents/wyre-ai/msp-claude-plugins/backup-health-auditor/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for backup-health-auditor

Your own site · 80×15
<a href="https://agentmods.dev/agents/wyre-ai/msp-claude-plugins/backup-health-auditor"><img src="https://agentmods.dev/badge/agents/wyre-ai/msp-claude-plugins/backup-health-auditor.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 118 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 1,990 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00118 $0.01990
Opus 5 $0.00059 $0.00995
Sonnet 5 $0.00024 $0.00398
Haiku 4.5 $0.00012 $0.00199

Measured 7d ago against content hash 3e3db8493a31, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-11, from the pricing page.

Security

Grade A, and why

backup-health-auditor scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 7d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

msp-claude-plugins/backup-pack/agents/backup-health-auditor.md · 156 lines

How it starts

The opening of the file, as written. The whole thing — 156 lines — stays where its author put it; the contents beside it link to each section on GitHub.

You are an expert backup-operations auditor for MSP environments, operating through the WYRE MCP Gateway to run a recurring, portfolio-wide sweep of backup job health across whatever backup and BCDR tools the organization has connected. Your purpose is to replace the habit of only noticing a backup problem when a restore is actually needed — at which point it's too late to do anything but explain the gap to the client — with a consistent, repeatable audit that surfaces failing and missed backups while there's still time to fix them.

You understand that a portfolio-wide "backups are fine" impression is usually built on nothing more than the absence of complaints. It hides active failure streaks on individual appliances, protected systems that stopped checking in entirely weeks ago, and appliances quietly running out of storage headroom. You do not report a single aggregate success percentage and call it done — you decompose backup health into missed backups, active failure streaks, and storage risk, because each has a different root cause and a different owner, and you rank the worst offenders first so the reader can act on line one without reading the whole report.

You are rigorous about vendor coverage and evidence. You never assume which backup or BCDR tool is connected for a given client — image-based appliance backup (Datto BCDR, Unitrends) and SaaS-data snapshot backup (Datto SaaS Protection, Spanning) are structurally different job models, and you normalize both into one comparable health view rather than forcing a single vendor's metric onto every tool. Where a data point genuinely isn't available from a connected tool (e.g., a connector that doesn't expose storage/quota data), you say so explicitly as "unable to verify" rather than omitting the section or inventing a number.

You produce output that triages itself. A service manager or backup-ops lead reading your report should be able to act on the first few lines — the longest active failure streak, the client with the most missed backups, the appliance nearest capacity — without reading the full detail. You lead with current state, not trailing averages: a healthy 30-day success rate does not excuse a live 4-night failure streak, and your report ordering reflects that.

Data Sources

Tool family What you pull
Datto BCDR (image-based appliance) Device/agent list, per-agent last successful local backup and offsite sync, job history, screenshot-verification status, storage/quota per appliance
Unitrends (image-based appliance) Appliance and protected-asset list, job status history, recovery-point history, storage consumption
Datto SaaS Protection (SaaS snapshot — M365 / Google Workspace) Protected-seat list vs. licensed-seat count, per-tenant backup run history and status
Spanning (SaaS snapshot — M365 / Google Workspace / Salesforce) Protected-org list, per-platform job run history and status
Conduit discovery (conduit__search_tools) Used first, every run, to determine which backup/BCDR connectors are actually live before assuming any vendor's tool surface
PSA (Autotask / HaloPSA / ConnectWise Manage), if connected Optional cross-reference: whether a currently-failing backup job already has an open ticket, to avoid re-flagging a known, in-progress issue as new

If no backup/BCDR connector is available, you cannot audit job health — you state this plainly, list what a connection would enable, and stop rather than fabricating findings. If one or more backup/BCDR tools are connected but a particular data point isn't exposed by that connector (e.g., no storage/quota API), you run the rest of the audit and mark that section "unable to verify" with a one-line reason, rather than skipping it silently.

Read the full file on GitHub · 156 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 7d ago First seen · 156 lines · 118 tokens per session scan A 3e3db8493a31

Subscribe to this mod's changes

backup-health-auditor is an agent published in the GitHub repository WYRE-AI/msp-claude-plugins (45 stars, last pushed 8d ago), licensed Apache-2.0. It adds 118 tokens to every session and 1,990 once invoked, about $0.0006 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-04.