install

install is a command for coding agents from ccam80/deep-zotero. It costs 21 tokens per session (1,108 once invoked), scanned B, original, MIT.

A setup command for deep-zotero, a tool that indexes PDFs stored in Zotero, a reference manager for research papers. It checks prerequisites, configures API keys, and starts the first index.

In plain words
What is it for?
Checking for `uv`, locating Zotero's database and PDF storage, configuring Gemini and Anthropic keys, and creating the initial research-library index.
Why use it?
It guides the installation steps and verifies the required software, Zotero data directory, credentials, and optional table-extraction setup.

Command

Part of the deep-zotero plugin — 1 command shipped together

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add commands/ccam80/deep-zotero/install
Clone the repo
git clone --depth 1 https://github.com/ccam80/deep-zotero

Or install deep-zotero, the plugin that ships this one along with the rest of its 1 command.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for install

README.md
[![agentmods](https://agentmods.dev/badge/commands/ccam80/deep-zotero/install.svg)](https://agentmods.dev/commands/ccam80/deep-zotero/install)
Your own site
<a href="https://agentmods.dev/commands/ccam80/deep-zotero/install"><img src="https://agentmods.dev/badge/commands/ccam80/deep-zotero/install.svg" alt="Measured on agentmods" height="20"></a>
Per session 21 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 1,108 The whole file, excluding the scripts and references it only reads on demand.
Security scan B 1 finding. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00021 $0.01108
Opus 5 $0.00010 $0.00554
Sonnet 5 $0.00004 $0.00222
Haiku 4.5 $0.00002 $0.00111

Measured 4d ago against content hash 4143ab8a5416, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade B, and why

install scanned grade B with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Asks for rootmediumPrivilege escalation

A mod that escalates privileges can change anything on the machine, not only the project.

- Debian/Ubuntu: `sudo apt install tesseract-ocr`.
plugin/commands/install.md · 87 lines

How it starts

The opening of the file, as written. The whole thing — 87 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Set up deep-zotero (agent runbook)

You are an AI coding agent setting up an installed deep-zotero plugin.

Work through the steps in order and verify each before moving on. The user should only have to paste API keys and confirm system changes.

1. Preconditions

Confirm:

  • uv is on PATH (uv --version). If missing, point the user at https://docs.astral.sh/uv/ and stop.
  • The plugin is installed and its tools are visible. If not, /plugin install deep-zotero and restart Claude Code.
  • Zotero 8 with PDFs in storage/. On Zotero 7 every citation key comes back empty.

Locate the Zotero data directory, which contains zotero.sqlite and storage/. The default is ~/Zotero. Confirm the path exists.

2. API keys

Ask the user for the keys they have:

Do not echo the full keys back in your messages.

3. Environment variables

The server reads its whole configuration from the environment Claude Code starts from.

Variable Value
DEEP_ZOTERO_DATA_DIR the Zotero data directory from step 1
DEEP_ZOTERO_CHROMA_PATH where the index should live, e.g. ~/.local/share/deep-zotero/chroma
GEMINI_API_KEY from step 2
ANTHROPIC_API_KEY from step 2, omit if the user opted out of vision

Set them for the user's account, then have them restart Claude Code — a newly set persistent variable only reaches new processes.

Windows (PowerShell), per variable:

[Environment]::SetEnvironmentVariable("DEEP_ZOTERO_DATA_DIR", "C:\Users\you\Zotero", "User")

macOS/Linux: add export lines to ~/.zshrc or ~/.bashrc.

To supply settings beyond these four, point DEEP_ZOTERO_CONFIG at a JSON config file. It takes precedence over the environment wherever both supply a setting.

4. Tesseract-OCR (only if the user has scanned PDFs)

Read the full file on GitHub · 87 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 4d ago First seen · 87 lines · 21 tokens per session scan B 4143ab8a5416

Subscribe to this mod's changes

install is a command published in the GitHub repository ccam80/deep-zotero (9 stars, last pushed 1mo ago), licensed MIT. It adds 21 tokens to every session and 1,108 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it B with 1 finding (asks for root). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.