Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add commands/childrentime/reactuse/pre-prgit clone --depth 1 https://github.com/childrentime/reactuseWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00021 | $0.00309 |
| Opus 5 | $0.00010 | $0.00154 |
| Sonnet 5 | $0.00004 | $0.00062 |
| Haiku 4.5 | $0.00002 | $0.00031 |
Grade A, and why
pre-pr scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Run the pre-PR checklist for ReactUse. Work only against the current diff — fix issues this change introduced, not pre-existing warnings elsewhere.
-
Scope the diff.
git statusandgit diff --statto see what changed. -
Lint.
pnpm lint. Fix only failures in files you touched. -
Test. If anything under
packages/core/srcchanged, runpnpm --filter @reactuses/core test(or scope to the affected hooks). All green. -
Registry sync. If any
.mdxunderpackages/website-astro/src/content/docs*changed, runbash scripts/generate-hook-registry.shand include the updatedscripts/hook-registry.jsonin the change. -
Debug-log scan. Grep your diff for stray
console.log/debugger/.only(left in. Remove them. (IntentionalisDevconsole.errorvalidation stays.) -
Link check. If docs or a blog post changed, verify every
reactuse.comhook link againstscripts/hook-registry.json(seeCLAUDE.md).
Report a short pass/fail summary per step. Do not commit or push unless asked.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 26 lines · 21 tokens per session scan A 30c21be73751
pre-pr is a command published in the GitHub repository childrentime/reactuse (1,047 stars, last pushed 11d ago), licensed Unlicense. It adds 21 tokens to every session and 309 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other commands, from other repositories
changelog
Generate a new changelog entry by reading all changeset files and creating a properly formatted entry in .changelog/v3.mdx.
release-note-csoar
Automates the creation of Cloud SOAR (Automation Service) release notes for platform updates, integration changes, and bug fixes.
doc
Use this command to create a new feature doc, how-to, concept, reference, or troubleshooting guide — it scaffolds the file, frontmatter, structure, and sidebar entry.
speckit-gaia-wiki-promote
Promote merged SPEC or plan content into the GAIA wiki.
speckit-gaia-plan-close
Close a plan after implementation+merge. Offers wiki-promote for the plan's consolidated SUMMARY.md, cold-consolidates an out-of-band merge, then early-reaps the local plan folder once cost is represented in cost.jsonl.
color-palette
Generate an accessible colour palette from a hex value.