Getting it into your agent
This one installs as part of its plugin. Adding the marketplace and installing the plugin brings it with everything else the plugin ships.
/plugin marketplace add costajohnt/oss-autopilot/plugin install oss-autopilotWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/commands/costajohnt/oss-autopilot/oss)<a href="https://agentmods.dev/commands/costajohnt/oss-autopilot/oss"><img src="https://agentmods.dev/badge/commands/costajohnt/oss-autopilot/oss.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00015 | $0.05048 |
| Opus 5 | $0.00008 | $0.02524 |
| Sonnet 5 | $0.00003 | $0.01010 |
| Haiku 4.5 | $0.00002 | $0.00505 |
Grade A, and why
oss scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 6d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 368 lines — stays where its author put it; the contents beside it link to each section on GitHub.
OSS Autopilot Daily Check
This command checks your open source PRs and provides a summary of what needs attention.
Workflow Architecture
This command (oss.md) is the core router that orchestrates the entire flow. It delegates complex actions to external workflow files:
/oss (this file)
│
├─ Startup ──► workflows/startup-and-build.md
│ Build CLI, run startup command, parse output, error recovery
│
├─ Summary ─── First-Run Welcome (if no PRs)
│
├─ Action Menu ──► workflows/action-menu.md
│ Display PRs, present menu, parse input ───┐
│ │
│ ┌─────────────────────────────────────────┘
│ │
│ ├─ "Work through all issues" ──► workflows/work-through-issues.md
│ │ Parallel investigation → consolidated results → sequential execution
│ │
│ ├─ "Pick from your issue list" ──► workflows/work-through-issues.md
│ │ Display curated list → vet → implement → draft-first workflow
│ │
│ ├─ Specific PR (via "Other") ──► workflows/work-through-issues.md
│ │ Dispatch agents for selected PRs only
│ │
│ ├─ "Search for new issues" ──► /oss-search command
│ │ Parallel multi-strategy search with vetting
│ │
│ ├─ "Review issue replies" ──► workflows/review-issue-replies.md
│ │ Issue reply triage handler
│ │
│ ├─ "Follow up on dormant PRs" ──► workflows/dormant-pr-follow-up.md
│ │ Surface waiting-on-maintainer PRs past the 7/14/30-day cadence and draft
│ │ a polite follow-up via the draft-review-post skill (user posts themselves)
│ │
│ └─ "Done for now" ──► Session End
│
├─ Pre-Commit Review (after any code changes) ──┐
│ │ │
│ ├─ New contribution? ──► workflows/draft-first-workflow.md
│ │ Steps 1-10: pre-flight → commit → review → integration check →
│ │ manual testing → human review → squash → push + create PR → compliance → list update
│ │
│ └─ Existing PR update? ──► workflows/pre-commit-review.md
│ Gather diff → dispatch review agents → consolidate → commit/push → post comment
│
└─ Session End
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 6d ago First seen · 368 lines · 15 tokens per session scan A c818009ac0a3
oss is a command published in the GitHub repository costajohnt/oss-autopilot (12 stars, last pushed 3d ago), licensed MIT. It adds 15 tokens to every session and 5,048 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other commands, from other repositories
loci-sync
Sync information between this project and the Loci brain index. Keep full project memory in the project repo.
loci-scan
Refresh the current project's local Loci memory.
doc
Use this command to create a new feature doc, how-to, concept, reference, or troubleshooting guide — it scaffolds the file, frontmatter, structure, and sidebar entry.
claude-tracker
List and browse your saved Claude Code sessions with status (running/inactive/VS Code).
gov-reuse
Discover reusable UK government code before building from scratch.
INDEX
16 custom slash commands in /.claude/commands/.