Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add commands/fiale-plus/fiale-claude-plugins/hub-setup-slackgit clone --depth 1 https://github.com/fiale-plus/fiale-claude-pluginsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/commands/fiale-plus/fiale-claude-plugins/hub-setup-slack)<a href="https://agentmods.dev/commands/fiale-plus/fiale-claude-plugins/hub-setup-slack"><img src="https://agentmods.dev/badge/commands/fiale-plus/fiale-claude-plugins/hub-setup-slack.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00009 | $0.00548 |
| Opus 5 | $0.00005 | $0.00274 |
| Sonnet 5 | $0.00002 | $0.00110 |
| Haiku 4.5 | $0.00001 | $0.00055 |
Grade A, and why
hub-setup-slack scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 86 lines — stays where its author put it; the contents beside it link to each section on GitHub.
/hub-setup-slack
Set up Slack API integration using browser session tokens.
Usage
/hub-setup-slack
When to Use
Use this command when:
- You want to read Slack messages from Claude Code
- You want to post messages to Slack channels
- You want to search Slack messages programmatically
- You don't want to create a Slack App (uses browser session instead)
What It Does
This command walks you through:
- Extracting credentials from your browser (d cookie + xoxc token)
- Storing credentials securely in
~/.claude/ - Verifying the connection works
Prerequisites
- A Slack workspace you have access to
- Slack open in your browser (for credential extraction)
- Access to browser DevTools
Credentials Required
| Credential | Where to Find | Lifespan |
|---|---|---|
| Workspace URL | Browser address bar | Permanent |
d cookie |
DevTools > Application > Cookies | ~1 year |
xoxc token |
DevTools > Network > Request Headers | Hours to days |
The setup saves all credentials. When the xoxc token expires, it can be automatically refreshed using the d cookie.
After Setup
Once configured, you can use the Slack API functions:
# List channels
slack_list_channels()
# Read messages
slack_get_messages("C123ABC", 20)
# Post a message
slack_post_message("C123ABC", "Hello from Claude!")
# Reply to a thread
slack_post_message("C123ABC", "Thread reply", "1705344000.000100")
# Search messages
slack_search("project update from:@pavel")
Security Notes
- Credentials give full access to your Slack account (as you)
- Stored in
~/.claude/with 600 permissions (owner-only) - Never share your credentials or commit them to git
- Run
/hub-setup-slackagain if credentials expire
Refreshing Credentials
If you get authentication errors:
- Log into Slack in your browser
- Run
/hub-setup-slackto extract fresh credentials
The d cookie rarely expires (~1 year), but the xoxc token may expire more frequently. The tool tries to auto-refresh the xoxc token, but if that fails, you'll need to re-run setup.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 5d ago First seen · 86 lines · 9 tokens per session scan A f699c83233f4
hub-setup-slack is a command published in the GitHub repository fiale-plus/fiale-claude-plugins (4 stars, last pushed 4mo ago), licensed MIT. It adds 9 tokens to every session and 548 once invoked, about $0.0000 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other commands, from other repositories
statusbar-style
Switch the status-bar style (classic / capsule / hairline).
statusbar-theme
Switch the status-bar color theme (graphite / twilight / linen).
statusbar-preview
Render every style × theme combination using your real cached data.
statusbar-reset
Wipe the status-bar config back to defaults.
statusbar-doctor
Run cs doctor to diagnose why the status bar isn't showing what you expect.
statusbar
Show current status-bar config and list available styles + themes.