Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add commands/iwritec0de/app-dev/knipgit clone --depth 1 https://github.com/iwritec0de/app-devWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00016 | $0.02087 |
| Opus 5 | $0.00008 | $0.01043 |
| Sonnet 5 | $0.00003 | $0.00417 |
| Haiku 4.5 | $0.00002 | $0.00209 |
Grade A, and why
knip scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 274 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Knip — Dead Code Cleanup
Find and remove unused code, dependencies, exports, and files in JavaScript/TypeScript projects.
Load the knip-cleanup skill for configuration patterns, safe removal workflows, and false positive handling.
Usage
/knip [scan|fix|deps|exports|files|config|init]
Arguments
Parse $ARGUMENTS to extract the subcommand:
- scan (default) — Full scan with categorized report
- fix — Interactive guided cleanup with auto-fix
- deps — Focus on unused and unlisted dependencies
- exports — Focus on unused exports and types
- files — Focus on unused files
- config — Show current knip configuration and detected plugins
- init — Set up knip in the project with recommended config
Instructions
Pre-flight Check
Before any subcommand, verify knip is available:
- Check
package.jsonforknipindevDependencies. - If not installed, ask the user if they'd like to install it:
pnpm add -D knip - Detect the project type (Next.js, Vite, Express, etc.) from
package.jsonand config files — this informs which knip plugins will activate automatically.
/knip scan
Run a full knip analysis and present a categorized report:
-
Run knip with JSON output for parsing:
pnpm knip --reporter json 2>/dev/null -
If knip exits with findings, also run compact output for the user:
pnpm knip --reporter compact -
Present results as a summary table:
## Knip Scan Results | Category | Count | Severity | |----------|-------|----------| | Unlisted dependencies | X | CRITICAL | | Unresolved imports | X | CRITICAL | | Unused dependencies | X | HIGH | | Unused devDependencies | X | MEDIUM | | Unused files | X | MEDIUM | | Unused exports | X | LOW | | Unused types | X | LOW | | Duplicate packages | X | INFO | -
Below the summary, list specifics for CRITICAL and HIGH items with file paths.
-
Suggest next steps:
- If unlisted deps found: "Run
/knip depsto fix dependency issues first" - If unused deps found: "Run
/knip fixfor guided cleanup" - If only unused exports/types: "Run
/knip exportsto review"
- If unlisted deps found: "Run
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 274 lines · 16 tokens per session scan A 91d092de7099
knip is a command published in the GitHub repository iwritec0de/app-dev (3 stars, last pushed 4mo ago), licensed MIT. It adds 16 tokens to every session and 2,087 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other commands, from other repositories
battlecard
Create a sales-ready competitive battlecard — positioning, feature comparison, objection handling, and win strategies.
better-auth:add-plugin
Add a better-auth plugin to an existing project. Configures server and client plugins with proper imports.
sheet-report
Analyze a Numbers or Excel file and generate a report with charts.
numbers-to-excel
Convert a Numbers document to Excel.
prompt
System instructions for writing effective prompts. Apply when generating commands, skills, agents, or any LLM instructions.
add-skill
Add a new Skill to the current plugin with proper structure.