new

A project generator for creating a complete TriadJS backend, including its settings, data models, API endpoints, storage, server, and tests. TriadJS is a JavaScript and TypeScript framework for building web backends.

In plain words
What is it for?
Use it to start a new TriadJS service with Fastify, SQLite, TypeScript, and an in-memory data store. It creates the initial files for schemas, endpoints, repositories, services, server setup, and testing.
Why use it?
It removes the repetitive setup work needed before backend development can begin. When the request is vague, it provides a basic Items create, read, update, and delete API as a starting point.

Command

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add commands/justhamade/triadjs/new
Clone the repo
git clone --depth 1 https://github.com/justhamade/triadjs
Per session 30 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 955 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00030 $0.00955
Opus 5 $0.00015 $0.00477
Sonnet 5 $0.00006 $0.00191
Haiku 4.5 $0.00003 $0.00096

Measured 2d ago against content hash 4e80faef75c5, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

new scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

plugin/commands/new.md · 66 lines

How it starts

The opening of the file, as written. The whole thing — 66 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Load the using-triadjs skill for framework context, then the triad-schema, triad-endpoint, triad-services, triad-adapters, and triad-testing sub-skills as needed.

Scaffold a complete, working TriadJS project based on the user's description ($ARGUMENTS). Do NOT ask a stream of clarifying questions — pick sensible defaults (sqlite + Fastify + ESM + TypeScript + tsx for dev) and proceed. If the user's description is vague, scaffold a generic "Items" CRUD API as a starting point.

What to produce

Create this directory layout inside a subdirectory (or the current directory if empty):

package.json
tsconfig.json
triad.config.ts
src/
  schemas/
    <resource>.ts        # t.model + CreateX/UpdateX derivations + ApiError
  endpoints/
    <resource>.ts        # createX, getX, listX, updateX, deleteX with behaviors
  repositories/
    <resource>.ts        # in-memory repo as a starting point
  services.ts            # createServices + declare module augmentation
  test-setup.ts          # default-exported test services factory
  app.ts                 # createRouter + router.context with bounded context
  server.ts              # Fastify wiring

Mandatory rules

  1. Default-export the router from src/app.ts.
  2. Module-augment ServiceContainer in src/services.tsdeclare module '@triadjs/core' { interface ServiceContainer extends AppServices {} }.
  3. Every endpoint has at least one behavior scenario, plus ...scenario.auto() in the behaviors array for boundary coverage.
  4. Use t.empty() for 204 responses, never t.unknown().optional().
  5. Use ctx.respond[status](body) exclusively — never raw { status, body }.
  6. Assertion strings use double quotes, match phrases from the triad-behaviors skill phrase table, and don't try to use null.
  7. ApiError model is shared across every endpoint's 4xx responses.
  8. Pin @triadjs/* packages to ^0.2.0 in package.json unless the user specifies otherwise. Before writing the final package.json, run npm view @triadjs/core version to confirm the current published major/minor and adjust the range to match — the plugin version may drift ahead of what's on npm.
  9. Enable Swagger UI in the generated server.ts by passing docs: true to triadPlugin (Fastify), createTriadRouter (Express), or createTriadApp (Hono). This serves the live OpenAPI spec at /api-docs/openapi.json and Swagger UI at /api-docs as soon as npm run dev is running — no extra step needed. Default is "on in dev, off in production"; docs: true forces on in both.

Read the full file on GitHub · 66 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 2d ago First seen · 66 lines · 30 tokens per session scan A 4e80faef75c5

Subscribe to this mod's changes

new is a command published in the GitHub repository justhamade/triadjs (23 stars, last pushed 4mo ago), licensed MIT. It adds 30 tokens to every session and 955 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.