Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add commands/runkids/skillshare/installgit clone --depth 1 https://github.com/runkids/skillshareWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00000 | $0.06973 |
| Opus 5 | $0.00000 | $0.03487 |
| Sonnet 5 | $0.00000 | $0.01395 |
| Haiku 4.5 | $0.00000 | $0.00697 |
Grade A, and why
install scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 774 lines — stays where its author put it; the contents beside it link to each section on GitHub.
install
Add skills from GitHub repos, git URLs, or local paths.
Overview
flowchart TD
INSTALL["install"] --> SOURCE["source"]
SOURCE --> SYNC1["sync"] --> TARGETS["targets"]
SOURCE --> UPDATE["update"]
SOURCE --> UNINSTALL["uninstall"] --> SYNC2["sync"] --> REMOVED["removed from targets"]
When to Use
- Add a new skill from GitHub, GitLab, Bitbucket, Azure DevOps, or a local path
- Install an organization's shared skill repository (with
--track) - Re-install or update an existing skill (with
--updateor--force)
Quick Examples
# From GitHub (shorthand)
skillshare install anthropics/skills/skills/pdf
# Browse available skills in a repo
skillshare install anthropics/skills
# From local path
skillshare install ~/Downloads/my-skill
# As tracked repo (for team sharing)
skillshare install github.com/team/skills --track
# Install into a subdirectory (organize by category)
skillshare install ~/my-skill --into frontend
# Install all skills from config (no arguments)
skillshare install
Source Formats
GitHub Shorthand
Use owner/repo format — automatically expands to github.com/owner/repo:
skillshare install anthropics/skills # Browse mode
skillshare install anthropics/skills/skills/pdf # Direct install
skillshare install ComposioHQ/awesome-claude-skills # Another repo
GitLab / Bitbucket / Other Hosts
Use domain/owner/repo format for non-GitHub hosts:
skillshare install gitlab.com/user/repo # GitLab
skillshare install bitbucket.org/team/skills # Bitbucket
skillshare install git.company.com/team/skills # Self-hosted
Full URLs and SSH also work:
skillshare install https://gitlab.com/user/repo.git
skillshare install [email protected]:user/repo.git
:::tip Self-managed GitLab on custom domains
Hosts containing gitlab or jihulab in the name are automatically detected with nested subgroup support. For other self-managed GitLab instances on custom domains (e.g., git.company.com), add the hostname to gitlab_hosts in your config so skillshare treats the full URL path as the repository. Without config, you can append .git as a workaround: git.company.com/team/frontend/ui.git.
:::
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 774 lines · 0 tokens per session scan A 1c9c6dee2e76
install is a command published in the GitHub repository runkids/skillshare (2,597 stars, last pushed 5d ago), licensed MIT. It costs nothing until one of its globs matches a file; then it loads 6,973 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other commands, from other repositories
constraints
Define and enforce this project's quality bar — interview, sane defaults, CONSTRAINTS.md.
webperf
Run a web performance audit via the web-performance-auditor persona.
spec
Start spec-driven development — write a structured specification before writing code.
plan
Break work into small verifiable tasks with acceptance criteria and dependency ordering.
pm-arch
Scan project structure and generate Mermaid architecture diagrams + flowcharts under .pm/architecture/.
pm-done
Close a todo (TODO-xxx), sync completed.md, refresh overview.