Borrowing it
Nothing to install: this file belongs to zapat-ai/zapat. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/zapat-ai/zapat/main/.claude/commands/add-repo.mdgit clone --depth 1 https://github.com/zapat-ai/zapatWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/commands/zapat-ai/zapat/add-repo)<a href="https://agentmods.dev/commands/zapat-ai/zapat/add-repo"><img src="https://agentmods.dev/badge/commands/zapat-ai/zapat/add-repo/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/commands/zapat-ai/zapat/add-repo"><img src="https://agentmods.dev/badge/commands/zapat-ai/zapat/add-repo.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00000 | $0.00334 |
| Opus 5 | $0.00000 | $0.00167 |
| Sonnet 5 | $0.00000 | $0.00067 |
| Haiku 4.5 | $0.00000 | $0.00033 |
Grade A, and why
add-repo scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 11d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Add Repository
Add a new repository to Zapat's monitoring list.
Steps
-
Ask the user for:
- GitHub path:
owner/repo(e.g.,acme-corp/new-service) - Local path: where the repo is cloned locally (e.g.,
/home/you/code/new-service) - Type:
backend,web,ios,mobile,extension,marketing, orother
- GitHub path:
-
Validate the local path exists:
ls -d <local_path>If it does not exist, ask if they want to clone it:
gh repo clone <owner/repo> <local_path> -
Check that the repo is not already in
config/repos.conf. If it is, inform the user and ask if they want to update the existing entry. -
Append the new entry to
config/repos.conf:owner/repo /path/to/local/clone type -
Ask: "Set up pipeline labels on this repo? (recommended for first-time repos)" If yes, run:
bin/setup-labels.shThis creates the required labels (
agent,agent-work,agent-research,hold,human-only, and internal status labels) on the repo. -
Confirm:
Added acme-corp/new-service to Zapat. The pipeline will pick it up on the next poll cycle (within 2 minutes).
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 11d ago First seen · 40 lines · 0 tokens per session scan A 6f6fcc7c2198
add-repo is a command published in the GitHub repository zapat-ai/zapat (11 stars, last pushed 6mo ago), licensed MIT. It costs nothing until one of its globs matches a file; then it loads 334 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other commands, from other repositories
template
Manage issue templates for streamlined issue creation.
sync-linear
Sync current work with Linear ticket status.
add-note
Add an internal or external note to a ConnectWise PSA ticket.
fest-show
Show festival progression (in-progress tasks, roadmap, and dependency view).
dispatcher
Pick the next-best repo to work on across the portfolio — rank free repos, recommend one, claim its lease atomically, and route to the entry command.
workpm
A project-management workflow for coordinating multiple AI workers through five stages. It includes task assignment, shared activity logs, worker replacement, and final checks.