Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add instructions/codacy/codacy-skills/claude-mdgit clone --depth 1 https://github.com/codacy/codacy-skillsWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00857 | $0.00857 |
| Opus 5 | $0.00428 | $0.00428 |
| Sonnet 5 | $0.00171 | $0.00171 |
| Haiku 4.5 | $0.00086 | $0.00086 |
Grade A, and why
codacy-skills CLAUDE.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 89 lines — stays where its author put it; the contents beside it link to each section on GitHub.
CLAUDE.md — Project instructions for Claude
This is a collection of Claude skills for working with the Codacy CLI.
Project structure
/
├── CLAUDE.md # This file
├── README.md # Project overview and installation
├── CONTRIBUTING.md # How to contribute
├── LICENSE # MIT
├── CODE_OF_CONDUCT.md # Community standards
├── .claude-plugin/ # Plugin manifest
│ ├── plugin.json # Plugin metadata
│ └── marketplace.json # Marketplace catalog
└── skills/ # All Agent Skills
└── <skill-name>/ # One folder per skill
├── SKILL.md # Required — YAML frontmatter + instructions
└── references/ # Optional — detailed docs
Skill authoring rules
Structure
- Folder name and
namefield:kebab-caseonly (lowercase, hyphens, no spaces or capitals) - File must be exactly
SKILL.md(case-sensitive) - No
README.mdinside skill folders - Keep
SKILL.mdunder 500 lines; move verbose content toreferences/files
YAML frontmatter (required fields)
---
name: skill-name-in-kebab-case
description: Third-person description of what it does and when to use it. Include trigger phrases.
---
description: under 1024 characters, no XML tags (< >), written in third person- Do not use reserved names:
anthropic-*,claude-*
Writing good descriptions
Include: what the skill does + when to trigger it + key trigger phrases.
Good:
Queries Codacy issues, findings, and pull request data using the Codacy CLI.
Use when the user asks about code issues, security findings, pull request analysis,
or wants to run Codacy commands.
Bad:
Helps with Codacy.
Writing good instructions
- Be specific and actionable — avoid vague directives
- Use numbered steps for ordered workflows
- Set appropriate freedom: exact commands for fragile operations, flexible guidance for context-dependent ones
- Include error handling for common failures
- Reference detailed content via links to
references/files rather than inlining everything - Provide concrete examples
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 89 lines · 857 tokens per session scan A 62806eadd841
codacy-skills CLAUDE.md is an instructions file published in the GitHub repository codacy/codacy-skills (11 stars, last pushed 1mo ago), licensed MIT. It adds 857 tokens to every session, about $0.0043 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other instructions, from other repositories
spellbook AGENTS.md
Instructions for majiayu000/spellbook, covering spellbook agent contract, routing, scope rules, threads long-run guardrails and validation.
open-supermarkets AGENTS.md
Instructions for abracadabra50/open-supermarkets, covering agent integration guide, supported frameworks, quick integration, 1. add as skill and 2. agent calls commands.
helm copilot-instructions.md
Instructions for PetePeter/helm, covering gamepad-cli-hub — copilot instructions, project purpose, system overview, data flow pipeline and key controls.
flyto-core CLAUDE.md
Instructions for flytohub/flyto-core, covering claude notes, cross-agent handoff and shared code intelligence.
fusion-skills AGENTS.md
AGENTS.md instructions for CrowdStrike/fusion-skills, covering agents.md, what this is, prerequisites, repository structure and skills ecosystem.
aeon CLAUDE.md
Instructions for aeonfun/aeon, covering aeon, how aeon works, strategy, voice and soul file hierarchy (read in this order).