Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
/plugin marketplace add 7xuanlu/wenlannpx agentmods add plugins/7xuanlu/wenlan/marketplacegit clone --depth 1 https://github.com/7xuanlu/wenlanWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/plugins/7xuanlu/wenlan/marketplace)<a href="https://agentmods.dev/plugins/7xuanlu/wenlan/marketplace"><img src="https://agentmods.dev/badge/plugins/7xuanlu/wenlan/marketplace.svg" alt="Measured on agentmods" height="20"></a>Grade A, and why
7xuanlu-wenlan marketplace scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
{
"name": "7xuanlu-wenlan",
"owner": {
"name": "Qi-Xuan Lu",
"url": "https://github.com/7xuanlu"
},
"plugins": [
{
"name": "wenlan",
"source": {
"source": "git-subdir",
"url": "https://github.com/7xuanlu/wenlan.git",
"path": "plugin"
},
"description": "A living knowledge base your agents build as they work. What they learn becomes source-cited wiki pages that refresh between sessions, so each new thread starts from your latest work.",
"category": "productivity",
"keywords": [
"claude-code",
"wiki",
"knowledge-base",
"notes",
"memory",
"recall",
"mcp",
"local-first"
]
}
]
}
The plugins it lists here
This marketplace lists 1 plugin kept in the same repository. Each has its own page, its own measurements and its own install command.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 4d ago First seen · 30 lines scan A e669f171b41f
7xuanlu-wenlan marketplace is a plugin published in the GitHub repository 7xuanlu/wenlan (62 stars, last pushed today), licensed Apache-2.0. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other plugins, from other repositories
odin
Turn scattered information into a durable, provenance-tracked knowledge base. Bundles the Odin skill (judgment) and the neutral Core MCP server (deterministic, invariant-guaranteeing ops). AI is the enabler, not the substrate — the knowledge persists as Markdown + links + git with no vendor lock-in (ADR-0008).
claude
Persistent memory for Claude Code. Capture work across sessions and recall relevant context.
claude-mega-brain
OKF-powered knowledge context for Claude Code — injects your project knowledge base at every session.
hipocampus
Persistent agent memory that survives across sessions — auto-compacting 3-tier memory with hybrid search. Your agent remembers what it learned, decided, and built.
claude-bestpractice
Enforcement, memory and parallel-session coordination for solo founders running several Claude Code sessions on one repository.
yggdrasil
One shared, durable memory for your AI coding agents — local-first, zero-dependency. Decisions, lessons and status persist across sessions, tools and projects.