Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
/plugin marketplace add aomi-labs/skillsnpx agentmods add plugins/aomi-labs/skills/aomi-transactgit clone --depth 1 https://github.com/aomi-labs/skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/plugins/aomi-labs/skills/aomi-transact)<a href="https://agentmods.dev/plugins/aomi-labs/skills/aomi-transact"><img src="https://agentmods.dev/badge/plugins/aomi-labs/skills/aomi-transact.svg" alt="Measured on agentmods" height="20"></a>Grade A, and why
aomi-transact scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 6d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
{
"name": "aomi-transact",
"description": "The Aomi CLI drives an Aomi runtime that reads and writes EVM chain state: stages calldata, simulates as a batch on a forked chain, and returns wallet requests for the user to sign. Works on any EVM contract via low-level primitives \u2014 ABI encoding (encode_and_call), fork-batch simulation (simulate_batch), staged-tx queueing (stage_tx), and wallet handoff with EIP-712 (commit_tx, commit_eip712) \u2014 including multi-step swap-approve-execute routing. Ships with 40+ tuned protocol apps (Polymarket, 1inch, Dune, GMX, Binance, Hyperliquid, Kaito, \u2026), each loaded dynamically and tuned to the vendor's full API. Every action simulates first, batches when possible, and is signed by the end-user wallet.",
"version": "0.11",
"author": {
"name": "aomi-labs",
"url": "https://aomi.dev"
},
"homepage": "https://github.com/aomi-labs/skills/tree/main/aomi-transact",
"repository": "https://github.com/aomi-labs/skills",
"license": "MIT",
"keywords": [
"aomi",
"ai-agents",
"account-abstraction",
"intent",
"natural-language",
"transactions",
"simulation",
"evm",
"defi",
"cli"
]
}
What it installs
The manifest is a name and a version. 1 skill travel with it, and installing the plugin installs all of them — 221 tokens a session between them. Each is measured on its own page, and each can be installed alone.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 6d ago First seen · 25 lines scan A 1a3e8ec11b21
aomi-transact is a plugin published in the GitHub repository aomi-labs/skills (7 stars, last pushed 2d ago), licensed MIT. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other plugins, from other repositories
contentful
Agent skills for Contentful apps, APIs, migrations, and personalization.
input-arithmetic-safety
Detects input validation failures and arithmetic vulnerabilities in smart contracts — the #1 direct exploitation cause at 34.6% of cases. Covers missing zero-checks, precision loss from division-before-multiplication, rounding direction exploitation, ERC4626 inflation attacks, unsafe casting, dust amount exploitation.
transformation
Digital maturity assessment, Now/Next/Later transformation roadmaps, target operating model design, technology strategy briefs, and transformation business cases.
architect-toolkit
Essential architect tools: katas, interview prep, review facilitation, mentoring, anti-patterns, audits, and pattern catalogs.
capacitor-core
Core Capacitor skills for best practices, plugin selection, and MCP automation.
ls-agent
Agent behavior skills.