Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
git clone --depth 1 https://github.com/Buildwise-Studios/claude-for-hk-lawWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/plugins/buildwise-studios/claude-for-hk-law/ai-governance-legal)<a href="https://agentmods.dev/plugins/buildwise-studios/claude-for-hk-law/ai-governance-legal"><img src="https://agentmods.dev/badge/plugins/buildwise-studios/claude-for-hk-law/ai-governance-legal/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/plugins/buildwise-studios/claude-for-hk-law/ai-governance-legal"><img src="https://agentmods.dev/badge/plugins/buildwise-studios/claude-for-hk-law/ai-governance-legal.svg" alt="Reviewed on agentmods" width="80" height="20"></a>Grade A, and why
ai-governance-legal scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 12d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
{
"name": "ai-governance-legal",
"version": "1.0.2",
"description": "Triages proposed AI use cases against your registry, runs AI impact assessments under Hong Kong's sector-specific AI governance framework (PCPD guidance, SFC/HKMA sector rules, PDPO amendments), reviews vendor AI terms, and keeps your AI policy current with practice across HK and cross-border regimes.",
"author": {
"name": "Buildwise-Studios"
}
}
What it installs
The manifest is a name and a version. 10 skills, 2 MCP servers travel with it, and installing the plugin installs all of them — 923 tokens a session between them. Each is measured on its own page, and each can be installed alone.
- Skill use-case-triage A 81 tokens
- Skill ai-inventory A 101 tokens
- Skill aia-generation A 124 tokens
- Skill vendor-ai-review A 87 tokens
- Skill policy-monitor A 82 tokens
- Skill matter-workspace A 82 tokens
- Skill cold-start-interview A 99 tokens
- Skill policy-starter A 88 tokens
- Skill reg-gap-analysis A 90 tokens
- Skill customize A 89 tokens
- MCP server Google Drive A not measured
- MCP server Slack A not measured
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 12d ago First seen · 9 lines scan A 1db4932de08f
ai-governance-legal is a plugin published in the GitHub repository Buildwise-Studios/claude-for-hk-law (5 stars, last pushed 3mo ago), licensed Apache-2.0. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other plugins, from other repositories
anayasa-mahkemesi-bireysel-basvuru
Anayasa Mahkemesi'ne bireysel başvuru: konu ve kişi bakımından yetki, başvuru yollarının tüketilmesi ve süre, kabul edilebilirlik kriterleri, ihlal kararı ve sonuçları; AİHM ile ilişki.
anonim-sirket-genel-kurul
AŞ genel kurulu hazırlık ve icrası: çağrı usulü, gündem, toplantı ve karar nisapları, vekâleten temsil, tutanak, genel kurul kararlarının iptali (TTK m.445 vd.) ve azlık haklarının kullanımı.
atif-turk-hukuku
Türk hukukçusunun ev içi atıf düzeni: içtihat yalnızca mahkeme, daire, esas/karar numarası, tarih ve doğrulanabilir kaynakla; mevzuat madde/fıkra/bent ile; doktrin yazar-eser-sayfa ile. Model hafızasından karar zikretme yok.
avukatlik-meslek-kurallari
Avukatlık hukuku: 1136 sayılı Kanun ve meslek kuralları — sır saklama, çıkar çatışması, vekâlet sözleşmesi ve ücret, reklam yasağı, disiplin sorumluluğu; büroda uyum ve etik denetim.
bilisim-hukuku-siber
Bilişim hukuku: bilişim suçları (TCK m.243-245), veri ihlali ve siber olay müdahalesi, dijital delilin elde edilmesi ve değerlendirilmesi, kurumsal siber güvenlik yükümlülükleri ve hukuki sorumluluk.
birlesme-devralma-ma
Birleşme-devralma işlemleri: hukuki durum tespiti (due diligence), pay/varlık devri yapıları, pay alım satım sözleşmesi (SPA), beyan ve tekeffüller, kapanış şartları ve işlem sonrası entegrasyon; ihtiyaç halinde rekabet izni.