Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
/plugin marketplace add First-Touch-Inc/firsttouch-agent-skill-packsnpx agentmods add plugins/first-touch-inc/firsttouch-agent-skill-packs/ae-packgit clone --depth 1 https://github.com/First-Touch-Inc/firsttouch-agent-skill-packsGrade A, and why
ae-pack scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
{
"name": "ae-pack",
"version": "1.5.0",
"description": "AE persona pack: meeting/signup auto-connect, stakeholder multi-threading, stalled-deal reactivation, and territory push plays. Installs with the FirstTouch MCP auto-connected.",
"author": {
"name": "First Touch Inc.",
"url": "https://www.firsttouch.com"
},
"homepage": "https://github.com/First-Touch-Inc/firsttouch-agent-skill-packs",
"license": "MIT"
}
What it installs
The manifest is a name and a version. 13 skills, 1 MCP server travel with it, and installing the plugin installs all of them — 1,415 tokens a session between them. Each is measured on its own page, and each can be installed alone.
- Skill social-campaigns A 117 tokens
- Skill hubspot-social-task-runner A 83 tokens
- Skill icp-outbound-builder A 120 tokens
- Skill stalled-deal-reactivation A 117 tokens
- Skill warm-engager-followup A 126 tokens
- Skill customer-referral A 106 tokens
- Skill hubspot-signal-to-linkedin-touch A 136 tokens
- Skill campaign-pause-and-fix A 90 tokens
- Skill champion-job-change A 108 tokens
- Skill firsttouch-messaging A 78 tokens
- Skill inbound-speed-to-lead A 155 tokens
- Skill post-demo-followup A 97 tokens
- Skill website-visitor-followup A 82 tokens
- MCP server firsttouch A not measured
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 12 lines scan A 8ddd34f44520
ae-pack is a plugin published in the GitHub repository First-Touch-Inc/firsttouch-agent-skill-packs (5 stars, last pushed 2mo ago), licensed MIT. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other plugins, from other repositories
Post to LinkedIn directly from Claude Code - text, images, and articles.
content-distribution-mcp
Publish content to 8+ channels (DEV.to, Hashnode, GitHub Discussions, Reddit, Bluesky, LinkedIn, Medium, Twitter) with automatic platform-specific adaptation, idempotent state, and anti-spam enforcement.
linkedctl marketplace
Plugin marketplace listing 1 plugin: linkedctl.
sales-enablement
A compounding GTM enablement engine with full MCP integration across all 21 skills, bundled with a custom Sales Intelligence MCP server (16 tools for Gong, ZoomInfo, Clay, LinkedIn). Pre-configured .mcp.json includes 9 remote connectors (HubSpot, Slack, MS365, Notion, Fireflies, Clay, ZoomInfo, Atlassian, Close) plus…
linkedin-maxxing-marketplace
Plugin marketplace listing 1 plugin: linkedin-maxxing.
linkedin-maxxing
17 skills for substance-first LinkedIn growth. Refuses templates, refuses scaled outreach, optimizes for dwell time and comment quality instead of detection-evasion. Includes a Wikipedia-based humanizer that the writing skills invoke as a final polish step.