Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
/plugin marketplace add fledgeling-co/fledgeling-pluginsnpx agentmods add plugins/fledgeling-co/fledgeling-plugins/deck-craftgit clone --depth 1 https://github.com/fledgeling-co/fledgeling-pluginsGrade A, and why
deck-craft scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
{
"name": "deck-craft",
"version": "1.16.0",
"description": "Build, review or convert a slide deck across three targets from one body of craft: a self-contained fixed-stage HTML presentation, lecturn.deck/1 JSON with a .pptx round-trip, or an investor deck assembled from a bundled library of 200 slide layouts in 27 families and 21 recipes. Carries its own design layer rather than depending on a general design skill — a supplied DESIGN.md or token file is binding, a direction is authored on three named axes when no brand exists, and type is sized from a viewing-angle derivation rather than from web habit. Deck-specific narrative discipline: the title sequence written before any slide because the titles read in order are the argument, speaking-versus-reading density as an explicit fork, one idea per slide, and a named slide count treated as a contract. Ships a deterministic preflight gate that runs in a headless browser and is built to be unable to pass silently: the probe carries its own blocker and warning policy plus a stated consequence for every finding, refuses a config key it does not recognise, and echoes its configuration back so the runner can prove the settings that were asked for actually arrived. Only exit 0 is a pass — a probe that returned nothing, a config that never landed, a check that threw and a run that examined zero slides each get their own code and their own refusal. Regulated decks add per-slide disclosure checks sourced to SEC Regulation G and Item 10(e), the December 2022 Compliance and Disclosure Interpretations on equal-or-greater prominence, and ASIC RG 230; chart integrity covers truncated baselines, dual axes and inverted axes; and given the source document it cross-checks every figure on the deck against it, because fabrication arrives as texture around a real number rather than as an invented headline.",
"author": {
"name": "Fledgeling",
"email": "[email protected]"
}
}
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 10 lines scan A ad34157e9972
deck-craft is a plugin published in the GitHub repository fledgeling-co/fledgeling-plugins (2 stars, last pushed 2d ago), licensed MIT. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other plugins, from other repositories
cli
Run HeadlessX website, search, YouTube, and jobs workflows from the terminal.
hhru
Plugin marketplace listing 1 plugin: hhru-cc-plugin.
dhm
Plugin marketplace listing 1 plugin: dear-hiring-manager.
kernel-sdks
TypeScript and Python SDK skills for building browser automation with Kernel's Typescript and Python SDKs.
webmcpify
Plugin marketplace listing 1 plugin: webmcpify.
realbrowser
Target-first local Chrome/Chromium browser control with signed-in profiles, labeled tabs, and guarded actions.