Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
/plugin marketplace add lancegui/causal-powersnpx agentmods add plugins/lancegui/causal-powers/marketplacegit clone --depth 1 https://github.com/lancegui/causal-powersGrade A, and why
causal-powers scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
{
"name": "causal-powers",
"description": "Causal Powers \u2014 a skills library for data analytics, causal inference, and reduced-form and structural econometrics.",
"owner": {
"name": "Lance Gui",
"email": "[email protected]"
},
"plugins": [
{
"name": "causal-powers",
"description": "Superpowers for data analytics, causal inference, and econometrics: discipline skills that make the silent failures of data work loud — data contracts, data preparation, join-cardinality checks, wrong-number debugging, result verification, pre-analysis plans, descriptive evidence (stylized facts, trends, summary-stats tables, distributions, and maps done honestly — composition checks, real-vs-nominal, rate-not-count), causal identification, structural estimation (demand/BLP, dynamic discrete choice, games, auctions, consideration, search), predictive modeling (applied prediction — leakage-safe evaluation, deployment-matched splits, prediction-is-not-causation), analysis craft, human-in-the-loop checkpoints, plan execution with parallel subagents, research-project organization, and a configurable R-first language profile. R, Julia, and Python.",
"version": "0.29.1",
"source": "./",
"author": {
"name": "Lance Gui",
"email": "[email protected]"
}
}
]
}
What ships with it
1 file beside marketplace.json in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 21 lines scan A 7ada58510b3c
causal-powers is a plugin published in the GitHub repository lancegui/causal-powers (2 stars, last pushed 8d ago), licensed MIT. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other plugins, from other repositories
stata-code
Plugin marketplace listing 1 plugin: stata-code.
stata-code
Agent-native Stata bridge for Claude Code. Drive DiD/IV/RDD and publication-ready esttab tables in plain language, then cross-validate each estimate against StatsPAI. Bundles an MCP server (21 tools, 14 workflow prompts, token-economy result schema, typed errors, multi-session) and an agent skill with an on-demand…
statsclaw
Plugin marketplace listing 1 plugin: statsclaw.
statsclaw
Multi-agent workflow framework for building, testing, and shipping statistical software packages.
Cortex
Cortex — persistent memory for Claude Code that remembers across sessions automatically. Install and forget. Scientific retrieval backed by 97 published references. (Renamed from the 'cortex' plugin to match the PyPI/MCP-registry identity.).
cortex-deprecated
DEPRECATED — renamed to hypermnesia-mcp. Install hypermnesia-mcp from this same marketplace.