Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
/plugin marketplace add lovstudio/skillsnpx agentmods add plugins/lovstudio/skills/marketplacegit clone --depth 1 https://github.com/lovstudio/skillsGrade A, and why
marketplace scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 186 lines — stays where its author put it; the contents beside it link to each section on GitHub.
{
"name": "lovstudio",
"owner": {
"name": "Lovstudio",
"email": "[email protected]"
},
"metadata": {
"description": "Lovstudio skills — install via `npx lovstudio skills add <name>`; `... add skills` installs the free catalog and paid entries are redeemed individually."
},
"plugins": [
{
"name": "dev-tools",
"source": "./",
"description": "Dev Tools — 30 free skills bundled together.",
"category": "Dev Tools",
"skills": [
"./skills/env-management",
"./skills/mobile-adapt",
"./skills/repo2docs",
"./skills/auto-context",
"./skills/cc-migrate-session",
"./skills/deploy-to-vercel",
"./skills/finder-action",
"./skills/gh-access",
"./skills/gh-contribute",
"./skills/gh-tidy",
"./skills/install-tanstack-query",
"./skills/release-via-cicd",
"./skills/optimize-tauri-backend",
"./skills/app-generator",
"./skills/electron-delta-updater",
"./skills/electron-app-relaunch",
"./skills/install-ai",
"./skills/skill-distiller",
"./skills/skill-pricing",
"./skills/skill-publisher",
"./skills/obsidian-reset-cache",
"./skills/project-port",
"./skills/clash-tun-doctor",
"./skills/ataru-indexing",
"./skills/ataru-search",
"./skills/integrate-lovinsp",
"./skills/dsh-plugin-creator",
"./skills/dsh-plugin-publisher",
"./skills/npm-publisher",
"./skills/cli2anything"
],
"strict": false
},
{
"name": "general",
"source": "./",
"description": "General — 10 free + 3 paid (Credits redemption required).",
"category": "General",
"skills": [
"./skills/image-translation-errata",
"./skills/image-creator",
"./skills/hanzi-lens",
"./skills/professional-infographic",
"./skills/fact-check",
"./skills/wdb-cli",
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 186 lines scan A cd13bed2eee9
marketplace is a plugin published in the GitHub repository lovstudio/skills (64 stars, last pushed 3d ago), licensed MIT. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other plugins, from other repositories
claude-settings marketplace
Plugin marketplace listing 36 plugins: simplify, humanize, fable-advisor, codex-advisor, adhd-output-style.
codex-advisor
Get a second opinion from GPT via Codex CLI before big decisions.
azure-tools
Azure MCP Server integration for 40+ Azure services with Azure CLI authentication.
gcloud-tools
Google Cloud Observability MCP for logs, metrics, and traces, plus best practices.
github-dev
Git and GitHub workflow skills for commits, PRs, code review, and comment resolution.
intelligent-compact
Keep file paths, root causes, and open questions through auto-summaries.