Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
/plugin marketplace add qte77/claude-code-pluginsnpx agentmods add plugins/qte77/claude-code-plugins/rag-coregit clone --depth 1 https://github.com/qte77/claude-code-pluginsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/plugins/qte77/claude-code-plugins/rag-core)<a href="https://agentmods.dev/plugins/qte77/claude-code-plugins/rag-core"><img src="https://agentmods.dev/badge/plugins/qte77/claude-code-plugins/rag-core.svg" alt="Measured on agentmods" height="20"></a>Grade A, and why
rag-core scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
{
"name": "rag-core",
"version": "1.0.1",
"description": "Document indexing and hybrid retrieval with heading-boundary chunking, FAISS vector store, and PageIndex tree filtering",
"author": { "name": "Claude Code Utils Contributors" },
"keywords": ["rag", "retrieval", "indexing", "chunking", "faiss", "embedding"]
}
What it installs
The manifest is a name and a version. 1 skill travel with it, and installing the plugin installs all of them — 45 tokens a session between them. Each is measured on its own page, and each can be installed alone.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 8 lines scan A 65c830ff0561
rag-core is a plugin published in the GitHub repository qte77/claude-code-plugins (2 stars, last pushed 5d ago), licensed Apache-2.0. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.
Other plugins, from other repositories
cloudflare-vectorize
Cloudflare Vectorize vector database for semantic search and RAG. Use for vector indexes, embeddings, similarity search, or encountering dimension mismatches, filter errors.
open-webui
Open WebUI operator suite — REST API administration (v0.10.x: user/group lifecycle, model catalog GitOps via models/sync, config-as-code, SCIM, event webhooks, the 0.10.0 accesscontrol→accessgrants break, auth traps), RAG pipeline wiring (HuggingFace embedding + reranker via LiteLLM in front of HuggingFace Text Embed.
inference-cache
Inference KV-cache and transport suite — LMCache multiprocess (MP) standalone-server mode (DaemonSet + Deployment K8s pattern, ZMQ connector, L1 + L2 NIXL/POSIX/GDS/HF3FS/fs/s3/mooncake adapters) and NVIDIA NIXL transfer library (UCX/GDS/Mooncake/libfabric/HF3FS/S3 plugins, agent API, telemetry) used by…
knowledge-graph-extract
Extract knowledge graphs (subject-relation-object triplets) from document folders, with schema enforcement, resumable chunked extraction, and Cypher generation for Neo4j/Memgraph.
librechat-data
LibreChat RAG, file handling, and tool configuration.
context-engineering
Design better LLM context for agents, prompts, tools, RAG/MCP servers, and multi-agent systems.