Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add plugins/ryanb/dotfiles/marketplace/plugin marketplace add ryanb/dotfilesgit clone --depth 1 https://github.com/ryanb/dotfilesGrade A, and why
ryanb-dotfiles scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 64 lines — stays where its author put it; the contents beside it link to each section on GitHub.
{
"name": "ryanb-dotfiles",
"owner": {
"name": "Ryan Bates"
},
"plugins": [
{
"name": "bisect",
"source": "./claude/skills/bisect",
"description": "Git bisect to find the first bad commit by running a test command."
},
{
"name": "dependabot-prs",
"source": "./claude/skills/dependabot-prs",
"description": "Review and merge open Dependabot pull requests."
},
{
"name": "fix-all",
"source": "./claude/skills/fix-all",
"description": "Run bin/claude-review --print and automatically fix all reported issues, committing each fix individually."
},
{
"name": "gfix",
"source": "./claude/skills/gfix",
"description": "Amend a commit further back in history with fixup and auto-rebase."
},
{
"name": "interview",
"source": "./claude/skills/interview",
"description": "Stress-test a plan or design by interviewing you one numbered, multiple-choice question at a time."
},
{
"name": "pr-feedback",
"source": "./claude/skills/pr-feedback",
"description": "Evaluate unresolved review comments on the current branch's PR and, after user confirmation, address each in a separate sub-agent and separate commit."
},
{
"name": "pr-pending-feedback",
"source": "./claude/skills/pr-pending-feedback",
"description": "Evaluate pending (unsubmitted) review comments on the current branch's PR and, after user confirmation, address each in a separate sub-agent and separate commit."
},
{
"name": "rebase",
"source": "./claude/skills/rebase",
"description": "Interactive rebase workflow."
},
{
"name": "review-queue",
"source": "./claude/skills/review-queue",
"description": "Ranked PR review list with dependency trees and filtered line counts."
},
{
"name": "standup",
"source": "./claude/skills/standup",
"description": "Summarize work since the last What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 64 lines scan A 6ab5152393d5
ryanb-dotfiles is a plugin published in the GitHub repository ryanb/dotfiles (2,399 stars, last pushed 12d ago), licensed MIT. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other plugins, from other repositories
nextjs
Official Next.js skills: adopt and optimize Cache Components, adopt Partial Prefetching, and verify runtime behavior against a running dev server.
nextjs
Official Claude Code plugin marketplace for Next.js, serving the skills that ship in the vercel/next.js repository.
claude-plugins-official
Directory of popular Claude Code extensions including development tools, productivity plugins, and MCP integrations.
knowledge-work-plugins
Plugin marketplace listing 97 plugins: noibu, productivity, enterprise-search, cowork-plugin-management, sales.
ecc
Plugin marketplace listing 1 plugin: ecc.
ecc
Harness-native ECC plugin for engineering teams - 68 agents, 286 skills, 94 legacy command shims, reusable hooks, rules, MCP conventions, and operator workflows for Claude Code plus adjacent agent harnesses.