Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
/plugin marketplace add ShaheerKhawaja/ProductionOSnpx agentmods add plugins/shaheerkhawaja/productionos/productionosgit clone --depth 1 https://github.com/ShaheerKhawaja/ProductionOSWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/plugins/shaheerkhawaja/productionos/productionos)<a href="https://agentmods.dev/plugins/shaheerkhawaja/productionos/productionos"><img src="https://agentmods.dev/badge/plugins/shaheerkhawaja/productionos/productionos.svg" alt="Measured on agentmods" height="20"></a>Grade A, and why
productionos scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 109 lines — stays where its author put it; the contents beside it link to each section on GitHub.
{
"name": "productionos",
"description": "AI engineering OS for Claude Code and Codex — 80 agents, 41 commands, 18 hooks.",
"version": "2.0.0-beta.1",
"author": {
"name": "Shaheer Khawaja",
"url": "https://github.com/ShaheerKhawaja"
},
"license": "MIT",
"homepage": "https://github.com/ShaheerKhawaja/ProductionOS",
"repository": "https://github.com/ShaheerKhawaja/ProductionOS",
"keywords": [
"productionos",
"claude-code-plugin",
"codex-plugin",
"agentic-dev",
"multi-agent",
"recursive-improvement"
],
"agents": [
"./agents/adversarial-reviewer.md",
"./agents/aiml-engineer.md",
"./agents/api-contract-validator.md",
"./agents/approval-gate.md",
"./agents/architecture-designer.md",
"./agents/asset-generator.md",
"./agents/browser-controller.md",
"./agents/business-logic-validator.md",
"./agents/code-reviewer.md",
"./agents/comms-assistant.md",
"./agents/comparative-analyzer.md",
"./agents/complexity-analyzer.md",
"./agents/context-retriever.md",
"./agents/convergence-monitor.md",
"./agents/database-auditor.md",
"./agents/db-creator.md",
"./agents/debate-tribunal.md",
"./agents/decision-loop.md",
"./agents/deep-researcher.md",
"./agents/density-summarizer.md",
"./agents/dependency-scanner.md",
"./agents/design-system-architect.md",
"./agents/designer-upgrade.md",
"./agents/discuss-phase.md",
"./agents/document-parser.md",
"./agents/documentation-auditor.md",
"./agents/dynamic-planner.md",
"./agents/e2e-architect.md",
"./agents/ecosystem-scanner.md",
"./agents/frontend-designer.md",
"./agents/frontend-scraper.md",
"./agents/gap-analyzer.md",
"./agents/gitops.md",
"./agents/guardrails-controller.md",
"./agents/infra-setup.md",
"./agents/intake-interviewer.md",
"./agents/llm-judge.md",
"./agents/merge-conflict-resolver.md",
"./agents/metaclaw-learner.md",
"./agentsWhat it installs
The manifest is a name and a version. 4 skills, 41 commands, 11 agents travel with it, and installing the plugin installs all of them — 2,217 tokens a session between them. Each is measured on its own page, and each can be installed alone.
- Skill continuous-learning A 36 tokens
- Skill productionos A 39 tokens
- Skill frontend-audit A 42 tokens
- Skill security-scan A 40 tokens
- Command auto-mode A 68 tokens
- Command max-research A 48 tokens
- Command omni-plan A 62 tokens
- Command auto-swarm-nth A 51 tokens
- Command frontend-upgrade A 56 tokens
- Command omni-plan-nth A 51 tokens
- Command production-upgrade A 26 tokens
- Command retro A 30 tokens
- Command auto-optimize A 42 tokens
- Command auto-swarm A 29 tokens
- Command productionos-help A 26 tokens
- Command refine A 36 tokens
- Command build-productionos A 31 tokens
- Command logic-mode A 45 tokens
- Command autoloop A 36 tokens
- Command designer-upgrade A 43 tokens
- Command learn-mode A 43 tokens
- Command self-eval A 43 tokens
- Command session-validate A 36 tokens
- Command productionos-update A 15 tokens
- Command ux-genie A 38 tokens
- Command agentic-eval A 58 tokens
- Command debug A 25 tokens
- Command devtools A 32 tokens
- Command plan-eng-review A 30 tokens
- Command review A 33 tokens
- Command productionos-pause A 30 tokens
- Command productionos-resume A 28 tokens
- Command productionos-stats A 32 tokens
- Command qa A 30 tokens
- Command ship A 31 tokens
- Command tdd A 29 tokens
- Command writing-plans A 28 tokens
- Command browse A 28 tokens
- Command document-release A 42 tokens
- Command plan-ceo-review A 52 tokens
- Command context-engineer A 34 tokens
- Command deep-research A 49 tokens
- Command brainstorming A 33 tokens
- Command qa-only A 25 tokens
- Command security-audit C 60 tokens
- Agent architecture-designer A 62 tokens
- Agent asset-generator A 40 tokens
- Agent comms-assistant A 39 tokens
- Agent comparative-analyzer A 40 tokens
- Agent api-contract-validator A 39 tokens
- Agent aiml-engineer A 71 tokens
- Agent browser-controller A 32 tokens
- Agent business-logic-validator A 41 tokens
- Agent code-reviewer A 53 tokens
- Agent adversarial-reviewer A 46 tokens
- Agent approval-gate C 33 tokens
What ships with it
1 file beside plugin.json in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 5d ago First seen · 109 lines scan A 5c0667f1aec8
productionos is a plugin published in the GitHub repository ShaheerKhawaja/ProductionOS (8 stars, last pushed 4mo ago), licensed MIT. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other plugins, from other repositories
fellowship
Multi-quest orchestrator for Claude Code. Coordinates parallel quests via agent teams, with structured research-plan-implement lifecycles and isolation via worktrees.
context-ledger
Structured product development methodology with traceable evidence, explicit decisions, and constrained spec generation. Forces auditability through semantic IDs, quality gates, and impact-aware updates.
agent-harness
Multi-agent harness for Claude Code: Planner→Generator→Evaluator sprints executed as background dynamic workflows (Agent-tool fallback), fable/opus/sonnet/haiku model routing with per-role reasoning effort, harness-engineering framework for design/diagnosis, and Anthropic 2026-04-04 P-G-E pattern.
lead-dev-os
Spec & context-driven framework for Claude Code development. Structured skills for product planning, spec writing, task scoping, and context-aware implementation.
manager
Product and project management discipline for the NVZver marketplace. Agents: product-manager — shapes vague ideas into structured draft pitches and returns their full content + pending human gates (writes no files); project-manager — stewards the roadmap, recommends what to build next with dependency/risk/value…
hato
Carrier-pigeon messaging between Claude Code sessions — send messages and files, and get woken up by other sessions across your machines.