Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
git clone --depth 1 https://github.com/studiomeyer-io/studiomeyer-marketplaceWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/plugins/studiomeyer-io/studiomeyer-marketplace/studiomeyer-crm)<a href="https://agentmods.dev/plugins/studiomeyer-io/studiomeyer-marketplace/studiomeyer-crm"><img src="https://agentmods.dev/badge/plugins/studiomeyer-io/studiomeyer-marketplace/studiomeyer-crm/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/plugins/studiomeyer-io/studiomeyer-marketplace/studiomeyer-crm"><img src="https://agentmods.dev/badge/plugins/studiomeyer-io/studiomeyer-marketplace/studiomeyer-crm.svg" alt="Reviewed on agentmods" width="80" height="20"></a>Grade A, and why
studiomeyer-crm scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
{
"$schema": "https://json.schemastore.org/claude-code-plugin.json",
"name": "studiomeyer-crm",
"displayName": "StudioMeyer CRM",
"version": "1.2.0",
"description": "Headless MCP-native CRM. 37 tools for companies, contacts, deals, pipeline, leads, follow-ups, notes, health scores and Stripe sync. Looks up the customer behind every prompt without any setup. Zero-Knowledge credential storage, Magic Link auth, EU Frankfurt hosting, free tier.",
"author": {
"name": "StudioMeyer",
"email": "[email protected]",
"url": "https://studiomeyer.io"
},
"homepage": "https://crm.studiomeyer.io",
"repository": "https://github.com/studiomeyer-io/studiomeyer-marketplace",
"license": "MIT",
"keywords": [
"crm",
"contacts",
"pipeline",
"deals",
"leads",
"sales",
"hosted",
"stripe",
"magic-link"
]
}
What it installs
The manifest is a name and a version. 1 skill, 6 commands, 1 agent travel with it, and installing the plugin installs all of them — 191 tokens a session between them. Each is measured on its own page, and each can be installed alone.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 5d ago Changed · +2 lines c4ddfd5bf953
- 10d ago First seen · 25 lines scan A ca02afd4c062
studiomeyer-crm is a plugin published in the GitHub repository studiomeyer-io/studiomeyer-marketplace (2 stars, last pushed 5d ago), licensed MIT. Its token cost is not measured: this kind of file is read by the harness, not the model. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other plugins, from other repositories
job-search-hq
Agent-maintained job-search CRM — skills to ingest, score, status-track, prep for interviews, and write cover letters, over a single JSON board + static HTML viewer.
mybusiness-implementor
MyBusiness CRM implementation toolkit: a bundled MCP connection to your own CRM (Application Id + an API key you generate yourself) + product knowledge base + no-code implementation skills (entities, pages, table views, dashboards, reports, triggers, form rules, users & permissions, terminology, price quotes, data…
revenue
Outbound, sales enablement, revenue operations, pricing and packaging, activation, retention, and referrals.
prd-os
PRD operating system: capture rough ideas, draft reviewable PRDs, run standard and adversarial review (Codex or a Claude senior-staff-engineer subagent, recorded truthfully), triage findings, decompose approved PRDs into atomic issue specs, and execute those issues with scope enforcement, stop-gate receipts, and…
commander-hub marketplace
Plugin marketplace listing 1 plugin: commander.
axme-code
(Alpha) Persistent memory, architectural decisions, and safety guardrails for Claude Code. Your agent starts every session with full project context — stack, decisions, patterns, safety rules, and a handoff from the previous session.