Borrowing it
Nothing to install: this file belongs to airtaxi/LidGuard. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/airtaxi/LidGuard/master/.codex/skills/lidguard-power-runtime/SKILL.mdgit clone --depth 1 https://github.com/airtaxi/LidGuardWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/airtaxi/lidguard/lidguard-power-runtime)<a href="https://agentmods.dev/skills/airtaxi/lidguard/lidguard-power-runtime"><img src="https://agentmods.dev/badge/skills/airtaxi/lidguard/lidguard-power-runtime/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/airtaxi/lidguard/lidguard-power-runtime"><img src="https://agentmods.dev/badge/skills/airtaxi/lidguard/lidguard-power-runtime.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00055 | $0.02871 |
| Opus 5 | $0.00028 | $0.01435 |
| Sonnet 5 | $0.00011 | $0.00574 |
| Haiku 4.5 | $0.00006 | $0.00287 |
Grade B, and why
lidguard-power-runtime scanned grade B with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Asks for rootmediumPrivilege escalation
A mod that escalates privileges can change anything on the machine, not only the project.
- Use non-interactive `sudo -n` only for the exact commands allowed by `macos-permission install`; fail with actionable setup guidance instead of prompting in background runtime paths. How it starts
The opening of the file, as written. The whole thing — 107 lines — stays where its author put it; the contents beside it link to each section on GitHub.
LidGuard Power Runtime
Platform Power Control
Windows
- Use
PowerCreateRequest,PowerSetRequest, andPowerClearRequestfor normal idle sleep prevention. - Use
PowerRequestSystemRequiredto prevent idle system sleep. - Use
PowerRequestAwayModeRequiredto request away-mode behavior where supported. - Keep
PowerRequestDisplayRequiredoptional; use it only when display sleep should also be prevented. - Always clear power requests and close handles when protection ends.
- Do not change sleep idle timeouts. Runtime crashes could leave the user's system policy in a dangerous state.
Linux
- Target systemd/logind environments.
- Use
systemd-inhibitblock inhibitors for normal sleep and idle prevention. - Map
PreventSystemSleepto thesleepinhibitor. - Map
PreventSystemSleepandPreventDisplaySleepto theidleinhibitor. - Keep
PreventAwayModeSleepWindows-only; do not expose or apply it in Linux settings/help output. - Map temporary lid-close protection to a separate
handle-lid-switchinhibitor only whenChangeLidActionis enabled. - Keep
SystemdInhibitorreleasing normally by closing stdin on the helper process; use process-tree kill only as fallback. - Tie inhibitor helper processes to the LidGuard runtime lifetime so stale orphaned inhibitors do not survive the runtime.
- Request immediate sleep/hibernate with
systemctl suspendorsystemctl hibernate, returning exit code/stderr when the request fails. - Keep Linux as a supported top-level platform when
OperatingSystem.IsLinux()is true, even when systemd/logind prerequisites are incomplete; report missing prerequisites from the specific runtime or diagnostic operation. - Do not depend on a long-lived
sudo -vcache. Prepare persistent privileged logind actions through the Linux polkit rule command.
macOS
- Target local macOS systems with
caffeinate,pmset,ioreg,system_profiler, Apple SiliconIOHIDEventSystemClienttemperature sensors, and best-effortpowermetrics. - Allow the Apple Silicon temperature fast path to use direct source-generated
LibraryImportcalls into CoreFoundation and IOKit, plusNativeLibraryexport lookup for CoreFoundation callback tables, because CsWin32 does not cover macOS frameworks. - Use
caffeinateassertions for normal idle sleep prevention. - Map
PreventSystemSleeptocaffeinate -i. - Map
PreventDisplaySleeptocaffeinate -d. - Do not use
caffeinate -sfor LidGuard's cross-platformPreventAwayModeSleepsetting. Away-mode sleep prevention is Windows-only, and macOS sleep prevention must rely oncaffeinate -iso it works on AC and DC power. - Map temporary lid-close protection to
pmset -a disablesleep 1only whenChangeLidActionis enabled. - Before changing
SleepDisabled, save the original state through the pending lid-action backup JSON path; restore it when protection ends or during the next CLI recovery path before normal command execution. - Request immediate Sleep with
pmset sleepnow. - For Hibernate, temporarily back up the current supported
hibernatemode, writehibernatemode 25, requestpmset sleepnow, and leave the pending hibernatemode backup for the next CLI recovery path instead of restoring it immediately afterpmset sleepnowreturns. Ifpmset sleepnowfails, roll back the hibernatemode immediately when possible. - Use non-interactive
sudo -nonly for the exact commands allowed bymacos-permission install; fail with actionable setup guidance instead of prompting in background runtime paths.
What ships with it
1 file beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago Changed · +1 lines 01d1971cb4d4
- 11d ago First seen · 106 lines · 55 tokens per session scan B a99f08ff1344
lidguard-power-runtime is a skill published in the GitHub repository airtaxi/LidGuard (11 stars, last pushed 3d ago), licensed MIT. It adds 55 tokens to every session and 2,871 once invoked, about $0.0003 per session on Opus 5. A static security scan graded it B with 1 finding (asks for root). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
gke-compute-classes
Configures, optimizes, and troubleshoots GKE ComputeClasses. Use when configuring Spot VMs with on-demand fallback, targeting specific accelerators (GPUs/TPUs) or machine families, restricting ComputeClass access, or debugging pending pods related to node pool auto-creation. Do not use for cluster-level Node Auto…
jetson-diagnostic
Read-only Jetson health snapshot for identity, memory, GPU, thermal, power, storage, services, and top processes.
doca-socket-relay
Use this skill when the operator is driving the DOCA Socket Relay to bridge a socket-oriented host application onto a BlueField DPU peer without rewriting it — picking the deployment shape (in-process, sidecar, or BlueField service container), configuring the host-side socket and the DPU-side forwarding endpoint…
offensive-z-wave
Z-Wave attack methodology — sniffing with Z-Force / EZ-Wave / RTL-SDR + ZniffMobile, S0 (legacy) network-key derivation flaw and key reuse, S2 (modern) ECDH commissioning analysis, replay/injection on unauthenticated nodes, default-key brute-force on test deployments, and home-automation hub pivots. Use when targeting…
hsb-flash
Flash the FPGA on an HSB board connected to an NVIDIA devkit. Supports HSB Lattice boards (FPGA versions 2407, 2412, 2507, 2510) and Leopard Imaging VB1940 "all-in-one" cameras (FPGA versions 2507, 2510). Uses release-specific YAML manifests and board-type-specific program commands. Lattice and VB1940 commands must…
jetson-validate-image
Use after jetson-flash-image to run static BSP checks, on-target smoke/regression tests on a flashed DUT, or both. Not for build or flash steps. Triggers: validate bsp, on-target validation.