Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add arunbalajiraju-proc/procurement-ai-assistant --skill supplier-qbr-skillgit clone --depth 1 https://github.com/arunbalajiraju-proc/procurement-ai-assistantWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/arunbalajiraju-proc/procurement-ai-assistant/supplier-qbr-skill)<a href="https://agentmods.dev/skills/arunbalajiraju-proc/procurement-ai-assistant/supplier-qbr-skill"><img src="https://agentmods.dev/badge/skills/arunbalajiraju-proc/procurement-ai-assistant/supplier-qbr-skill/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/arunbalajiraju-proc/procurement-ai-assistant/supplier-qbr-skill"><img src="https://agentmods.dev/badge/skills/arunbalajiraju-proc/procurement-ai-assistant/supplier-qbr-skill.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00036 | $0.01397 |
| Opus 5 | $0.00018 | $0.00698 |
| Sonnet 5 | $0.00007 | $0.00279 |
| Haiku 4.5 | $0.00004 | $0.00140 |
Grade A, and why
supplier-qbr-skill scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 12d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 238 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Skill Name
Supplier QBR and Performance Review Skill
Purpose
This skill helps AI prepare a supplier quarterly business review or periodic performance review from contract obligations, SLA/KPI data, issues, actions, spend, changes, risks, stakeholder feedback, and renewal information.
It converts scattered reporting into a focused supplier-management discussion.
Composability
This skill is standalone. If other Procurement AI Assistant skills are installed, the AI may combine relevant skills for a multi-step procurement request. Do not assume another skill is available; preserve this skill's own guardrails and human review points.
Core Principle
A QBR should manage performance and value, not merely present updates.
The workflow is:
Collect -> Validate -> Compare to Contract -> Identify Trends -> Prioritize Issues -> Prepare Questions -> Agree Actions -> Track
When to Use
Use this skill for:
- Supplier QBR preparation
- Monthly or quarterly performance reviews
- Contract governance meetings
- SLA and KPI trend analysis
- Escalation preparation
- Renewal-readiness review
- Corrective action follow-up
- Supplier action tracking
- Executive supplier briefings
Do Not Use This Skill For
Do not use it to:
- Accept supplier-reported data without validation
- Change performance records
- Approve service credits or remedies
- Make renewal or termination decisions
- Treat every missed target as equally material
- Replace the contract owner, business owner, or vendor manager
Required Inputs
- Contract and SOW
- SLA/KPI reports
- Issue and escalation logs
- Previous QBR minutes
- Open actions
- Corrective action plans
- Invoices and spend
- Change requests
- Service credits
- Stakeholder feedback
- Risk assessments
- Contract and renewal dates
- Supplier improvement commitments
Workflow
Step 1: Establish Review Period and Objectives
Identify:
- Period covered
- Supplier and services
- Audience
- Business criticality
- Current concerns
- Renewal horizon
- Decisions needed
What ships with it
1 file beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 12d ago First seen · 238 lines · 36 tokens per session scan A 045ec3effb30
supplier-qbr-skill is a skill published in the GitHub repository arunbalajiraju-proc/procurement-ai-assistant (13 stars, last pushed 1mo ago), licensed MIT. It adds 36 tokens to every session and 1,397 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
repomix-explorer
Analyze or explore a codebase (remote or local repository) by packing it with the Repomix CLI, then reading and searching the generated output. Use when the user wants a high-level understanding of an unfamiliar or large repo, not a targeted edit. Trigger for: Structure/overview: "analyze this repo", "what's the…
repomix
Pack and analyze codebases into AI-friendly single files using Repomix. Use when the user wants to explore repositories, analyze code structure, find patterns, check token counts, or prepare codebase context for AI analysis. Supports both local directories and remote GitHub repositories.
agent-carnet
Use this skill when the user asks to save, recall, find, or organize notes. Triggers on: 'remember this', 'save this', 'note this', 'what did we discuss about...', 'check the notebook', 'find in carnet'. Also use proactively when discovering findings worth preserving across sessions.
google-agents-cli-scaffold
This skill should be used when the user wants to "create an agent project", "start a new ADK project", "build me a new agent", "add CI/CD to my project", "add deployment", "enhance my project", or "upgrade my project". Part of the agents-cli skills suite. Covers agents-cli scaffold create, scaffold enhance, and…
graph-mutation-plan
Cookbook for composing an applygraphmutations plan — stable entitykey patterns, the canonical label/edge vocabulary, evidence/invalidation/confidence discipline, and a worked example. Load this when building a non-trivial mutation plan.
potpie-cli
Use when the task is centered on running, explaining, configuring, or troubleshooting the potpie command: doctor, login, pot management, source registration, search, graph workbench reads/writes, and pot scope behavior.