Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add autonomous-ai/autonomous-os --skill habitgit clone --depth 1 https://github.com/autonomous-ai/autonomous-osWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/autonomous-ai/autonomous-os/habit)<a href="https://agentmods.dev/skills/autonomous-ai/autonomous-os/habit"><img src="https://agentmods.dev/badge/skills/autonomous-ai/autonomous-os/habit/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/autonomous-ai/autonomous-os/habit"><img src="https://agentmods.dev/badge/skills/autonomous-ai/autonomous-os/habit.svg" alt="Reviewed on agentmods" width="80" height="20"></a>- NVIDIA SkillSpector warn
SkillSpector: 2 findings, up to high
These are SkillSpector’s own severities. On a checked sample its high-severity flags on skills were ~96% false positives — a documented command, a public API, a “never do X” rule — so we show them as a caution to read, not a verdict. Why →
- high System Prompt Leakage · line 10 Skill contains instructions that could directly expose system prompts, internal rules, or hidden instructions to users or external parties.Fix: Remove any instructions that reveal, print, or output system prompts or internal rules. System instructions should never be exposed to end users.
- medium Data Exfiltration · line 77 Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.Fix: Verify the destination URL is trusted and necessary. Remove or replace with documented APIs. Ensure no secrets, tokens, or PII are transmitted.
What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00129 | $0.01844 |
| Opus 5 | $0.00064 | $0.00922 |
| Sonnet 5 | $0.00026 | $0.00369 |
| Haiku 4.5 | $0.00013 | $0.00184 |
Grade A, and why
habit scanned grade A with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 9d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Makes network callslowCapability
Not a fault in itself. Listed so you know the mod talks to something, and to what.
curl -s -X POST http://127.0.0.1:5000/api/wellbeing/log \ How it starts
The opening of the file, as written. The whole thing — 138 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Habit Skill
Habits are repeating behavioral patterns derived from historical logs. This skill reads existing data (wellbeing, presence, mood, music, posture) to build patterns per user, then stores them for other skills to consume.
OUTPUT RULE: Reply is spoken VERBATIM. ONE short caring sentence. All computation, pattern math, and log lookups stay in
thinking. NEVER output timestamps, deltas, frequency counts, or reasoning in the reply. (Exception: Flow E — open habit questions — see below.)
Data Sources (Input)
All data lives in /root/local/users/{name}/:
| Folder | File pattern | What it contains |
|---|---|---|
wellbeing/ |
YYYY-MM-DD.jsonl |
drink, break, celebrate, sedentary labels, enter/leave, nudge_* events with timestamps |
mood/ |
YYYY-MM-DD.jsonl |
signal + decision rows with moods |
music-suggestions/ |
YYYY-MM-DD.jsonl |
suggestion history + accepted/rejected status |
posture/ |
YYYY-MM-DD.jsonl |
posture_alert (ergo-risk events from camera) + nudge_posture / praise_posture rows |
User names are lowercase folder names under /root/local/users/. Known users: leo, chloe, gray, lily. Strangers collapse to unknown — this is treated as a regular user with its own folder and its own habit patterns (aggregated across all strangers).
JSONL line example (wellbeing):
{"ts": 1776657145.05, "seq": 4, "hour": 10, "action": "drink", "notes": ""}
Storage (Output)
Computed patterns are stored per user at /root/local/users/{name}/habit/patterns.json.
Rebuild when:
- File does not exist yet
- File is older than 6 hours
- User explicitly asks about their habits
What is a Habit?
A habit is a time-anchored action that repeats across multiple days. Strength labels:
| Frequency | Strength |
|---|---|
| < 0.50 | weak (skip for nudging) |
| 0.50 – 0.75 | moderate |
| > 0.75 | strong |
Habits require at least 3 days of data to form. With fewer days, skip proactive nudging.
What ships with it
5 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 9d ago First seen · 138 lines · 129 tokens per session scan A 2905bb3c2495
habit is a skill published in the GitHub repository autonomous-ai/autonomous-os (286 stars, last pushed today), licensed Apache-2.0. It adds 129 tokens to every session and 1,844 once invoked, about $0.0006 per session on Opus 5. A static security scan graded it A with 1 finding (makes network calls). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
rosclaw-embodied
A set of rules for completing robot tasks in ROSClaw, a system for running and checking robot work. It covers approved robot files, acceptance evidence, and separate rules for simulation and real hardware.
default
Skill "default" from ros-claw/rosclaw, covering skill.md, skill id, intent, preconditions and effects.
tmux
Remote-control tmux sessions for interactive CLIs by sending keystrokes and scraping pane output.
summarize
Summarize or extract text/transcripts from URLs, podcasts, and local files (great fallback for “transcribe this YouTube/video”).
add-matrix
Add Matrix channel integration via Chat SDK. Works with any Matrix homeserver.
add-resend
Add Resend (email) channel integration via Chat SDK.