Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add bestdeejay-design/agent-skills --skill security-reviewgit clone --depth 1 https://github.com/bestdeejay-design/agent-skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/bestdeejay-design/agent-skills/security-review)<a href="https://agentmods.dev/skills/bestdeejay-design/agent-skills/security-review"><img src="https://agentmods.dev/badge/skills/bestdeejay-design/agent-skills/security-review/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/bestdeejay-design/agent-skills/security-review"><img src="https://agentmods.dev/badge/skills/bestdeejay-design/agent-skills/security-review.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00115 | $0.01518 |
| Opus 5 | $0.00057 | $0.00759 |
| Sonnet 5 | $0.00023 | $0.00304 |
| Haiku 4.5 | $0.00012 | $0.00152 |
Grade A, and why
security-review scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 10d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 98 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Security Review — dependency & static analysis orchestration
Load this skill when you need to run a security review of a codebase: audit the dependency manifest/lockfile inventory, decide which scanner to run per ecosystem, interpret scanner exit codes correctly (real findings vs. infrastructure errors), and normalize reports from different tools into one unified schema for a final report.
The helper script is offline by design — it inventories, classifies, and normalizes. Actual scans are executed by the well-known external tools listed below (install once locally or in CI).
The helper script
scripts/security_review.py — pure Python 3 stdlib (no dependencies).
| Command | Purpose |
|---|---|
security_review.py inventory --dir . |
List dependency locks with ecosystem + suggested tool |
security_review.py inventory --dir . --json |
Same, machine-readable |
security_review.py classify --tool semgrep --exit-code 1 |
Explain what a tool exit code means |
security_review.py normalize --tool osv-scanner --input out.json |
Flatten a tool JSON report into unified findings |
security_review.py normalize --tool pip-audit --input pip.json --output report.json |
Save unified report |
security_review.py report --root . |
Report skeleton (markdown default, --json for JSON) |
Lockfile inventory (per-ecosystem suggested tool)
| Lockfile / manifest | Ecosystem | Suggested tool |
|---|---|---|
package-lock.json, pnpm-lock.yaml, yarn.lock |
npm / pnpm / yarn | npm audit / osv-scanner |
requirements*.txt, pyproject.toml, Pipfile.lock, poetry.lock |
pip | pip-audit |
Cargo.lock |
cargo | cargo audit |
go.mod, go.sum |
go | osv-scanner |
Gemfile.lock |
gem | osv-scanner |
pom.xml, build.gradle(.kts) |
maven / gradle | osv-scanner / dependency-check |
composer.lock |
composer | osv-scanner |
package.json alone (no lockfile) is still reported, so gate or scan it with npm audit.
What ships with it
3 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 10d ago First seen · 98 lines · 115 tokens per session scan A 1536fbea22d9
security-review is a skill published in the GitHub repository bestdeejay-design/agent-skills (5 stars, last pushed 2d ago), licensed MIT. It adds 115 tokens to every session and 1,518 once invoked, about $0.0006 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
workflow
Use when a task is too large for turn-by-turn orchestration and should run through the big-task workflow lane: system-wide changes, large migrations, repo-wide audits, high-confidence verification, or tasks explicitly asking to run a workflow. Claude Code uses native dynamic workflows; Codex, OpenCode, and Grok use…
skill-compiler
Automatic solved-to-skill compiler — detects novel task completions and autonomously drafts new SKILL.md files. Stolen from Hermes Agent's learning loop (NousResearch, 2026-05-11).
context-compactor
9-section context compression with analysis scratchpad. Adapted from Claude Code's /compact system (2026-03-31).
daemon-loop
Autonomous recurring agent tasks — converts workflows into persistent background daemons that run on intervals. Stolen from Boris Cherny's Claude Code /loop pattern (2026-03-31).
trade-journal-analyzer
Unified post-trade analytics: journal pattern extraction + drawdown classification. Absorbs: drawdown-classifier.
Deep Research Loop
Multi-step web research, compilation, and synthesis workflow. Scrapes multiple sources, cross-references claims, and produces a structured research brief.