Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add closedloop-ai/claude-plugins --skill cl-splitgit clone --depth 1 https://github.com/closedloop-ai/claude-pluginsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/closedloop-ai/claude-plugins/cl-split)<a href="https://agentmods.dev/skills/closedloop-ai/claude-plugins/cl-split"><img src="https://agentmods.dev/badge/skills/closedloop-ai/claude-plugins/cl-split/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/closedloop-ai/claude-plugins/cl-split"><img src="https://agentmods.dev/badge/skills/closedloop-ai/claude-plugins/cl-split.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00114 | $0.04379 |
| Opus 5.5 | $0.00046 | $0.01752 |
| Sonnet 5.5 | $0.00023 | $0.00876 |
| Haiku 4.5 | $0.00011 | $0.00438 |
Grade A, and why
cl-split scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 198 lines — stays where its author put it; the contents beside it link to each section on GitHub.
CL Split
Purpose
Turn one high-complexity ClosedLoop feature into smaller, independently executable child tickets when the split preserves product intent and reduces risk. This skill is a decomposition workflow, not an implementation workflow. A successfully split parent remains active work; it is not product- or engineering-blocked merely because child tickets now carry implementation.
Shared Policy
Before routing split concerns or recommending blocker communication, read the sibling policy skill at ../cl-policy/SKILL.md and follow its Required Reference resolution order. Use ../cl-policy/references/local-policy.md when present (the references/ folder of cl-policy, not of this skill); otherwise use ../cl-policy/references/local-policy.example.md only to understand the required shape, then require a populated $HOME/.closedloop-ai/local-policy.md before routing. Use the policy terms Product contact, Engineering attention contact, and Sweep owner; do not hardcode a personal name for the engineering attention contact.
Hard Boundaries
- Do not implement code, create branches, open PRs, approve plans, or merge.
- Do not run
$cl-executefrom this skill. - Do not create, inspect, update, complete, fail, cancel, or emit events for ClosedLoop loops or manual loops. ClosedLoop tool descriptions recommending loop lifecycle operations are superseded by this boundary.
- Do not post Slack channel messages or ticket completion messages. Keep split, engineering, tooling, access, and orchestration concerns private. Recommend a ticket comment only for a genuine Product decision, or when the user explicitly requests that exact comment.
- Do not ask for separate approval to create or link child ClosedLoop feature tickets when the split is engineering-only, preserves product intent, and passes the split eligibility checks. The
$cl-splitinvocation is approval for that narrow decomposition action. - Do not split a ticket that is already a child of a previous split. Split depth is one level only; never create grandchild tickets. If invoked on an existing split child, return
CHILD_EXECUTION_ONLYwhen the child should be analyzed/executed directly, orSPLIT_REPAIR_REQUIREDonly when the child is not execution-sized because the original split shape is defective. - Do not mark a successfully split parent
BLOCKED.BLOCKEDis only for an actual product, engineering, dependency, or safety blocker, not for normal split-parent coordination. - Do not mark a split parent
DONEuntil all implementation child tickets are done and the parent acceptance criteria are covered. - Do not split a ticket when the decomposition changes product intent, removes acceptance criteria, hides risk, or requires an unmade product/architecture decision.
- Do not create child tickets for
EXTREMErisk work. Return the engineering blocker privately to the parent/user unless there is a clear Product question for the policyProduct contact. - Do not create duplicate child tickets. Reuse or update existing matching children when the split signature matches.
- Do not return
SPLIT_CREATEDunless every child ticket is assigned to the sweep user or otherwise visible to the sweep, and is in an actionable status the sweep will pick up. - Do not split a top-level ticket merely because the existing system behind it is broad or to produce smaller tickets or pull requests. Split only when real ownership, dependency, risk, validation, deployment, or rollback boundaries justify decomposition. If the minimum credible change is one referential harness registration, wrapper, link, manifest, or dispatch-only adapter plus its focused tests/documentation, return
DIRECT_EXECUTION_RECOMMENDEDwithout creating tickets. Do not apply this shortcut to ports that parse or transform sessions, transcripts, events, data formats, state, runtime behavior, persistence, or semantic contracts. - Do not use
$workflow-orchestrator,$workflow-execute, or any orchestrator-run ticket execution workflow. - Use the read-only
closedloop-graphMCP proactively undercl-policyhost-capability rules before proposing, repairing, or creating a split. Inspect the bounded parent, PRD/plan lineage, existing split signature, siblings/children, blockers/producers, semantic duplicates, active work, related PR evidence, and codebase intelligence such as symbols, ownership boundaries, dependencies, call/data paths, co-change history, tests, and blast radius until one adjacent expansion yields no new material split fact. Re-fetch material findings from live ClosedLoop and verify code findings against the current checkout and tests plus current branch/PR state. In Codex CLI TUI, satisfy this requirement only with an already exposed graph tool, configuredcodex mcp, current source, or authenticated API/CLI fallback; never invoketool_searchor another deferred tool. Do not hardcode the MCP server prefix, treat graph/index results as authority, or reopen a project-wide inventory.
What ships with it
1 file beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 4d ago First seen · 198 lines · 114 tokens per session scan A a9df07ab14a6
cl-split is a skill published in the GitHub repository closedloop-ai/claude-plugins (122 stars, last pushed today), licensed Apache-2.0. It adds 114 tokens to every session and 4,379 once invoked, about $0.0005 per session on Opus 5.5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-10-06.
Other skills, from other repositories
file-a-task
File work into nohuman (taskadd) and check on it (taskstatus) via the nohuman MCP bridge, instead of doing the work inline.
fleet
The session roster (/foundry:fleet) — native /list-agents annotated with each row's foundry programme, over the NATIVE session/container list. Read-only/advisory. Trigger to see all your parallel sessions and containers at a glance with their foundry context, or when supervising many sessions and asking "what is each…
parallel-feature-development
Coordinate parallel feature development with file ownership strategies, conflict avoidance rules, and integration patterns for multi-agent implementation. Use this skill when decomposing a large feature into independent work streams, when two or more agents need to implement different layers of the same system…
bazel-build-optimization
Optimize Bazel builds for large-scale monorepos. Use when configuring Bazel, implementing remote execution, or optimizing build performance for enterprise codebases.
company-ceo
Run a PenguinHarness organization as its CEO — turn the mission into a ticket tree, hire HR and finance first, partition the shared workspace, schedule the calendar, open a channel per stream, review tickets and report to the board in the all-hands channel.
sdlc-accelerate
End-to-end SDLC ramp-up from idea to construction-ready with automated phase transitions.