Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add skills/conorbronsdon/agent-context-os/skill-creatornpx skills add conorbronsdon/agent-context-os --skill skill-creatorgit clone --depth 1 https://github.com/conorbronsdon/agent-context-osWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/conorbronsdon/agent-context-os/skill-creator)<a href="https://agentmods.dev/skills/conorbronsdon/agent-context-os/skill-creator"><img src="https://agentmods.dev/badge/skills/conorbronsdon/agent-context-os/skill-creator.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00033 | $0.02102 |
| Opus 5 | $0.00016 | $0.01051 |
| Sonnet 5 | $0.00007 | $0.00420 |
| Haiku 4.5 | $0.00003 | $0.00210 |
Grade A, and why
skill-creator scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured today.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 113 lines — stays where its author put it; the contents beside it link to each section on GitHub.
skill-builder — Skills That Don't Rot
Takes a plain-language description of a task and produces a ready-to-ship agent skill. The design goal is skills that are cheap in ambient context and current with the skill spec — most skill generators fail on exactly those two axes: they don't know about arguments/argument-hint, never suggest disable-model-invocation, and write bloated descriptions that tax every session.
Modes
Parse $ARGUMENTS for a mode; default to new when the input is a description.
new <description>— scaffold a skill from scratch (the flow below).review <path>— audit an existing SKILL.md against steps 1–3's decision points and run the validator (step 4). Report findings; don't rewrite unless asked.migrate <path>— convert a legacy.claude/commands/*.mdfile into a skill directory: carry the frontmatter over, apply the review checklist, and place supporting content in the directory.
Before You Start
Read references/claude-code-frontmatter.md — a pinned, dated snapshot of the skill frontmatter spec, argument substitutions, and context-loading behavior.
Staleness policy: if the snapshot date is more than 3 months old, warn the user and continue with the pinned snapshot. Do not re-fetch or modify the reference mid-generation — updating the spec is a maintenance operation (agent-skill-builder's spec-drift CI watches for it), not a side effect of building a skill. Only update the snapshot when the user explicitly asks.
Also read the host repo's CLAUDE.md and existing skills — avoid duplicating a skill that already exists, and match local conventions.
Instructions
1. Clarify the skill
Ask (or infer from context):
- Target runtime: Claude Code (default — full frontmatter feature set) or the portable Agent Skills core (
name+descriptiononly; keep Claude-specific fields out or document them as optional extensions). - Name: lowercase, hyphenated. In Claude Code the directory name under
.claude/skills/is the command you type; frontmatternameis only a display label. - Who invokes it — the most important design decision:
- User-only (side effects, or timing the user controls: publish, send, deploy, log) →
disable-model-invocation: true. Bonus: the description is then not loaded into every session — zero ambient context cost. - Claude-only (background knowledge, not an action) →
user-invocable: false. - Both (default) → the description must carry the trigger keywords, and it becomes a permanent per-session context cost. Make it earn that.
- User-only (side effects, or timing the user controls: publish, send, deploy, log) →
- Arguments: does the user pass input on the command line? If yes: set
argument-hint, and consume$ARGUMENTS(or$0/$1, or namedarguments:) in the body. Don't make the model guess what the trailing text means. - Input/Output: what does it read (files, MCP data, live command output), what does it produce?
- Tools:
allowed-toolsis a pre-approval grant (no permission prompts while active), not a restriction — scope entries tightly, e.g.Bash(git add *)notBash. Usedisallowed-toolsto actually remove tools. - Where it runs: inline (default — shares conversation context) or
context: fork+agent:for isolated, self-contained tasks. Fork only works when the body is an explicit task, not reference guidelines. - Data at load time: use dynamic context injection (
!`command`at line start) to inline live data (a diff, a status file) before the model reads the skill. - Only set
model/effortoverrides with a specific reason. Usepaths:for skills scoped to certain files.
What ships with it
1 file beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- today Changed aecf1df31095
- 5d ago First seen · 113 lines · 33 tokens per session scan A a4ac1c1e08de
skill-creator is a skill published in the GitHub repository conorbronsdon/agent-context-os (22 stars, last pushed today), licensed MIT. It adds 33 tokens to every session and 2,102 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
next-cache-components
Next.js 16 Cache Components guidance. Use when refactoring React Server Components for performance, debugging Partial Prerendering (PPR) issues, or applying the use cache directive, cacheLife, cacheTag, updateTag, and revalidateTag. Also use when deciding whether data should be static, cached, or dynamic, or when…
agents-sdk
Build AI agents on Cloudflare Workers using the Agents SDK or build Model Context Protocol (MCP) servers. Load when creating stateful agents, durable workflows, MCP servers, checking MCP schema/error responses, or reviewing MCP code quality. Covers Agent class, state management, callable RPC, Workflows integration…
github-actions
Master GitHub Actions CI/CD workflows with production-grade security and performance patterns. Use ONLY when explicitly setting up CI/CD pipelines specifically via GitHub Actions, setting up matrix strategies, caching dependencies, managing artifacts, or implementing reusable workflows. For deployment requests, use…
github-commander
Structured workflows for GitHub issues, PRs, milestones, and code audits with validation gates and HITL checkpoints. Use when assigned a GitHub issue, reviewing a PR, sprinting through a milestone, updating dependencies, or running code audits. Also use when asked to "triage an issue", "review a PR", or "update deps".…
python
Master modern Python development with production-grade tooling and idioms. Use when writing Python code, configuring project structure, managing dependencies with uv, linting with ruff, adding type hints, writing pytest tests, or building FastAPI/Django/Flask applications. Triggers on "Python", "FastAPI", "Django"…
tailwind-css
Master Tailwind CSS v4 with its CSS-first configuration paradigm. Use when writing utility classes, configuring design tokens via @theme, implementing dark mode, migrating from v3, or integrating with React/Vue/Svelte. Triggers on "Tailwind", "utility CSS", "Tailwind v4", "@theme", "dark mode classes", "responsive…