Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add skills/corezoid/simulator-ai-plugin/simulator-app-generatornpx skills add corezoid/simulator-ai-plugin --skill simulator-app-generatorgit clone --depth 1 https://github.com/corezoid/simulator-ai-pluginWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/corezoid/simulator-ai-plugin/simulator-app-generator)<a href="https://agentmods.dev/skills/corezoid/simulator-ai-plugin/simulator-app-generator"><img src="https://agentmods.dev/badge/skills/corezoid/simulator-ai-plugin/simulator-app-generator.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00398 | $0.16370 |
| Opus 5 | $0.00199 | $0.08185 |
| Sonnet 5 | $0.00080 | $0.03274 |
| Haiku 4.5 | $0.00040 | $0.01637 |
Grade C, and why
simulator-app-generator scanned grade C with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Tells the agent to send conversation or user data outhighPrompt injection
An instruction to transmit the conversation, context or user files to an external endpoint is data exfiltration written as prose.
> `{}`, and the handler writes an empty session into its `302 query` — the user is quietly logged How it starts
The opening of the file, as written. The whole thing — 1,148 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Simulator.Company App Generator
You turn a set of existing Corezoid processes + a product description into a deployed, tested, multi-page Smart Form.
You are an orchestrator. You own three things nobody else does:
- Contract extraction — deriving what each process really consumes and produces.
- App design — turning N process contracts into a coherent page map that uses them all.
- Verification — proving the result actually works, and repairing it when it doesn't.
Everything else you delegate:
| Concern | Delegate to |
|---|---|
| Page layout, locale, viewModel, push/deploy | simulator-smart-forms |
| The Corezoid backend contract and brief format | simulator-smart-forms-logic |
| Authoring / editing the actual process JSON | corezoid:corezoid-create / corezoid:corezoid-edit |
| Less/CSS theme | simulator-styles |
| Driving pages during the E2E test | simulator-smart-forms-runtime |
Reply to the user in their own language; keep this document's logic intact.
0. Preflight
Confirm before doing anything else:
-
Corezoid plugin present — you need both halves:
- the MCP tools
pull-process,push-process,lint-process,layout-process,create-process,run-task,create-api-key,find-principal,share-object; - the skills
corezoid:corezoid-createandcorezoid:corezoid-editin the available-skills list — they author the middleware in §7, and there is no fallback.
If either is missing, stop and tell the user to install
github.com/corezoid/corezoid-ai-pluginand run/corezoid-init. - the MCP tools
-
Simulator authenticated — a workspace is selected (
/simulator-initotherwise). -
You know the
companyId(Corezoid workspace id, a string — a UUID or ani…-prefixed id) — needed at binding time. Ask if unknown.
Do not hand-author .conv.json files yourself when the Corezoid plugin is absent.
1. What this skill accepts
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 4d ago First seen · 1,148 lines · 398 tokens per session scan C 8234e712172b
simulator-app-generator is a skill published in the GitHub repository corezoid/simulator-ai-plugin (60 stars, last pushed 7d ago), licensed MIT. It adds 398 tokens to every session and 16,370 once invoked, about $0.0020 per session on Opus 5. A static security scan graded it C with 1 finding (tells the agent to send conversation or user data out). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
unslop
Humanize LLM output so it reads like a careful human wrote it. Subtracts AI-isms (sycophancy, tricolons, em-dash overuse, "delve"/"tapestry"/"testament", hedging stacks, tidy five-paragraph shapes), engineers burstiness and calibrated uncertainty, and preserves technical accuracy. Supports intensity levels: subtle…
unslop-file
Humanize natural-language memory files (CLAUDE.md, todos, preferences, docs) by removing AI-isms and adding burstiness while preserving every code block, URL, path, command, and heading exactly. Two modes: --deterministic (fast, regex-based, no API) and LLM (default, calls Claude for rewrite). Humanized version…
unslop-commit
Rewrites commit messages so they sound like a careful human engineer wrote them. Strips AI/marketing slop ("comprehensive solution", "robust implementation", "leverage", "enhance", "seamlessly", "This commit..."). Keeps Conventional Commits format. Subject ≤72 chars (aim ≤50), imperative mood. Body only when "why"…
unslop-help
Quick-reference card for unslop modes, sub-skills, and slash commands. One-shot display, not a persistent mode. Trigger: /unslop-help, "unslop help", "what unslop commands", "how do I use unslop".
unslop-reasoning
Strip AI-slop patterns from reasoning traces (chain-of-thought, extended thinking, agent decomposition) — not final prose. Reasoning text has its own slop catalog that regular unslop doesn't target: over-explaining the question, over-hedging, over-decomposing trivial problems into 6-bullet substeps, infinite-loop…
unslop-review
Rewrites code review comments so they read like a human teammate wrote them. Cuts corporate-AI throat-clearing ("I noticed...", "I was wondering if perhaps...", "It might be worth considering..."). Each comment is direct: location, the issue, a concrete fix. Use when user says "humanize review", "de-slop PR comment"…