Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add skills/devin-axis/ipollowork/hyperframes-registrynpx skills add Devin-AXIS/iPolloWork --skill hyperframes-registrygit clone --depth 1 https://github.com/Devin-AXIS/iPolloWorkWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00021 | $0.00114 |
| Opus 5 | $0.00010 | $0.00057 |
| Sonnet 5 | $0.00004 | $0.00023 |
| Haiku 4.5 | $0.00002 | $0.00011 |
Grade A, and why
hyperframes-registry scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
The source is not reproduced here
No licence file
A repository with no LICENSE is all rights reserved by default, so the body is not copied here. The metadata, the measurements and the link are.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 15 lines · 21 tokens per session scan A dcf6c8670e0d
hyperframes-registry is a skill published in the GitHub repository Devin-AXIS/iPolloWork (5,244 stars, last pushed yesterday), with no licence file. It adds 21 tokens to every session and 114 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
yao-image
Image expert. ALWAYS invoke this skill when you need to read, analyze, describe, or generate images. Use for screenshots, photos, charts, diagrams, AI-generated images, or any visual content.
yao-audio
Audio expert. ALWAYS invoke this skill when the user asks to transcribe, recognize, or convert speech/audio to text.
media-tools
免费生成图片。当用户要生成图片、插画、头像、背景、banner 等(包括付费图片额度不可用时)使用。优先 SenseNova U1 Fast,其次 SiliconFlow Kolors;key 取自环境变量、/.dsh/.credentials.yaml 或 /.dsh/secrets/media-tools.env,永不写进 skill。.
create-3d-model
Create and refine portable 3D models from text prompts, one or more reference images, wireframes, orthographic views, templates, texture atlases, or existing 3D assets. Use whenever the dsh agent must model or reconstruct geometry, match visual references, create materials and UVs, rig or animate a model, validate…
account-video-downloader
多平台账号主页视频提取器 — 输入平台名称和账号id/链接,自动拉取抖音/快手/B站/YouTube 四大平台主页作品,解析下载链接,支持批量下载。适用场景:竞品账号内容拆解与逐帧学习、收藏喜欢的创作者全部作品避免被删、批量搬运素材二次剪辑创作、保存自己账号作品做本地备份防丢失、课程/教程类视频离线囤货反复看、达人合作前快速拉取对方作品做背调分析。触发词:主页视频下载、批量下载视频、账号视频提取、快手主页下载、B站视频提取、YouTube频道下载、视频保存、无水印下载、竞品视频下载、博主视频备份。.
bilibili-search-download
B站搜索批量下载工具。输入关键词即可搜索B站全站视频,支持按播放量/点赞/时间排序,搜索后自动批量获取全部高清下载链接。当用户需要查找B站视频、搜索B站内容、下载B站视频、采集B站素材时使用。触发词:B站搜索、bilibili搜索、B站下载、B站视频下载、b站搜视频、B站找素材、下载B站、bilibili下载。.