Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add Dianel555/DSkills --skill cc-codexgit clone --depth 1 https://github.com/Dianel555/DSkillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/dianel555/dskills/cc-codex)<a href="https://agentmods.dev/skills/dianel555/dskills/cc-codex"><img src="https://agentmods.dev/badge/skills/dianel555/dskills/cc-codex.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00157 | $0.01158 |
| Opus 5 | $0.00078 | $0.00579 |
| Sonnet 5 | $0.00031 | $0.00232 |
| Haiku 4.5 | $0.00016 | $0.00116 |
Grade B, and why
cc-codex scanned grade B with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 7d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Reads agent configuration directoriesmediumAgent snooping
.claude/, .codex/, .gemini/ hold keys, settings and other credentials a mod has no legitimate need for.
| `~/.codex/config.toml` | Yes (unless `--ignore-user-config`) | How it starts
The opening of the file, as written. The whole thing — 109 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Quick Start
python scripts/codex_bridge.py --cd "/path/to/project" --PROMPT "Your task"
Output: JSON with success, SESSION_ID, agent_messages, stream_file (path to the raw JSONL stream persisted line-by-line), optional stderr, and optional error.
Approvals are always disabled (codex --ask-for-approval never exec ... is used automatically, except under --yolo): exec runs headless with stdin detached, so an approval prompt could never be answered.
Parameters
usage: codex_bridge.py [-h] [--PROMPT PROMPT] [--cd CD]
[--sandbox {read-only,workspace-write,danger-full-access}]
[--SESSION_ID SESSION_ID] [--skip-git-repo-check]
[--return-all-messages] [--image IMAGE] [--model MODEL]
[--yolo] [--profile PROFILE] [--stream-file STREAM_FILE]
[--idle-timeout IDLE_TIMEOUT] [--ignore-user-config]
[--dangerously-bypass-hook-trust]
{mcp,plugin} ...
Codex Bridge
options:
--PROMPT PROMPT Instruction for the task to send to codex.
--cd CD Set the workspace root for codex before executing the task.
--sandbox {read-only,workspace-write,danger-full-access}
Sandbox policy for model-generated commands. Defaults to `read-only`.
--SESSION_ID SESSION_ID
Resume the specified session of the codex.
--skip-git-repo-check
Allow codex running outside a Git repository.
--return-all-messages
Return all messages (reasoning, tool calls, etc.).
--image IMAGE Attach image files to the initial prompt.
--model MODEL Model for the session (only when user explicitly requests).
--yolo Bypass approvals/sandboxing (last resort).
--profile PROFILE Load `~/.codex/<name>.config.toml` profile (only when user requests).
--stream-file STREAM_FILE
Persist raw JSONL stream path.
--idle-timeout IDLE_TIMEOUT
Kill codex if no output for N seconds (default 600; 0 disables).
--ignore-user-config Do not load `$CODEX_HOME/config.toml` (auth still uses CODEX_HOME).
--dangerously-bypass-hook-trust
Run Codex hooks without persisted hook trust. DANGEROUS.
subcommands:
mcp Thin passthrough to `codex mcp` (list/get/add/remove/login/logout).
plugin Thin passthrough to `codex plugin` (add/list/remove/marketplace).
What ships with it
3 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 7d ago First seen · 109 lines · 157 tokens per session scan B ac889fbaa038
cc-codex is a skill published in the GitHub repository Dianel555/DSkills (64 stars, last pushed today), licensed MIT. It adds 157 tokens to every session and 1,158 once invoked, about $0.0008 per session on Opus 5. A static security scan graded it B with 1 finding (reads agent configuration directories). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
casely
Virtual QA Lead that turns requirement documents into review-ready, TestRail-importable test cases in one conversation — no commands to memorize. Use this skill whenever the user has requirements, a spec, a user story, or acceptance criteria (PDF, DOCX, XLSX, TXT, MD, or pasted text) and wants test cases, a test plan…
battle-tested-engineer
Engineering judgment for code write/refactor/test and frontend UI. Trigger on code review, legacy cleanup, tests, UI with data, bloat/over-engineer complaints — even with no explicit mention, before any diff/rewrite/test suite. Output ultra-terse caveman style; code, commits, PR desc, security warnings stay normal…
geekx-gate
A review framework for deciding whether an engineering idea or technical commitment is necessary, too broad, or premature. It examines the real problem, complexity, evidence, non-goals, and ease of reversal.
geekx-grilling
A questioning workflow for pressure-testing plans, decisions, requirements, and proposed solutions. It asks one important question at a time and uses the answers to clarify facts, choices, dependencies, scope, and exclusions.
tryworld-paper
A workflow for turning a Chinese voiceover script and optional images into a branded 16:9 AI-knowledge video in the “Paper Algorithm” style.
tryworld-koubo
A Chinese-language workflow for making AI voiceover videos, covering topic selection, script writing, editing, and production.