Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add skills/dyxbenjamin/filesearch-mcp/mcp-buildernpx skills add DyxBenjamin/filesearch-mcp --skill mcp-buildergit clone --depth 1 https://github.com/DyxBenjamin/filesearch-mcpWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/dyxbenjamin/filesearch-mcp/mcp-builder)<a href="https://agentmods.dev/skills/dyxbenjamin/filesearch-mcp/mcp-builder"><img src="https://agentmods.dev/badge/skills/dyxbenjamin/filesearch-mcp/mcp-builder.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00103 | $0.02518 |
| Opus 5 | $0.00051 | $0.01259 |
| Sonnet 5 | $0.00021 | $0.00504 |
| Haiku 4.5 | $0.00010 | $0.00252 |
Grade A, and why
mcp-builder scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 337 lines — stays where its author put it; the contents beside it link to each section on GitHub.
MCP Builder
Mission
Deliver MCP servers that are production-credible, agent-legible, and operationally safe. Treat MCP implementation as a contract system, not as a transport demo. The server must be discoverable, self-documenting, testable, and explicit about runtime defaults, permissions, and packaging boundaries.
Non-Negotiable Standards
- Preserve public contracts unless the user explicitly authorizes a breaking change.
- Treat tools, resources, resource templates, and prompts as first-class public APIs.
- Keep side effects in the process entrypoint only; keep construction and capability registration in factory modules.
- Do not use
any. Useunknownplus explicit narrowing at runtime. - Every behavior change must be proven by deterministic tests before delivery.
- Agent discoverability is mandatory for any server intended for real use. A server that only registers tools is incomplete.
- Permission checks for restricted operations must occur before business validation when the handler needs to return semantic authorization failures.
- Generated catalogs must be deterministic and safe to regenerate.
- Documentation must state execution mode assumptions (
sourcevspackage) whenever distribution is in scope. - Do not hand-wave missing implementation. If context is incomplete, isolate the unknown area behind a clearly bounded interface.
When This Skill Applies
Use this skill whenever the request involves any of the following:
- Creating a new MCP server from scratch.
- Refactoring or reorganizing an existing MCP server.
- Adding or modifying tools.
- Adding or modifying resources.
- Adding or modifying resource templates.
- Adding or modifying prompts.
- Adding runtime defaults or permission semantics.
- Adding docs-driven generation.
- Hardening packaging,
binentrypoints, or publish workflows. - Upgrading a demo MCP into an operable, agent-ready server.
Required Working Model
Always reason in the following layers, in this order:
What ships with it
5 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 5d ago First seen · 337 lines · 103 tokens per session scan A 87d828b2b6be
mcp-builder is a skill published in the GitHub repository DyxBenjamin/filesearch-mcp (0 stars, last pushed 6mo ago), licensed MIT. It adds 103 tokens to every session and 2,518 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
lint-js
Lint JS/TS code only. Use before opening a PR when only JavaScript or TypeScript files were changed (no Rust).
no-bare-casts
Writing as in TypeScript or TSX production code, modifying a file that contains a bare as cast, silencing a type error with a cast, encountering as unknown as, or reviewing a cast site.
aws-sst-development
SST v4 (Ion) expert for managing AWS resources as code with the Pulumi-backed framework. Use when writing or editing sst.config.ts, building infra/ modules (sst.aws.Function/Bucket/Dynamo/Cron/Service/Router, sst.Secret, sst.Linkable, raw aws. Pulumi resources), wiring resource links,...
league-akari-shard-development
Use when creating, extending, refactoring, splitting, or reviewing League Akari main or renderer shards, including shard file organization, controller/loader/executor/handler boundaries, naming conventions, renderer TSX usage, platform guards, and public contract compatibility.
dd-code-generation
Use pup CLI for immediate Datadog operations or generate code for integration into applications.
migrate-better-result-3
Migrate a TypeScript codebase from better-result 2.x to 3.0. Use when upgrading better-result across the TaggedError syntax, removed Result serialization helpers, recovery inference, matching, or retry APIs.