Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add fmind/fkf --skill fkf-maintaingit clone --depth 1 https://github.com/fmind/fkfWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/fmind/fkf/fkf-maintain)<a href="https://agentmods.dev/skills/fmind/fkf/fkf-maintain"><img src="https://agentmods.dev/badge/skills/fmind/fkf/fkf-maintain/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/fmind/fkf/fkf-maintain"><img src="https://agentmods.dev/badge/skills/fmind/fkf/fkf-maintain.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00047 | $0.00888 |
| Opus 5.5 | $0.00019 | $0.00355 |
| Sonnet 5.5 | $0.00009 | $0.00178 |
| Haiku 4.5 | $0.00005 | $0.00089 |
Grade A, and why
fkf-maintain scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 7d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
fkf-maintain
Select the intended base before maintenance; use --base NAME so the working directory cannot broaden the operation. Start with offline diagnosis. Live update and collect require the user's authorization; collect --dry-run still contacts the provider and writes its private stderr log.
fkf status --base NAME # cache, sources, last success, errors, log paths
fkf update --dry-run --base NAME # due sources and their windows, runs nothing
fkf update --base NAME # when authorized: collect due sources, refresh cache
fkf validate --base NAME && fkf eval --base NAME
- Failing source: read the log path from
fkf status, reproduce withfkf collect SOURCE --since 1d --dry-run --base NAME, fix the collector undersources/with a fake-provider test undertests/, then rerun. Provider authentication belongs to the provider CLI (gh auth,gws auth). - Stale source: check the scheduler (
systemctl --user list-timers fkf-update.timer,journalctl --user -u fkf-update) before blaming the collector. A paused laptop catches up at most 30 days automatically; backfill older gaps withfkf collect SOURCE --since YYYY-MM-DD. - New collector: add it only for a question the user asks repeatedly. Copy an example from the FKF repository's
examples/sources/, keep projection focused (title and text carry the searchable facts, skip noise such as trash or bots), test it with a fake provider, declare a disabled source with explicit account/folder/channel scope, modification time, partial-content and deletion behavior, tryfkf collect NAME --dry-runwhen enabled and authorized, then declarerefreshinfkf.yaml. - Usage: once a month, read
usageinfkf status. Near-zero searches mean agents are not reaching the base: check thatfkf-useis installed where they run before improving anything else. A high share ofemptysearches means notes or collectors miss what people ask. - Stale notes:
reviewinfkf statuslists active or blocked projects whose note is older than 14 days; refresh them from recent records or set their verified current status. - Incomplete retrieval: inspect
problemsandstale, repair the named file or base, then repeat the query;evalrejects incomplete answers. - Duplicate records: collection refuses a source that already contains duplicate IDs. Run
fkf validate, preserve the conflicting revisions and reconcile their evidence before retrying; never discard a revision simply to make collection succeed. - Retrieval miss: add the question as a case in
queries.yaml, then improve the owning note or the collector's projection untilfkf evalpasses. Do not tune the core for one query. - Schedule: run
fkf updatemore often than the shortestrefresh(for example every 15 minutes for hourly sources) from a systemd user timer or launchd agent with the provider CLIs on PATH; see the FKF documentation's collector page. Report configured, enabled and observed runs separately.
Inspect active/disabled/historical coverage and last_run counts before interpreting freshness. Preserve records/.pending/ during recovery and backup; it holds durable originals for interrupted writes. Inspect the base, then run fkf build for explicit recovery; search and read do not apply pending journals. Keep one scheduler per machine.
Never delete records, task inputs or outputs to fix a problem; .fkf/ is the only disposable folder (fkf build recreates it). Collection runs code with the user's permissions: run live providers only within the user's authorization, and trust a shared base with fkf register PATH --collect only after reviewing its sources/.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 7d ago Changed · +7 lines · +23 tokens per session decd4ccb9744
- 10d ago First seen · 24 lines · 24 tokens per session scan A 3b17421af69b
fkf-maintain is a skill published in the GitHub repository fmind/fkf (3 stars, last pushed 7d ago), licensed MIT. It adds 47 tokens to every session and 888 once invoked, about $0.0002 per session on Opus 5.5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-21.
Other skills, from other repositories
any-mcp
Use when an agent needs to read, search, create, edit, organize, upload, or chat with Anytype through the bounded any-mcp server. Covers safe tool selection, exact identifier chaining, optional toolsets, common PKM workflows, and the narrow anyr fallbacks for chat subscriptions and rich chat blocks.
recall
Use Recall to search, inspect, continue, export, resume, or share indexed AI coding sessions. Trigger for project-history lookup, recent work from other agents, file history, unfinished-session continuation, and published session-page management.
memorywhale
Query and write durable debugging memory recorded by MemoryWhale. Use when debugging a failure that may have happened before, when you need the exact error/flags/output from an earlier attempt, when the user asks "how did we fix this last time?", or once you've figured out why something failed / how a fix worked and…
reflect
Use Recall Reflect to review AI coding workflow history as a conversation-first timeline and discuss observed patterns before changing behavior. Trigger when the user asks to reflect on a project, review AI coding workflow, inspect workflow friction, discuss repeated corrections, review handoffs, or explore possible…
douyin-favorites-to-knowledge
A tool for copying videos saved in an authorised Douyin account into a local Markdown or Obsidian knowledge base. Douyin is a Chinese short-video platform, and Obsidian is an app for organising linked notes.
memorywhale-evidence
Use MemoryWhale debugging evidence when the user requests recall or a recurring failure may have relevant recorded history.