Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add FortiumPartners/ensemble --skill ensemble-inject-standardsgit clone --depth 1 https://github.com/FortiumPartners/ensembleWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/fortiumpartners/ensemble/ensemble-inject-standards)<a href="https://agentmods.dev/skills/fortiumpartners/ensemble/ensemble-inject-standards"><img src="https://agentmods.dev/badge/skills/fortiumpartners/ensemble/ensemble-inject-standards/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/fortiumpartners/ensemble/ensemble-inject-standards"><img src="https://agentmods.dev/badge/skills/fortiumpartners/ensemble/ensemble-inject-standards.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00036 | $0.01100 |
| Opus 5 | $0.00018 | $0.00550 |
| Sonnet 5 | $0.00007 | $0.00220 |
| Haiku 4.5 | $0.00004 | $0.00110 |
Grade B, and why
ensemble-inject-standards scanned grade B with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 10d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Asks the agent to reveal its instructionsmediumSystem prompt leakage
Directions to print, repeat or translate the system prompt extract configuration the operator did not intend to expose.
Print instructions for the agent to proceed with the injected context How it starts
The opening of the file, as written. The whole thing — 102 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Ensemble Command: /ensemble:inject-standards
This Codex skill mirrors the Ensemble slash command /ensemble:inject-standards.
Follow the workflow below, adapt to the current repository, and keep outputs structured.
Read the project standards index and emit a compact, task-relevant subset of coding conventions to stdout for immediate use by the current agent context. Rather than loading all standards every session, this command scores each rule against the provided task description and selects the top 5-8 most applicable rules -- keeping token cost minimal while ensuring the right conventions are surfaced at the right time.
Workflow
Phase 1: Standards Loading
1. Standards Discovery Verify the standards index exists before proceeding
- Check if standards/index.yml exists in the project root
- If standards/index.yml does not exist: print "ERROR: No standards index found. Run /ensemble:discover-standards first." and stop
- If the file exists, read standards/index.yml fully into memory
- Note the stack metadata (language, framework) and the full list of categories and rules
2. Task Analysis Parse the task description and extract keyword signals for relevance matching
- Read $ARGUMENTS as TASK_DESCRIPTION
- If TASK_DESCRIPTION is empty: print "ERROR: Provide a task description, e.g., /ensemble:inject-standards 'implement user authentication endpoint'" and stop
- Convert TASK_DESCRIPTION to lowercase and extract individual keywords
- Identify technology terms (language names, framework names, library names)
- Identify domain nouns (user, order, payment, product, auth, session, etc.)
- Identify task verbs: implement, fix, test, refactor, add, remove, update, debug, review
Phase 2: Relevance Matching
1. Category Scoring Score each standards category against the extracted task keywords
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 10d ago First seen · 102 lines · 36 tokens per session scan B 4e4e970d6b85
ensemble-inject-standards is a skill published in the GitHub repository FortiumPartners/ensemble (12 stars, last pushed 2d ago), licensed MIT. It adds 36 tokens to every session and 1,100 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it B with 1 finding (asks the agent to reveal its instructions). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
context-recovery
Recovers project handoff context from local Codex, Claude Code, Gemini, CodeBuddy, and codexmate-derived sessions. Use when the user asks what happened in prior project/PR/branch/file/error work, needs a handoff brief, wants old decisions or validations recovered, or asks to summarize cross-session project activity…
dev
This skill should be used when the user asks to start, restart, keep alive, or inspect the local pikiclaw development service, including npm run dev, local debug bot startup, dashboard verification, and dev log checks.
overleaf
Sync and manage Overleaf LaTeX projects from the command line. Pull projects locally, push changes back, compile PDFs, and download compile outputs like .bbl files for arXiv submissions. Use when working with LaTeX, Overleaf, academic papers, or arXiv.
bmad-quick-dev-new-preview
Implements any user intent, requirement, story, bug fix or change request by producing clean working code artifacts that follow the project's existing architecture, patterns and conventions. Use when the user wants to build, fix, tweak, refactor, add or modify any code, component or feature.
bmad-quick-dev
Implement a Quick Tech Spec for small changes or features. Use when the user provides a quick tech spec and says "implement this quick spec" or "proceed with implementation of [quick tech spec]".
bmad-check-implementation-readiness
Validate PRD, UX, Architecture and Epics specs are complete. Use when the user says "check implementation readiness".