Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add skills/gaelic-ghost/socket/feedback-assistant-workflownpx skills add gaelic-ghost/socket --skill feedback-assistant-workflowgit clone --depth 1 https://github.com/gaelic-ghost/socketWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00087 | $0.00891 |
| Opus 5 | $0.00044 | $0.00445 |
| Sonnet 5 | $0.00017 | $0.00178 |
| Haiku 4.5 | $0.00009 | $0.00089 |
Grade A, and why
feedback-assistant-workflow scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 53 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Feedback Assistant Workflow
Purpose
Prepare one actionable Apple report at a time. Own report quality, evidence selection, privacy review, and the Feedback Assistant handoff; do not replace the specialist workflow that diagnoses the underlying problem.
Required Evidence
- Classify the report as a bug, crash, regression, enhancement, documentation issue, or Foundation Models behavior issue. Route security and privacy vulnerabilities to Apple's security reporting program instead of ordinary Feedback Assistant.
- State one concise title, environment, minimal reproduction, expected result, actual result, frequency, and regression range when known. Keep unrelated issues in separate reports.
- Build an attachment manifest before opening the submit path. Include source, collection time, purpose, and privacy review for each log, sample project, System Information Report, recording, screenshot, or
.jsonfeedback attachment. - Hand off diagnosis to the owning workflow when needed:
ios-runtime-forensics-workflowfor runtime evidence,xcode-debugger-mcp-workflowfor a debugging session,xcode-device-hub-workflowfor connected-device evidence, andexplore-apple-swift-docsfor API routing.
Feedback Assistant App And Web Workflow
- Prefer the Feedback Assistant app on Mac, iPhone, or iPad when timely diagnostics matter. Use the website only when the evidence was captured manually or the app is unavailable.
- On this Mac, inspect
com.apple.appleseed.FeedbackAssistant. Its signed-in main window exposes Inbox, Drafts, Submitted, Requests, team mailboxes when available, search, and New Feedback. - Select the narrowest topic and product area. Verify the report describes one issue before drafting or staging it.
- Keep a staged report in Drafts until its prose and attachment manifest have been reviewed. Record the Feedback Assistant ID only after a report has been submitted.
- If Apple requests more information, preserve the original report's scope and attach only the requested, reviewed evidence.
What ships with it
4 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 53 lines · 87 tokens per session scan A 70d8e450a27c
feedback-assistant-workflow is a skill published in the GitHub repository gaelic-ghost/socket (7 stars, last pushed 6d ago), licensed Apache-2.0. It adds 87 tokens to every session and 891 once invoked, about $0.0004 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
baocut
BaoCut-only operator for the installed bcut CLI and .bcut projects. Implicitly trigger only when the request explicitly names BaoCut or bcut, targets a .bcut project or BaoCut Subtitle Studio, or continues a BaoCut workflow already established in the conversation. Do not trigger solely for generic audio or video…
xcode-disk-cleanup
Audit and safely clean Xcode-related developer storage on macOS. Use whenever a developer mentions low disk space, Xcode storage, DerivedData, simulator devices or runtimes, stale beta platforms in Xcode Settings, DeviceSupport, archives, dSYMs, CocoaPods caches, simulator dyld caches, project .build folders…
accelerate-local-work
Use AtomLane to compile and execute safe atomic parallel plans for macOS tasks containing composite shell or package scripts, Make or Compose graphs, native test/build runners, repeated independent work, dependency DAGs, or Apple-silicon operators. Use at task start or an execution boundary when structured local work…
use-gemini-web
Use the user's logged-in Gemini Web session as an untrusted auxiliary model when its public YouTube audio/visual understanding, public-URL context, or an independent second analysis materially helps Codex answer or verify a request. Use for one or multiple public videos, follow-up questions, cross-checking, or a fresh…
apple-mail
Manage Apple Mail on macOS with Gmail-like draft resources, future send scheduling, and explicit sending identities. Use for searching or reading mail, listing sender aliases, selecting a From identity, creating/reviewing/updating/sending/scheduling/deleting drafts, replying, forwarding, organizing messages, or…
xrocket-exchange
Use the unofficial xRocket Exchange MCP to inspect spot markets and accounts, trade autonomously inside an operator-configured daily value limit, or prepare explicitly approved transfers and withdrawals. Trigger when a request concerns xRocket markets, account data, deposits, trading, transfers, withdrawals, or its…