Getting it into your agent
It runs from inside its repository, so the clone comes first — what it calls does not travel with the file alone.
git clone --depth 1 https://github.com/heurist-network/heurist-financenpx agentmods add skills/heurist-network/heurist-finance/portfolioWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/heurist-network/heurist-finance/portfolio)<a href="https://agentmods.dev/skills/heurist-network/heurist-finance/portfolio"><img src="https://agentmods.dev/badge/skills/heurist-network/heurist-finance/portfolio/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/heurist-network/heurist-finance/portfolio"><img src="https://agentmods.dev/badge/skills/heurist-network/heurist-finance/portfolio.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00059 | $0.02538 |
| Opus 5 | $0.00030 | $0.01269 |
| Sonnet 5 | $0.00012 | $0.00508 |
| Haiku 4.5 | $0.00006 | $0.00254 |
Grade A, and why
portfolio scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 12d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 287 lines — stays where its author put it; the contents beside it link to each section on GitHub.
PREREQUISITE: Read
../../SKILL.md(two directories up from this file) first. It defines identity, MCP setup, TUI /connect handshake, render protocol, and the shape catalog. This file handles only the sub-skill-specific flow.
Portfolio - Brokerage Dashboard
Your positions. Your risk. No sugar-coating.
Read-only portfolio view. All brokers use token-based auth. No daemons, no gateways. Uses existing TUI panels. Zero new components.
Supported Brokers
| Broker | What you need | Data | Setup |
|---|---|---|---|
| IBKR | Token + Query ID | End-of-day positions, balances, P&L | 5 min |
| Moomoo | Moomoo desktop app running | Real-time US + HK + SG + JP | 0 min (auto-detect) |
Entry Logic
args contain "connect" or "disconnect"?
YES -> Broker Connection
NO -> Portfolio Dashboard
Broker Connection
All CLI commands use:
SKILL_DIR=$(cd "$(dirname "$(readlink -f "${BASH_SOURCE[0]:-$0}")")" && cd ../.. && pwd)
/portfolio connect ibkr
Walk the user through step by step:
- "IBKR Flex Query gives you portfolio data with just a token. 5 minutes to set up."
- Tell them exactly what to do (paste these, don't just link):
- Log into portal.interactivebrokers.com
- Go to Performance & Reports -> Flex Queries
- Click "Create" next to Activity Flex Query
- Check: Open Positions and Cash Report
- Set period to "Last Business Day", format XML
- Save. Note the Query ID (number next to query name)
- Scroll to "Flex Web Service Configuration"
- Click "Create Token". Note the Token
- Ask for both values
- Connect and test:
node "$SKILL_DIR/lib/portfolio-cli.js" connect ibkr <TOKEN> <QUERY_ID>
node "$SKILL_DIR/lib/portfolio-cli.js" test ibkr
- Success: "Connected! Run
/portfolioto see your positions." - Common errors:
- Token expired -> "Regenerate in IBKR portal"
- Invalid Query ID -> "Double-check the number"
- Rate limited -> "Wait 10 minutes"
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 12d ago First seen · 287 lines · 59 tokens per session scan A 82ae9c135b3c
portfolio is a skill published in the GitHub repository heurist-network/heurist-finance (10 stars, last pushed 5mo ago), licensed MIT. It adds 59 tokens to every session and 2,538 once invoked, about $0.0003 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
sector-rotation
An analysis framework for comparing industries in the Chinese A-share stock market, using business conditions, price momentum, valuation, and money flows. It produces rankings and higher- or lower-allocation suggestions.
strategy-pivot-designer
Detect backtest iteration stagnation and generate structurally different strategy pivot proposals when parameter tuning reaches a local optimum.
twitter-reader
Read Twitter/X for financial research using opencli (read-only). Use this skill whenever the user wants to read their Twitter feed, search for financial tweets, view bookmarks, look up user profiles, or gather market sentiment from Twitter/X. Triggers include: "check my feed", "search Twitter for", "show my…
chenhao-limit-up
A framework for judging Chinese A-share stocks that have reached the daily price-rise limit, using market mood, sector leadership, and trading momentum.
furusato
A Japanese hometown-tax donation manager for furusato nozei, a system where donations to municipalities can qualify for an income-tax or local-tax deduction. It reads donation receipts, stores donation records, and calculates deduction limits.
reading-receipt
An image-reading workflow for extracting structured information from receipts, invoices, and hometown-tax donation certificates. It can first extract text from PDFs and otherwise read their images.