Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add Insajin/autopus-adk --skill spec-reviewgit clone --depth 1 https://github.com/Insajin/autopus-adkWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/insajin/autopus-adk/spec-review)<a href="https://agentmods.dev/skills/insajin/autopus-adk/spec-review"><img src="https://agentmods.dev/badge/skills/insajin/autopus-adk/spec-review/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/insajin/autopus-adk/spec-review"><img src="https://agentmods.dev/badge/skills/insajin/autopus-adk/spec-review.svg" alt="Reviewed on agentmods" width="80" height="20"></a>- NVIDIA SkillSpector pass
What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00009 | $0.01479 |
| Opus 5 | $0.00005 | $0.00740 |
| Sonnet 5 | $0.00002 | $0.00296 |
| Haiku 4.5 | $0.00001 | $0.00148 |
Grade A, and why
spec-review scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 126 lines — stays where its author put it; the contents beside it link to each section on GitHub.
SPEC Review Gate Skill
A review gate that validates SPEC document quality using multiple providers.
Before Step 1, treat .omp/rules/autopus-spec-quality.md as the pre-review self-check that spec-writer should already have applied to spec.md, plan.md, acceptance.md, and research.md.
The CLI writes the authoritative promotion receipt to
{SPEC_DIR}/review-receipt.json with
schema=spec_review_promotion_receipt.v1. Consumers bind it to the current
invocation with run_id and finished_at, then preserve analysis_verdict,
gate_status, critical_veto, status_changed, degraded_reasons, and
override_applied without recomputing promotion.
--allow-degraded is the only operator path that may promote a degraded PASS,
and its audit reason remains present after promotion. An unresolved Critical
security/correctness finding sets critical_veto=true, keeps
gate_status=blocked, and leaves the prior status unchanged.
Review Process
Step 0: spec-writer self-verify
Confirm that the draft went through a first-pass self-check using .omp/rules/autopus-spec-quality.md.
Look for observable traces such as research.md's ## Self-Verify Summary or spec.md's ## Open Issues.
Also prefer the draft's ## Outcome Lock, ## Completion Debt, ## Evolution Ideas, ## Reviewer Brief, ## Traceability Matrix, and ## Reference Discipline as scope-control evidence: review listed blockers and invariants first, treat Completion Debt as blocking, and treat Evolution Ideas or unrelated deeper-layer suggestions as advisory unless they expose critical/security/data integrity risk.
Do not create or request follow-up/sibling SPECs from Evolution Ideas. A sibling SPEC request is valid only when the draft includes a ## Sibling SPEC Decision with an allowed reason and bounded ownership.
If the checklist was skipped or obviously not reflected in the draft, call that out as a completeness or style finding before continuing.
Step 1: Load SPEC
Load .autopus/specs/SPEC-{ID}/spec.md and extract requirements.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 8d ago First seen · 126 lines · 9 tokens per session scan A 1bd6b68b7937
spec-review is a skill published in the GitHub repository Insajin/autopus-adk (111 stars, last pushed yesterday), licensed MIT. It adds 9 tokens to every session and 1,479 once invoked, about $0.0000 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.
Other skills, from other repositories
automations
Create, inspect, edit, archive, delete, run, and search scheduled or executable automation assets.
job
Execution behavior for one saved automation job running in a fresh agent conversation.
api-interface-design
Use when designing public APIs, module boundaries, provider adapters, tool schemas, or data contracts.
Using OmniForge Framework
Primary guide for using OmniForge CLI, MCP Server, workflows, and agent skills effectively.
github-release-management
Comprehensive GitHub release orchestration with AI swarm coordination for automated versioning, testing, deployment, and rollback management.
windows-deployment
Deploy FastAPI + React/Vite apps to Windows Server with NSSM services, reverse proxy (IIS or nginx), and git-pull workflow. Use when deploying any web app to a Windows prod server, setting up NSSM services, configuring IIS or nginx reverse proxy, making code environment-aware for dev/prod, or troubleshooting prod…