Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add juspay/xyne-spaces --skill evidence-citationsgit clone --depth 1 https://github.com/juspay/xyne-spacesWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/juspay/xyne-spaces/evidence-citations)<a href="https://agentmods.dev/skills/juspay/xyne-spaces/evidence-citations"><img src="https://agentmods.dev/badge/skills/juspay/xyne-spaces/evidence-citations/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/juspay/xyne-spaces/evidence-citations"><img src="https://agentmods.dev/badge/skills/juspay/xyne-spaces/evidence-citations.svg" alt="Reviewed on agentmods" width="80" height="20"></a>- NVIDIA SkillSpector pass
What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00033 | $0.00344 |
| Opus 5 | $0.00016 | $0.00172 |
| Sonnet 5 | $0.00007 | $0.00069 |
| Haiku 4.5 | $0.00003 | $0.00034 |
Grade A, and why
evidence-citations scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 10d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Evidence and citations
Every non-obvious claim carries a path/to/file.ext:LINE anchor. This is also
what closes a path in an understanding run — a finding recorded without one is
downgraded to an open conjecture, so an uncited explanation is not merely weak,
it does not count.
- Cite the line that actually shows the behaviour: the write, the query, the branch. Citing the type definition proves the entity exists, which was never in question.
- Never cite a file you did not open. A plausible path is the easiest thing in this job to invent and the most expensive thing for a reader to discover is wrong.
- Prefer two anchors that disagree over one that is tidy. "Written here, but also mutated here" is the finding.
- When you searched and found nothing — no writer, no reader, no caller — say so explicitly and give the search you ran. An unreferenced table is a real and useful result, not a failure to look.
Separate verified from inferred in the document itself. Mark inference as inference ("appears to be", "no caller found in this repo") and keep it out of the summary lines a reader will quote. In the HTML, render anchors in monospace so they are visibly checkable, and keep the repo, branch and commit in the header so a stale citation can be dated rather than merely doubted.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 10d ago First seen · 30 lines · 33 tokens per session scan A 4a01da2eaca9
evidence-citations is a skill published in the GitHub repository juspay/xyne-spaces (143 stars, last pushed today), licensed Apache-2.0. It adds 33 tokens to every session and 344 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
unicli-repair
Evidence-driven repair workflow for a broken Uni-CLI adapter. Trigger on a failed unicli envelope, a quarantined adapter, or an explicit adapter-repair request. Classifies non-source failures, edits only the reported adapter path, and uses the original command as a bounded oracle.
autonomous-run
Prepare, start, inspect, resume, or stop a finite local overnight coding run after a human has accepted a Wayfinder terminal spec; coordinates a declared Claude/Codex maker and independent checker without pushing, merging, or writing to external systems.
authentication-patterns
OAuth 2.0, JWT, SSO, MFA, NextAuth/Clerk/Supabase Auth implementation patterns.
case-interview-practice
Interactive consulting case interview practice with structured frameworks, feedback mechanisms, and progressive difficulty. Use when preparing for management consulting interviews, case competitions, or business problem-solving exercises.
i18n-localization
Internationalization and localization for global applications. Use when adding multi-language support, handling regional formats, or preparing apps for global markets.
research-archival
Scrape AI research URLs, archive with frontmatter, create GitHub Issues with identity verification.