payload-budgets

payload-budgets is a skill for Claude Code from Kaguara/emerging-market-skills. It costs 87 tokens per session (2,306 once invoked), scanned A, original, MIT.

A review guide for keeping the amount of data an app sends and stores within set limits. It covers downloads, app packages, images, fonts, scripts, and software libraries.

In plain words
What is it for?
Use it when adding dependencies, screens, images, fonts, third-party scripts, or build changes. It helps set byte limits and check whether a change exceeds them.
Why use it?
It prevents slow or failed downloads, wasted mobile data, and apps taking too much space on nearly full phones.

Skill for Claude Code

Written for Claude Code: shipped in a Claude Code plugin.

Part of the emerging-market-skills plugin — 7 skills shipped together

Good fit Use it when adding dependencies, screens, images, fonts, third-party scripts, or build changes. It helps set byte limits and check whether a change exceeds them.

Compare 6 skills from other repositories ↓
Install with agentmods
npx agentmods add skills/kaguara/emerging-market-skills/payload-budgets
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Any agent
npx skills add Kaguara/emerging-market-skills --skill payload-budgets
Clone the repo
git clone --depth 1 https://github.com/Kaguara/emerging-market-skills

Made for: Claude Code.

Or install emerging-market-skills, the plugin that ships this one along with the rest of its 7 skills.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for payload-budgets

README.md
[![agentmods](https://agentmods.dev/badge/skills/kaguara/emerging-market-skills/payload-budgets/github.svg)](https://agentmods.dev/skills/kaguara/emerging-market-skills/payload-budgets)
Your own site
<a href="https://agentmods.dev/skills/kaguara/emerging-market-skills/payload-budgets"><img src="https://agentmods.dev/badge/skills/kaguara/emerging-market-skills/payload-budgets/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for payload-budgets

Your own site · 80×15
<a href="https://agentmods.dev/skills/kaguara/emerging-market-skills/payload-budgets"><img src="https://agentmods.dev/badge/skills/kaguara/emerging-market-skills/payload-budgets.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 87 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 2,306 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00087 $0.02306
Opus 5 $0.00044 $0.01153
Sonnet 5 $0.00017 $0.00461
Haiku 4.5 $0.00009 $0.00231

Measured 12d ago against content hash 06442516ea15, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-12, from the pricing page.

Security

Grade A, and why

payload-budgets scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 12d ago.

The scan reads SKILL.md. This mod also ships 1 executable file (scripts/audit_budget.py), listed below but not scanned — reading those needs a real analyzer, not pattern matching.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

skills/payload-budgets/SKILL.md · 222 lines

How it starts

The opening of the file, as written. The whole thing — 222 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Payload budgets

The constraint

Bytes cost money that the user paid in advance, arrive over a link that drops, and land on a device that is already full. A download that fails at 80% is retried on a prepaid bundle, which means the second attempt costs real money for nothing. Storage is the other half: on a 16GB device sitting permanently near full, your app is competing for space with photographs of the user's family, and it will lose.

The number that matters is the cold, uncached, first-attempt download on a congested cell. Every other number flatters you.

Hard rules

ID Rule Severity
SIZE-001 Declare a byte budget per platform before writing the feature. critical
SIZE-002 Keep the Android initial download at or below 15MB. critical
SIZE-003 Budgets are enforced by CI and fail the build when exceeded. critical
SIZE-004 Measure the cold-cache first visit on a tier C device, not a warm reload. warning
SIZE-005 Serve images sized to the rendered box, in a modern format, responsively. warning
SIZE-006 Cap first-load JavaScript on the critical path at 200KB compressed. warning
SIZE-007 Every third-party script has a named owner and counts against the budget. warning
SIZE-008 Load secondary features on demand rather than at install or first paint. warning
SIZE-009 Never block first paint on a web font. warning
SIZE-010 Budget the installed storage footprint, not only the download. advisory

Full detection criteria and remedies in rules.yml.

Judgment

The budget is a product decision wearing engineering clothes. "We have 15MB" forces the question of which features a first-time user actually needs, and that question has a better answer than "all of them". Teams that treat size as an optimisation phase arrive at the end of the project with 40MB and no way to get back. Teams that treat it as a constraint arrive with a smaller, clearer product. Set the number first; it does more design work than it looks like.

Read the full file on GitHub · 222 lines

Files

What ships with it

2 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 12d ago First seen · 222 lines · 87 tokens per session scan A 06442516ea15

Subscribe to this mod's changes

payload-budgets is a skill published in the GitHub repository Kaguara/emerging-market-skills (7 stars, last pushed 17d ago), licensed MIT. It adds 87 tokens to every session and 2,306 once invoked, about $0.0004 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other skills, from other repositories

powersync

Best practices for building and maintaining applications with PowerSync: Cloud and self-hosted setup, sync configuration, client SDK usage, backend integration (Supabase, custom Postgres, MongoDB, Azure DocumentDB, MySQL, MSSQL), schema changes, watch and reactive queries (useQuery), attachments, the upload queue, and…

powersync-ja/agent-skills · 197 tokens

exploratory-data-analysis

Perform bounded, local exploratory analysis of explicitly supported scientific files. Use for redacted CSV/TSV/JSON profiles; optional NumPy, HDF5, FASTA/FASTQ, and basic image metadata inspection; missingness/leakage audits; outlier and transformation sensitivity; and rigorous EDA report scaffolds. Other domain…

K-Dense-AI/scientific-agent-skills · 83 tokens

google-ads-audit

Google Ads account audit and business context setup. Use for account-health audits and business-context setup. Trigger on "audit my ads", "ads audit", "set up my ads", "onboard", "account overview", "how's my account", "ads health check", "what should I fix in my ads", or when the user is new to NotFair and hasn't run…

nowork-studio/notfair-plugin · 86 tokens

data-charts-tako

Search and visualize the world's data - get charts, insights, and embeddable knowledge cards for finance, economics, demographics, sports, and more.

gooseworks-ai/goose-skills · 35 tokens

webhook-management

Configure and validate CCAM webhook targets across supported chat, incident, automation, and generic providers. Use when listing provider requirements, creating or updating a target, scoping it to alert rules, sending a test notification, reviewing delivery history, or deleting a target.

hoangsonww/Claude-Code-Agent-Monitor · 56 tokens

gesellschaftsrechtliche-satzungen-agb

Für Gesellschaftsrechtliche Satzungen AGB Abgrenzung: ordnet Norm, Beweislast und Gegenargument; Ergebnis: Prüfprodukt mit Risiko und nächstem Schritt. Fachgebiet: AGB-Recht-Prüfer. Route: gesellschaftsrechtliche-satzungen-agb.

Klotzkette/claude-fuer-deutsches-recht · 69 tokens