Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add kemalabuteliyte/domain-whois-mcp --skill tld-advisorgit clone --depth 1 https://github.com/kemalabuteliyte/domain-whois-mcpWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/kemalabuteliyte/domain-whois-mcp/tld-advisor)<a href="https://agentmods.dev/skills/kemalabuteliyte/domain-whois-mcp/tld-advisor"><img src="https://agentmods.dev/badge/skills/kemalabuteliyte/domain-whois-mcp/tld-advisor/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/kemalabuteliyte/domain-whois-mcp/tld-advisor"><img src="https://agentmods.dev/badge/skills/kemalabuteliyte/domain-whois-mcp/tld-advisor.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00088 | $0.00654 |
| Opus 5 | $0.00044 | $0.00327 |
| Sonnet 5 | $0.00018 | $0.00131 |
| Haiku 4.5 | $0.00009 | $0.00065 |
Grade A, and why
tld-advisor scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 11d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
TLD Advisor
Help the user pick the right TLD. Blends factual infrastructure data (from tld_info / rdap_bootstrap_info) with opinionated category guidance.
When to Use
- "Should I register .io or .dev?"
- "Is .ai worth the premium?"
- "What TLDs are good for a SaaS product?"
- "Does .xyz look professional?"
- "What WHOIS server does .tr use?" (factual — route to
domain-lookup)
Category → TLD guidance (opinionated)
| Category | First choice | Fallback | Avoid |
|---|---|---|---|
| Dev tool / CLI / library | .dev |
.io, .sh |
.biz |
| AI product | .ai |
.com, .app |
.ml (now retired) |
| Consumer SaaS | .com |
.co, .app |
.click, .top |
| API / infra | .io |
.dev, .cloud |
.info |
| Creative / portfolio | .design, .studio, .me |
.co |
— |
| Open source project | .org, .dev |
.io |
— |
| Gaming | .gg, .games |
.io |
— |
| Local business | ccTLD (.de, .fr, …) |
.com |
— |
.com is still the safest default. If unavailable, .co and .app read professionally; .io and .dev signal "technical" — not always what you want for consumer products.
Workflow
- If user names a TLD, call
tld_infofor that TLD. Report WHOIS server, RDAP server, IDN support. - If user is choosing between TLDs, produce the comparison table above with their category highlighted.
- Call
rdap_bootstrap_infoif user asks about RDAP support specifically.
Flags worth mentioning
- TLDs that don't publish public WHOIS (some ccTLDs) — harder to research owner info
- TLDs with high premium pricing (
.ai,.io,.devcan be $60–$100/yr vs.comat ~$12) - TLDs that have been flagged by some email providers as spam-adjacent (
.top,.click,.xyzhas improved but still mixed reputation) - Retired TLDs — don't recommend anything that's been deprecated by its registry
Be specific. Don't hedge with "it depends" — the user asked you to recommend.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 11d ago First seen · 47 lines · 88 tokens per session scan A 01f16ba745fe
tld-advisor is a skill published in the GitHub repository kemalabuteliyte/domain-whois-mcp (0 stars, last pushed 4mo ago), licensed MIT. It adds 88 tokens to every session and 654 once invoked, about $0.0004 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
design-mcp-server
Design the tool surface, resources, and service layer for a new MCP server. Use when starting a new server, planning a major feature expansion, or when the user describes a domain/API they want to expose via MCP. Produces a design doc at docs/design.md that drives implementation.
add-tool
Scaffold a new MCP tool definition. Use when the user asks to add a tool, create a new tool, or implement a new capability for the server.
api-context
Canonical reference for the unified Context object passed to every tool and resource handler in @cyanheads/mcp-ts-core. Covers the full interface, its RequestContext base, all sub-APIs (ctx.log, ctx.state, ctx.requestInput, ctx.inputs, ctx.enrich, ctx.content), and when to use each.
api-linter
MCP definition linter rules reference. Use when bun run lint:mcp or bun run devcheck reports a lint error or warning (format-parity, schema-is-object, name-format, server-json-, etc.) and you need to understand the rule, its severity, and how to fix it. Every rule ID the linter emits has an entry in this doc.
api-canvas
DataCanvas primitive reference — a Tier 3 SQL/analytical workspace for tabular MCP servers, backed by DuckDB. Use when registering tables from upstream APIs, running ad-hoc SQL across them, and exporting results. Covers the acquire → register → query → export flow, per-table TTL, the token-sharing pattern for…
api-errors
McpError constructor, JsonRpcErrorCode reference, and error handling patterns for @cyanheads/mcp-ts-core. Use when looking up error codes, understanding where errors should be thrown vs. caught, or using ErrorHandler.tryCatch in services.