Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add lionkiii/claude-seo-skills --skill seo-site-audit-progit clone --depth 1 https://github.com/lionkiii/claude-seo-skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/lionkiii/claude-seo-skills/seo-site-audit-pro)<a href="https://agentmods.dev/skills/lionkiii/claude-seo-skills/seo-site-audit-pro"><img src="https://agentmods.dev/badge/skills/lionkiii/claude-seo-skills/seo-site-audit-pro/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/lionkiii/claude-seo-skills/seo-site-audit-pro"><img src="https://agentmods.dev/badge/skills/lionkiii/claude-seo-skills/seo-site-audit-pro.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00090 | $0.04545 |
| Opus 5 | $0.00045 | $0.02273 |
| Sonnet 5 | $0.00018 | $0.00909 |
| Haiku 4.5 | $0.00009 | $0.00455 |
Grade A, and why
seo-site-audit-pro scanned grade A with 2 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 12d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Reads agent configuration directorieslowAgent snooping
.claude/, .codex/, .gemini/ hold keys, settings and other credentials a mod has no legitimate need for.
- Verify with: cat ~/.claude/mcp.json | grep -i ahrefs Downgraded: this mod is about security review, or the phrase is quoted, so it is likely naming the pattern rather than instructing it.
Reads MCP configurationlowAgent snooping
mcp.json carries server URLs and auth tokens; reading it lets a mod discover and abuse other integrations.
- Verify with: cat ~/.claude/mcp.json | grep -i ahrefs Downgraded: this mod is about security review, or the phrase is quoted, so it is likely naming the pattern rather than instructing it.
How it starts
The opening of the file, as written. The whole thing — 523 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Site Audit Pro — Sequential Wave Multi-MCP Audit
Flagship audit combining Ahrefs and GSC data across 3 sequential waves with checkpoint saves to disk. Designed to be resilient to rate-limit errors — each tool call is independent, skipped tools are logged, and the audit always completes.
LOCKED DECISION (GitHub Issue #6594): Sequential wave execution only. Do NOT parallelize tool calls. Do NOT spawn subagents. All tool calls are inline.
References
@skills/seo/references/mcp-degradation.md @skills/seo/references/ahrefs-api-reference.md @skills/seo/references/gsc-api-reference.md
Inputs
domain: Bare domain to audit (required). Example:example.com. Striphttps://,http://, and trailing slashes before use.site(optional): GSC property URL to include GSC data in the audit. Example:https://example.comorsc-domain:example.com. If not provided, audit runs Ahrefs-only.
Important: API Usage Warning
Before starting execution, display this notice to the user:
API Usage Notice: This command calls approximately 10–12 Ahrefs API tools sequentially. Each call consumes API units from your Ahrefs account. You can stop after any wave if budget is a concern. Estimated time: 3 waves × 1–2 minutes each = 3–6 minutes total. Wave breakdown:
- Wave 1: Domain Authority and Backlink Health (4 tool calls)
- Wave 2: Keyword and Competitive Position (3–4 tool calls)
- Wave 3: Content and Technical Insights (3–4 tool calls)
MCP Check
Before proceeding, verify MCP availability:
Ahrefs (required):
- Use ToolSearch with query
+ahrefs - If tools returned → Ahrefs MCP available, proceed
- If no tools returned → display the Ahrefs error template (see Error section below) and stop
GSC (optional — only relevant if site param was provided):
- Use ToolSearch with query
+google-search-console - If tools returned → note "GSC MCP available — will include GSC overlay in Waves 2 and 3"
- If no tools returned AND
siteparam was provided → note "GSC MCP unavailable — audit will use Ahrefs data only, GSC overlay skipped" and continue - If
siteparam was NOT provided → skip GSC check entirely
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 12d ago First seen · 523 lines · 90 tokens per session scan A 8844be6579d9
seo-site-audit-pro is a skill published in the GitHub repository lionkiii/claude-seo-skills (20 stars, last pushed 3mo ago), licensed MIT. It adds 90 tokens to every session and 4,545 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it A with 2 findings (reads agent configuration directories, reads mcp configuration). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
seo-images
Image SEO audit for a URL or domain. Pulls raw image inventory via Firecrawl, then audits alt-text quality, modern-format coverage (WebP / AVIF), responsive sizing (srcset / sizes), lazy-loading and LCP signals (loading, fetchpriority, decoding), CLS-safe dimensions, descriptive file names, and ImageObject JSON-LD.…
seo-technical-audit
Focused one-shot technical SEO audit for a domain. Crawlability, indexability, security, mobile, structured data, JS rendering — single-pass deliverable, not a diff. Distinct from seo-drift (which tracks changes over time) and from seo-page (which audits keywords/traffic for one URL, not technical health). Use when…
seo-api
DataForSEO API integration architect for developers. Covers the entire DataForSEO surface — DataForSEO Labs (ranked keywords, keyword ideas/suggestions/related, domain rank overview, competitors, domain/page intersection, subdomains, relevant pages, bulk keyword difficulty, bulk traffic estimation, search intent…
seo-ads
Paid-search competitive landscape for a domain or keyword. Reconstructs the paid footprint keyword-by-keyword from live SERP ad blocks — advertisers, ad copy patterns, who else bids on the same keywords, CPC/competition signals, SERP shopping/ad-pack visibility — and produces a competitive ads brief plus a recommended…
seo-backlinks-profile
Full backlink profile for a domain — referring domains, anchor text distribution, authority distribution, IP and subnet diversity, growth/decay trend, toxic-candidate flagging. Distinct from seo-backlink-gap (which is gap-vs-competitor only). Produces a profile health score and reviewable disavow candidate list (never…
seo-content-audit
E-E-A-T + CITE quality audit for an EXISTING piece of content. Scores Experience, Expertise, Authoritativeness, Trustworthiness, and citation-readiness for AI search; surfaces veto items that block publication; produces a publish / publish-with-fixes / no-publish verdict. Distinct from seo-content-brief (produces a…