Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add markoblogo/abvx-agent-skills --skill delivery-baseline-auditgit clone --depth 1 https://github.com/markoblogo/abvx-agent-skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/markoblogo/abvx-agent-skills/delivery-baseline-audit)<a href="https://agentmods.dev/skills/markoblogo/abvx-agent-skills/delivery-baseline-audit"><img src="https://agentmods.dev/badge/skills/markoblogo/abvx-agent-skills/delivery-baseline-audit/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/markoblogo/abvx-agent-skills/delivery-baseline-audit"><img src="https://agentmods.dev/badge/skills/markoblogo/abvx-agent-skills/delivery-baseline-audit.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00060 | $0.00442 |
| Opus 5 | $0.00030 | $0.00221 |
| Sonnet 5 | $0.00012 | $0.00088 |
| Haiku 4.5 | $0.00006 | $0.00044 |
Grade A, and why
delivery-baseline-audit scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 11d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Delivery Baseline Audit
Verify that the promised deliverables actually exist relative to where the work started.
Use When
- the task names files, features, screens, commands, or other concrete deliverables;
- the implementation ran through multiple phases or retries;
- the working tree may contain staged, unstaged, or untracked work that matters;
- "agent said done" is not enough evidence.
Core Rules
- Compare against the starting baseline, not just the latest transcript claim.
- Check the whole working tree, not only committed diffs.
- Re-run final mandatory commands once at the end for cross-phase regressions.
- Treat missing deliverables as a gap even if the narrative sounds complete.
Workflow
- Capture or identify the baseline reference before major work starts.
- List the declared deliverables and acceptance criteria.
- At the end, inspect the full working tree relative to that baseline:
- committed changes;
- staged changes;
- unstaged changes;
- deletions;
- untracked deliverables.
- Re-run the final mandatory verification commands.
- Spot-check each deliverable against its declared acceptance criteria.
- Report gaps explicitly and fix them before calling the task complete.
Audit Output
Include:
- baseline reference used;
- deliverables checked;
- commands re-run;
- gaps found;
- fix-needed or complete verdict.
Anti-Patterns
- Do not audit only what was committed if the working tree still matters.
- Do not rely on a prior mid-task pass as the final audit.
- Do not mark complete when a declared deliverable is absent or unverifiable.
Final Report
State whether completion was confirmed against baseline, partially confirmed, or blocked by missing evidence.
What ships with it
2 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 11d ago First seen · 61 lines · 60 tokens per session scan A 50ff24fe440e
delivery-baseline-audit is a skill published in the GitHub repository markoblogo/abvx-agent-skills (16 stars, last pushed 2d ago), licensed MIT. It adds 60 tokens to every session and 442 once invoked, about $0.0003 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
workflow-preflight
Run code quality checks (typecheck, lint, tests) - auto-detects configured tools and offers to fix issues.
nolane-habitat-maintainer
Maintain, debug, test, document, package, or release the Nolane Habitat repository. Trigger when work changes Habitat workspace lifecycle, storage, semantic providers, mutation safety, MCP, Observatory, tests, Codex integration, or release artifacts.
bug-fixing
Fix defects in the Composio SDK repository with focused reproduction, root-cause analysis, regression tests, and narrow verification. Use when the user reports a bug, failing test, CI regression, runtime defect, or incorrect SDK behavior. Do not use for new feature design or broad refactors.
typescript-testing
Select and run TypeScript SDK verification for packages, examples, type checks, linting, builds, Vitest suites, and runtime E2E tests. Use when adding tests, diagnosing TypeScript CI, choosing a focused test command, or validating TypeScript package changes. Do not use for Python-only checks.
cli-e2e
Write, modify, or debug Docker-based Composio CLI end-to-end tests under ts/e2e-tests/cli, including binary invocation, fixture isolation, output assertions, and package manifests. Use for CLI E2E test suites only; use cli-command for CLI source implementation.
python-testing
Select and run Python SDK verification with nox, Makefile targets, Ruff, mypy, pytest markers, sanity tests, type inference checks, and build checks. Use when adding Python tests, diagnosing Python CI, or validating Python SDK/provider changes. Do not use for TypeScript-only checks.