Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add nebius/nebius-physical-ai --skill sonicgit clone --depth 1 https://github.com/nebius/nebius-physical-aiWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/nebius/nebius-physical-ai/sonic)<a href="https://agentmods.dev/skills/nebius/nebius-physical-ai/sonic"><img src="https://agentmods.dev/badge/skills/nebius/nebius-physical-ai/sonic/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/nebius/nebius-physical-ai/sonic"><img src="https://agentmods.dev/badge/skills/nebius/nebius-physical-ai/sonic.svg" alt="Reviewed on agentmods" width="80" height="20"></a>- NVIDIA SkillSpector pass
What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00029 | $0.02086 |
| Opus 5 | $0.00015 | $0.01043 |
| Sonnet 5 | $0.00006 | $0.00417 |
| Haiku 4.5 | $0.00003 | $0.00209 |
Grade A, and why
sonic scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 154 lines — stays where its author put it; the contents beside it link to each section on GitHub.
SONIC
When To Use
Use this skill for NVIDIA GEAR-SONIC whole-body-control workbench changes, including standalone training, export, evaluation, serving, image routing, and workflow composition with retargeting or MJLab.
Procedure
-
Confirm the current CLI surface before editing:
npa workbench sonic --help -
Use
trainfor policy training,exportfor export artifacts,evalfor evaluation, andservefor runtime serving. Usedeploy,status, andlistfor operational lifecycle. -
Route first-party SONIC images through
npa/src/npa/deploy/sonic_image_manifest.json; do not hardcode image tags in workflows or docs. -
Keep S3 paths run-scoped so retraining and re-evaluation do not overwrite previous artifacts.
Three-Tier Contract
- CLI:
deploy,train,export,eval,serve,status, andlist. - SDK/API: keep train/eval/export/serve request construction shared with service payloads and tests where possible.
- Workflow: SONIC specs live under
workflows/testing/(sonic-train.yaml,sonic-export.yaml,sonic-eval.yaml,sonic-export-eval.yaml,sonic-locomotion-finetuning.yaml). Submit them withnpa workbench workflow submit.sonic export/sonic evalaccepts3://checkpoints, ONNX policies and outputs, so no staging glue is needed. Raw SkyPilot coverage for the submit wrapper lives innpa/tests/fixtures/skypilot/; shipped SONIC workflow authoring stays on thenpa.workflowspecs.
Routing And Validation
- The legacy baked L40S and inherited MuJoCo variants are quarantined because their built bytes contain restricted NVIDIA payloads; resolvers must reject them.
sonic-mujoco-runtime-fetchis an independently rebuilt public release on a digest-pinned Python base and hash-locked CUDA Toolkit/MuJoCo closure. It is not derived from either quarantined image; release promotion is bound to its exact clean, GPU-accepted public development digest.- Use the active host-mounted runtime-fetch image selected by
npa/src/npa/deploy/sonic_image_manifest.jsonfor RTX PRO 6000 Blackwell Kubernetes targets with NVIDIA GPU Operator mounted drivers. A B300 validation image uses the same Dockerfile but must be supplied explicitly by immutable digest until its own accepted release updates the manifest. B300 is compute capability 10.3: that development image must use the digest-pinned CUDA 13 base, PyTorchcu130, CUDA 13 NVRTC, and the truthfulsm80-sm90-sm100-sm103-sm120target contract. The official cu130 PyTorch wheel exposes Blackwell 10.x family SASS assm_100; the literalsm_103requirement applies to CUDA 13 NVRTC JIT compilation on the B300 device. CUDA 12.8 NVRTC rejectssm_103; do not treat environment startup before that JIT boundary as B300 training evidence. - SONIC render validation requires RT-capable GPUs. Use RTX PRO 6000 Blackwell; do not silently fall back to the quarantined H100/L40S images.
sonic eval --backend containerconsumes ONNX plus its metadata sidecar and resolvesisaac-render, including explicit manifest variants. The separatemujoco-evalcontainer entrypoint consumes a checkpoint throughSONIC_EVAL_CHECKPOINT_PATH; it is not a substitute for the ONNX contract. Image resolution must use the workload at every caller that knows its stage.- Generic Blackwell labels containing B200/B300 remain datacenter targets.
Custom workflow
--imageoverrides may select an unpublished runtime without being attributed to a first-party variant; callers must validate those bytes. - The built-in serverless compute-only default is intentionally unavailable:
its L40S/H100/H200 images are quarantined, while the active image requires
Kubernetes GPU Operator driver mounts. A serverless run must supply an
independently validated compute-only
--image, or fail before provisioning.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 4d ago Changed · +8 lines 49f3890900c7
- 8d ago First seen · 146 lines · 29 tokens per session scan A 2be25fc8250c
sonic is a skill published in the GitHub repository nebius/nebius-physical-ai (29 stars, last pushed today), licensed Apache-2.0. It adds 29 tokens to every session and 2,086 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.
Other skills, from other repositories
gke-compute-classes
Configures, optimizes, and troubleshoots GKE ComputeClasses. Use when configuring Spot VMs with on-demand fallback, targeting specific accelerators (GPUs/TPUs) or machine families, restricting ComputeClass access, or debugging pending pods related to node pool auto-creation. Do not use for cluster-level Node Auto…
gke-reliability
Improves GKE workload reliability, using PDBs, health probes, and topology spread constraints. Use when configuring GKE workload reliability, setting up PDBs, or configuring GKE health probes (liveness, readiness, startup). Don't use for disaster recovery setup or full cluster backups (use gke-backup-dr instead).
gke-workload-security
Audits, configures, and hardens workload-level security controls for Google Kubernetes Engine (GKE) applications and namespaces. Covers running cluster security audits (auditcluster.sh), configuring Workload Identity Federation (impersonation, KSA/GSA binding, and pod setup), enforcing Network Policies (default-deny…
azure-mgmt-botservice-dotnet
Azure Resource Manager SDK for Bot Service in .NET. Management plane operations for creating and managing Azure Bot resources, channels (Teams, DirectLine, Slack), and connection settings. Triggers: "Bot Service", "BotResource", "Azure Bot", "DirectLine channel", "Teams channel", "bot management .NET", "create bot".
nemo-automodel-launcher-config
Configure NeMo AutoModel job launches for interactive runs, Slurm clusters, and SkyPilot cloud execution.
cloud-architect
Designs cloud architectures, creates migration plans, generates cost optimization recommendations, and produces disaster recovery strategies across AWS, Azure, and GCP. Use when designing cloud architectures, planning migrations, or optimizing multi-cloud deployments. Invoke for Well-Architected Framework, cost…