Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add neo4j-contrib/neo4j-skills --skill neo4j-cli-tools-skillgit clone --depth 1 https://github.com/neo4j-contrib/neo4j-skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/neo4j-contrib/neo4j-skills/neo4j-cli-tools-skill)<a href="https://agentmods.dev/skills/neo4j-contrib/neo4j-skills/neo4j-cli-tools-skill"><img src="https://agentmods.dev/badge/skills/neo4j-contrib/neo4j-skills/neo4j-cli-tools-skill/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/neo4j-contrib/neo4j-skills/neo4j-cli-tools-skill"><img src="https://agentmods.dev/badge/skills/neo4j-contrib/neo4j-skills/neo4j-cli-tools-skill.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00159 | $0.02878 |
| Opus 5 | $0.00079 | $0.01439 |
| Sonnet 5 | $0.00032 | $0.00576 |
| Haiku 4.5 | $0.00016 | $0.00288 |
Grade C, and why
neo4j-cli-tools-skill scanned grade C with 2 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 13d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Downloads and executes remote codehighSupply chain
curl | sh runs whatever the server returns today, which is not necessarily what it returned when this was reviewed.
management, agent skill catalog install; install with curl -sSfL https://neo4j.sh/install.sh | bash), Makes network callslowCapability
Not a fault in itself. Listed so you know the mod talks to something, and to what.
management, agent skill catalog install; install with curl -sSfL https://neo4j.sh/install.sh | bash), How it starts
The opening of the file, as written. The whole thing — 262 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Neo4j CLI Tools skill
When to Use
- Cypher queries, schema inspection, Aura, Docker, credentials, agent skills →
neo4j-cli(preferred) - Admin tasks: backup, restore, import, memory sizing →
neo4j-admin - Ad-hoc queries, scripting, CI/CD (Java required) →
cypher-shell - MCP server install →
neo4j-mcp
When NOT to Use
- Writing or optimizing Cypher queries →
neo4j-cypher-skill - Upgrading Neo4j drivers or migrating Cypher syntax →
neo4j-migration-skill - Starting a new Neo4j project from scratch →
neo4j-getting-started-skill
Available CLI Tools
1. neo4j-cli
Modern unified CLI. Bolt-native Cypher, schema inspection, Aura management, local Docker, credential storage, agent skill catalog install. Single binary — no Java required.
Install:
curl -sSfL https://neo4j.sh/install.sh | bash # recommended
brew install neo4j-labs/tap/neo4j-cli # Homebrew
pip install neo4j-cli / pipx install neo4j-cli # PyPI
npm i -g @neo4j-labs/cli # npm
Self-update: neo4j-cli update (also refreshes installed skills automatically)
Key subcommands:
| Subcommand | Purpose |
|---|---|
neo4j-cli query [cypher] |
Run Cypher via Bolt — auto-rewrites HTTP URIs |
neo4j-cli query :schema |
Inspect labels, rel types, indexes, constraints |
neo4j-cli query :embed [text] |
Compute embedding vector standalone |
neo4j-cli aura instance ... |
Provision and manage Aura instances |
neo4j-cli aura agent ... |
Manage Aura Agents (list/get/create/invoke) |
neo4j-cli docker create/start/stop/delete |
Manage local Neo4j Docker containers |
neo4j-cli credential aura-client ... |
Store Aura API credentials |
neo4j-cli credential dbms ... |
Store Neo4j connection profiles (URI + auth) |
neo4j-cli credential embed ... |
Store embedding provider credentials |
neo4j-cli skill install [skill-name] |
Install self-skill or any catalog skill |
neo4j-cli skill list / check / remove |
Manage installed agent skills |
neo4j-cli update |
Self-update binary + refresh installed skills |
What ships with it
5 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 13d ago First seen · 262 lines · 159 tokens per session scan C 7e550e3acf0f
neo4j-cli-tools-skill is a skill published in the GitHub repository neo4j-contrib/neo4j-skills (109 stars, last pushed 5d ago), licensed MIT. It adds 159 tokens to every session and 2,878 once invoked, about $0.0008 per session on Opus 5. A static security scan graded it C with 2 findings (downloads and executes remote code, makes network calls). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
bullmq-specialist
BullMQ expert for Redis-backed job queues, background processing, and reliable async execution in Node.js/TypeScript applications. Use when: bullmq, bull queue, redis queue, background job, job queue.
results-storage
SQLite-based persistent storage and reporting system for penetration testing results. Use this skill when user needs to store scan results, query vulnerabilities, generate reports, or manage pentest data across sessions.
exploit-sqli
SQL injection detection and exploitation using sqlmap, manual techniques, and custom payloads. Use this skill when user needs to test for SQL injection vulnerabilities, extract database information, or exploit SQLi in parameters, headers, or cookies.
backend-patterns
Backend architecture patterns, API design, database optimization, and server-side best practices for Node.js, Express, and Next.js API routes.
clickhouse-io
ClickHouse database patterns, query optimization, analytics, and data engineering best practices for high-performance analytical workloads.
chembl-database
Query ChEMBL bioactive molecules and drug discovery data. Search compounds by structure/properties, retrieve bioactivity data (IC50, Ki), find inhibitors, perform SAR studies, for medicinal chemistry.