Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add skills/nirholas/xactions/community-notesnpx skills add nirholas/XActions --skill community-notesgit clone --depth 1 https://github.com/nirholas/XActionsWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00047 | $0.00514 |
| Opus 5 | $0.00023 | $0.00257 |
| Sonnet 5 | $0.00009 | $0.00103 |
| Haiku 4.5 | $0.00005 | $0.00051 |
Grade A, and why
community-notes scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Community Notes
Browser console script for interacting with X's Community Notes fact-checking system.
Script Selection
| Goal | File | Navigate to |
|---|---|---|
| View, write, rate, or browse Community Notes | src/communityNotes.js |
x.com/home or tweet page |
Quick Start
- Navigate to a tweet page or
x.com/home - Open DevTools (F12) → Console
- Edit
CONFIG.actionto choose what to do - Paste
src/communityNotes.js→ Enter
Actions
const CONFIG = {
action: 'view', // 'view' | 'write' | 'rate' | 'browse'
// For 'write':
tweetUrl: 'https://x.com/user/status/123', // Tweet to annotate
noteText: 'Context: this claim is missing...',
// For 'rate':
// Script finds existing notes and presents rating options
};
| Action | Description |
|---|---|
view |
View Community Notes on currently visible tweets |
write |
Write a note on a specific tweet (requires tweetUrl + noteText) |
rate |
Rate existing notes as helpful or not helpful |
browse |
Browse tweets on your timeline that have Community Notes |
Prerequisites
- Writing and rating notes requires enrollment at
x.com/i/communitynotes - Enrollment is open to all users but requires a verified phone number
- New contributors are in "Needs More Ratings" status until they establish a track record
Notes
- Community Notes are surfaced by X's algorithm based on rater agreement
- Notes only appear publicly when enough raters from diverse viewpoints agree
- Script uses DOM automation on
x.com— no API key required
Related Skills
- content-posting — Post tweets and threads
- discovery-explore — Find trending topics that may have Community Notes
- analytics-insights — Analyze tweet performance and sentiment
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 66 lines · 47 tokens per session scan A c33c3751bdd0
community-notes is a skill published in the GitHub repository nirholas/XActions (496 stars, last pushed 4d ago), licensed Apache-2.0. It adds 47 tokens to every session and 514 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
browser-test
Validate a feature works by driving a real browser with Playwright MCP. No test files — just interactive verification.
tmux
Remote-control tmux sessions for interactive CLIs by sending keystrokes and scraping pane output.
browser-pair
Collaborative headed browser session for UI work. Launch Playwright Chromium visible to the user, handle auth, then interactively drive the browser while the user watches and gives real-time visual feedback. Edit code and refresh to verify fixes live. Use when the user says 'browser pair', 'paired browser', 'let's…
debug-frontend-with-browser
Frontend diagnosis extension for the acceptance skill. Use for intermittent rendering, ordering, stale-state, navigation, virtual-list, React/Zustand, optimistic-update, refresh-dependent, or browser-only failures where the first broken boundary may be DOM, component input, derived state, client cache, network data…
design-prototype
Produce an interactive single-file HTML design prototype using the REAL LobeHub design system (@lobehub/ui + antd + antd-style tokens) with production-style React — no build step, opens directly in a browser. Use when asked for a design prototype / interactive mockup / 交互原型 / 出个原型 / 设计稿 HTML for a page or flow, or to…
share
Use when a user needs a browser-accessible link to preview, present, or send Agent-generated workspace files, an entire project, or the current topic outside Super Magic—especially rendered output such as HTML that messaging or file-viewing channels cannot display directly—or when they need to find, reuse, change, or…