planetscale-readonly-inventory

planetscale-readonly-inventory is a skill for Claude Code, Codex from planetscale/claude-plugin. It costs 36 tokens per session (1,879 once invoked), scanned A, a copy of planetscale-readonly-inventory, Apache-2.0.

A read-only inventory guide for PlanetScale, a hosted database service, that gathers facts about organizations, databases, branches, backups, roles, queries, and traffic settings.

In plain words
What is it for?
Use it to inspect database structure and configuration, review slow or unusual queries, check backups and roles, and examine repository or infrastructure files connected to PlanetScale.
Why use it?
It gives you an evidence-based view of a database without changing data, settings, or credentials.

Skill for Claude CodeCodex

Part of the planetscale plugin — 19 skills shipped together

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/planetscale/claude-plugin/01-readonly-inventory
Any agent
npx skills add planetscale/claude-plugin --skill 01-readonly-inventory
Clone the repo
git clone --depth 1 https://github.com/planetscale/claude-plugin

Made for: Claude Code, Codex.

Or install planetscale, the plugin that ships this one along with the rest of its 19 skills.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for planetscale-readonly-inventory

README.md
[![agentmods](https://agentmods.dev/badge/skills/planetscale/claude-plugin/01-readonly-inventory.svg)](https://agentmods.dev/skills/planetscale/claude-plugin/01-readonly-inventory)
Your own site
<a href="https://agentmods.dev/skills/planetscale/claude-plugin/01-readonly-inventory"><img src="https://agentmods.dev/badge/skills/planetscale/claude-plugin/01-readonly-inventory.svg" alt="Measured on agentmods" height="20"></a>
Per session 36 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 1,879 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin 100% copy Near-identical to another mod in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00036 $0.01879
Opus 5 $0.00018 $0.00940
Sonnet 5 $0.00007 $0.00376
Haiku 4.5 $0.00004 $0.00188

Measured 4d ago against content hash 3bb8fef30e39, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

planetscale-readonly-inventory scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

Origin

This is a copy

100% identical to planetscale-readonly-inventory — 0 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.

planetscale-skills/01-readonly-inventory/SKILL.md · 234 lines

How it starts

The opening of the file, as written. The whole thing — 234 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Read-only inventory

Purpose

Build an evidence-backed inventory of a PlanetScale database without making changes.

Allowed actions

Allowed by default:

  • List organizations, databases, branches, keyspaces, regions, and sizes.
  • Read branch metadata.
  • Read webhook configuration.
  • Read schema recommendations.
  • Read Query Insights, anomalies, and query patterns through MCP or API.
  • Read traffic budgets and rules.
  • Read Postgres roles and non-secret role metadata.
  • Read backup schedules and restore metadata.
  • Read branch schema.
  • Inspect live connection/session metadata with the Connections CLI view.
  • Inspect repository files for frameworks, ORMs, migrations, SQL tagging, and connection config.
  • Inspect Terraform or other infrastructure-as-code definitions for PlanetScale roles, backups, backup policies, Postgres parameters, and supported extensions.

Not allowed without explicit approval:

  • Any create, update, delete, enable, disable, reset, deploy, restore, promote, enforce, or apply operation.
  • Any SQL mutation.
  • Any command that emits new credentials unless the operator explicitly asked for credential work.

Interfaces and documentation grounding

Ground every command and endpoint in the official documentation instead of guessing. PlanetScale publishes agent-readable docs:

Verify an endpoint path in the API reference before calling it. A 404 from an unverified path is a wrong path, not a finding; do not record it as platform state and do not conclude "not configured" from it.

Verified interface notes (recheck against the docs when a command fails):

  • pscale database show <database> --org <org> — the org is a flag, not a positional argument.
  • pscale api <path> takes org-relative paths such as organizations/{org}/databases/{db}/branches/{branch} — there is no get subcommand and no /v1/ prefix. Pass query parameters with -Q key=value flags; embedding ?/& in the path breaks under shell globbing.
  • pscale webhook list <database> --org <org> — the database is a positional argument. pscale backup list <database> <branch> requires the branch.
  • pscale branch connections top <database> <branch> — live read-only session inventory works for Postgres and Vitess over a reserved administrative connection. Do not cancel queries or terminate connections unless the operator explicitly approves that operational action.
  • Query Insights is public API. Live query telemetry: .../branches/{branch}/insights (per-pattern statistics; supports from/to/period, q, sort, dir, tablet_type, type, fields, and pagination). Related endpoints under the same branch path: insights/errors, insights/anomalies, insights/tags, insights/tags/summaries, insights/{fingerprint} (individual executions), insights/{fingerprint}/summary, and insights/{fingerprint}/traffic/budgets. The query-patterns path returns generated report metadata, not live patterns.
  • Traffic budgets: .../branches/{branch}/traffic/budgets. The CLI has no pscale traffic-control budget list; use the API for inventory.
  • Postgres roles: list via .../branches/{branch}/roles; fetch a single role by ID, not name (pscale role get <db> <branch> <role-id>).
  • IP restrictions: database-level organizations/{org}/databases/{db}/cidrs. Branch-level IP-restriction paths are not valid.
  • Schema recommendations: database-level .../databases/{db}/schema-recommendations (the branch-level path is not valid). Requesting page=2 currently returns 404 even when the response reports next_page; use the database object's open_schema_recommendations_count as the authoritative total, treat the returned page as a sample, and state in the report when the itemized list covers only part of the total.
  • PITR state and branch-level backup policies have no verified read path; record backup posture from pscale backup list and the database-level backup policy, and mark PITR "not assessed in this run" rather than probing paths.
  • List endpoints paginate; follow the pagination parameters until exhausted before reporting counts (except the schema-recommendations case above).

Read the full file on GitHub · 234 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 4d ago First seen · 234 lines · 36 tokens per session scan A 3bb8fef30e39

Subscribe to this mod's changes

planetscale-readonly-inventory is a skill published in the GitHub repository planetscale/claude-plugin (4 stars, last pushed 3d ago), licensed Apache-2.0. It adds 36 tokens to every session and 1,879 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. It is 100% identical to planetscale-readonly-inventory, differing in 0 lines, and is treated as a copy.

Related

Other skills, from other repositories

schema-exploration

Lists tables, describes columns and data types, identifies foreign key relationships, and maps entity relationships in a database. Use when the user asks about database schema, table structure, column types, what tables exist, ERD, foreign keys, or how entities relate.

langchain-ai/deepagents · 57 tokens

agent-platform-rag-engine-management

Manage and query Agent Platform RAG Engine Corpora and retrieve grounded contexts using the Google GenAI SDK. Use when listing RAG corpora or files, inspecting a corpus, retrieving contexts, or generating content grounded in a RAG corpus. Do not use for standard database queries (use SQL/Spanner skills), Google…

google/skills · 85 tokens

deploy-docker-compose

Run the Omnigent server as a Docker compose stack (server + Postgres) on any Docker host — your laptop, a VPS, EC2 by hand, or as the base layer of any container-platform deploy. Invoke when the user wants to build the image, bring up the compose stack, debug the stack on a host they already have, or extend the stack…

omnigent-ai/omnigent · 84 tokens

moderator-page-migration

Port a moderator page from the main Next.js app (src/pages/moderator/) into apps/moderator. Use when asked to migrate, move or cut over a /moderator/ page to the spoke, or to port its tRPC procedures and Prisma services to SvelteKit loads/actions and Kysely.

civitai/civitai · 71 tokens

dsql

Build with Aurora DSQL — manage schemas, execute queries, handle migrations, diagnose query plans, diagnose cluster performance, load data, and develop applications with a serverless, distributed SQL database. Covers IAM auth, multi-tenant patterns, MySQL-to-DSQL and PostgreSQL-to-DSQL schema conversion, foreign key…

awslabs/agent-plugins · 229 tokens

sql-translate

Translate SQL queries between database dialects (Snowflake, BigQuery, PostgreSQL, MySQL, etc.).

AltimateAI/altimate-code · 26 tokens