PlanetScale Skills is a collection of markdown instructions that turns a coding agent into a reviewer and operator for PlanetScale databases, which are managed databases organized around branches and controlled schema changes. Database teams use it to audit configuration and query behavior, produce evidence-backed reports, apply approved changes, and automate monitoring through PlanetScale’s own workflows.
Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add planetscale/skills --skill planetscale-readonly-inventorygit clone --depth 1 https://github.com/planetscale/skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/planetscale/skills/planetscale-readonly-inventory)<a href="https://agentmods.dev/skills/planetscale/skills/planetscale-readonly-inventory"><img src="https://agentmods.dev/badge/skills/planetscale/skills/planetscale-readonly-inventory.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00036 | $0.01881 |
| Opus 5 | $0.00018 | $0.00941 |
| Sonnet 5 | $0.00007 | $0.00376 |
| Haiku 4.5 | $0.00004 | $0.00188 |
Grade A, and why
planetscale-readonly-inventory scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 3d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
Copies of this mod
1 near-identical copy found in the catalogue:
- planetscale-readonly-inventory — 98% identical, 2 lines differ
How it starts
The opening of the file, as written. The whole thing — 234 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Read-only inventory
Purpose
Build an evidence-backed inventory of a PlanetScale database without making changes.
Allowed actions
Allowed by default:
- List organizations, databases, branches, keyspaces, regions, and sizes.
- Read branch metadata.
- Read webhook configuration.
- Read schema recommendations.
- Read Query Insights, anomalies, and query patterns through MCP or API.
- Read traffic budgets and rules.
- Read Postgres roles and non-secret role metadata.
- Read backup schedules and restore metadata.
- Read branch schema.
- Inspect live connection/session metadata with the Connections CLI view.
- Inspect repository files for frameworks, ORMs, migrations, SQL tagging, and connection config.
- Inspect Terraform or other infrastructure-as-code definitions for PlanetScale roles, backups, backup policies, Postgres parameters, and supported extensions.
Not allowed without explicit approval:
- Any create, update, delete, enable, disable, reset, deploy, restore, promote, enforce, or apply operation.
- Any SQL mutation.
- Any command that emits new credentials unless the operator explicitly asked for credential work.
Interfaces and documentation grounding
Ground every command and endpoint in the official documentation instead of guessing. PlanetScale publishes agent-readable docs:
- Docs index: https://planetscale.com/docs/llms.txt
- Any docs page as markdown: append
.mdto its URL - API reference: https://planetscale.com/docs/openapi.yaml (OpenAPI 3.0)
Verify an endpoint path in the API reference before calling it. A 404 from an unverified path is a wrong path, not a finding; do not record it as platform state and do not conclude "not configured" from it.
Verified interface notes (recheck against the docs when a command fails):
pscale database show <database> --org <org>— the org is a flag, not a positional argument.pscale api <path>takes org-relative paths such asorganizations/{org}/databases/{db}/branches/{branch}— there is nogetsubcommand and no/v1/prefix. Pass query parameters with-Q key=valueflags; embedding?/&in the path breaks under shell globbing.pscale webhook list <database> --org <org>— the database is a positional argument.pscale backup list <database> <branch>requires the branch.pscale branch connections top <database> <branch>— live read-only session inventory works for Postgres and Vitess over a reserved administrative connection. Do not cancel queries or terminate connections unless the operator explicitly approves that operational action.- Query Insights is public API. Live query telemetry:
.../branches/{branch}/insights(per-pattern statistics; supportsfrom/to/period,q,sort,dir,tablet_type,type,fields, and pagination). Related endpoints under the same branch path:insights/errors,insights/anomalies,insights/tags,insights/tags/summaries,insights/{fingerprint}(individual executions),insights/{fingerprint}/summary, andinsights/{fingerprint}/traffic/budgets. Thequery-patternspath returns generated report metadata, not live patterns. - Traffic budgets:
.../branches/{branch}/traffic/budgets. The CLI has nopscale traffic-control budget list; use the API for inventory. - Postgres roles: list via
.../branches/{branch}/roles; fetch a single role by ID, not name (pscale role get <db> <branch> <role-id>). - IP restrictions: database-level
organizations/{org}/databases/{db}/cidrs. Branch-level IP-restriction paths are not valid. - Schema recommendations: database-level
.../databases/{db}/schema-recommendations(the branch-level path is not valid). Requestingpage=2currently returns 404 even when the response reportsnext_page; use the database object'sopen_schema_recommendations_countas the authoritative total, treat the returned page as a sample, and state in the report when the itemized list covers only part of the total. - PITR state and branch-level backup policies have no verified read path;
record backup posture from
pscale backup listand the database-level backup policy, and mark PITR "not assessed in this run" rather than probing paths. - List endpoints paginate; follow the pagination parameters until exhausted before reporting counts (except the schema-recommendations case above).
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 3d ago First seen · 234 lines · 36 tokens per session scan A 3398b76aee9b
planetscale-readonly-inventory is a skill published in the GitHub repository planetscale/skills (126 stars, last pushed yesterday), licensed MIT. It adds 36 tokens to every session and 1,881 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.
Other skills, from other repositories
alloydb-basics
Manages clusters, instances, and backups for AlloyDB for PostgreSQL, and integrates with AlloyDB Model Context Protocol (MCP) tools for automated database operations. Use when creating, configuring, or administering AlloyDB databases. Do NOT use for general PostgreSQL instances (e.g. Cloud SQL) or other GCP databases.
postgresql-table-design
Use this skill when designing or reviewing a PostgreSQL-specific schema. Covers best-practices, data types, indexing, constraints, performance patterns, and advanced features.
db-repair
Auto-fix gbrain's Postgres access so the brain stays available. When any gbrain command or MCP tool result carries a GBRAINDBACCESS marker (or an operator reports the brain database is down), run the hardcoded gbrain db-repair ladder: diagnose, apply the safe tier, verify. The action is ALWAYS the hardcoded command …
dsql
Build with Aurora DSQL — manage schemas, execute queries, handle migrations, diagnose query plans, diagnose cluster performance, load data, and develop applications with a serverless, distributed SQL database. Covers IAM auth, multi-tenant patterns, MySQL-to-DSQL and PostgreSQL-to-DSQL schema conversion, foreign key…
volcengine-rds-postgresql
A tool for operating PostgreSQL databases hosted by Volcano Engine's managed database service. PostgreSQL is a relational database used to store structured application data.
analyzing-insights-across-teams
Analyze PostHog insights, dashboards, or teams beyond the current project by querying the prod Postgres replicas synced into the dogfood data warehouse (US project 2, "PostHog App + Website"). Use when asked to analyze insights across all teams or projects, another team's insights, or fleet-wide insight/dashboard…