Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add saemihemma/lead-producer-oss --skill team-move-teamgit clone --depth 1 https://github.com/saemihemma/lead-producer-ossWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/saemihemma/lead-producer-oss/team-move-team)<a href="https://agentmods.dev/skills/saemihemma/lead-producer-oss/team-move-team"><img src="https://agentmods.dev/badge/skills/saemihemma/lead-producer-oss/team-move-team/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/saemihemma/lead-producer-oss/team-move-team"><img src="https://agentmods.dev/badge/skills/saemihemma/lead-producer-oss/team-move-team.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00037 | $0.00444 |
| Opus 5 | $0.00018 | $0.00222 |
| Sonnet 5 | $0.00007 | $0.00089 |
| Haiku 4.5 | $0.00004 | $0.00044 |
Grade A, and why
team-move-team scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 11d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Move Team
Purpose
Review whether a Move/Sui feature is correct on-chain, safe to integrate off-chain, and coherent with the economy it affects.
Composition
- role-move-sui-developer: contract correctness, invariants, transaction shape
- role-backend-engineer: off-chain integration, service boundaries, data flow
- role-security-engineer: exploitability, access control, attack surface
- role-economy-designer: economic incentives, flow implications
- Synthesis: trade-offs, acceptance
Use When
- Reviewing Move package, contract integration, token-system change
- Checking smart-contract changes affecting off-chain flows
- Evaluating Sui security and economic implications together
- Validating on-chain/off-chain responsibility boundaries
Do NOT Use When
- Generic backend with no on-chain component
- Pure economy analysis with no contract logic
- Frontend or deployment review
Workflow
- Identify core invariants, integration points, value-moving transactions.
- Review on-chain correctness, off-chain handling, security, incentive shape together.
- Surface conflicts when safety, feasibility, economic goals disagree.
- Synthesize one contract-plus-integration verdict.
Default Output
MOVE TEAM REVIEW
================
On-Chain: invariant/contract findings
Integration: off-chain boundary risks, data-flow concerns
Security/Economy: exploit/access-control risks, incentive/flow risks
Recommendation: ship / revise / escalate, highest-priority fixes
Conflict Resolution
- Move/Sui Developer owns on-chain correctness. Security Engineer can block on exploitability.
- Economy Designer flags incentive risks but does not override contract safety.
Anti-Drift Rules
- Invariants are non-negotiable. Do not weaken invariant protection for convenience.
- Do not expand into off-chain architecture unless the contract boundary depends on it.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 11d ago First seen · 53 lines · 37 tokens per session scan A da1ba52e751c
team-move-team is a skill published in the GitHub repository saemihemma/lead-producer-oss (2 stars, last pushed 7d ago), licensed MIT. It adds 37 tokens to every session and 444 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
code-changes
Orchestration workflow for any task that ends in code changes: issue analysis, pull request review, feature implementation, bug fixes, refactors, or fleshing out an idea. MUST be invoked at the start of such a task, before reading or writing any code. Defines how to analyze first, gate on user approval, plan, pick the…
spec-to-code-compliance
Verifies code implements exactly what documentation specifies for blockchain audits. Use when comparing code against whitepapers, finding gaps between specs and implementation, or performing compliance checks for protocol implementations.
fork-choice-audit
L1 trigger - audits fork-choice rule implementation (LMD-GHOST, Tendermint locking, Nakamoto longest-chain) for equivocation handling, slot-vs-block reasoning, duplicate block handling, and chain reorg correctness.
etherscan-contract-review
Review and explain verified deployed EVM smart contracts from a contract address and chain. Use when a user asks to break down what a Solidity contract does, map its architecture and source files, identify user/admin flows, proxy or implementation roles, asset movement, privileged controls, events, state variables, or…
triage-nda
Ten-minute NDA triage — classifies an incoming NDA as GREEN (sign under standard delegation), YELLOW (targeted fixes, listed), or RED (full review). Screens mutuality, term and survival, definition breadth, embedded non-solicits or non-competes, missing standard carve-outs, residuals clauses, and IP assignment…
flounder
Operates Flounder, an autonomous white-hat security auditor. Use when a user asks for a security audit, bug-bounty review, vulnerability investigation, or exploit proof for a public-source or authorized repository, source tree, package, smart contract, Solidity/EVM project, ZK or proof-system code, deployed address…