Borrowing it
Nothing to install: this file belongs to sageox/agent-toolkit. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/sageox/agent-toolkit/main/.agents/skills/ox-pr-header/SKILL.mdgit clone --depth 1 https://github.com/sageox/agent-toolkitWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/sageox/agent-toolkit/ox-pr-header)<a href="https://agentmods.dev/skills/sageox/agent-toolkit/ox-pr-header"><img src="https://agentmods.dev/badge/skills/sageox/agent-toolkit/ox-pr-header/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/sageox/agent-toolkit/ox-pr-header"><img src="https://agentmods.dev/badge/skills/sageox/agent-toolkit/ox-pr-header.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00140 | $0.01039 |
| Opus 5 | $0.00070 | $0.00519 |
| Sonnet 5 | $0.00028 | $0.00208 |
| Haiku 4.5 | $0.00014 | $0.00104 |
Grade A, and why
ox-pr-header scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
94% identical to ox-cli-pr-header — 98 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
How it starts
The opening of the file, as written. The whole thing — 81 lines — stays where its author put it; the contents beside it link to each section on GitHub.
You do not hand-write this markup — ox pr header does. A GitHub PR body is
sanitized harder than repo markdown (no CSS, no styled tables); the line is built
from the exact primitives that survive (<picture> wordmark, <a> links, <sub>
caption). Hand-authoring it is how it silently renders as a bordered table or a
vanished wordmark. Run the command and paste its output verbatim.
When
At PR-creation time, only when SageOx-delivered team context measurably shaped the
work (your contribution score is not none). If SageOx did not shape it, omit both
the header and the SageOx-Session: trailer — publishing SageOx credit for work it
did not influence is the fabrication #809 guards against. When it did shape the work,
the header is the top of the body and the SageOx-Session: trailer stays the
last line (they serve different readers: the header a human, the trailer the
reconciler).
How
-
Gather what the PR credits (you already hold this from your session):
- the plan ids you saved (
pln_…), if any; - the enrichment counts from
ox plan enrich(related sessions / concurrent edits), if any.
- the plan ids you saved (
-
Run the command — the current session is auto-linked; add plans + enrichment:
ox pr header \ --plan pln_4d8e2f --plan pln_1a6b9c \ --prior-art 2 --collisions 1--session <url|ses_id>adds/overrides sessions (default: the live session).--no-statdrops the whisper.--style text|image|autofollowsox config(pr_visuals.style) by default.--jsonreturns the markup plus resolved inputs for verification. -
Paste the output as the FIRST lines of the PR body, above your summary. Write the body via a file, never a heredoc — a heredoc mangles the markup:
ox pr header > body.md printf '\n' >> body.md cat description.md >> body.md # your written summary # ...keep the SageOx-Session: trailer as the last line... gh pr create --body-file body.md
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 81 lines · 140 tokens per session scan A 47113031b1f2
ox-pr-header is a skill published in the GitHub repository sageox/agent-toolkit (10 stars, last pushed today), licensed Apache-2.0. It adds 140 tokens to every session and 1,039 once invoked, about $0.0007 per session on Opus 5. A static security scan graded it A with 0 findings. It is 94% identical to ox-cli-pr-header, differing in 98 lines, and is treated as a copy.
Other skills, from other repositories
fork-fleet
Fork divergence monitor - tracks where the fleet's active forks diverge in CODE (unique commits, new/modified skills) and CONFIG (enable/var/model/schedule vs upstream), gated on real change.
github-monitor
Watch your GitHub repos across four views - a combined urgency monitor (stale PRs, new issues, releases), a new-issue triage queue, a release upgrade digest, or your own opened-PR tracker.
pr-review
Review open PRs two ways - default is a per-PR deep review with severity-tagged findings, inline comments, and a verdict; --survey runs a risk-tiered triage digest of what's safe to merge first.
aeon-update
Pull framework updates from the upstream Aeon repo into this instance - 3-way merges canon's new commits into a PR, never clobbering operator config.
pack-submit
Package one of this agent's own skills as a standalone community pack and submit it to the aeon registry as a PR.
shiplog
Recap of everything shipped since the last run - cross-repo PRs, security fixes, star deltas, and X traction, synthesized into a digest article and a ready-to-post shiplog in your voice.