Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add skills/stefanthecode/dotnet-ai-toolkit/minimal-api-endpoint-scaffoldernpx skills add StefanTheCode/dotnet-ai-toolkit --skill minimal-api-endpoint-scaffoldergit clone --depth 1 https://github.com/StefanTheCode/dotnet-ai-toolkitWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/stefanthecode/dotnet-ai-toolkit/minimal-api-endpoint-scaffolder)<a href="https://agentmods.dev/skills/stefanthecode/dotnet-ai-toolkit/minimal-api-endpoint-scaffolder"><img src="https://agentmods.dev/badge/skills/stefanthecode/dotnet-ai-toolkit/minimal-api-endpoint-scaffolder.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00106 | $0.00662 |
| Opus 5 | $0.00053 | $0.00331 |
| Sonnet 5 | $0.00021 | $0.00132 |
| Haiku 4.5 | $0.00011 | $0.00066 |
Grade A, and why
minimal-api-endpoint-scaffolder scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 60 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Minimal API Endpoint Scaffolder
Generate clean ASP.NET Core Minimal API endpoints — one feature per endpoint (REPR), validated, with TypedResults, grouped routes, and OpenAPI metadata.
Input — point it at your project
Works on a target: a file, folder, project/solution, or GitHub URL. Read one existing endpoint and match its style (Carter module? plain MapGroup? MediatR dispatch?). Detect with: grep -rn "MapGet\|MapPost\|MapGroup\|ICarterModule\|: ControllerBase" --include=*.cs <target>.
Endpoint (REPR + TypedResults)
public static class CreateOrderEndpoint
{
public static RouteGroupBuilder MapCreateOrder(this RouteGroupBuilder group)
{
group.MapPost("/", Handle)
.WithName("CreateOrder")
.WithSummary("Creates an order")
.Produces<OrderResponse>(StatusCodes.Status201Created)
.ProducesValidationProblem();
return group;
}
public record Request(Guid CustomerId, List<OrderLine> Lines);
public record OrderResponse(Guid Id);
private static async Task<Results<Created<OrderResponse>, ValidationProblem>> Handle(
Request req, IValidator<Request> validator, ISender sender, CancellationToken ct)
{
var v = await validator.ValidateAsync(req, ct);
if (!v.IsValid) return TypedResults.ValidationProblem(v.ToDictionary());
var id = await sender.Send(new CreateOrderCommand(req.CustomerId, req.Lines), ct);
return TypedResults.Created($"/orders/{id}", new OrderResponse(id));
}
}
Route grouping (Program.cs)
var orders = app.MapGroup("/orders").WithTags("Orders").RequireAuthorization();
orders.MapCreateOrder();
orders.MapGetOrderById();
Principles
- One endpoint per feature — don't pile unrelated routes into one class.
TypedResultsoverResults— they give you compile-time response types and accurate OpenAPI.- Validate at the edge, return
ValidationProblem(RFC 7807), keep business rules in the handler/domain. - Group routes for shared prefix, tags, and auth instead of repeating per endpoint.
- Don't hand-roll what
MapGroup+ filters already do.
What ships with it
1 file beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 5d ago First seen · 60 lines · 106 tokens per session scan A 449c427a1478
minimal-api-endpoint-scaffolder is a skill published in the GitHub repository StefanTheCode/dotnet-ai-toolkit (19 stars, last pushed 27d ago), licensed MIT. It adds 106 tokens to every session and 662 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
sparc-methodology
SPARC (Specification, Pseudocode, Architecture, Refinement, Completion) comprehensive development methodology with multi-agent orchestration.
code-to-diagram
Analyze codebases and automatically generate architecture diagrams, flowcharts, and org charts. Uses AST parsing to map import dependencies for Python, JS/TS, Go, and Java, outputting Mermaid or SVG files. Triggered when users ask to visualize code architecture, understand dependencies, draw a flowchart, or create a…
architecture-diagram
Dark-themed SVG architecture/cloud/infra diagrams as HTML.
studio
Architecture Studio control plane — initialize or inspect a studio workspace, create and register projects, or route an architecture/AEC task to the right agent or skill. Use when the user runs /as:studio, asks to set up or open their studio, manage its projects, or describes a task without naming a skill.
csv-to-sif
Export a project's FF&E product-library CSV as dealer-system SIF. Use to produce a .sif schedule; use sif-to-csv for the reverse direction.
modular-skills
Build composable skill modules with hub-and-spoke loading. Use when token budget is tight.