Getting it into your agent
There is no command for this one: it runs only inside a plugin, and the catalogue could not identify which plugin ships it. The source is linked below.
Wrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/sutchan/agent-skills-hub/manage-skills)<a href="https://agentmods.dev/skills/sutchan/agent-skills-hub/manage-skills"><img src="https://agentmods.dev/badge/skills/sutchan/agent-skills-hub/manage-skills/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/sutchan/agent-skills-hub/manage-skills"><img src="https://agentmods.dev/badge/skills/sutchan/agent-skills-hub/manage-skills.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00108 | $0.04396 |
| Opus 5 | $0.00054 | $0.02198 |
| Sonnet 5 | $0.00022 | $0.00879 |
| Haiku 4.5 | $0.00011 | $0.00440 |
Grade A, and why
manage-skills scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
100% identical to manage-skills — 0 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
How it starts
The opening of the file, as written. The whole thing — 355 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Before doing anything
-
Resolve the CLI first, then use the path it prints. Run this once (POSIX shell):
D="$HOME/.skills-manager/bin" B="$D/skills-manager-cli"; [ -e "$B" ] || B="$B.exe" # .exe on Windows if [ -s "$D/.version" ] && [ -x "$B" ]; then echo "$B" elif [ -s "$D/.version" ] || [ -e "$B" ]; then echo BRIDGE_BROKEN else P="$(command -v skills-manager-cli 2>/dev/null || true)" [ -x "$P" ] && echo "$P" fiSubstitute the printed path into every command below, wherever the examples write
$SM. Do not carry$SMas a shell variable: each command you run is a new shell, so an assignment made here is gone by the next one.The three outcomes:
- A path under
~/.skills-manager/bin— the desktop app published this copy, and the.versionstamp appears only after it has been verified, so it always matches the app the user is running. Use it. BRIDGE_BROKEN— something the app left behind is here but does not add up: an unstamped binary, or a stamp with no binary beside it. Either is what a copy that failed half-way leaves. Stop. Do not go looking for another CLI: that binary may predate a safety fix, and the machine has a desktop app whose version nothing here can match. Ask the user to open the Skills Manager app once, which republishes it.- A path from PATH — nothing was ever published here, so there is no stale copy to worry about: this is a CLI-only machine (a server install, a standalone download, a hand-built binary). Use it, but note it can be older than a desktop app if one is also installed.
If nothing is printed at all, this skill doesn't apply — fall back to find-skills, or tell the user to install Skills Manager.
- A path under
-
Always pass
--jsonwhen you parse output yourself. Pretty-printed output is for the user; JSON is for you. Errors includeok=false, a stablecode, andmessageon stderr with a non-zero exit code.
"$SM" --json skills list
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 355 lines · 108 tokens per session scan A 3e93398da4af
manage-skills is a skill published in the GitHub repository sutchan/Agent-Skills-Hub (2 stars, last pushed yesterday), licensed MIT. It adds 108 tokens to every session and 4,396 once invoked, about $0.0005 per session on Opus 5. A static security scan graded it A with 0 findings. It is 100% identical to manage-skills, differing in 0 lines, and is treated as a copy.
Other skills, from other repositories
anti-slop
Comprehensive Anti-AI Slop enforcement guide. Updated to include token efficiency and code gardening / Panduan penegakan anti-AI slop komprehensif. Diperbarui dengan efisiensi token dan perawatan kode.
session-memory-manager
Manages the entire session lifecycle: from context loading (PRD, Tech Stack) at startup, to maintaining project memory during active sessions, and creating ultra-compact checkpoints for handoff. / Mengelola siklus hidup sesi: dari pemuatan konteks awal, pemeliharaan memori proyek, hingga pembuatan checkpoint ringkas…
proactive-background-watcher
Grants the AI the ability to act proactively using native cron/timer scheduling. The agent can monitor systems, poll APIs, or watch logs in the background and self-trigger without waiting for user prompts.
show-me-your-work
Keep a reviewable decision trail for long-running or unattended work: a TSV log with one row per decision (what, why, evidence, result). Local by default; commit it when a reviewer needs the trail to trust the result. Use for /show-me-your-work, autonomous or multi-phase runs, or work a human reviews after stepping…
prompt-optimizer
Analyze a draft prompt, diagnose gaps, match it to relevant skills already in this catalog, and output a ready-to-paste improved prompt — advisory only, never executes the task itself. Use when the user says "optimize this prompt", "improve my prompt", "how should I prompt for X", or pastes a draft prompt asking for…
strategic-compact
Use when deciding whether to manually compact conversation context now versus later — at a phase boundary (research done, plan written, milestone shipped), before switching to an unrelated task, or when responses feel slower/less coherent from context pressure. Trigger phrases include "should I compact now", "context…