run-eventql-query

A procedure for running EventQL queries against EventSourcingDB, a database that stores changes as events.

In plain words
What is it for?
Use it to retrieve events, find matching records, calculate summaries, or analyze event data.
Why use it?
It lets you search, filter, group, and inspect stored events without reading them one by one.

Skill for Claude CodeCodex

Part of the esdb plugin — 11 skills shipped together

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/thenativeweb/claude-plugins/run-eventql-query
Any agent
npx skills add thenativeweb/claude-plugins --skill run-eventql-query
Clone the repo
git clone --depth 1 https://github.com/thenativeweb/claude-plugins

Made for: Claude Code, Codex.

Or install esdb, the plugin that ships this one along with the rest of its 11 skills.

Per session 40 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 548 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 1 finding. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00040 $0.00548
Opus 5 $0.00020 $0.00274
Sonnet 5 $0.00008 $0.00110
Haiku 4.5 $0.00004 $0.00055

Measured 3d ago against content hash 19558c55c334, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

run-eventql-query scanned grade A with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 3d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Makes network callslowCapability

Not a fault in itself. Listed so you know the mod talks to something, and to what.

curl -s --no-buffer -X POST \
plugins/esdb/skills/run-eventql-query/SKILL.md · 65 lines

What it actually says

Run EventQL Query

Run an EventQL query against an EventSourcingDB instance.

Shared Instructions

First read ${CLAUDE_PLUGIN_ROOT}/shared/common.md. It explains how to determine the base URL and API token, how to handle NDJSON responses, and which conventions apply. Follow it throughout this skill.

Also read ${CLAUDE_PLUGIN_ROOT}/shared/cloudevents.md when query results contain full events. It explains how events are structured, including the EventSourcingDB-specific metadata fields.

Request

This endpoint returns NDJSON:

curl -s --no-buffer -X POST \
  -H "authorization: Bearer ${ESDB_API_TOKEN}" \
  -H "content-type: application/json" \
  -d '<REQUEST_BODY>' \
  "${ESDB_URL:-http://localhost:3000}/api/v1/run-eventql-query" \
  | grep -v '"type":"heartbeat"'

Request Body

{
  "query": "<EventQL query>"
}

Example

curl -s --no-buffer -X POST \
  -H "authorization: Bearer ${ESDB_API_TOKEN}" \
  -H "content-type: application/json" \
  -d "{\"query\": \"FROM e IN events PROJECT INTO e\"}" \
  "${ESDB_URL:-http://localhost:3000}/api/v1/run-eventql-query" \
  | grep -v '"type":"heartbeat"'

Common EventQL Patterns

  • All events: FROM e IN events PROJECT INTO e
  • Filter by type: FROM e IN events WHERE e.type == "io.eventsourcingdb.library.book-acquired" PROJECT INTO e
  • Filter by subject: FROM e IN events WHERE e.subject == "/books/42" PROJECT INTO e
  • Count: FROM e IN events WHERE e.type == "io.eventsourcingdb.library.book-borrowed" PROJECT INTO { total: COUNT() }
  • Group by type: FROM e IN events GROUP BY e.type PROJECT INTO { type: UNIQUE(e.type), count: COUNT() }
  • Latest N events: FROM e IN events ORDER BY e.time DESC TOP 10 PROJECT INTO e

Response

NDJSON stream with one line per result row:

{"type":"row","payload":{...}}
Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 3d ago First seen · 65 lines · 40 tokens per session scan A 19558c55c334

Subscribe to this mod's changes

run-eventql-query is a skill published in the GitHub repository thenativeweb/claude-plugins (6 stars, last pushed 2mo ago), licensed MIT. It adds 40 tokens to every session and 548 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 1 finding (makes network calls). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other skills, from other repositories

prisma-upgrade-v7

Complete migration guide from Prisma ORM v6 to v7 covering all breaking changes. Use when upgrading Prisma versions, encountering v7 errors, or migrating existing projects. Triggers on "upgrade to prisma 7", "prisma 7 migration", "prisma-client generator", "driver adapter required".

nitrocloudofficial/nitrostack · 67 tokens

ddia-systems

Design data systems by understanding storage engines, replication, partitioning, transactions, and consistency models. Use when the user mentions "database choice", "which database should I use", "SQL or NoSQL", "replication lag", "partitioning strategy", "consistency vs availability", "stream processing", "ACID…

wondelai/skills · 138 tokens

sqlitecpp-update-sqlite

How to update the bundled SQLite3 amalgamation (sqlite3/sqlite3.c and sqlite3.h), the Meson wrap, README.md, and CHANGELOG.md. Use when upgrading SQLite, refreshing the vendored amalgamation, or bumping the sqlite3 wrap.

SRombauts/SQLiteCpp · 61 tokens

dsql

Build with Aurora DSQL — manage schemas, execute queries, handle migrations, diagnose query plans, diagnose cluster performance, load data, and develop applications with a serverless, distributed SQL database. Covers IAM auth, multi-tenant patterns, MySQL-to-DSQL and PostgreSQL-to-DSQL schema conversion, FK…

awslabs/agent-plugins · 227 tokens

mongodb-natural-language-querying

Generate read-only MongoDB queries (find) or aggregation pipelines using natural language, with collection schema context and sample documents. Use this skill whenever the user asks to write, create, or generate MongoDB queries, wants to filter/query/aggregate data in MongoDB, asks "how do I query...", needs help with…

mongodb/agent-skills · 162 tokens

sql-translate

Translate SQL queries between database dialects (Snowflake, BigQuery, PostgreSQL, MySQL, etc.).

AltimateAI/altimate-code · 26 tokens