Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add thomast8/codex-claude-design-plugin --skill claude-designgit clone --depth 1 https://github.com/thomast8/codex-claude-design-pluginWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/thomast8/codex-claude-design-plugin/claude-design)<a href="https://agentmods.dev/skills/thomast8/codex-claude-design-plugin/claude-design"><img src="https://agentmods.dev/badge/skills/thomast8/codex-claude-design-plugin/claude-design.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00077 | $0.02160 |
| Opus 5 | $0.00039 | $0.01080 |
| Sonnet 5 | $0.00015 | $0.00432 |
| Haiku 4.5 | $0.00008 | $0.00216 |
Grade A, and why
claude-design scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 7d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 190 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Claude Design
Use the claude-design MCP tools when the user asks to work with Claude
Design projects, designs, prototypes, imports, or exports.
Connector routing
- When the user explicitly names Claude Design, its plugin, or its MCP, keep the
entire request on the
claude-designconnector. Words such as "open", "retrieve", "read", "download", and "export" describe the intended connector action; they are not instructions to switch to a browser. - Use browser tooling only when the user explicitly asks for it or when
render_previewreturns a short-livedserve_urlneeded for visual QA. Browser inspection supplements the connector and does not replace it. - If the connector cannot complete a requested operation after inspecting its tools, report that exact limitation before offering another route. Never silently switch surfaces.
Design context routing
Before creating or materially redesigning a deliverable, decide whether design system context applies:
- Use a design system when the user requests one or the project has one bound.
- When extending an existing branded product, inspect the project, linked resources, and available design systems for established context. Ask for context only when it cannot be found.
- When no design system or existing brand context is relevant, skip the reuse workflow below. Do not add design-system ceremony or imply compliance.
Call get_claude_design_prompt before every write. Pass both project_id and
design_system_id when using a bound or selected system. For polished product
screens, mockups, or prototypes, also call read_design_skill with
hifi-design before planning the files. Use frontend-design only when no
existing system or brand governs the work.
Native Claude Design handoff
When the user wants Claude inside Claude Design to perform the design work, prefer a supported Claude agent client using the Design MCP over having Codex perform the visual generation itself.
- Inspect the target project and applicable design context. Prepare a self-contained execution brief with the goal, audience, project ID, relevant files, reuse manifest, constraints, acceptance criteria, and QA expectations.
- Inspect the available MCP tools for a prompt-submission or agent-run tool. Use one only when its result confirms that Claude accepted the turn. Do not infer this capability from a generic Claude API or an undocumented web route.
- When no run tool exists, check for Claude Code with
command -v claudeandclaude auth status. Do not start or automate login without the user. - When Claude Code is authenticated, create a task-specific temporary MCP
configuration that runs this plugin's
claude-design.mjs serverbridge for the selected local account. Put no credentials in that file. Run the brief non-interactively withclaude -p,--mcp-config, and--strict-mcp-config; restrict allowed tools and permissions to the required Claude Design operations. Capture the session result, then independently verify project source and previews through this connector.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 7d ago First seen · 190 lines · 77 tokens per session scan A 500585d6500f
claude-design is a skill published in the GitHub repository thomast8/codex-claude-design-plugin (0 stars, last pushed 28d ago), licensed MIT. It adds 77 tokens to every session and 2,160 once invoked, about $0.0004 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
webgl-holographic-foil
A self-contained WebGL2 hero: thin-film interference over a crushed-foil surface whose palette shifts with the viewing angle; move the cursor to tilt the film.
html-ppt-hermes-cyber-terminal
OpenDesign + BYOK: choosing and wiring your own model, hands-on — cost, quality, and the routing decision. Built as a decision-grade AI literacy deck for engineers, IT, applied-AI teams.
html-ppt-taste-brutalist
16:9 HTML deck in tactical-telemetry / CRT-terminal taste. Deactivated-CRT charcoal slides, white-phosphor monospace, hazard-red accent, scanline overlay, ASCII syntax, density over decoration. Distilled from Leonxlnx/taste-skill brutalist-skill (Tactical Telemetry mode).
accessibility
Consolidated accessibility skill entrypoint for WCAG 2.2, ARIA Authoring Practices, cognitive accessibility, Section 508, EN 301 549, design intent verification, and the Accessibility Planner workflow.
make-resume
A Chinese-language tool for creating editable HTML resumes that can be changed in a browser and printed to PDF. It uses available resume templates when they are installed and otherwise provides a simpler fallback.
prototype-web
A clickable, high-fidelity web product prototype with navigation, a hero section, feature cards, steps, social proof, and optional pricing. It is designed to resemble a finished landing page while remaining a prototype.