Getting it into your agent
It runs from inside its repository, so the clone comes first — what it calls does not travel with the file alone.
git clone --depth 1 https://github.com/twells89/sigma-migration-skillsnpx agentmods add skills/twells89/sigma-migration-skills/domo-to-sigmaWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/twells89/sigma-migration-skills/domo-to-sigma)<a href="https://agentmods.dev/skills/twells89/sigma-migration-skills/domo-to-sigma"><img src="https://agentmods.dev/badge/skills/twells89/sigma-migration-skills/domo-to-sigma/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/twells89/sigma-migration-skills/domo-to-sigma"><img src="https://agentmods.dev/badge/skills/twells89/sigma-migration-skills/domo-to-sigma.svg" alt="Reviewed on agentmods" width="80" height="20"></a>- NVIDIA SkillSpector warn
SkillSpector: 4 findings, up to high
These are SkillSpector’s own severities. On a checked sample its high-severity flags on skills were ~96% false positives — a documented command, a public API, a “never do X” rule — so we show them as a caution to read, not a verdict. Why →
- high Privilege Escalation · line 39 Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.Fix: Remove references to credential paths. Use environment variables or secrets managers. For docs, use placeholder paths (e.g., /path/to/config). Never load .env or token files in production code paths.
- high Privilege Escalation · line 209 Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.Fix: Remove references to credential paths. Use environment variables or secrets managers. For docs, use placeholder paths (e.g., /path/to/config). Never load .env or token files in production code paths.
- high Privilege Escalation · line 214 Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.Fix: Remove references to credential paths. Use environment variables or secrets managers. For docs, use placeholder paths (e.g., /path/to/config). Never load .env or token files in production code paths.
- high Privilege Escalation · line 209 Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.Fix: Remove references to credential paths. Use environment variables or secrets managers. For docs, use placeholder paths (e.g., /path/to/config). Never load .env or token files in production code paths.
What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00122 | $0.08799 |
| Opus 5 | $0.00061 | $0.04399 |
| Sonnet 5 | $0.00024 | $0.01760 |
| Haiku 4.5 | $0.00012 | $0.00880 |
Grade A, and why
domo-to-sigma scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 587 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Domo → Sigma Conversion
Status: GOLD — live end-to-end validated (2026-08-10). The gold acceptance run migrated a purpose-built 16-card Domo executive dashboard to a live Sigma workbook and passed 28/28 strict value-parity checks (100%) with zero exclusions, a fresh context-free 6/6 visual PASS, clean live column/layout/ control lint, and
assert-phase6-ran.rbexit 0 / GREEN with an empty degradation ledger (no scope cuts, waivers, or residuals). The earlier Tier-A validation remains part of the evidence base: 48 cards / 24 chart types / 81 Beast Modes, plus the purpose-built cards, against a real Domo instance. It answered all three former open questions and disproved several doc-inferred shapes inrefs/connection.md— card enumeration, the summary-number path, and page-layout geometry were all wrong. Readrefs/live-validation-2026-07-30.mdbefore trusting any private-API shape; where it andrefs/connection.mddisagree, live-validation wins. The public OAuth path is documented and stable. Gold proves the converter's live baseline; each customer migration must still run its own Phase-6 value, visual, layout, and security gates rather than inheriting the fixture's result. Compliance: before a production run, confirm with the customer's Domo account team that programmatic extraction for migration is acceptable — seerefs/connection.md"Compliance note".
Read ALL of the following before replying or taking any action:
refs/connection.md— Domo auth (OAuth public API + developer access token for private API)refs/beast-mode-to-sigma.md— Beast Mode (MySQL SQL) → Sigma formula mappingrefs/card-to-element.md— Domo card → Sigma element map. Read before Phase 5. Rule 0 (Summary Number → KPI, never a table) is the #1 fidelity fix; also covers filtering + no-liberties discipline.
Phase-scoped (read at its phase, not upfront): at Phase 5e, read
refs/layout-visual-qa.md — the visual QA gate — before grading the layout.
General workbook-spec and data-model-spec authoring idioms (grid layout
mechanics, chart/control shapes, DM column/relationship shapes) are deferred to
the sigma-workbooks and sigma-data-models skills — this skill covers
only what's Domo-specific: extraction, Beast Mode translation, and the
card→element map.
What ships with it
60 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
- converter/PROVENANCE.json 533 B
- converter/sql.mjs 55 KB runs code
- plugins/domo-visuals/gauge.html 2.7 KB
- plugins/domo-visuals/index.html 5.5 KB
- plugins/domo-visuals/react.production.min.js 10 KB runs code
- plugins/domo-visuals/sigma-plugin-sdk.umd.js 7.0 KB runs code
- QUICKSTART.md 112 B
- refs/app-recommendation-signals.md 3.1 KB
- refs/beast-mode-to-sigma.md 13 KB
- refs/blind-grader-brief.md 2.0 KB
- refs/card-to-element.md 31 KB
- refs/catalogs/viz-kind.json 4.7 KB
- refs/catalogs/workbook-feature.json 5.1 KB
- refs/connection.md 16 KB
- refs/domo-coverage.md 8.2 KB
- refs/environment.md 5.7 KB
- refs/layout-visual-qa.md 19 KB
- refs/live-validation-2026-07-30.md 39 KB
- refs/modeling-strategy.md 6.7 KB
- refs/page-layout-v4.md 4.4 KB
- refs/phase-e-enhance.md 12 KB
- refs/source-anchors.md 12 KB
- refs/visual-similarity.md 5.0 KB
- refs/workbook-code-release-gaps.md 2.7 KB
- schemas/app-plan.schema.json 3.0 KB
- scripts/assert-doctor-ran.rb 4.5 KB runs code
- scripts/assert-phase6-ran.rb 254 KB runs code
- scripts/bootstrap.ps1 41 KB runs code
- scripts/bootstrap.sh 44 KB runs code
- scripts/build-coverage-census.rb 6.4 KB runs code
- scripts/build-dashboard-layout.rb 56 KB runs code
- scripts/build-dm.rb 24 KB runs code
- scripts/build-domo-layout.rb 60 KB runs code
- scripts/build-parity-exclusions.rb 9.3 KB runs code
- scripts/build-parity-oracle.rb 26 KB runs code
- scripts/build-parity-plan.rb 5.3 KB runs code
- scripts/build-workbook-spec.rb 20 KB runs code
- scripts/build-workbook.rb 118 KB runs code
- scripts/cleanup-orphan-workbooks.rb 11 KB runs code
- scripts/collect-parity-actuals.rb 8.6 KB runs code
- scripts/collect-parity-expected.rb 12 KB runs code
- scripts/convert-beast-modes.rb 35 KB runs code
- scripts/derive-presentation-overrides.rb 12 KB runs code
- scripts/doctor.ps1 24 KB runs code
- scripts/doctor.sh 34 KB runs code
- scripts/domo-capture-visuals.rb 15 KB runs code
- scripts/domo-discover.rb 49 KB runs code
- scripts/enhance-app-plan.rb 8.1 KB runs code
- scripts/enhance-apply.rb 48 KB runs code
- scripts/enhance-scan.rb 38 KB runs code
- scripts/enhance-select.rb 5.3 KB runs code
- scripts/escalate-gap.py 9.8 KB runs code
- scripts/find-or-pick-dm.rb 29 KB runs code
- scripts/gen-coverage-matrix.py 5.7 KB runs code
- scripts/get_token.py 8.2 KB runs code
- scripts/get-domo-token.sh 1.3 KB runs code
- scripts/get-token.sh 4.4 KB runs code
- scripts/intake.rb 21 KB runs code
- scripts/lib/anchor_values.rb 5.6 KB runs code
- scripts/lib/blind_grade.rb 8.8 KB runs code
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 8d ago Changed · +20 lines 4e16968da992
- 12d ago First seen · 567 lines · 122 tokens per session scan A 7de1dc511b39
domo-to-sigma is a skill published in the GitHub repository twells89/sigma-migration-skills (16 stars, last pushed yesterday), licensed MIT. It adds 122 tokens to every session and 8,799 once invoked, about $0.0006 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
systematic-debugging
Use when encountering any bug, test failure, or unexpected behavior, before proposing fixes.
local-ai-agents
Build local-first AI agents that run entirely on a developer workstation with Microsoft Foundry Local and Qwen function-calling models. Covers Small Language Models (SLMs), the OpenAI-compatible local endpoint, sandboxed local tools, local RAG with Chroma, local MCP servers, hybrid cloud/local routing, and the…
next-cache-components-adoption
Turn on Cache Components in a Next.js app and resolve the blocking routes it surfaces. Use when the user wants to enable, adopt, or migrate to Cache Components, flip the cacheComponents flag, work through a flood of blocking-prerender / instant validation errors, run the cache-components-instant-false codemod, or…
chat-pet-sprite-creation
Use when creating or changing VS Code chat pet sprite art, sprite sheets, state animations, eye treatments, Stable/Insiders variants, or pet transitions under src/vs/workbench/contrib/chat/browser/widget/media/chatPet.
cpu-profile-analysis
Analyze V8/Chrome CPU profiles (.cpuprofile) and DevTools trace files (Trace-.json). Use when: profiling performance, investigating slow functions, comparing code paths, finding bottlenecks, analyzing timeToRequest, understanding call trees from sampling profiler data, analyzing layout/paint/rendering, investigating…
insight-error-page
Write or audit an insight-kind error page for the Next.js dev overlay. Use when creating a new errors/ .mdx page, auditing an existing one, or checking that a page matches the framework fix cards. Covers page structure, title alignment, FixCard cards with Copy prompt button, code snippets, terminology verification…