ai-inventory

ai-inventory is a skill for Claude Code from uk-agents/uk-legal-plugins. It costs 121 tokens per session (3,262 once invoked), scanned A, a copy of ai-inventory, Apache-2.0.

A tool for keeping an inventory of AI systems and assessing each system's regulatory role, risk level, and relevant UK or EU obligations.

In plain words
What is it for?
Adding and reviewing AI systems, recording whether they are provided, deployed, or consumed, and tracking UK and EU regulatory considerations.
Why use it?
It prevents different AI systems in the same organisation from being treated as if they had identical legal responsibilities.

Skill for Claude Code

Written for Claude Code: argument-hint in frontmatter. Also seen: reads .claude/ paths; mentions CLAUDE.md.

Part of the ai-governance-legal-uk plugin — 10 skills, 5 MCP servers shipped together

Good fit Adding and reviewing AI systems, recording whether they are provided, deployed, or consumed, and tracking UK and EU regulatory considerations.

Compare 6 skills from other repositories ↓
Install with agentmods
npx agentmods add skills/uk-agents/uk-legal-plugins/ai-inventory
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Any agent
npx skills add uk-agents/uk-legal-plugins --skill ai-inventory
Clone the repo
git clone --depth 1 https://github.com/uk-agents/uk-legal-plugins

Made for: Claude Code.

Or install ai-governance-legal-uk, the plugin that ships this one along with the rest of its 10 skills, 5 MCP servers.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for ai-inventory

README.md
[![agentmods](https://agentmods.dev/badge/skills/uk-agents/uk-legal-plugins/ai-inventory/github.svg)](https://agentmods.dev/skills/uk-agents/uk-legal-plugins/ai-inventory)
Your own site
<a href="https://agentmods.dev/skills/uk-agents/uk-legal-plugins/ai-inventory"><img src="https://agentmods.dev/badge/skills/uk-agents/uk-legal-plugins/ai-inventory/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for ai-inventory

Your own site · 80×15
<a href="https://agentmods.dev/skills/uk-agents/uk-legal-plugins/ai-inventory"><img src="https://agentmods.dev/badge/skills/uk-agents/uk-legal-plugins/ai-inventory.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 121 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 3,262 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin 86% copy Near-identical to another mod in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00121 $0.03262
Opus 5 $0.00060 $0.01631
Sonnet 5 $0.00024 $0.00652
Haiku 4.5 $0.00012 $0.00326

Measured 11d ago against content hash 5791523d8b2d, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-11, from the pricing page.

Security

Grade A, and why

ai-inventory scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 11d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

Origin

This is a copy

86% identical to ai-inventory — 265 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.

ai-governance-legal-uk/skills/ai-inventory/SKILL.md · 219 lines

How it starts

The opening of the file, as written. The whole thing — 219 lines — stays where its author put it; the contents beside it link to each section on GitHub.

/ai-inventory

When this runs

The user wants to manage their AI system inventory. The core idea the skill exists to enforce: role, regulatory flags, and obligations are per-system, not per-company. A single organisation can be a deployer of System A (internal productivity), a provider of System B (AI product sold to EU customers), and a consumer of System C (third-party SaaS with embedded AI). Each combination triggers a different set of obligations under UK law and, where EU nexus exists, the EU AI Act. The inventory exists so those assessments are tracked where you can find them — the obligations themselves are derived in conversation, not from a table.

What to do

  1. Read the config. Read ~/.claude/plugins/config/uk-legal-plugins/ai-governance-legal-uk/CLAUDE.md. If it doesn't exist or still has [PLACEHOLDER] markers, direct the user to /ai-governance-legal-uk:cold-start-interview first.

  2. Read the inventory. Inventory lives at ~/.claude/plugins/config/uk-legal-plugins/ai-governance-legal-uk/ai-systems.yaml. If it doesn't exist, create it with an empty systems: list when the first add runs.

  3. Dispatch on the argument:

    • No argument, or list → show the inventory table (see List below).
    • add → run the Add flow.
    • edit <id> → show the current record, ask what to change, update one field, confirm, write.
    • classify <id> → run the Classification walk-through on an existing record, updating role, tier, uk_flags, and their bases.
    • show <id> → show the full record.
  4. On list, offer the dashboard: "Want the full dashboard? Filter by status / tier / EU nexus / UK regulatory flags / owner. Say the word."

  5. Close every action with a hook into the lawyer's work. After any write, say:

    Recorded. When you're ready to walk through obligations for this system, just ask — I'll do it in-conversation and flag where the mapping needs your verification. I don't derive obligations from a table because the mapping is complex and changing.

Read the full file on GitHub · 219 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 11d ago First seen · 219 lines · 121 tokens per session scan A 5791523d8b2d

Subscribe to this mod's changes

ai-inventory is a skill published in the GitHub repository uk-agents/uk-legal-plugins (9 stars, last pushed 3mo ago), licensed Apache-2.0. It adds 121 tokens to every session and 3,262 once invoked, about $0.0006 per session on Opus 5. A static security scan graded it A with 0 findings. It is 86% identical to ai-inventory, differing in 265 lines, and is treated as a copy.

Related

Other skills, from other repositories

pgvector-semantic-search

Use this skill for setting up vector similarity search with pgvector for AI/ML embeddings, RAG applications, or semantic search. Trigger when user asks to: Store or search vector embeddings in PostgreSQL Set up semantic search, similarity search, or nearest neighbor search Create HNSW or IVFFlat indexes for vectors…

timescale/pg-aiguide · 190 tokens

postgres-hybrid-text-search

Use this skill to implement hybrid search combining BM25 keyword search with semantic vector search using Reciprocal Rank Fusion (RRF). Trigger when user asks to: Combine keyword and semantic search Implement hybrid search or multi-modal retrieval Use BM25/pgtextsearch with pgvector together Implement RRF (Reciprocal…

timescale/pg-aiguide · 162 tokens

agentic-patterns

Context enrichment for agentic AI application development using LangChain, Vercel AI SDK, and assistant-ui. Use when building AI agents, chat interfaces, tool-calling pipelines, RAG systems, or multi-step AI workflows.

rsmdt/the-startup · 51 tokens

brand-safety-compliance

Scans outbound copy or creator-submitted content for 6 compliance red lines — medical/efficacy, exaggeration/absolute, beauty-permanence, financial/income, fake-scarcity, fake-rapport — and returns a block/warn verdict with fix suggestions. Use when the user asks to check, scan, review, or vet copy before sending, or…

crevideo/crevideo-reach · 139 tokens

model-cli-gemini

Use when invoking Google's Gemini directly through the shared Antigravity, Gemini CLI, or agent fallback chain.

tony/skills · 27 tokens

prompt-cookbook

Build a prompt cookbook for one company's actual vertical and roles rather than generic examples. Each recipe names the job it does, who runs it, the prompt itself, what good output looks like, and how to tell when it went wrong. Written for people who have never written a prompt and will not read documentation about…

enalbenerraw/blanewarrene · 69 tokens