asgeirtj/system_prompts_leaks
Read or triage email, clean up an inbox, draft or send messages, and check delivery.
Check email/username against HIBP v3 breach database. An agent skill from taracodlabs/aiden.
$ npx skills add taracodlabs/aiden --skill haveibeenpwned -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install taracodlabs/aiden haveibeenpwned --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/taracodlabs/aiden.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/haveibeenpwned .claude/skills/haveibeenpwned && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "haveibeenpwned" agent skill from https://github.com/taracodlabs/aiden/tree/main/skills/haveibeenpwned into .claude/skills/haveibeenpwned/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "haveibeenpwned", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/taracodlabs/aiden/tree/main/skills/haveibeenpwnedType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add taracodlabs/aiden --skill haveibeenpwned -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install taracodlabs/aiden haveibeenpwned --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/taracodlabs/aiden.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/haveibeenpwned .agents/skills/haveibeenpwned && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "haveibeenpwned" agent skill from https://github.com/taracodlabs/aiden/tree/main/skills/haveibeenpwned into .agents/skills/haveibeenpwned/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "haveibeenpwned", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add taracodlabs/aiden --skill haveibeenpwned -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install taracodlabs/aiden haveibeenpwned --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/taracodlabs/aiden.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/haveibeenpwned .cursor/skills/haveibeenpwned && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "haveibeenpwned" agent skill from https://github.com/taracodlabs/aiden/tree/main/skills/haveibeenpwned into .cursor/skills/haveibeenpwned/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "haveibeenpwned", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/taracodlabs/aiden.git --path skills/haveibeenpwned--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add taracodlabs/aiden --skill haveibeenpwned -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install taracodlabs/aiden haveibeenpwned --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/taracodlabs/aiden.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/haveibeenpwned .gemini/skills/haveibeenpwned && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "haveibeenpwned" agent skill from https://github.com/taracodlabs/aiden/tree/main/skills/haveibeenpwned into .gemini/skills/haveibeenpwned/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "haveibeenpwned", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install taracodlabs/aiden haveibeenpwnedInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add taracodlabs/aiden --skill haveibeenpwned -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/taracodlabs/aiden.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/haveibeenpwned .github/skills/haveibeenpwned && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "haveibeenpwned" agent skill from https://github.com/taracodlabs/aiden/tree/main/skills/haveibeenpwned into .github/skills/haveibeenpwned/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "haveibeenpwned", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add taracodlabs/aiden --skill haveibeenpwned -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install taracodlabs/aiden haveibeenpwned --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/taracodlabs/aiden.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/haveibeenpwned .opencode/skills/haveibeenpwned && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "haveibeenpwned" agent skill from https://github.com/taracodlabs/aiden/tree/main/skills/haveibeenpwned into .opencode/skills/haveibeenpwned/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "haveibeenpwned", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
haveibeenpwnedCheck email/username against HIBP v3 breach database. An agent skill from taracodlabs/aiden.
Haveibeenpwned is an agent skill from taracodlabs/aiden. Check email/username against HIBP v3 breach database
Its SKILL.md is about 880 tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files (for example `index.ts` and `skill.json`).
The repository describes itself as: Aiden — an autonomous AI agent and work engine built solo. It can operate your browser, terminal, files, apps, APIs, skills and tools, remember context, recover from failures… The licence is Apache-2.0.
Read from SKILL.md and the folder at commit 3704204. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships script files (TypeScript), which the agent can run.
From the folder's file list and the shell code blocks in SKILL.md.
Hosts in commands or code, which the agent is likely to contact:
haveibeenpwned.comFrom URLs in SKILL.md, links to its own repository left out.
Names these keys or tokens, usually read from environment variables:
HIBP_API_KEYFrom names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Haveibeenpwned loads about 879 tokens when it runs. Until then it costs about 17 tokens; SKILL.md has 245 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check noted patterns worth knowing about, such as sudo or a known installer.
**Requires:** `HIBP_API_KEY` in `.env` — $3.50/month subscription at haveibeenpwned.com/API/KeyAutomated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from taracodlabs/aiden at commit 3704204, republished under its Apache-2.0 licence (© taracodlabs). 245 words, ~879 tokens.
.claude/skills/haveibeenpwned/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.Look up whether an email address has appeared in any publicly known data breaches. Uses the Have I Been Pwned v3 API.
Requires: HIBP_API_KEY in .env — $3.50/month subscription at haveibeenpwned.com/API/Key
$email = "user@example.com"
$key = $env:HIBP_API_KEY
$url = "https://haveibeenpwned.com/api/v3/breachedaccount/$([Uri]::EscapeDataString($email))?truncateResponse=false"
$result = Invoke-RestMethod -Uri $url -Headers @{ "hibp-api-key" = $key } -ErrorAction SilentlyContinue
if ($null -eq $result) {
Write-Host "✅ $email was NOT found in any known data breaches."
} else {
Write-Host "⚠️ $email found in $($result.Count) breach(es):"
$result | ForEach-Object {
Write-Host " • $($_.Name) ($($_.BreachDate)) — $($_.DataClasses -join ', ')"
}
}$email = "user@example.com"
$key = $env:HIBP_API_KEY
$url = "https://haveibeenpwned.com/api/v3/pasteaccount/$([Uri]::EscapeDataString($email))"
$result = Invoke-RestMethod -Uri $url -Headers @{ "hibp-api-key" = $key } -ErrorAction SilentlyContinue
if ($null -eq $result) {
Write-Host "✅ No paste exposures found for $email"
} else {
Write-Host "Found in $($result.Count) paste(s):"
$result | Select-Object Source, Title, Date | Format-Table
}$key = $env:HIBP_API_KEY
$emails = Get-Content "emails.txt"
foreach ($email in $emails) {
Start-Sleep -Milliseconds 1600 # respect 1 req/1.5s rate limit
$url = "https://haveibeenpwned.com/api/v3/breachedaccount/$([Uri]::EscapeDataString($email))"
$res = Invoke-RestMethod -Uri $url -Headers @{ "hibp-api-key" = $key } -ErrorAction SilentlyContinue
$status = if ($res) { "PWNED ($($res.Count) breaches)" } else { "Clean" }
Write-Host "$email — $status"
}"Check if test@example.com has been in any breaches" → Run the single-email check above with that address.
"Was my email leaked in the Adobe breach?"
→ Run the single check; then filter: $result | Where-Object Name -eq 'Adobe'
"Check all emails in a file for breaches" → Use the bulk check snippet — it respects the 1.5s rate limit automatically.
Start-Sleep -Milliseconds 1600 in loopsInvoke-RestMethod -ErrorAction SilentlyContinue handles this silently/range/{hash5} endpoint — no API key requiredHIBP_API_KEY — subscribe at https://haveibeenpwned.com/API/Key ($3.50/month)© taracodlabs, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 2 other files in skills/haveibeenpwned of taracodlabs/aiden.
Open the folder on GitHubat commit 3704204
Haveibeenpwned next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Haveibeenpwned this skilltaracodlabs/aiden | 852 | — | ~879 | Automated safety check: Notes | Apache-2.0 | |
| Emailasgeirtj/system_prompts_leaks | 69k | — | ~3.5k | Automated safety check: Pass | CC0-1.0 | |
| Emailscoreyhaines31/marketingskills | 54k | 1 repos | ~2.8k | Automated safety check: Pass | MIT | |
| Mailtrap Email Integrationaffaan-m/ECC | 277k | 1 repos | ~955 | Automated safety check: Pass | MIT | |
| Email Marketing Biblesickn33/agentic-awesome-skills | 47k | — | ~8.7k | Automated safety check: Pass | MIT | |
| Email Systemsdavila7/claude-code-templates | 33k | 2 repos | ~548 | Automated safety check: Pass | MIT |
asgeirtj/system_prompts_leaks
Read or triage email, clean up an inbox, draft or send messages, and check delivery.
coreyhaines31/marketingskills
When the user wants to create or optimize an email sequence, drip campaign, automated email flow, or lifecycle email program.
affaan-m/ECC
Guides agents through integrating transactional email sending via Mailtrap's Email API, including sandbox testing, domain verification, and API authentication.
sickn33/agentic-awesome-skills
Data-backed email marketing for AI agents: automation flows, deliverability triage, copy de-slopping, AI email design, ESP control via MCP with send gates and compliance.
davila7/claude-code-templates
Email has the highest ROI of any marketing channel. An agent skill from davila7/claude-code-templates.
LeoYeAI/openclaw-master-skills
When user asks to write email, draft reply, manage inbox, email template, follow up email, cold email, professional email, email subject line, thank you email, apology email, meeting request email…
taracodlabs/aiden
Searches Google Flights for prices, schedules and availability through browser automation with URL-based queries, and stops short of booking.
taracodlabs/aiden
Delegates code generation, editing and explanation tasks to the OpenAI Codex CLI, with commands for interactive, auto-edit, question-only and model-specific runs.
taracodlabs/aiden
Searches Google Hotels through the agent-browser tool for prices, ratings, amenities and availability, building a search URL from the location and dates and reporting a results table.
taracodlabs/aiden
Generates dark-themed architecture, component, data-flow and network diagrams as self-contained HTML and SVG files that open in any browser.
taracodlabs/aiden
Aggregates holdings across Zerodha, Upstox and Angel One and normalizes order parameters into one format, with confirmation required before any routing.
taracodlabs/aiden
Searches arXiv by keyword, category, author or paper ID through its public API and downloads PDFs, with no API key needed.
Check email/username against HIBP v3 breach database. An agent skill from taracodlabs/aiden. Haveibeenpwned is an agent skill from taracodlabs/aiden.
Run `npx skills add taracodlabs/aiden --skill haveibeenpwned -a claude-code`. Or copy the skill folder (skills/haveibeenpwned in taracodlabs/aiden) into .claude/skills/haveibeenpwned in your project. Claude Code loads it when a task matches its description.
Run `npx skills add taracodlabs/aiden --skill haveibeenpwned -a codex`. Or copy the skill folder (skills/haveibeenpwned in taracodlabs/aiden) into .agents/skills/haveibeenpwned in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add taracodlabs/aiden --skill haveibeenpwned -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/haveibeenpwned, .gemini/skills/haveibeenpwned, .github/skills/haveibeenpwned and .opencode/skills/haveibeenpwned in your project.
Going by SKILL.md and its folder, Haveibeenpwned needs TypeScript for the scripts in its folder and credentials named HIBP_API_KEY. Our summary lists: Node.js; A credential in HIBP_API_KEY.
SKILL.md names 1 domain. In commands or code: haveibeenpwned.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.
Haveibeenpwned is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 879 tokens (SKILL.md is roughly 3.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Haveibeenpwned: Email (asgeirtj/system_prompts_leaks, 69k stars), Emails (coreyhaines31/marketingskills, 54k stars), Mailtrap Email Integration (affaan-m/ECC, 277k stars) and Email Marketing Bible (sickn33/agentic-awesome-skills, 47k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
taracodlabs (a GitHub organization) maintains it in taracodlabs/aiden, which has 852 GitHub stars. The repository holds 63 skills in this directory. The repository was last updated on September 13, 2026.
Source: taracodlabs/aiden on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.