env_var_migration.hy

env_var_migration.hy is an agent for Claude Code from hyperledger-iroha/iroha. It costs 0 tokens per session (2,467 once invoked), scanned A, a copy of env_var_migration.am, Apache-2.0.

A migration record for moving production environment-variable settings into the Iroha configuration system. Environment variables are settings supplied outside the program, while a configuration system stores and manages those settings in code.

In plain words
What is it for?
Tracking configuration migrations, checking newly introduced production environment variables, and recording completed changes in the Iroha project.
Why use it?
It documents which environment-variable switches were removed, replaced, or still need migration, helping prevent configuration drift and unintended runtime behavior.

Agent for Claude Code

Written for Claude Code: a Claude Code subagent (agents/*.md).

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add agents/hyperledger-iroha/iroha/env_var_migration.hy
Clone the repo
git clone --depth 1 https://github.com/hyperledger-iroha/iroha

Made for: Claude Code.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for env_var_migration.hy

README.md
[![agentmods](https://agentmods.dev/badge/agents/hyperledger-iroha/iroha/env_var_migration.hy.svg)](https://agentmods.dev/agents/hyperledger-iroha/iroha/env_var_migration.hy)
Your own site
<a href="https://agentmods.dev/agents/hyperledger-iroha/iroha/env_var_migration.hy"><img src="https://agentmods.dev/badge/agents/hyperledger-iroha/iroha/env_var_migration.hy.svg" alt="Measured on agentmods" height="20"></a>
Per session 0 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 2,467 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin 84% copy Near-identical to another mod in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00000 $0.02467
Opus 5 $0.00000 $0.01234
Sonnet 5 $0.00000 $0.00493
Haiku 4.5 $0.00000 $0.00247

Measured 4d ago against content hash 6fc6bb5797f7, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-06, from the pricing page.

Security

Grade A, and why

env_var_migration.hy scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

Origin

This is a copy

84% identical to env_var_migration.am — 152 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.

docs/source/agents/env_var_migration.hy.md · 99 lines

How it starts

The opening of the file, as written. The whole thing — 99 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Env → Կազմաձևի միգրացիայի հետքեր

Այս որոնիչն ամփոփում է արտադրական կողմնորոշված շրջակա միջավայրի փոփոխական անջատիչները, որոնք հայտնվել են docs/source/agents/env_var_inventory.{json,md}-ի կողմից և նախատեսված միգրացիան ճանապարհ դեպի iroha_config (կամ բացահայտ մշակող/միայն թեստի շրջանակում):

Ծանոթագրություն. ci/check_env_config_surface.sh-ն այժմ ձախողվում է, երբ նոր արտադրություն env Շերտերը հայտնվում են AGENTS_BASE_REF-ի համեմատ, եթե ENV_CONFIG_GUARD_ALLOW=1-ը հավաքածու; փաստաթղթավորեք դիտավորյալ հավելումները այստեղ՝ նախքան փոխարինումը օգտագործելը:

Ավարտված միգրացիաներ- IVM ABI անջատում — Հեռացվել է IVM_ALLOW_NON_V1_ABI; Կազմողն այժմ մերժում է

ոչ v1 ABI-ներ անվերապահորեն միավորի թեստով, որը պաշտպանում է սխալի ուղին:

  • IVM վրիպազերծման դրոշակ env shim — հրաժարվել է IVM_SUPPRESS_BANNER env անջատումից; դրոշի սեղմումը հասանելի է մնում ծրագրային կարգավորիչի միջոցով:
  • IVM քեշ/չափեր — Թելային քեշ/պրովեր/GPU չափերի միջոցով iroha_config (pipeline.{cache_size,ivm_cache_max_decoded_ops,ivm_cache_max_bytes,ivm_prover_threads}, accel.max_gpus) և հեռացրեց գործարկման ժամանակի նախագիծը: Տանտերերն այժմ զանգում են ivm::ivm_cache::configure_limits և ivm::zk::set_prover_threads, թեստերի օգտագործումը CacheLimitsGuard-ը env-ի փոխարեն անտեսում է:
  • Միացրեք հերթի արմատը — Ավելացվեց connect.queue.root (կանխադրված՝ ~/.iroha/connect) հաճախորդի կազմաձևին և այն փոխանցել CLI-ի և JS ախտորոշում. JS օգնականները լուծում են կազմաձևը (կամ բացահայտ rootDir) և միայն հարգել IROHA_CONNECT_QUEUE_ROOT-ը dev/test-ում allowEnvOverride-ի միջոցով; ձևանմուշները փաստաթղթավորում են կոճակը, որպեսզի օպերատորներն այլևս կարիք չունենան env-ի վերափոխումների:
  • Izanami ցանցի միացում — Ավելացրել է բացահայտ allow_net CLI/կոնֆիգուրացիայի դրոշակ Izanami քաոսի գործիք; գործարկումներն այժմ պահանջում են allow_net=true/--allow-net և
  • IVM դրոշի ազդանշան — Փոխարինեց IROHA_BEEP env shim-ը կոնֆիգուրով պայմանավորված ivm.banner.{show,beep} փոխարկվում է (կանխադրված՝ ճշմարիտ/ճշմարիտ): Գործարկման դրոշակ / ազդանշան լարերը այժմ կարդում են կոնֆիգուրացիան միայն արտադրության մեջ. dev/test builds still honor env-ի փոխարինումը ձեռքով անջատիչների համար:
  • DA spool override (միայն թեստերը)IROHA_DA_SPOOL_DIR-ի փոխարինումն այժմ է ցանկապատված cfg(test) օգնականների հետևում; Արտադրության կոդը միշտ աղբյուր է կծիկ ճանապարհը կազմաձևումից:
  • Crypto intrinsics — Փոխարինված է IROHA_DISABLE_SM_INTRINSICS / IROHA_ENABLE_SM_INTRINSICS կոնֆիգուրով պայմանավորված crypto.sm_intrinsics քաղաքականություն (auto/force-enable/force-disable) և հանեց IROHA_SM_OPENSSL_PREVIEW պահակը: Հյուրընկալները կիրառում են քաղաքականությունը հետևյալ հասցեով մեկնարկը, նստարանները/թեստերը կարող են մասնակցել CRYPTO_SM_INTRINSICS-ի և OpenSSL-ի միջոցով Նախադիտումն այժմ հարգում է միայն կազմաձևման դրոշը: Izanami-ն արդեն պահանջում է --allow-net/մշտական կոնֆիգուրացիա, և թեստերն այժմ հիմնվում են այդ կոճակը ավելի շուտ միանում է շրջակա միջավայրին:
  • **FastPQ GPU թյունինգ ** — Ավելացված է fastpq.metal.{max_in_flight,threadgroup_width,metal_trace,metal_debug_enum,metal_debug_fused} կազմաձևման կոճակները (կանխադրված՝ None/None/false/false/false) և դրանք անցկացրեք CLI վերլուծության միջոցով FASTPQ_METAL_* / FASTPQ_DEBUG_* շիմերն այժմ իրենց պահում են որպես մշակող/փորձարկման հետադարձ և անտեսվում են կոնֆիգուրացիան բեռնվելուց հետո (նույնիսկ երբ կազմաձևը թողնում է դրանք չկարգավորված); փաստաթղթեր/գույքագրում էին թարմացվել է՝ միգրացիան նշելու համար:【crates/irohad/src/main.rs:2609】【crates/iroha_core/src/fastpq/lane.rs:109】【crates/fastpq_prover/src/overrides.rs:11】 (IVM_DECODE_TRACE, IVM_DEBUG_WSV, IVM_DEBUG_COMPACT, IVM_DEBUG_INVALID, IVM_DEBUG_REGALLOC, IVM_DEBUG_METAL_ENUM, IVM_DEBUG_METAL_SELFTEST, IVM_FORCE_METAL_ENUM, IVM_FORCE_METAL_SELFTEST_FAIL, IVM_FORCE_CUDA_SELFTEST_FAIL, IVM_DISABLE_METAL, IVM_DISABLE_CUDA) այժմ գտնվում են վրիպազերծման/փորձարկման կառուցվածքների ետևում՝ ընդհանուր օգտագործման միջոցով օգնական, որպեսզի արտադրական երկուականները անտեսեն դրանք՝ միաժամանակ պահպանելով բռնակները տեղական ախտորոշման համար: նախանձ գույքագրումը վերականգնվել է, որպեսզի արտացոլի մշակողի/միայն թեստի շրջանակը:- FASTPQ սարքերի թարմացումներFASTPQ_UPDATE_FIXTURES այժմ հայտնվում է միայն FASTPQ ինտեգրման մեջ թեստեր; Արտադրության աղբյուրներն այլևս չեն կարդում env անջատիչը, և գույքագրումն արտացոլում է միայն թեստը շրջանակը։
  • Գույքագրման թարմացում + շրջանակի հայտնաբերում — env գույքագրման գործիքավորումն այժմ հատկորոշում է build.rs ֆայլերը որպես կառուցել շրջանակը և հետևել #[cfg(test)]/ինտեգրման ամրագոտի մոդուլներին, որպեսզի միայն թեստային անջատումներ կատարվեն (օրինակ. IROHA_TEST_*, IROHA_RUN_IGNORED) և CUDA build դրոշները հայտնվում են արտադրության քանակից դուրս: Գրապահոցը վերականգնվել է 2025 թվականի դեկտեմբերի 07-ին (518 refs / 144 vars)՝ env-config պաշտպանիչ տարբերությունը կանաչ պահելու համար:
  • P2P տոպոլոգիա env shim release guardIROHA_P2P_TOPOLOGY_UPDATE_MS այժմ գործարկում է դետերմինիստական գործարկման սխալ թողարկման կառուցումներում (նախազգուշացնում է միայն վրիպազերծման/փորձարկման ժամանակ), այնպես որ արտադրական հանգույցները հիմնվում են բացառապես network.peer_gossip_period_ms. Env գույքագրումը վերականգնվել է, որպեսզի արտացոլի պահակը և Թարմացված դասակարգիչն այժմ ընդգրկում է cfg!-ով պաշտպանված միացումները որպես վրիպազերծում/փորձարկում:

Read the full file on GitHub · 99 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 4d ago First seen · 99 lines · 0 tokens per session scan A 6fc6bb5797f7

Subscribe to this mod's changes

env_var_migration.hy is an agent published in the GitHub repository hyperledger-iroha/iroha (488 stars, last pushed today), licensed Apache-2.0. It costs nothing until one of its globs matches a file; then it loads 2,467 tokens. A static security scan graded it A with 0 findings. It is 84% identical to env_var_migration.am, differing in 152 lines, and is treated as a copy.