Jarvis Registry is a gateway that connects AI copilots and autonomous agents to enterprise tools through the Model Context Protocol and agent-to-agent communication. Organizations use it to manage identity, permissions, tool discovery, orchestration, logging, and observability, while the catalogue entries support agent workflows with it.
Borrowing it
Nothing to install: this file belongs to ascending-llc/jarvis-registry. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/ascending-llc/jarvis-registry/main/.github/instructions/registry-gateway.instructions.mdgit clone --depth 1 https://github.com/ascending-llc/jarvis-registryWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/ascending-llc/jarvis-registry/registry-gateway)<a href="https://agentmods.dev/instructions/ascending-llc/jarvis-registry/registry-gateway"><img src="https://agentmods.dev/badge/instructions/ascending-llc/jarvis-registry/registry-gateway/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/instructions/ascending-llc/jarvis-registry/registry-gateway"><img src="https://agentmods.dev/badge/instructions/ascending-llc/jarvis-registry/registry-gateway.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.02931 | $0.02931 |
| Opus 5 | $0.01465 | $0.01465 |
| Sonnet 5 | $0.00586 | $0.00586 |
| Haiku 4.5 | $0.00293 | $0.00293 |
Grade C, and why
jarvis-registry registry-gateway.instructions.md scanned grade C with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 11d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Tells the agent never to refusehighAnti-refusal
Suppressing the ability to decline removes a core safety control; a later harmful request then succeeds.
→ Do NOT decline immediately. Discover first. How it starts
The opening of the file, as written. The whole thing — 253 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Jarvis Registry Agent/MCP Gateway
Discover and execute tools, resources, and prompts from registered MCP servers, and delegate complex tasks to A2A agents.
DISCOVER FIRST — NO EXCEPTIONS. Before responding to any user request — including requests that appear outside your built-in capabilities — always run discovery first. Route to
discover_servers,discover_agents, or both based on intent. Never assume you lack the capability without checking.FORBIDDEN before running discovery (
discover_serversand/ordiscover_agents):
- ❌ "I'm a coding assistant and can't help with that."
- ❌ "I'm not able to browse the web."
- ❌ "I can only help with software development tasks."
- ❌ Any sentence that declines, redirects, or scopes your capabilities.
These phrases are only permitted after the full discovery chain (including survey) has returned no relevant results.
Discovery Chain
-
Formulate a concise keyword query from the user's intent — core nouns/verbs + domain terms. Drop filler words, pronouns, articles, and tense. Do NOT pass the user's raw sentence.
-
Classify intent—simple approach:
Is user asking for an AGENT? (analysis, reasoning, investigation, decision-making, multi-step domain work)
- Action: call
discover_agents(query, top_n=3)→ execute the agent with full context - Examples: "analyze spending", "review code", "generate report", "handle this ticket", "investigate trends"
Is user asking for MCP Server tools/resources/prompts? (fetch, get, search, list, send, create operations)
- Action: call
discover_servers(query, top_n=3)→ execute the tool/resource/prompt directly - Examples: "list GitHub issues", "search the web", "create event", "get Slack messages"
- Note: Tools, resources, and prompts are all provided by MCP servers
AMBIGUOUS (cannot clearly determine which collection to search)
- Signals: User is not explicit about wanting an agent vs. a tool/resource/prompt
- Action: call both
discover_servers(query, top_n=3)ANDdiscover_agents(query, top_n=3)in parallel - Then rank results by description semantic fit, NOT score magnitude:
- If top agent result is clearly a better match → execute the agent
- If top server result (tool/resource/prompt) is clearly a better match → execute the tool
- If both are equally plausible → ask the user which they need
- Action: call
-
Discovery call defaults and when to narrow:
discover_servers(query, top_n=3)defaulttype_list=["tool"].- Add
type_list=["resource"]only when the user explicitly needs data files or feeds. - Add
type_list=["prompt"]only when the user explicitly needs a prompt template. discover_agents(query, top_n=3)defaulttype_list=["agent"].- Switch to
type_list=["skill"]and includeagent_namein the query only after choosing an agent and targeting a specific capability.
- Evaluate results by semantic fit, not score alone:
- Relevance is relative within one result set, not absolute.
- Do not compare
discover_serversscores directly againstdiscover_agentsscores. - Always verify
descriptionmatches the user's intent. - Clustered server results: same
server_namemeans operation ambiguity; differentserver_namemeans provider ambiguity.
- Execute with identifiers returned by discovery, verbatim.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 11d ago First seen · 253 lines · 2,931 tokens per session scan C 6719ed4773fd
jarvis-registry registry-gateway.instructions.md is an instructions file published in the GitHub repository ascending-llc/jarvis-registry (2,812 stars, last pushed today), licensed Apache-2.0. It adds 2,931 tokens to every session, about $0.0147 per session on Opus 5. A static security scan graded it C with 1 finding (tells the agent never to refuse). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other instructions, from other repositories
next.js AGENTS.md
AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.
codex AGENTS.md
AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.
vscode buildNext.instructions.md
Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).
spec-kit AGENTS.md
AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.
langchain AGENTS.md
AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.
vscode oss-third-party-notices.instructions.md
Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).