Borrowing it
Nothing to install: this file belongs to CSOAI-ORG/councilof-ai. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/CSOAI-ORG/councilof-ai/master/CLAUDE.mdgit clone --depth 1 https://github.com/CSOAI-ORG/councilof-aiWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/csoai-org/councilof-ai/claude-md)<a href="https://agentmods.dev/instructions/csoai-org/councilof-ai/claude-md"><img src="https://agentmods.dev/badge/instructions/csoai-org/councilof-ai/claude-md/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/instructions/csoai-org/councilof-ai/claude-md"><img src="https://agentmods.dev/badge/instructions/csoai-org/councilof-ai/claude-md.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.01593 | $0.01593 |
| Opus 5 | $0.00796 | $0.00796 |
| Sonnet 5 | $0.00319 | $0.00319 |
| Haiku 4.5 | $0.00159 | $0.00159 |
Grade B, and why
councilof-ai CLAUDE.md scanned grade B with 2 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 3d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Asks for rootmediumPrivilege escalation
A mod that escalates privileges can change anything on the machine, not only the project.
- Mailbox is **[email protected]** on Namecheap Private Email (https://privateemail.com). GitHub sudo codes go there. **Do not use Gmail.** Makes network callslowCapability
Not a fault in itself. Listed so you know the mod talks to something, and to what.
Merge gate = GHA `deploy.yml` + `curl -I https://councilof.ai`. How it starts
The opening of the file, as written. The whole thing — 73 lines — stays where its author put it; the contents beside it link to each section on GitHub.
CLAUDE.md — CSOAI / councilof-ai agent coordination
Shared working agreement for ALL agents on this repo. Read this first.
Deployed truth (verified 2026-08-31 — supersedes 2026-08-26)
- THIS repo → Cloudflare Pages
councilof-ai→ https://councilof.ai. Vercel Git unlinked; leftover Vercel projects (csoai-v2-app,councilof-ai-src, …) deleted 31 Aug 2026. Do notvercel deploy. Do not wait for Vercel GitHub checks. Merge gate = GHAdeploy.yml+curl -I https://councilof.ai. - Live board:
GET https://councilof.ai/api/gspc→ 22 slots · 22 measured · 0 UNMEASURED. Cards: THREE corpora, zero overlap — say which one you mean, every time. Full map + the correct sentence:council-os/CARD-CORPORA.md. In short: ·public/cards-bundle.json→card_count= everypublic/cards/*.jsonwrapper on disk (1072, read 2026-09-05). Its own generator note: "signs nothing, measures nothing." A build-time aggregate, not an attestation. Not in/api/state. ·public/root.json→card_count= thecard_sha256leaves under the SIGNED Merkle root (152, verified 2026-09-05 in ALL THREE of the deployedroot.json, the committedroot.jsonandcards-bundle.json→root_card_count, samemerkle_root cf9f5488…, sameas_of). The 152/153 split this line used to record was build-timing drift and has since closed; if the two disagree again that is timing, not disagreement./api/state→public_root.card_count, kindcatalogued. Its OTS proof coversroot.jsonbytes only. ·public/signed/card_index.json= the signed card index (335,n_cards == n_cells == cards[].length), of which 335 verify —/api/state→card_chain.bodies_verified_valid, kindmeasured, 1 signing key. The only one of the three behind which a check was actually run./api/state→signed_cards.corpus_relationrecordsSEPARATE_CORPORAwithidentifier_overlap: 0. Never add them, never reconcile them, never substitute one for another. An earlier revision of this line said the standing "335" figure "matched neither" — true of the first two artifacts, and the reason it needed labelling, but 335 is corpus 3 and is sound. All three numbers are right about their own bytes; the defect was three counts wearing one word. Stamp SIGNED (did:web:csoai.org#board-attestation-1). - csoai.org = Cloudflare Pages
csoai-site(DID apex).os/app.csoai.org CNAME there. - Mailbox is [email protected] on Namecheap Private Email (https://privateemail.com). GitHub sudo codes go there. Do not use Gmail.
- Full eat:
~/_alignment/ALIGNMENT_2026-08-31.md(Mac home, not in this repo — the repo's own_alignment/holds only the x402 census). Cursor feed grammar: cite live totals.public_count (22·22·0 after #1077).
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 3d ago Changed · +43 tokens per session b39c04380ba8
- 6d ago Changed · +22 lines · +577 tokens per session 1ca14e491750
- 7d ago Changed · +13 tokens per session a2a46c4bbef8
- 11d ago First seen · 51 lines · 960 tokens per session scan B 9ad63b506743
councilof-ai CLAUDE.md is an instructions file published in the GitHub repository CSOAI-ORG/councilof-ai (0 stars, last pushed today), licensed MIT. It adds 1,593 tokens to every session, about $0.0080 per session on Opus 5. A static security scan graded it B with 2 findings (asks for root, makes network calls). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other instructions, from other repositories
next.js AGENTS.md
AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.
codex AGENTS.md
AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.
vscode buildNext.instructions.md
Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).
spec-kit AGENTS.md
AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.
langchain AGENTS.md
AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.
vscode oss-third-party-notices.instructions.md
Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).