Borrowing it
Nothing to install: this file belongs to dajiaohuang/shuiyuan-mcp. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/dajiaohuang/shuiyuan-mcp/main/AGENTS.mdgit clone --depth 1 https://github.com/dajiaohuang/shuiyuan-mcpWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/dajiaohuang/shuiyuan-mcp/agents-md)<a href="https://agentmods.dev/instructions/dajiaohuang/shuiyuan-mcp/agents-md"><img src="https://agentmods.dev/badge/instructions/dajiaohuang/shuiyuan-mcp/agents-md/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/instructions/dajiaohuang/shuiyuan-mcp/agents-md"><img src="https://agentmods.dev/badge/instructions/dajiaohuang/shuiyuan-mcp/agents-md.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.01471 | $0.01471 |
| Opus 5 | $0.00736 | $0.00736 |
| Sonnet 5 | $0.00294 | $0.00294 |
| Haiku 4.5 | $0.00147 | $0.00147 |
Grade A, and why
shuiyuan-mcp AGENTS.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 12d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 150 lines — stays where its author put it; the contents beside it link to each section on GitHub.
AGENTS.md - Shuiyuan MCP
This repository is a Shuiyuan-focused fork of Discourse MCP.
- Upstream style entry:
src/index.ts->dist/index.js(bin:discourse-mcp) - Shuiyuan wrappers:
src/shuiyuan-login.ts,src/shuiyuan-mcp.ts - Node:
>=24 - Package/repo branding:
shuiyuan-mcp,io.github.dajiaohuang/shuiyuan-mcp,https://github.com/dajiaohuang/shuiyuan-mcp
Historical Decisions (From Prior Codex Threads)
These are not optional preferences. They are project decisions already made in previous Discourse/Shuiyuan conversations and implemented in code.
- Authentication flow is cookie-based for Shuiyuan SSO.
- First-run login opens a real browser (Playwright) and saves local session state.
- Default persisted files are under
%APPDATA%\\shuiyuan-mcp\\:cookies.jsonprofile.jsonbrowser-profile/
- Launcher split is intentional.
shuiyuan-mcp-login/shuiyuan-mcp-login.exe: interactive login + cookie/profile save.shuiyuan-mcp/shuiyuan-mcp.exe: normal MCP start reusing saved profile.
- Shuiyuan start path defaults to write-enabled mode.
src/shuiyuan-mcp.tsappends--allow_writes --read_only=falseby default.- Do not silently remove this behavior unless explicitly requested.
- Default site and tools mode for Shuiyuan wrappers are fixed.
- Site:
https://shuiyuan.sjtu.edu.cn - Tools mode:
discourse_api_only
- Site:
- Read performance work has already been done in
discourse_read_topic.formatsupports:"auto" | "structured" | "raw"autoswitches to raw mode for larger reads (request reduction).- Raw strategy and caching were added to avoid rate-limit pressure.
- Encoding regressions happened before and must be guarded against.
- Chinese content previously became
?during some script paths. - Always verify published title/body by reading back after write operations.
- Favor UTF-8-safe execution paths (MCP tool call first; avoid fragile inline shell encodings).
- Chinese content previously became
- Shuiyuan title length constraint is known and must be enforced.
- Topic title must be <= 48 characters.
- Shorten before create/update calls instead of retrying after server rejection.
- Rules compliance is a first-class requirement.
- Rules references were deliberately added into README/skills.
- Keep
skills/shuiyuan-mcp/references/rules.mdand publishing guardrails in sync with behavior.
- Category conventions were established for publishing flows.
- Technical MCP/tooling posts: category
51. - Shuiyuan usage tutorial posts: category
74.
- Technical MCP/tooling posts: category
- Windows release flow is part of supported product behavior.
scripts/build-shuiyuan-exe.ps1buildsdist-win/shuiyuan-mcp-login.exeanddist-win/shuiyuan-mcp.exe.- GitHub releases are expected to ship both launchers in a zip.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 12d ago First seen · 150 lines · 1,471 tokens per session scan A 0fd127381d87
shuiyuan-mcp AGENTS.md is an instructions file published in the GitHub repository dajiaohuang/shuiyuan-mcp (2 stars, last pushed 2mo ago), licensed MIT. It adds 1,471 tokens to every session, about $0.0074 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other instructions, from other repositories
spec-kit AGENTS.md
AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.
next.js AGENTS.md
AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.
codex AGENTS.md
AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.
vscode buildNext.instructions.md
Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).
langchain AGENTS.md
AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.
vscode oss-third-party-notices.instructions.md
Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).