Borrowing it
Nothing to install: this file belongs to doublebearoliver-cyber/mihomo-ai-failover. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/doublebearoliver-cyber/mihomo-ai-failover/main/AGENTS.mdgit clone --depth 1 https://github.com/doublebearoliver-cyber/mihomo-ai-failoverWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/doublebearoliver-cyber/mihomo-ai-failover/agents-md)<a href="https://agentmods.dev/instructions/doublebearoliver-cyber/mihomo-ai-failover/agents-md"><img src="https://agentmods.dev/badge/instructions/doublebearoliver-cyber/mihomo-ai-failover/agents-md/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/instructions/doublebearoliver-cyber/mihomo-ai-failover/agents-md"><img src="https://agentmods.dev/badge/instructions/doublebearoliver-cyber/mihomo-ai-failover/agents-md.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.01121 | $0.01121 |
| Opus 5 | $0.00561 | $0.00561 |
| Sonnet 5 | $0.00224 | $0.00224 |
| Haiku 4.5 | $0.00112 | $0.00112 |
Grade A, and why
mihomo-ai-failover AGENTS.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 9d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 103 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Repository instructions
Scope
- This repository provides Provider-scoped AI failover for Mihomo-compatible clients. The public templates cover OpenAI/ChatGPT/Codex, WorkBuddy (China), Kimi, MiniMax, and Mavis. Version 0.x supports macOS and Clash Verge Rev.
- Preserve the Provider-only routing boundary. Never switch a global proxy group, enable TUN, disable the system proxy, or alter unrelated traffic.
- Keep the failover engine usable without an AI agent. The CLI and daemon are authoritative; MCP and skills are adapters.
- Public code and local personalization use the same engine. Machine-specific
domains and enablement belong in the private
providers.local.yamloverlay, not in a fork, source file, example, test fixture, or commit.
Safety and privacy
- Never commit subscription URLs, controller secrets, proxy passwords, node server addresses, private node inventories, exit IPs, or runtime logs.
- Never commit locally observed Provider hostnames. Public Provider templates contain only conservative, documented product roots. Additional exact domains require local evidence, review, and an explicit overlay write.
- Read the Mihomo controller secret only at runtime from a local config file.
- Prefer a Unix-domain controller socket. Never make an external controller listen on a non-loopback address.
- Never hard-code a username, home directory, application data path, or local repository path.
- MCP tools are read-only by default. State-changing tools must accurately set MCP safety annotations and require an explicit confirmation token enforced by the server, not merely by model instructions.
- Tests must use fake nodes, fake IPs, temporary directories, and fake controller responses.
Failover invariants
- A healthy selected node stays selected. Latency differences alone never trigger a switch.
- Switching requires two guarded aggregate hard-failure rounds on the verified route only when at least two distinct critical targets fail across those rounds. A single failing target requires at least three rounds and a 30-second observation window.
- Each enabled Provider has an independent select group, state file, health history, pools, cooldowns, switch episode, and log. One Provider's failure must never increment another Provider's counters or move another group.
- Providers share only the read-only subscription node catalog. Background deep scans are serialized across Providers to bound local CPU/network load.
- A local-network failure, stopped Mihomo process, or controller failure must not trigger blind switching.
- Candidate ranking prioritizes current health, success history, a distinct exit IP, ASN diversity, cooldown state, and stability before latency.
- Deep candidate evidence needs two usable samples with at least one retry-free result. A retry-assisted live acceptance must pass a mandatory retry-free follow-up before a newly selected route can commit.
- After switching, preserve old Provider connections by default. Optional cleanup may close an old connection only after a newer same-process, same-host replacement exists on the newly selected node.
- Notify "当前机场全部不可用" once per outage episode and use backoff.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 9d ago First seen · 103 lines · 1,121 tokens per session scan A 6e45e002c8b3
mihomo-ai-failover AGENTS.md is an instructions file published in the GitHub repository doublebearoliver-cyber/mihomo-ai-failover (0 stars, last pushed 1mo ago), licensed MIT. It adds 1,121 tokens to every session, about $0.0056 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other instructions, from other repositories
next.js AGENTS.md
AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.
codex AGENTS.md
AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.
vscode buildNext.instructions.md
Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).
spec-kit AGENTS.md
AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.
vscode oss-third-party-notices.instructions.md
Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).
langchain AGENTS.md
AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.