wechat-miniapp-re-mcp: Instructions file for Codex

AGENTS.md

wechat-miniapp-re-mcp AGENTS.md is an instructions file for Codex, OpenCode from Facetomyself/wechat-miniapp-re-mcp. It costs 545 tokens per session, scanned A, original, MIT.

Repository guidance for a server that helps inspect and interact with WeChat mini-apps through a clean-room runtime and protocol implementation. It defines boundaries for handling extracted app files, credentials, sessions, and runtime connections.

In plain words
What is it for?
Use it when developing the MCP tools, managing runtime sessions, handling disconnects, or deciding where artifacts and external binaries may be stored.
Why use it?
It prevents sensitive or third-party artifacts from entering the repository and sets safe rules for shared runtime ownership and reconnects. It also keeps the project focused on its server and runtime code.

Instructions file for CodexOpenCode

Written for Codex and OpenCode: the file is AGENTS.md.

This is Facetomyself/wechat-miniapp-re-mcp's own configuration. It tells Codex and OpenCode how to work on wechat-miniapp-re-mcp itself, so it is not a mod to install elsewhere. Copy it as a starting point and replace the rules that are about this project. Everything wechat-miniapp-re-mcp configures →

Reuse

Borrowing it

Nothing to install: this file belongs to Facetomyself/wechat-miniapp-re-mcp. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.

Copy the file
curl -O https://raw.githubusercontent.com/Facetomyself/wechat-miniapp-re-mcp/main/AGENTS.md
Clone the repo
git clone --depth 1 https://github.com/Facetomyself/wechat-miniapp-re-mcp

Made for: Codex, OpenCode.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for wechat-miniapp-re-mcp AGENTS.md

README.md
[![agentmods](https://agentmods.dev/badge/instructions/facetomyself/wechat-miniapp-re-mcp/agents-md.svg)](https://agentmods.dev/instructions/facetomyself/wechat-miniapp-re-mcp/agents-md)
Your own site
<a href="https://agentmods.dev/instructions/facetomyself/wechat-miniapp-re-mcp/agents-md"><img src="https://agentmods.dev/badge/instructions/facetomyself/wechat-miniapp-re-mcp/agents-md.svg" alt="Measured on agentmods" height="20"></a>
Per session 545 This file is loaded in full into every session.
When invoked 545 The same file — it is already loaded in full.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00545 $0.00545
Opus 5 $0.00272 $0.00272
Sonnet 5 $0.00109 $0.00109
Haiku 4.5 $0.00055 $0.00055

Measured 8d ago against content hash 5b9607ea70d3, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-08, from the pricing page.

Security

Grade A, and why

wechat-miniapp-re-mcp AGENTS.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

AGENTS.md · 38 lines

How it starts

The opening of the file, as written. The whole thing — 38 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Repository Rules

Boundaries

  • This repository contains only the MCP server and clean-room protocol/runtime code.
  • Third-party binaries, wxapkg samples, extracted projects, WMPF binaries, profiles copied from other tools, captures, cookies, and credentials must stay outside Git.
  • Runtime artifacts must be written below the configured workspace root.
  • Do not add a GUI, SSE dependency, or an always-on daemon. The stdio process must start without WeChat or Frida targets.

Architecture

  • MCP tools use the wxmp_* prefix.
  • Dynamic operations require an explicit session_id; context-specific operations also require context_id.
  • Session history is multi-session, but the shared WMPF 127.0.0.1:9421 runtime slot is fail-safe single-owner because the runtime protocol has no PID/session handshake. Reject concurrent attaches instead of guessing socket ownership.
  • Unexpected runtime disconnects must retain the MCP session, requeue the same bridge owner, reset only ephemeral CDP state, and preserve evidence/context listeners for reconnect.
  • Frida is imported lazily by the runtime adapter.
  • Static engines are isolated behind adapters; do not embed GPL implementations into the MIT core.
  • Unsupported runtime capabilities must return structured evidence, never synthetic success.
  • A connected bridge proves transport only. Debugger/network require successful CDP probes; trace/request hooks require non-zero installed wrappers and are tracked per context.
  • Bundled clean-room profiles use canonical windows-<version>.json names and load before external legacy directories. Third-party profile contents remain outside Git.

Development

  • UTF-8 and LF for text files.
  • Use the project Node runtime supplied by the parent repository.
  • Before commit run: npm run check, git diff --check, and git status --short.
  • New tools require contract tests and README/API updates.
  • Changes to public tool schemas require a version bump.
  • Generated profile candidates must bind to a module SHA-256 and remain non-injectable until their confidence is promoted with review evidence.
  • Acceptance claims must be recorded below data/acceptance/ and pass npm run acceptance; do not represent a shallower Profile gate as full semantic verification.
  • Real-target validation uses scripts/live-semantic-gate.mjs. Keep summaries and session artifacts in the configured workspace, and preserve structured failure evidence when a lifecycle gate does not trigger.

Read the full file on GitHub · 38 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 8d ago First seen · 38 lines · 545 tokens per session scan A 5b9607ea70d3

Subscribe to this mod's changes

wechat-miniapp-re-mcp AGENTS.md is an instructions file published in the GitHub repository Facetomyself/wechat-miniapp-re-mcp (5 stars, last pushed 15d ago), licensed MIT. It adds 545 tokens to every session, about $0.0027 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other instructions, from other repositories

next.js AGENTS.md

AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.

vercel/next.js · 7,296 tokens

codex AGENTS.md

AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.

openai/codex · 5,153 tokens

vscode buildNext.instructions.md

Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).

microsoft/vscode · 6,785 tokens

vscode oss-third-party-notices.instructions.md

Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).

microsoft/vscode · 5,001 tokens

langchain AGENTS.md

AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.

langchain-ai/langchain · 4,469 tokens

spec-kit AGENTS.md

AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.

github/spec-kit · 7,104 tokens