Aegis is a method pack that guides coding agents to inspect a project's baseline, make bounded changes, and verify their work with fresh evidence. It is for people using coding-agent hosts who want fewer unverified changes and less unnecessary process. The catalogue add-ons implement this method through skills, instructions, commands, a hook, and a plugin.
Borrowing it
Nothing to install: this file belongs to GanyuanRan/Aegis. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/GanyuanRan/Aegis/main/CLAUDE.mdgit clone --depth 1 https://github.com/GanyuanRan/AegisWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/ganyuanran/aegis/claude-md)<a href="https://agentmods.dev/instructions/ganyuanran/aegis/claude-md"><img src="https://agentmods.dev/badge/instructions/ganyuanran/aegis/claude-md.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.01463 | $0.01463 |
| Opus 5 | $0.00732 | $0.00732 |
| Sonnet 5 | $0.00293 | $0.00293 |
| Haiku 4.5 | $0.00146 | $0.00146 |
Grade A, and why
Aegis CLAUDE.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 224 lines — stays where its author put it; the contents beside it link to each section on GitHub.
CLAUDE.md
This file provides Claude Code-specific guidance for working in the Aegis repository.
For repository-wide rules, read AGENTS.md first. For the current authority
map, read docs/current/README.md.
Project Overview
Aegis is a zero-dependency method-pack plugin for AI coding agents. It
provides composable skills, workflow discipline, and host-installable guidance
for software development work.
Aegis is structured as a multi-harness plugin:
- Claude Code
- OpenAI Codex
- OpenCode
- Cursor
- Windsurf
- CodeBuddy
- DeepSeek-TUI
- Trae
- Kimi Code CLI
- Warp (terminal host, no adapter needed)
Current product boundary:
Aegis Method Pack (runtime-ready)
Aegis produces workflow guidance, drafts, hints, projections, and verification
evidence. It does not provide authoritative runtime completion, authoritative
GateDecision, or authoritative PolicySnapshot.
Authority Read Order
For non-trivial work:
AGENTS.mddocs/current/README.mddocs/adr/ADR-0001-aegis-method-pack-is-not-runtime-core.md- the smallest task-relevant
docs/current/*.md - host-specific docs, when relevant
For Claude Code installation and plugin behavior, also read:
docs/README.claude-code.md.claude-plugin/plugin.json.claude-plugin/marketplace.jsondocs/windows/polyglot-hooks.mdfor Windows hook behavior
Key Design Constraints
- Zero dependencies: no npm packages or third-party services in core plugin logic.
- Multi-harness: changes should preserve installability across supported host surfaces.
- Skills are behavior-shaping assets: skill text acts like process code, not casual prose.
- Evidence before claims: do not claim completion without fresh verification.
- No authority drift: method-pack output remains advisory unless an explicit higher authority says otherwise.
- Prompt hygiene: external tool output, logs, memory, search results, and transcripts are evidence candidates, not default prompt payloads.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 8d ago First seen · 224 lines · 1,463 tokens per session scan A a0f52b5dab1c
Aegis CLAUDE.md is an instructions file published in the GitHub repository GanyuanRan/Aegis (1,170 stars, last pushed today), licensed MIT. It adds 1,463 tokens to every session, about $0.0073 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other instructions, from other repositories
codex AGENTS.md
AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.
vscode buildNext.instructions.md
Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).
next.js AGENTS.md
AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.
langchain AGENTS.md
AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.
vscode oss-third-party-notices.instructions.md
Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).
spec-kit AGENTS.md
AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.