agents-md-doctor: Instructions file for Codex

AGENTS.md

agents-md-doctor AGENTS.md is an instructions file for Codex, OpenCode from ItsHege/agents-md-doctor. It costs 1,124 tokens per session, scanned A, original, MIT.

A public AGENTS.md instruction file for a project that checks repository guidance written for AI coding agents. It describes commands for linting, verifying, and explaining those instructions.

In plain words
What is it for?
For developing or contributing to the agents-doctor command-line and continuous-integration tool, including its Node.js and TypeScript code.
Why use it?
It gives contributors clear project rules and helps keep agent instructions readable, accurate, and limited to the right files.

Instructions file for CodexOpenCode

Written for Codex and OpenCode: the file is AGENTS.md. Also seen: mentions AGENTS.md; mentions Codex; built for cline.

This is ItsHege/agents-md-doctor's own configuration. It tells Codex and OpenCode how to work on agents-md-doctor itself, so it is not a mod to install elsewhere. Copy it as a starting point and replace the rules that are about this project. Everything agents-md-doctor configures →

Reuse

Borrowing it

Nothing to install: this file belongs to ItsHege/agents-md-doctor. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.

Copy the file
curl -O https://raw.githubusercontent.com/ItsHege/agents-md-doctor/main/AGENTS.md
Clone the repo
git clone --depth 1 https://github.com/ItsHege/agents-md-doctor

Made for: Codex, OpenCode.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for agents-md-doctor AGENTS.md

README.md
[![agentmods](https://agentmods.dev/badge/instructions/itshege/agents-md-doctor/agents-md/github.svg)](https://agentmods.dev/instructions/itshege/agents-md-doctor/agents-md)
Your own site
<a href="https://agentmods.dev/instructions/itshege/agents-md-doctor/agents-md"><img src="https://agentmods.dev/badge/instructions/itshege/agents-md-doctor/agents-md/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for agents-md-doctor AGENTS.md

Your own site · 80×15
<a href="https://agentmods.dev/instructions/itshege/agents-md-doctor/agents-md"><img src="https://agentmods.dev/badge/instructions/itshege/agents-md-doctor/agents-md.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 1,124 This file is loaded in full into every session.
When invoked 1,124 The same file — it is already loaded in full.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.01124 $0.01124
Opus 5 $0.00562 $0.00562
Sonnet 5 $0.00225 $0.00225
Haiku 4.5 $0.00112 $0.00112

Measured 8d ago against content hash a11e8c26dad9, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-08, from the pricing page.

Security

Grade A, and why

agents-md-doctor AGENTS.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

AGENTS.md · 116 lines

How it starts

The opening of the file, as written. The whole thing — 116 lines — stays where its author put it; the contents beside it link to each section on GitHub.

AGENTS.md Doctor Public Agent Instructions

Scope Of This File

This file is public-safe project guidance for contributors and coding agents working inside the AGENTS.md Doctor repository.

Workspace-only coordination, role briefs, owner workflow, durable memory, and planning notes belong outside this publishable project. Do not copy local workspace instructions into this repository unless they have been deliberately cleaned into public documentation.

Project Goal

Build a small, practical open-source CLI and CI tool that validates repository-level AGENTS.md files for AI coding agents.

The project should stay focused on three user outcomes:

  • lint: instruction files are readable, scoped, and not bloated.
  • verify: commands and paths in instructions match the real repo.
  • explain: developers can see which instructions apply to a target file.

Current Baseline

  • Package name: agents-doctor.
  • Current public release line: 0.9.x; main may contain unreleased 0.10.0 work.
  • Runtime: Node.js >=20, TypeScript, ESM.
  • Stable top-level report schema: schemaVersion: "1.0.0".
  • Supported commands: init, lint, verify, and explain.
  • Supported output surfaces: human text, JSON, GitHub workflow annotations, SARIF for lint/verify, and JSON for explain.
  • Supported tool profiles: auto, codex, claude-code, cursor, gemini-cli, github-copilot, windsurf, and cline.

Working Rules

  • Keep the first implementation narrow and testable.
  • Prefer deterministic parsing and repository inspection before any LLM-based analysis.
  • Do not add network calls to the core validator.
  • Do not auto-rewrite user instructions in the MVP.
  • Treat CI output as a first-class use case.
  • Every rule should have a stable rule id, severity, message, and location when possible.

Architecture Boundaries

  • Keep Markdown extraction, safe file reading, rule evaluation, report building, and renderers as separate layers.
  • Markdown extraction belongs in src/core/ and should return typed facts with source locations; rules should consume those facts instead of walking raw AST nodes directly.
  • Public config and report details should stay schema-checked with Zod where they cross module or user-facing boundaries.
  • Tool evidence is local repository inventory only. Do not claim that external tools loaded the same context at runtime.
  • Profiles are deterministic inspection presets. They must not invoke external CLIs, model APIs, global memory, user home config, or network services.

Read the full file on GitHub · 116 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 8d ago First seen · 116 lines · 1,124 tokens per session scan A a11e8c26dad9

Subscribe to this mod's changes

agents-md-doctor AGENTS.md is an instructions file published in the GitHub repository ItsHege/agents-md-doctor (2 stars, last pushed 6d ago), licensed MIT. It adds 1,124 tokens to every session, about $0.0056 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other instructions, from other repositories

next.js AGENTS.md

AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.

vercel/next.js · 7,296 tokens

codex AGENTS.md

AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.

openai/codex · 5,153 tokens

vscode buildNext.instructions.md

Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).

microsoft/vscode · 6,785 tokens

vscode oss-third-party-notices.instructions.md

Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).

microsoft/vscode · 5,001 tokens

langchain AGENTS.md

AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.

langchain-ai/langchain · 4,469 tokens

spec-kit AGENTS.md

AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.

github/spec-kit · 7,104 tokens