Borrowing it
Nothing to install: this file belongs to jonathan-vella/apex-accelerator. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.
curl -O https://raw.githubusercontent.com/jonathan-vella/apex-accelerator/main/.github/instructions/no-heredoc.instructions.mdgit clone --depth 1 https://github.com/jonathan-vella/apex-acceleratorWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/jonathan-vella/apex-accelerator/no-heredoc)<a href="https://agentmods.dev/instructions/jonathan-vella/apex-accelerator/no-heredoc"><img src="https://agentmods.dev/badge/instructions/jonathan-vella/apex-accelerator/no-heredoc.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00896 | $0.00896 |
| Opus 5 | $0.00448 | $0.00448 |
| Sonnet 5 | $0.00179 | $0.00179 |
| Haiku 4.5 | $0.00090 | $0.00090 |
Grade A, and why
apex-accelerator no-heredoc.instructions.md scanned grade A with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Makes network callslowCapability
Not a fault in itself. Listed so you know the mod talks to something, and to what.
navigation (`ls`, `cd`, `mkdir`, `rm`), and downloads (`curl`, `wget` How it starts
The opening of the file, as written. The whole thing — 94 lines — stays where its author put it; the contents beside it link to each section on GitHub.
MANDATORY: File Operation Override
[!CAUTION] Terminal heredoc/redirect operations (
cat <<EOF,echo "..." >,printf >,tee <<EOF) corrupt files in VS Code Copilot due to tab-completion interference, escape failures, and exit-code 130 interruptions. This is a hard technical requirement.
Rule
NEVER use cat, echo, printf, tee, or >>/> to write
multi-line content to a file. Use file creation/editing tools instead.
Allowed Terminal Commands
Package management, builds, tests, git, running scripts, filesystem
navigation (ls, cd, mkdir, rm), and downloads (curl, wget
— not piped to files with content manipulation).
Sub-rule: No heredoc'd code into node -e / python3 -c
Piping a heredoc into node -e or python3 -c is forbidden when the
code contains shell-meaningful constructs. The shell expands them before
the interpreter sees them and you typically get a SyntaxError: Invalid or unexpected token (or silently wrong output).
Forbidden constructs in heredoc bodies:
- Backtick template literals (
`${value}`) — interpreted as command substitution. ${variable}— interpreted as parameter expansion.$(command)— interpreted as command substitution.\u0000and other escape sequences the shell touches before passing on.
Forbidden patterns (and what to do instead):
node -e "<<EOF ... EOF"containing any of the constructs above → write the script totmp/run-once.mjswith the file-edit tool, then runnode tmp/run-once.mjs.python3 -c "$(cat <<EOF ... EOF)"containing any of the constructs above → write the script totmp/run-once.pythen runpython3 tmp/run-once.py.cat <<EOF | node— same fix, use a temp file.
The temp file lets the agent's file-editing tools control quoting and escape sequences end-to-end, instead of negotiating shell, heredoc, and interpreter layers all at once.
Sub-rule: No writes to agent-output/** via shell
Subagents and step agents MUST NOT use heredocs, >/>>, or tee to
write any file under agent-output/**. Artifact writes must go through
the file-editing tools (create_file, replace_string_in_file,
multi_replace_string_in_file). Read-only inspection (ls, cat,
wc -l) of existing agent-output/** files is fine.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 8d ago First seen · 94 lines · 896 tokens per session scan A 265c03846e9d
apex-accelerator no-heredoc.instructions.md is an instructions file published in the GitHub repository jonathan-vella/apex-accelerator (50 stars, last pushed today), licensed MIT. It adds 896 tokens to every session, about $0.0045 per session on Opus 5. A static security scan graded it A with 1 finding (makes network calls). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other instructions, from other repositories
codex AGENTS.md
AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.
vscode buildNext.instructions.md
Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).
next.js AGENTS.md
AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.
langchain AGENTS.md
AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.
vscode oss-third-party-notices.instructions.md
Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).
spec-kit AGENTS.md
AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.