Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add instructions/longyunfeigu/charter/agents-mdgit clone --depth 1 https://github.com/longyunfeigu/CharterWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/longyunfeigu/charter/agents-md)<a href="https://agentmods.dev/instructions/longyunfeigu/charter/agents-md"><img src="https://agentmods.dev/badge/instructions/longyunfeigu/charter/agents-md.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00648 | $0.00648 |
| Opus 5 | $0.00324 | $0.00324 |
| Sonnet 5 | $0.00130 | $0.00130 |
| Haiku 4.5 | $0.00065 | $0.00065 |
Grade A, and why
Charter AGENTS.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 59 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Repository Agent Instructions
Electron UI validation
This repository is an Electron desktop application. For rendered application UI testing and visual QA, use the repository's Playwright Electron workflow directly.
-
Do not try the Codex in-app Browser for Charter UI validation unless the user explicitly asks for browser-based testing.
-
Launch automated UI tests with the existing Electron helpers and isolated user-data directory in
tests/e2e/helpers/launch.ts. -
Prefer targeted runs while iterating, for example:
npx playwright test --config tests/e2e/playwright.config.ts tests/e2e/<target>.spec.ts -
Run
npm run buildbefore Electron E2E when renderer, preload, main-process, or shared package source has changed. -
Store temporary screenshots, traces, and ad hoc QA artifacts outside the repository, normally under
/tmp. Do not commit generated QA artifacts unless the user explicitly requests them. -
For visual changes, validate the real Electron surface at the intended desktop viewport and a narrower viewport when practical. Check page identity, non-blank rendering, framework overlays, relevant console/page errors, screenshot evidence, and the primary interaction path.
Release workflow
Before creating or pushing a release tag:
-
Require a clean worktree and a successful main-branch CI run for the exact target commit.
-
Run the fast release-contract gates locally before starting the expensive release workflow:
npm run check npm test npm run test:perf node scripts/dependency-safety.mjs --check npm audit --omit=dev --audit-level=high CHARTER_SIGNING_MODE=unsigned node scripts/release-policy.mjs --tag <tag> -
When changing constants, limits, chunk sizes, timeouts, retries, or transport semantics, search for the old contract across unit, performance, security, and E2E tests. Update the implementation and its acceptance contract in the same commit.
-
While iterating on an Electron failure, run the targeted spec first, repeat the affected test three times, and run the full Electron suite only after the targeted runs are stable.
-
Built-in product workflows must not rely solely on optional host tools such as Python. Prefer a bundled runtime and verify that its entry point is available in the packaged application.
-
Never force-move a release tag after a failed release workflow. Increment the prerelease version and create a new tag.
-
Treat the release as complete only after verifying all of the following:
- the GitHub Release exists, is not a draft, and is marked as a prerelease;
- the annotated tag resolves to the expected commit;
- macOS, Windows, and Linux assets are uploaded;
GATE_REPORT.mdreportsPASS;- the release manifest, SHA256 checksums, SBOM, and license notices are present.
-
Release workflows can take 45–60 minutes. Report material state transitions and failures rather than repeatedly reporting an unchanged running state.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 5d ago First seen · 59 lines · 648 tokens per session scan A 87175f5633ec
Charter AGENTS.md is an instructions file published in the GitHub repository longyunfeigu/Charter (10 stars, last pushed 15d ago), licensed MIT. It adds 648 tokens to every session, about $0.0032 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other instructions, from other repositories
vscode buildNext.instructions.md
Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).
spec-kit AGENTS.md
AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.
codex AGENTS.md
AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.
vscode oss-third-party-notices.instructions.md
Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).
langchain AGENTS.md
AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.
deepseek-harness AGENTS.md
AGENTS.md instructions for deepseek-ai/deepseek-harness, covering agents.md, pre-stable apis and released session data, repository layout, commands and host sandbox failures.