Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add instructions/menemy/sideshell/claude-mdgit clone --depth 1 https://github.com/menemy/sideshellWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00840 | $0.00840 |
| Opus 5 | $0.00420 | $0.00420 |
| Sonnet 5 | $0.00168 | $0.00168 |
| Haiku 4.5 | $0.00084 | $0.00084 |
Grade A, and why
sideshell CLAUDE.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 71 lines — stays where its author put it; the contents beside it link to each section on GitHub.
CLAUDE.md
This file provides guidance to Claude Code when working with this repository.
Project Overview
sideshell is an AI sidecar terminal - an MCP server that lets Claude/Cursor run commands in a visible, persistent terminal. Cross-platform with pluggable backends (iTerm2, tmux, Ghostty, WezTerm, Kitty, maquake).
Commands
Development
uv pip install -e .- Install in development mode (minimal: tmux/ghostty/kitty/wezterm/maquake)uv pip install -e ".[all]"- Install with all optional deps (iTerm2 + IDE backends)python -m sideshell_mcp.server- Run the MCP server directlyuvx sideshell-mcp- Run via uvx (after publishing)
Testing
python tests/test_iterm2_backend.py- Run iTerm2 backend testspython tests/test_tmux_backend.py- Run tmux backend testsuv run python tests/test_maquake_backend.py- Run maquake backend tests (requires maquake running)pytest- Run all pytest-based tests
Linting & Formatting
ruff format .- Format coderuff check . --fix- Lint and fix issuesmypy sideshell_mcp- Type check
Architecture
Directory Structure
sideshell_mcp/
├── server.py # MCP server with 17 tools
├── backends/
│ ├── base.py # Abstract base class, ControlKey enum
│ ├── iterm2_backend.py # iTerm2 Python API backend
│ ├── tmux_backend.py # tmux subprocess backend
│ ├── ghostty_backend.py # Ghostty (via tmux)
│ ├── maquake_backend.py # maquake Unix socket backend
│ ├── wezterm_backend.py # WezTerm
│ └── kitty_backend.py # Kitty
Backend Pattern
Each backend implements TerminalBackend abstract class:
connect(),ensure_connection()execute_command(),read_terminal(),send_control()split_pane(),create_tab(),create_window()focus_session(),close_session()set_appearance(),list_color_presets(),set_color_preset()
ControlKey Enum
Special keys in base.py:
- Ctrl keys: c, d, z, a, e, k, l, u, w
- Navigation: up, down, left, right, home, end, pageup, pagedown
- Function keys: f1-f12
- Other: enter, esc, tab, backspace, insert, delete
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 71 lines · 840 tokens per session scan A 505c92648b8d
sideshell CLAUDE.md is an instructions file published in the GitHub repository menemy/sideshell (1 stars, last pushed 2mo ago), licensed MIT. It adds 840 tokens to every session, about $0.0042 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other instructions, from other repositories
awesome-copilot-id AGENTS.md
Instructions for GulajavaMinistudio/awesome-copilot-id, covering communication, explanation and documentation, markdown formatting, user communication style and workflow & methodology.
hiveshare CLAUDE.md
Instructions for KB-perByte/hiveshare, covering hiveshare — claude.md, repo layout, build & run, key env vars (server) and naming: hive vs memory.
llm-safe-haven CLAUDE.md
Instructions for pleasedodisturb/llm-safe-haven, covering llm safe haven, what this is, project structure, tdd — non-negotiable (adopted 2026-08-17) and the contract.
kleosrules AGENTS.md
Instructions for kleosr/kleosrules, a project described as: Cursor harness pack: user rules, skills, Bash hooks, local HANDOFF memory. macOS, Linux, Windows (WSL).
coding-agent-safety-gate AGENTS.md
Instructions for ASER-ho/coding-agent-safety-gate, covering agents / 代理规则, 仓库类型 / repository type and ai 代理规则 / rules for ai coding agents.
yapcap CLAUDE.md
Claude Code instructions for TopiCsarno/yapcap, a project described as: Native COSMIC panel applet showing local usage limits for Codex, Claude Code, and Cursor.