Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add instructions/nwiizo/tfmcp/claude-mdgit clone --depth 1 https://github.com/nwiizo/tfmcpWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/instructions/nwiizo/tfmcp/claude-md)<a href="https://agentmods.dev/instructions/nwiizo/tfmcp/claude-md"><img src="https://agentmods.dev/badge/instructions/nwiizo/tfmcp/claude-md.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00441 | $0.00441 |
| Opus 5 | $0.00220 | $0.00220 |
| Sonnet 5 | $0.00088 | $0.00088 |
| Haiku 4.5 | $0.00044 | $0.00044 |
Grade A, and why
tfmcp CLAUDE.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 6d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
CLAUDE.md
tfmcp is a Rust-based MCP server for Terraform operations using the RMCP SDK.
Quick Reference
# Quality checks (run before commits)
cargo fmt --all && RUSTFLAGS="-Dwarnings" cargo clippy --all-targets --all-features && cargo test --locked --all-features
Project Structure
| Module | Purpose |
|---|---|
src/core/ |
Main application logic |
src/mcp/ |
RMCP server, tool routing, protocol handling, and transports |
src/terraform/ |
Terraform CLI integration |
src/registry/ |
Terraform Registry API client |
Key Rules
- No mocks: Use real implementations only
- No dead code: Remove unused code immediately
- No warnings:
RUSTFLAGS="-Dwarnings"in CI - No
.unwrap(): Use proper error handling
Documentation
| File | Contents |
|---|---|
| rules/quality-commands.md | Build, test, CI commands |
| rules/development-guidelines.md | Code style, security rules |
| docs/architecture.md | Module structure, features |
| docs/configuration.md | Environment variables, Docker |
| docs/mcp-tools.md | Tool and resource reference |
| docs/troubleshooting.md | Known issues, debugging |
| skills/release/SKILL.md | Release process |
Environment Variables
| Variable | Description |
|---|---|
TERRAFORM_DIR |
Project directory |
TFMCP_ALLOW_DANGEROUS_OPS |
Enable apply/destroy |
TFMCP_LOG_LEVEL |
Logging verbosity |
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 6d ago First seen · 47 lines · 441 tokens per session scan A 38217289d148
tfmcp CLAUDE.md is an instructions file published in the GitHub repository nwiizo/tfmcp (371 stars, last pushed 2d ago), licensed MIT. It adds 441 tokens to every session, about $0.0022 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other instructions, from other repositories
blockrun-mcp AGENTS.md
AGENTS.md instructions for BlockRunAI/blockrun-mcp, covering blockrun mcp, commands, project structure, key dependencies and install in codex.
openrouter-mcp-multimodal AGENTS.md
AGENTS.md instructions for stabgan/openrouter-mcp-multimodal, covering agent instructions, before you ship, releasing (read this before publishing), short version and version files (must all match package.json).
intervals-icu-mcp CLAUDE.md
Claude Code instructions for hhopke/intervals-icu-mcp, covering claude.md, project overview, development commands, architecture (quick reference) and tool categories.
ai-toolkit AGENTS.md
AGENTS.md instructions for pipefy/ai-toolkit, covering repository guidelines, documentation map, project structure, import namespace migration: pipefysdk → pipefy and src/pipefysdk/init.py (transitional shim).
flyto-core CLAUDE.md
Claude Code instructions for flytohub/flyto-core, covering claude notes, cross-agent handoff and shared code intelligence.
Plonk AGENTS.md
AGENTS.md instructions for ostapondo/Plonk, covering agent rules, layout, adding a module, build & verify and code style.