SCOUT: Instructions file for Claude Code

CLAUDE.md

SCOUT CLAUDE.md is an instructions file for Claude Code from R00T-Kim/SCOUT. It costs 1,596 tokens per session, scanned A, original, Apache-2.0.

A project guide for SCOUT, a Python firmware-analysis tool that processes firmware through stages from unpacking to vulnerability and exploit-chain evidence.

In plain words
What is it for?
Use it when building, testing, running, or understanding SCOUT’s firmware-analysis pipeline and its handoff to the separate Terminator orchestrator.
Why use it?
It explains the project structure, commands, optional external tools, and ways to run analysis deterministically or with selected stages.

Instructions file for Claude Code

Written for Claude Code: the file is CLAUDE.md. Also seen: mentions CLAUDE.md; mentions Claude Code.

This is R00T-Kim/SCOUT's own configuration. It tells Claude Code how to work on SCOUT itself, so it is not a mod to install elsewhere. Copy it as a starting point and replace the rules that are about this project. Everything SCOUT configures →

Reuse

Borrowing it

Nothing to install: this file belongs to R00T-Kim/SCOUT. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.

Copy the file
curl -O https://raw.githubusercontent.com/R00T-Kim/SCOUT/main/CLAUDE.md
Clone the repo
git clone --depth 1 https://github.com/R00T-Kim/SCOUT

Made for: Claude Code.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for SCOUT CLAUDE.md

README.md
[![agentmods](https://agentmods.dev/badge/instructions/r00t-kim/scout/claude-md.svg)](https://agentmods.dev/instructions/r00t-kim/scout/claude-md)
Your own site
<a href="https://agentmods.dev/instructions/r00t-kim/scout/claude-md"><img src="https://agentmods.dev/badge/instructions/r00t-kim/scout/claude-md.svg" alt="Measured on agentmods" height="20"></a>
Per session 1,596 This file is loaded in full into every session.
When invoked 1,596 The same file — it is already loaded in full.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.01596 $0.01596
Opus 5 $0.00798 $0.00798
Sonnet 5 $0.00319 $0.00319
Haiku 4.5 $0.00160 $0.00160

Measured 8d ago against content hash d8ef6449864d, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-08, from the pricing page.

Security

Grade A, and why

SCOUT CLAUDE.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 8d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

CLAUDE.md · 130 lines

How it starts

The opening of the file, as written. The whole thing — 130 lines — stays where its author put it; the contents beside it link to each section on GitHub.

CLAUDE.md

This file provides guidance to Claude Code (claude.ai/code) when working with code in this repository.

Project Overview

SCOUT (AIEdge) is a deterministic firmware-to-exploit evidence engine. It takes firmware blobs as input and produces hash-anchored evidence artifacts through a 42-stage sequential pipeline — from unpacking through vulnerability discovery to exploit chain verification. SCOUT is the evidence-production layer; a separate orchestrator (Terminator) applies LLM judgment and dynamic validation on top via firmware_handoff.json.

Key constraints: Pure Python 3.10+ with zero pip dependencies (stdlib only). External tools (binwalk, QEMU, FirmAE, docker) are runtime-optional.

Build, Test, and Run Commands

# CLI help
./scout --help

# Full analysis (all features enabled by default)
./scout analyze firmware.bin

# Suppress real-time progress output (CI/scripted use)
./scout analyze firmware.bin --quiet

# Deterministic analysis (no LLM)
./scout analyze firmware.bin --no-llm

# With specific stages
./scout analyze firmware.bin --no-llm \
  --stages tooling,extraction,structure,carving,firmware_profile,inventory

# Pre-extracted rootfs bypass (when extraction is weak)
./scout analyze firmware.img --no-llm --rootfs /path/to/extracted/rootfs

# 8MB canonical track (truncated input for quick profiling)
./scout analyze-8mb firmware.bin --no-llm

# Rerun specific stages on existing run
./scout stages aiedge-runs/<run_id> --no-llm --stages inventory

# Run tests
pytest -q                                        # full suite
pytest -q tests/test_inventory.py                # single module
pytest -q tests/test_inventory.py::test_func     # single test

# Linting (ruff configured via pyproject.toml)
ruff check src/

# Type checking (pyright configured via pyrightconfig.json)
pyright src/

# Quality and verification
./scout corpus-validate aiedge-runs/<run_id>
./scout quality-metrics aiedge-runs/<run_id>
./scout quality-gate aiedge-runs/<run_id>
./scout release-quality-gate aiedge-runs/<run_id>
scripts/release_gate.sh --run-dir aiedge-runs/<run_id>
python3 scripts/verify_analyst_digest.py --run-dir aiedge-runs/<run_id>
python3 scripts/verify_verified_chain.py --run-dir aiedge-runs/<run_id>

# TUI dashboard
./scout tui aiedge-runs/<run_id> --interactive   # interactive mode
./scout tw aiedge-runs/<run_id> -t 2             # live-refresh (watch)
./scout ti                                       # interactive, latest run
./scout to                                       # once mode
./scout t                                        # latest run

# Serve report viewer
./scout serve aiedge-runs/<run_id>

# MCP server for AI agent integration
./scout mcp [--project-id <run_id>]

Read the full file on GitHub · 130 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 8d ago First seen · 130 lines · 1,596 tokens per session scan A d8ef6449864d

Subscribe to this mod's changes

SCOUT CLAUDE.md is an instructions file published in the GitHub repository R00T-Kim/SCOUT (11 stars, last pushed 3mo ago), licensed Apache-2.0. It adds 1,596 tokens to every session, about $0.0080 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other instructions, from other repositories

next.js AGENTS.md

AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.

vercel/next.js · 7,296 tokens

codex AGENTS.md

AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.

openai/codex · 5,153 tokens

vscode buildNext.instructions.md

Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).

microsoft/vscode · 6,785 tokens

vscode oss-third-party-notices.instructions.md

Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).

microsoft/vscode · 5,001 tokens

langchain AGENTS.md

AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.

langchain-ai/langchain · 4,469 tokens

spec-kit AGENTS.md

AGENTS.md instructions for github/spec-kit, covering agents.md, about spec kit and specify, quickstart — add a new integration in 5 steps, integration architecture and integrationmanifest — file tracking.

github/spec-kit · 7,104 tokens