claude-code-best-practice CLAUDE.md

A set of project instructions for Claude Code in a repository that demonstrates skills, subagents, hooks, and commands. It also documents an example weather workflow.

In plain words
What is it for?
Use it as a reference when organizing Claude Code instructions, reusable skills, subagents, hooks, and multi-step commands.
Why use it?
It gives the coding agent a shared description of the repository and explains how its automation pieces fit together.

Instructions file

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add instructions/shanraisshan/claude-code-best-practice/claude-md
Clone the repo
git clone --depth 1 https://github.com/shanraisshan/claude-code-best-practice
Per session 1,830 This file is loaded in full into every session.
When invoked 1,830 The same file — it is already loaded in full.
Security scan B 1 finding. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.01830 $0.01830
Opus 5 $0.00915 $0.00915
Sonnet 5 $0.00366 $0.00366
Haiku 4.5 $0.00183 $0.00183

Measured 2d ago against content hash 9f9a7f3e400b, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade B, and why

claude-code-best-practice CLAUDE.md scanned grade B with 1 finding against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Reads agent configuration directoriesmediumAgent snooping

.claude/, .codex/, .gemini/ hold keys, settings and other credentials a mod has no legitimate need for.

5. `~/.claude/settings.json`: Global personal defaults
Origin

Copies of this mod

1 near-identical copy found in the catalogue:

CLAUDE.md · 127 lines

How it starts

The opening of the file, as written. The whole thing — 127 lines — stays where its author put it; the contents beside it link to each section on GitHub.

CLAUDE.md

This file provides guidance to Claude Code (claude.ai/code) when working with code in this repository.

Repository Overview

This is a best practices repository for Claude Code configuration, demonstrating patterns for skills, subagents, hooks, and commands. It serves as a reference implementation rather than an application codebase.

Key Components

Weather System (Example Workflow)

A demonstration of two distinct skill patterns via the Command → Agent → Skill architecture:

  • /weather-orchestrator command (.claude/commands/weather-orchestrator.md): Entry point — asks user for C/F, invokes agent, then invokes SVG skill
  • weather-agent agent (.claude/agents/weather-agent.md): Fetches temperature using its preloaded weather-fetcher skill (agent skill pattern)
  • weather-fetcher skill (.claude/skills/weather-fetcher/SKILL.md): Preloaded into agent — instructions for fetching temperature from Open-Meteo
  • weather-svg-creator skill (.claude/skills/weather-svg-creator/SKILL.md): Skill — creates SVG weather card, writes orchestration-workflow/weather.svg and orchestration-workflow/output.md

Two skill patterns: agent skills (preloaded via skills: field) vs skills (invoked via Skill tool). See orchestration-workflow/orchestration-workflow.md for the complete flow diagram.

Skill Definition Structure

Skills in .claude/skills/<name>/SKILL.md use YAML frontmatter:

  • name: Display name and /slash-command (defaults to directory name)
  • description: When to invoke (recommended for auto-discovery)
  • argument-hint: Autocomplete hint (e.g., [issue-number])
  • disable-model-invocation: Set true to prevent automatic invocation
  • user-invocable: Set false to hide from / menu (background knowledge only)
  • allowed-tools: Tools allowed without permission prompts when skill is active
  • model: Model to use when skill is active
  • context: Set to fork to run in isolated subagent context
  • agent: Subagent type for context: fork (default: general-purpose)
  • hooks: Lifecycle hooks scoped to this skill

Read the full file on GitHub · 127 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 2d ago First seen · 127 lines · 1,830 tokens per session scan B 9f9a7f3e400b

Subscribe to this mod's changes

claude-code-best-practice CLAUDE.md is an instructions file published in the GitHub repository shanraisshan/claude-code-best-practice (65,460 stars, last pushed today), licensed MIT. It adds 1,830 tokens to every session, about $0.0092 per session on Opus 5. A static security scan graded it B with 1 finding (reads agent configuration directories). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.