Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add rules/benoror/obsidianos_work/skill-conventionsgit clone --depth 1 https://github.com/benoror/obsidianos_workWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/rules/benoror/obsidianos_work/skill-conventions)<a href="https://agentmods.dev/rules/benoror/obsidianos_work/skill-conventions"><img src="https://agentmods.dev/badge/rules/benoror/obsidianos_work/skill-conventions.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00000 | $0.00048 |
| Opus 5 | $0.00000 | $0.00024 |
| Sonnet 5 | $0.00000 | $0.00010 |
| Haiku 4.5 | $0.00000 | $0.00005 |
Grade A, and why
skill-conventions scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
What it actually says
Read and follow .agents/rules/skill-conventions.md.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 4d ago First seen · 7 lines · 0 tokens per session scan A 6ae738071ece
skill-conventions is a cursor rule published in the GitHub repository benoror/obsidianos_work (166 stars, last pushed 2mo ago), licensed MIT. It costs nothing until one of its globs matches a file; then it loads 48 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other cursor rules, from other repositories
engine-internals
Coding Agent engine implementation details (Cursor + Claude Code) — reference when modifying engine.ts or debugging Agent behavior.
testing-conventions
Testing conventions — must reference when modifying src/ code or tests.
architecture-constraints
GolemBot architecture hard constraints — must check before modifying any src/ code.
dual-memory
Use both semantic (qdrant-find) and structural (graphify) memory before non-trivial code changes.
migration
Cursor rule "migration" from sunmh207/entire-dashboard, covering migration 数据库迁移脚本规范, 1. 目录结构, 2. 脚本文件命名规范, 3. 数据库与字符集规范 and 4. 表、字段书写规范.
controller
采用 /{service}/{method} 的命名方式,命名使用小写字母,多个单词之间使用 "-" 隔开。.