Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add rules/freshworks-developers/fw-dev-tools/ai-actions-platformgit clone --depth 1 https://github.com/freshworks-developers/fw-dev-toolsWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00000 | $0.02051 |
| Opus 5 | $0.00000 | $0.01026 |
| Sonnet 5 | $0.00000 | $0.00410 |
| Haiku 4.5 | $0.00000 | $0.00205 |
Grade A, and why
ai-actions-platform scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 299 lines — stays where its author put it; the contents beside it link to each section on GitHub.
AI Actions Platform 3.0 - Complete Reference
SELF-CONTAINED: This skill has everything needed for AI Actions app development. No other skill required.
AI Actions App Structure
AI Actions apps are serverless-only - NO frontend, NO locations, NO product events:
app-root/
├── actions.json # Action definitions (display_name, parameters, response)
├── manifest.json # Platform 3.0 manifest
├── server/
│ ├── server.js # SMI function implementations
│ └── test_data/
│ └── actionName.json # Test payload per action
├── config/
│ ├── requests.json # Request templates for external APIs
│ ├── iparams.json # Installation parameters
│ └── oauth_config.json # Optional: for OAuth-based APIs
└── README.md
CRITICAL: Function names in actions.json MUST match server.js exactly (case-sensitive).
Manifest Structure (Platform 3.0)
{
"platform-version": "3.0",
"modules": {
"common": {
"requests": {
"requestTemplateName": {}
},
"functions": {
"actionFunctionName": { "timeout": 20 }
}
},
"support_ticket": {},
"chat_conversation": {}
},
"engines": {
"node": "24.11.0",
"fdk": "10.0.0"
}
}
Rules:
- ✅
platform-versionMUST be "3.0" - ✅ At least ONE product module required (support_ticket, chat_conversation, service_ticket, deal, etc.) - can be empty
{} - ✅ All request templates declared in
modules.common.requests - ✅ All action functions declared in
modules.common.functionswith timeout (recommended: 20) - ✅
enginesblock required with node and fdk versions - ❌ NO
productblock (use modules) - ❌ NO
whitelisted-domains - ❌ NO locations, NO events (AI Actions are serverless-only)
Product Module Mapping
| Target Product | Include Module |
|---|---|
| Freshdesk | support_ticket |
| Freshchat | chat_conversation |
| Freshservice | service_ticket |
| Freshsales/CRM | deal, contact |
| Multi-product | support_ticket, chat_conversation |
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 299 lines · 0 tokens per session scan A 082d35af8c40
ai-actions-platform is a cursor rule published in the GitHub repository freshworks-developers/fw-dev-tools (5 stars, last pushed 8d ago), licensed MIT. It costs nothing until one of its globs matches a file; then it loads 2,051 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other cursor rules, from other repositories
battle-tested-engineer
Battle-tested engineering judgment for code, refactors, tests, and frontend UI. Ultra-terse caveman style during code work.
angular-20
This rule provides comprehensive best practices and coding standards for Angular development, focusing on modern TypeScript, standalone components, signals, and performance optimizations.
dev-standard
Apache Superset development standards and guidelines for Cursor IDE.
cli-error-handling
CLI command error handling patterns.
prefer-direct-imports-over-module-mocks
Prefer extracting a testable core over vi.mock / vi.resetModules when unit tests need to reach production logic entangled with config, env, or singletons.
control-plane-descriptors
Control plane descriptor and instance implementation patterns.