Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
git clone --depth 1 https://github.com/Khar-AG/t-800-agentWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/rules/khar-ag/t-800-agent/t-800-mandatory-routing)<a href="https://agentmods.dev/rules/khar-ag/t-800-agent/t-800-mandatory-routing"><img src="https://agentmods.dev/badge/rules/khar-ag/t-800-agent/t-800-mandatory-routing/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/rules/khar-ag/t-800-agent/t-800-mandatory-routing"><img src="https://agentmods.dev/badge/rules/khar-ag/t-800-agent/t-800-mandatory-routing.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.01682 | $0.01682 |
| Opus 5 | $0.00841 | $0.00841 |
| Sonnet 5 | $0.00336 | $0.00336 |
| Haiku 4.5 | $0.00168 | $0.00168 |
Grade A, and why
t-800-mandatory-routing scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 7d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 122 lines — stays where its author put it; the contents beside it link to each section on GitHub.
T-800 Agent — обязательная маршрутизация конвейера
BLOCKER (Директор / main chat)
Запрещено в main chat (и любому оркестратору вне factory):
Write/StrReplace/ прямые правки файлов вagents/,skills/**/SKILL.md,commands/,rules/*.mdc,hooks.json,hooks/*- «Implement the plan» с правкой этих путей, если в плане есть
factory-brief//t800-start//t800-fix
Разрешено только: Task(t-800-factory) (через /t800-start или /t800-fix).
Контракт Plan→Implement: shared/plan-to-factory-handoff-contract.md.
Rule = advisory для агента. Жёсткий FAIL — machine gates:
scripts/t800_factory_bypass_gate.py,scripts/t800_run_gate.py --strict-create.
HookpreToolUse(hooks/before-artifact-edit.sh, artifact-edit guard) в v1 даёт WARN, не hard-deny.
Когда ВСЕГДА через T-800
- Создать, изменить или удалить субагента (
agents/*.md) - Создать или изменить skill (
.cursor/skills/) - Создать или изменить command (
.cursor/commands/) - Создать или изменить rule (
.cursor/rules/*.mdc) - Создать или изменить hook (
hooks.json,.cursor/hooks/) - Скрипты установки/валидации плагина (
scripts/validate-agents.*,scripts/t800_run_gate.pyи т.д.) - Вопрос «как правильно в Cursor» при проектировании артефактов
Обязательная цепочка (v1.13 — отделы + loop + fix)
flowchart LR
task[Задача]
intake[intake?]
scout[scout]
research[research-lead]
craft[prompt-craft?]
brain[brain-lead]
factory[factory]
task --> intake --> scout --> research --> craft --> brain --> factory
Директор зовёт только лидов. Специалисты — авто внутри лида
(shared/department-orchestration-contract.md).
- intake-clarifier? → scout
- research-lead → АВТО strategist → specialists → synthesizer
- prompt-craft? (agent/skill/command)
- brain-lead → АВТО 1–2 domain brains
- factory → АВТО architect → … → auditor
Правка существующего: /t800-fix (fix-pack → SKIP/LIGHT → factory PATCH → t800_run_gate.py).
Контракт: shared/fix-pipeline-contract.md.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 7d ago First seen · 122 lines · 1,682 tokens per session scan A 69645b49f1c6
t-800-mandatory-routing is a cursor rule published in the GitHub repository Khar-AG/t-800-agent (8 stars, last pushed 14d ago), licensed MIT. It adds 1,682 tokens to every session, about $0.0084 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.
Other cursor rules, from other repositories
pn-aesthetics-baseline
Non-generic UI baseline for user-facing surfaces; aligns with .pncore-design.md and pn-core aesthetics reference when MCP is available.
pn-build-gate
For build/design/scaffold requests, load pn-build or pn-design; discovery and skeptic mandatory. For fix/tweak, use skills directly.
pn-godot
Godot 4.x coding conventions: GDScript typing, signal patterns, scene composition, shader style, naming, Resource patterns, multiplayer RPC safety, GDExtension registration. Use when editing .gd, .tscn, .tres, .gdshader, or project.godot files.
pn-mcp-proactive
When MCP is available, use pn-core tools proactively when tasks match pn skills or agents; use Octocode for code research when available.
pn-nextjs
Next.js best practices. Data loading, server/client boundaries, streaming, mutations, and performance. For Next app/ or pages/, pn-react also applies (core React patterns); content is complementary.
pn-php-backend
PHP backend style, env, and error handling. Use for API and server code (Laravel, Slim).