Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add rules/legann/repovine/repovine-workflowgit clone --depth 1 https://github.com/legann/repovineWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/rules/legann/repovine/repovine-workflow)<a href="https://agentmods.dev/rules/legann/repovine/repovine-workflow"><img src="https://agentmods.dev/badge/rules/legann/repovine/repovine-workflow.svg" alt="Measured on agentmods" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00014 | $0.02307 |
| Opus 5 | $0.00007 | $0.01154 |
| Sonnet 5 | $0.00003 | $0.00461 |
| Haiku 4.5 | $0.00001 | $0.00231 |
Grade A, and why
repovine-workflow scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 3d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 79 lines — stays where its author put it; the contents beside it link to each section on GitHub.
repovine -- Navigation Workflow
The narrowing loop
Use the public tools as a flexible context loop. You can go deep, branch sideways, return up, or jump cross-layer.
- Orient:
search_context({ "query": "...", "match": "auto", "limit": 15 })— defaultmatchisauto(AND then bounded OR). Usematch: "and"when you need every token on one node; usematch: "or"only when you intentionally want per-token union (may surface weak tokens likepackage/route). Filter withtypesand tune breadth withperTokenLimit. Beforeinspect_node, readresult.matches.strategy(used,relaxedFrom,strongTokens,weakTokenOnlySuppressed),gaps,summary,confidence, andtopResults[].matchedTokenCount— OR-relax hits omitemptyDiagnosticand are not strong anchors whenrelaxedFrom: "and"with lowmatchedTokenCountorconfidence: "low". - Map:
map_context({ "scope": "...", "view": "summary" }) - Inspect:
inspect_node({ "nodeId": "mod:pkg/path/module", "exportLimit": 20 }) - Annotation constraints: when implementation will touch inspected nodes, apply this checkpoint before editing:
Annotations hint and constrain; they do not bound inspect scope. Locality: annotation on nodeId X is evidence about X only — not about other nodeIds, including mod: refs in integrationPoints, links, or drillDown. Absence: no annotation and no inspect_node on a nodeId means no conclusion about that node. Unchanged: stating a nodeId is unchanged, verified, or already-correct requires inspect_node on that nodeId in this session. Closure: before leaving related nodes unedited, follow links, navigation.*, and task-relevant integrationPoints mod: refs. Boundary or discovery tasks (find every surface exposing an affordance class) inspect the affordance-class consumers/importers before treating them unchanged — breadth is the task. Refactor or architecture tasks bound closure with one analyze_dependencies impact pass and need not inspect every ref. Investigate channel: a links/drillDown/investigatePointers ref returned with investigate is must-inspect; inspect that node and close the flag as fixed or scoped-out with a code citation before reporting this node unchanged. Tags: risk (consumer-scoped risk on the target), boundary (off-limits surface — published contract, frozen migration, or structural slot — not edited in place), effect (target declares a persistent side effect), wiring (deployed runtime topology dispatches into or binds from the target), co-change (implements relation — contract and implementations move together), hub (target has many importers; impact-check before editing). Same-node citation: that code citation must be on the affordance path of the flagged node itself; gating by a sibling control, a parent or badge, or a different mount does not close the flag unless this affordance is shown to route through that gate. Enumerate-before-unchanged: reviewing a node means listing each mutation affordance, exported action, and protected side effect on it (mutation = anything that creates, changes, or removes state — including but not limited to writes, deletes, dispatches, and lifecycle callbacks) with its capability gate; a single gated affordance does not close a multi-affordance node — affordanceCount reports how many to enumerate. These are floors, not ceilings: the investigate tags and affordanceCount are minimums to check, their absence is not absence of work, and closing every delivered flag or enumerating one node is per-node completeness, never task completeness. Derived flags: a capability, permission, or feature flag is consumed at mount and render predicates and at importers, not only the hook that derives it — boundary tasks inspect those consumers. Weak context: while confidence is low, gaps is non-empty, or emptyDiagnostic is present, the scope is not complete.
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 3d ago First seen · 79 lines · 14 tokens per session scan A ad194e1de84b
repovine-workflow is a cursor rule published in the GitHub repository legann/repovine (0 stars, last pushed 1mo ago), licensed MIT. It adds 14 tokens to every session and 2,307 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other cursor rules, from other repositories
angular-20
This rule provides comprehensive best practices and coding standards for Angular development, focusing on modern TypeScript, standalone components, signals, and performance optimizations.
dev-standard
Apache Superset development standards and guidelines for Cursor IDE.
cli-error-handling
CLI command error handling patterns.
prefer-direct-imports-over-module-mocks
Prefer extracting a testable core over vi.mock / vi.resetModules when unit tests need to reach production logic entangled with config, env, or singletons.
control-plane-descriptors
Control plane descriptor and instance implementation patterns.
family-instance-domain-actions
Family instance domain action implementation patterns.