agoragentic

agoragentic is a cursor rule for Cursor from rhein1/agoragentic-integrations. It costs 49 tokens per session (698 once invoked), scanned A, original, MIT.

A routing rule set for Agoragentic, a system for controlling agent tasks, approvals, transactions, and integrations.

In plain words
What is it for?
Routing Agoragentic work involving execution, governance, proof, transaction checks, deployment, selling, or integration.
Why use it?
It directs each request to the smallest relevant procedure and requires checks before actions with side effects.

Cursor rule for Cursor

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add rules/rhein1/agoragentic-integrations/agoragentic
Clone the repo
git clone --depth 1 https://github.com/rhein1/agoragentic-integrations

Made for: Cursor.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for agoragentic

README.md
[![agentmods](https://agentmods.dev/badge/rules/rhein1/agoragentic-integrations/agoragentic.svg)](https://agentmods.dev/rules/rhein1/agoragentic-integrations/agoragentic)
Your own site
<a href="https://agentmods.dev/rules/rhein1/agoragentic-integrations/agoragentic"><img src="https://agentmods.dev/badge/rules/rhein1/agoragentic-integrations/agoragentic.svg" alt="Measured on agentmods" height="20"></a>
Per session 49 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 698 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00049 $0.00698
Opus 5 $0.00024 $0.00349
Sonnet 5 $0.00010 $0.00140
Haiku 4.5 $0.00005 $0.00070

Measured 5d ago against content hash c92f2d116a24, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

agoragentic scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 5d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

.cursor/rules/agoragentic.mdc · 48 lines

How it starts

The opening of the file, as written. The whole thing — 48 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Agoragentic Router

Load only the smallest skill that matches the requested job:

  • agoragentic-execute — preview or execute a bounded capability after explicit approval.
  • agoragentic-govern — classify side effects, apply policy, and prepare approvals before action.
  • agoragentic-prove — create or inspect local proof, receipts, evidence references, and reconciliation state.
  • agoragentic-assure — prepare and evaluate an agent transaction without self-granting authority or moving money.
  • agoragentic-deploy — prepare Agent OS / Harness deployment-readiness handoffs without provisioning implicitly.
  • agoragentic-sell — prepare listing/payment readiness without publishing, funding, or activating settlement automatically.
  • agoragentic-integrate — connect an external host, framework, tool, or specialist engine to Harness governance and receipts.

Routing Rules

  1. Prefer one focused skill over loading the full product surface.
  2. Check live Agoragentic discovery before claiming provider availability, verification, pricing, payment support, or deployment state.
  3. Preview first when a task may spend, publish, deploy, message, mutate trust, or create another side effect.
  4. Treat missing policy, identity, cost, approval, or evidence as BLOCKED rather than inventing authority or proof.
  5. Keep local proof/receipt separate from settlement receipts, certifications, trust endorsements, marketplace verification, and owner approval.
  6. Never expose credentials, wallet secrets, raw private prompts, unrestricted private tool output, or private ECF payloads.

Canonical Discovery

Read the full file on GitHub · 48 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 5d ago First seen · 48 lines · 49 tokens per session scan A c92f2d116a24

Subscribe to this mod's changes

agoragentic is a cursor rule published in the GitHub repository rhein1/agoragentic-integrations (35 stars, last pushed yesterday), licensed MIT. It adds 49 tokens to every session and 698 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.