Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add rules/rootio-avr/root-ai/rootio-patchergit clone --depth 1 https://github.com/rootio-avr/root-aiWhat it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5 | $0.00994 | $0.00994 |
| Opus 5 | $0.00497 | $0.00497 |
| Sonnet 5 | $0.00199 | $0.00199 |
| Haiku 4.5 | $0.00099 | $0.00099 |
Grade B, and why
rootio-patcher scanned grade B with 2 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Asks for rootmediumPrivilege escalation
A mod that escalates privileges can change anything on the machine, not only the project.
chmod +x rootio_patcher && sudo mv rootio_patcher /usr/local/bin/ Makes network callslowCapability
Not a fault in itself. Listed so you know the mod talks to something, and to what.
curl -sL https://github.com/rootio-avr/rootio_patcher/releases/latest/download/rootio_patcher_darwin_arm64.tar.gz | tar xz How it starts
The opening of the file, as written. The whole thing — 132 lines — stays where its author put it; the contents beside it link to each section on GitHub.
description: Patch vulnerable packages with Root.io when working with dependency files globs: ["/package.json", "/pom.xml", "/requirements.txt", "/Pipfile", "**/pyproject.toml"] alwaysApply: false
Root.io Package Patcher
Root.io provides security-patched versions of open source packages. This skill replaces vulnerable packages with Root.io fixed versions.
Prerequisites
1. Install rootio_patcher
Download the binary for your platform from https://github.com/rootio-avr/rootio_patcher/releases/latest
# macOS (Apple Silicon)
curl -sL https://github.com/rootio-avr/rootio_patcher/releases/latest/download/rootio_patcher_darwin_arm64.tar.gz | tar xz
chmod +x rootio_patcher && sudo mv rootio_patcher /usr/local/bin/
# macOS (Intel)
curl -sL https://github.com/rootio-avr/rootio_patcher/releases/latest/download/rootio_patcher_darwin_x86_64.tar.gz | tar xz
chmod +x rootio_patcher && sudo mv rootio_patcher /usr/local/bin/
# Linux (x86_64)
curl -sL https://github.com/rootio-avr/rootio_patcher/releases/latest/download/rootio_patcher_linux_x86_64.tar.gz | tar xz
chmod +x rootio_patcher && sudo mv rootio_patcher /usr/local/bin/
2. Get an API key
Sign up at https://app.root.io and generate an API key from the dashboard.
export ROOTIO_API_KEY="your-api-key-here"
3. Configure package registries (one-time per repo)
Root.io patched packages are served from pkg.root.io.
Authentication: Basic Auth, username root, password = your API key.
npm / yarn / pnpm — add to .npmrc in the project root:
@rootio:registry=https://pkg.root.io/npm/
//pkg.root.io/npm/:_authToken=${ROOTIO_API_KEY}
Maven — add to ~/.m2/settings.xml:
<servers>
<server>
<id>rootio</id>
<username>root</username>
<password>${ROOTIO_API_KEY}</password>
</server>
</servers>
<profiles>
<profile>
<id>rootio</id>
<repositories>
<repository>
<id>rootio</id>
<url>https://pkg.root.io/maven/</url>
</repository>
</repositories>
</profile>
</profiles>
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 2d ago First seen · 132 lines · 994 tokens per session scan B 83e1fe7b2a45
rootio-patcher is a cursor rule published in the GitHub repository rootio-avr/root-ai (2 stars, last pushed 4mo ago), licensed Apache-2.0. It adds 994 tokens to every session, about $0.0050 per session on Opus 5. A static security scan graded it B with 2 findings (asks for root, makes network calls). No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other cursor rules, from other repositories
angular-20
This rule provides comprehensive best practices and coding standards for Angular development, focusing on modern TypeScript, standalone components, signals, and performance optimizations.
dev-standard
Apache Superset development standards and guidelines for Cursor IDE.
cli-error-handling
CLI command error handling patterns.
prefer-direct-imports-over-module-mocks
Prefer extracting a testable core over vi.mock / vi.resetModules when unit tests need to reach production logic entangled with config, env, or singletons.
control-plane-descriptors
Control plane descriptor and instance implementation patterns.
family-instance-domain-actions
Family instance domain action implementation patterns.