agentleFS
Sign inSign up

AGENTS.md examples from real projects

How real projects brief Codex, Cursor and every other agent that reads AGENTS.md.

Best matches · from page 8Worked for most · soon
MicrosoftAGENTS.md

agent-framework / devui

microsoft/agent-framework/python/packages/devui/AGENTS.md

bash # Run with auto-discovery devui ./agents # Run with specific entities devui --entities my_agent.py ``` ## Security Posture DevUI is a development-only sample app, not a production hosting surface. Authentication

14k8mo agoDiscuss
AWSAGENTS.md

aws-cdk

aws/aws-cdk/AGENTS.md

factory methods instead - No `Token` type in props - `SecretValue` type for any password/secret/token properties ## Security Rules - SHOULD prefer specific IAM actions over full-service wildcards (`s3:*`), but suffix wildcards

13k19d agoDiscuss
ElasticAGENTS.md

beats

elastic/beats/AGENTS.md

services and endpoints, detecting uptime/downtime | | `auditbeat` | Gathers audit data from systems to track security events, user activities, and compliance requirements | | `packetbeat` | Analyzes network traffic by capturing and inspecting packets

13k30d agoDiscuss
BeehiveInnovationsAGENTS.md

pal-mcp-server

BeehiveInnovations/pal-mcp-server/AGENTS.md

Install GitHub CLI: `brew install gh` (macOS) or visit https://cli.github.com for other platforms. ## Security & Configuration Tips Store API keys and provider URLs in `.env` or your MCP client config

12k13mo agoReads credentialsDiscuss
OpenAIAGENTS.md

openai-node

openai/openai-node/AGENTS.md

checker and effective budget come from main, not the PR. Keep default CODEOWNERS. ## Security and lifecycle correctness - Never commit API keys, tokens, private keys, `.env` files, customer data, or other

11k40d agoReads credentialsDiscuss
Model Context ProtocolAGENTS.md

inspector

modelcontextprotocol/inspector/AGENTS.md

release`](.claude/skills/release/SKILL.md) | Cutting a release: bump on `v2/main`, milestone merge, tag `origin/main`, publish | `/release` | | [`security-advisory`](.claude/skills/security-advisory/SKILL.md) | A privately reported vulnerability end to end: the draft card, who owns

11k8d agoReads credentialsDiscuss
OpenAIAGENTS.md

codex-security

openai/codex-security/AGENTS.md

Keep it simple Codex Security is a thin wrapper around Codex and its security plugin. - Trust local tools and processes running as the current user. - Treat repository contents, model output

11k20d agoDiscuss
OpenAIAGENTS.md

codex-security / typescript

openai/codex-security/sdk/typescript/AGENTS.md

Codex Security CLI Codex Security is a thin CLI and SDK wrapper around Codex and its security plugin. Use their existing behavior instead of building another runtime. ## Threat model

11k20d agoDiscuss
LangChainAGENTS.md

open-swe

langchain-ai/open-swe/AGENTS.md

controls may ship without a corresponding tool, especially for secret input until a secure tool-driven input flow exists. Do not add a tool when the agent can already

11k8d agoDiscuss
GoogleAGENTS.md

adk-recipes / long-horizon-harness

google/adk-recipes/core/python/long-horizon-harness/AGENTS.md

prefix, prefix cache, the four bounds on context growth), and [`docs/security-model.md`](docs/security-model.md) (per-layer security). Don't duplicate those here — link to them. ## What this recipe teaches Horizon leans

10k51d agoReads credentialsDiscuss
KuberwastakenAGENTS.md

claurst

Kuberwastaken/claurst/docs/agents.md

same name. ```json { "agents": { "review": { "description": "Senior code reviewer focused on correctness and security", "model": "anthropic/claude-opus-4-6", "temperature": 0.3, "prompt": "You are a senior software engineer performing code review. Focus

10k39d agoDiscuss
CloudflareAGENTS.md

cloudflare-os

cloudflare/cloudflare-os/AGENTS.md

rethink the design); and prefer reusing existing mechanisms over adding parallel ones. Capability-based security note: a resource becomes "ambient" (auto-injected) only by user/admin configuration — a gatekeeper must never

10k9d agoDiscuss
CloudflareAGENTS.md

cloudflare-os / workshop-frontend

cloudflare/cloudflare-os/packages/workshop-frontend/AGENTS.md

block already says. Comments are appropriate for gotchas, non-obvious invariants, external constraints, security or performance reasoning, and deliberate departures from a convention. Explain why the surprising choice is necessary

10k9d agoDiscuss
open-gsdAGENTS.md

gsd-core

open-gsd/gsd-core/docs/AGENTS.md

checker, ui-checker | | Verifiers | 2 | verifier, dom-verifier | | Auditors | 3 | nyquist-auditor, ui-auditor, security-auditor | | Mappers | 1 | codebase-mapper | | Debuggers | 1 | debugger | | Doc Writers | 2 | doc-writer, doc-verifier

9.9k28d agoDiscuss
AWSAGENTS.md

mcp / dynamodb-mcp-server

awslabs/mcp/src/dynamodb-mcp-server/AGENTS.md

variable #### MySQL Analyzer - **Issue**: Connection timeout or permission denied - **Solution**: Verify AWS credentials, check Security Group rules, ensure RDS Data API is enabled - **Debug**: Set `FASTMCP_LOG_LEVEL=DEBUG

9.7k30d agoDiscuss
backnotpropAGENTS.md

plannotator

backnotprop/plannotator/AGENTS.md

# Plannotator A plan review UI for Claude Code that intercepts `ExitPlanMode` via hooks, letting

9k10d agoReads credentialsDiscuss
CloudflareAGENTS.md

vinext

cloudflare/vinext/AGENTS.md

Before writing a fix, confirm how Next.js handles the same scenario. This applies to security fixes, bug reports, and behavioral changes. We have repeatedly shipped fixes that diverged from Next.js

8.9k4d agoReads credentialsDiscuss
GoogleAGENTS.md

adk-go

google/adk-go/AGENTS.md

request and response bodies, headers, credentials, tokens and API keys are customer content or security material, at every level including debug. Log the shape instead — a type, a count

8.8k21d agoReads credentialsDiscuss
NVIDIAAGENTS.md

OpenShell

NVIDIA/OpenShell/AGENTS.md

direct request proceeds after warning about missing or incomplete expected labels. - **Security:** `review-security-issue` → `fix-security-issue` - General build agents must not process `topic:security` issues. For unattended processing

8.8k6d agoReads credentialsDiscuss
CloudflareAGENTS.md

workerd

cloudflare/workerd/AGENTS.md

capnp` format) - Main schema: `src/workerd/server/workerd.capnp` - Sample configurations in `samples/` directory - Configuration uses capability-based security model ### Where to Look | Task | Location | Notes | | ---------------------- | ------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------------ | | Add/modify JS API | `src/workerd/api/` | C++ with JSG macros

8.8k7mo agoDiscuss
CLAUDE.md vs AGENTS.md

About AGENTS.md

What is AGENTS.md?

An open format for instructions to coding agents, read by Codex, Cursor and others. Think of it as a README written for agents.

Where does it go?

At the repository root, with more specific files in subdirectories. Agents read the one closest to the file they're editing.

What should it contain?

Setup and test commands, code style, and the rules a new contributor would need to know.

Does Claude Code read it?

Claude Code reads CLAUDE.md. A one-line CLAUDE.md that points at AGENTS.md covers both.