The full upstream README, mirrored here for reference. Install config, tool schemas, adoption signals, and an original overview live on the Hermes Prime listing page.
Deliver a versioned convention card to a fresh Claude Code session.
hermes-prime is developed by Hermes Labs.
Hermes Labs is an agentic infrastructure company building the reliability layer for autonomous systems.
The Bash surface snapshots the card into a project's CLAUDE.md; the read-only MCP
surface returns the same card over stdio. The mechanism makes conventions
available. It does not prove that a model will follow them or prevent drift.
This is a small transport, not an enforcement layer. Hermes Labs ships the
convention card it uses itself; fork it or select another fragment with
HERMES_SESSION_INIT_FRAGMENT=/path/to/custom.md.
Two surfaces share one fragment: a four-subcommand Bash tool for
CLAUDE.md-based workflows and a Claude-Code-native MCP server that does not
mutate CLAUDE.md. Neither surface calls a model or a network service. The Bash
path makes no global configuration change; MCP registration uses the scope the
user selects.
Conventions can fall out of visible context between sessions. A versioned card gives a new session one concrete artifact to read instead of requiring it to reconstruct those conventions from scattered notes.
The discipline rules normally live in scattered handbook docs, feedback files, or session-end retros — places a fresh session never reads. hermes-prime packages them as a single self-contained card the orchestrator opens with.
Most "set up the agent" tools either (a) ship a giant prompt file you copy-paste,
or (b) install a global hook that runs on every session whether you want it or
not. hermes-prime is per-project, marker-anchored, and idempotent. Unedited
injected suffixes are byte-reversible; edited blocks use the documented
marker/backup fallback.
The fragment is a snapshot, not a live reference. Re-inject to refresh. The marker (<!-- session-init: BEGIN/END -->) means uninject is byte-clean.
| Surface | Audience | Mechanism |
|---|---|---|
| MCP server (recommended for Claude Code) | Claude Code users | Native MCP tools — get_conventions / list_scopes. No CLAUDE.md mutation, no snapshot. See mcp-server/. |
Bash binary (CLAUDE.md fallback) | Claude Code and other workflows that explicitly read a project's CLAUDE.md | Inject the fragment into CLAUDE.md between markers. Snapshot semantics — re-inject to refresh. Other agent instruction formats are not included. |
Both share the same CLAUDE-fragment.md. They are independent surfaces; pick whichever fits your agent.
Run that command from the repository root. Local scope loads the server for the
current project. Last verified against Claude Code 2.1.268 on 2026-09-11:
claude mcp list reports the server as Connected. The server's initialize
response carries a short instructions string, which Claude Code shows to the
model so a fresh session knows to call get_conventions. Use --scope user only if you intend to make the same command
available to your own sessions across projects. Then call get_conventions
from a session covered by the selected scope. Pure stdlib, no third-party
runtime dependencies. Full registration and removal instructions, plus the
packaged pip install hermes-prime-mcp console-script path and the
server.json MCP Registry manifest, are documented in
mcp-server/README.md.
Or symlink into ~/bin/. No package install — it is one bash script and one markdown fragment.
| Subcommand | Behavior | Exit |
|---|---|---|
--check | Requires only the fragment file. Reports hermes-ground, hermes-rubric-blinded, and the handbook as optional informational companions. | 0 fragment present / 1 fragment missing |
--print | Prints the CLAUDE-fragment to stdout. Useful for piping into --append-system-prompt or for inspection. | 0 |
--inject <project> | Appends the fragment to <project>/CLAUDE.md between markers. Backs up existing CLAUDE.md to CLAUDE.md.bak.<timestamp>. Idempotent: re-running is a no-op. | 0 |
--uninject <project> | Removes the exact suffix added by --inject, byte-restoring pre-existing content or removing a CLAUDE.md created by injection. Falls back to line-preserving marker removal for edited blocks, or the latest backup when no marker remains. | 0 ok / 1 not-found |
Note:
hermes-groundis an internal Hermes Labs grounding tool. It is not publicly released; the convention simply describes the orchestrator behavior it triggers.
A short markdown block containing:
hermes-ground for an external reality check.See CLAUDE-fragment.md for the full text. The fragment is the contract.
Three honest evals live in evals/:
claude --print session injected with the fragment correctly identify hermes-ground as the external-grounding tool, vs an un-injected session?Run them: bash evals/preliminary-bootstrap-eval.sh. Protocol in evals/EVAL-PROTOCOL.md. Run transcripts at evals/runs/. Null results published unredacted per the standing convention.
hermes-prime is a convention-delivery surface among the Hermes Labs open-source
tools. It does not replace companion tools and does not ensure that they are
called.
hermes-rubric — evidence-first scoring; the convention "every shippable artifact passes through a BLINDed rubric" points here.hermes-blind — a separately invoked multi-turn recovery scaffold.Source version 0.2.1-alpha.1 — unreleased alpha candidate. There is no public 0.2.1-alpha.1 tag or GitHub release, and this branch does not authorize one.
The MCP distribution is a separate surface and it is public: hermes-prime-mcp
0.2.1a2 is on PyPI and the MCP Registry listing
io.github.hermes-labs-ai/hermes-prime 0.2.1-alpha.1 is active (both
verified 2026-09-18). uvx --from hermes-prime-mcp hermes-prime-mcp works today
without a checkout. "Unreleased" above describes the repository, not the package.
The mechanism suite contains 11 Bash assertions plus 13 MCP tests. E1 is one author-run three-question control/treatment observation; it is preliminary convention-recall evidence, not evidence that the tool prevents drift or improves downstream task performance.
If E1 returns a null result on a larger sweep, that gets published, not papered over. Same standing convention as the rest of the Hermes Labs open-source tools.
Before requesting any push or release, run the local mechanism gate:
It runs ShellCheck, the 11-assertion Bash suite, the 13-test MCP suite, and
fragment size/marker checks. The hosted workflow (.github/workflows/ci.yml)
runs the same suites on macOS and Ubuntu. Exit 0 is evidence only for those named checks at the
current tree; it is not push, release, or publication authorization.
MIT. See LICENSE.
Built by Hermes Labs.
Hermes Labs is an agentic infrastructure company building the reliability layer for autonomous systems. This repository is one small mechanism in that portfolio; its claims are limited to behavior exercised by the checks above.
For enterprise deployments and AI-reliability engagements: roli@hermes-labs.ai · hermes-labs.ai
On naming. Hermes Labs is named for Hermes, the Greek messenger god — patron of communication and interpretation, the herald who carries meaning between worlds. The thread to the work: hermeneutics, the theory of interpretation that takes its name from Hermes, is the philosophical anchor for an agentic infrastructure company whose substrate is linguistic. Not affiliated with NousResearch's Hermes LLM line or their hermes-agent framework — different companies, different work.
Founder: Rolando (Roli) Bosch. Site: hermes-labs.ai Citation: Bosch, R. (2026). Hermes Labs: AI reliability engineering for production agents and LLM applications. https://hermes-labs.ai