rg · Andrew Gallant
ripgrep for AI Agents
Search source trees quickly with stable JSON, glob, type, and context controls.
Install for an Agent
Choose an official installation path that matches the runtime. Pin a version for team or CI use, then record the version before the first task.
Structured Output for Reliable Automation
Prefer a machine-readable format. Treat stdout as the result channel and stderr as diagnostics so the agent can parse failures separately.
R0–R3 Command Risk Guide
Risk is assigned per command. R0 is local or remote read-only, R1 is reversible local write, R2 changes remote state, and R3 can be irreversible or production-impacting.
Read-only does not mean public
R0 only means the command does not change local or remote state. A read-only command may still return secrets, identity data, configuration, or production data. Expose only the minimum needed for the task, and never place it in logs, prompts, or commits.
How the Agent Readiness Score Is Built
Readiness describes how reliably an agent can operate the tool. It does not make every command safe and it does not replace an independent execution test.
Documentation indicates an agent-readiness score of 83/100. A bounded local smoke test is recorded for 15.1.0; review its limitations before relying on untested commands.
Generate a Skill or Agent Policy
Choose an agent and safety mode to generate a copyable artifact with installation, allowed commands, approval boundaries, and the evidence limitation.
---
name: ripgrep-agent-workflow
description: Use ripgrep for source search, pattern discovery, file type filtering with explicit command risk and evidence boundaries.
---
# ripgrep agent workflow
Use this skill when the task needs source search, pattern discovery, file type filtering, machine-readable matches.
## Evidence boundary
- Registry confidence: `verified`
- Documentation checked: `2026-07-10`
- Locally tested version: `15.1.0`
- Treat only the recorded executed checks as independently verified; every unlisted command remains documentation-only.
## Executed smoke checks
- `rg --version` — passed; exit 0. The recorded smoke check completed successfully.
- `rg --json --glob '*.ts' 'createFileRoute' src/routes` — passed; exit 0. The recorded smoke check completed successfully.
- `rg --json '"name"' package.json | jq -c 'select(.type == "match")'` — passed; exit 0. The NDJSON stream was reduced to the recorded match event without changing its payload.
- `rg --json 'definitely-no-clifinder-match' package.json` — expected-failure; exit 1. ripgrep returned its documented no-match exit status without writing diagnostics to stderr.
## Installation
- Homebrew (macos, linux): `brew install ripgrep`
- winget (windows): `winget install BurntSushi.ripgrep.MSVC`
## Authentication
- Methods: none
- Secret environment variables: none
- Minimum permissions: No service credential is required; restrict filesystem and network access to the task.
- Credential storage: No service credential is stored for this CLI.
- Never print, persist, or commit credential values.
## Allowed commands (read-only)
- `rg --json --glob "*.ts" "pattern" src` — R0: Searches a bounded directory and emits one JSON event per line.
- `rg --files --null src` — R0: Lists files while respecting ignore rules.
## Commands requiring explicit approval (read-only)
- None recorded.
## Forbidden commands (read-only)
- None recorded.
## Execution rules
1. Mode boundary: R0 exact commands may be used; R1, R2, and R3 commands are forbidden.
2. Confirm the selected account, project, context, database, namespace, or environment before any command.
3. Prefer structured output using `--json`, `--null`.
4. Capture the exact command, exit code, stdout, and stderr separately.
5. A generated prefix policy must prompt unless that exact prefix is explicitly marked suffix-safe; do not infer safety from the executable name.
6. Never broaden credentials or disable safety controls to make a command succeed.
## Official sources
- [ripgrep guide](https://github.com/BurntSushi/ripgrep/blob/master/GUIDE.md)
- [ripgrep guide source repository](https://github.com/BurntSushi/ripgrep)
Verification History and Official Evidence
CLI Finder records documentation review separately from real execution. Installation, help, exit codes, and output cannot be called Verified until they were run.