💻 AI Tooling Gap: State of AI Instructions 2026 Report
The report revealed that 78.7% of repositories are configured for only one AI tool, while developers use an average of 2 to 4 tools simultaneously. A critical security issue was also discovered: 0% of tested repositories use digital signatures for instruction files (e.g., CLAUDE.md), creating a risk of file poisoning attacks (the "ClawHavoc" case).
🌍 Industries need standardization and the implementation of trust mechanisms (signatures, licenses) for agentic instructions to avoid ecosystem fragmentation and new security threats.
👤 Developers are recommended to use symlinks to synchronize different instruction formats (CLAUDE.md, AGENTS.md) and to exercise caution when using skill files from unverified sources.