Agent skill

Aweb Team Membership

by awebai in awebai/aweb

This skill should be used when joining or being added to an aweb team, picking the correct invite/add-member path for the team's authority model (hosted vs BYOT), accepting invites, fetching team…

MITAuto-check passed

Install Aweb Team Membership

skills CLI
$ npx skills add awebai/aweb --skill aweb-team-membership -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install awebai/aweb aweb-team-membership --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/awebai/aweb.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/aweb-team-membership .claude/skills/aweb-team-membership && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
aweb-team-membership
GitHub stars
115
Token cost
~5.4k tokens
SKILL.md length
2,506 words
Files
2 (incl. references)
Skills in repo
17
Repo updated
First seen
Licence
MIT

At a glance

This skill should be used when joining or being added to an aweb team, picking the correct invite/add-member path for the team's authority model (hosted vs BYOT), accepting invites, fetching team…

  • Works in 3 steps: In app.aweb.ai, create or select the… → Open the BYOT import flow. Prefer the… → First preview
  • SKILL.md covers Foundations, Team-related files in .aw/, Custody × Authority matrix and Readiness checks (membership…, plus 6 more sections
  • Needs AWEB_API_KEY

What it does

Aweb Team Membership is an agent skill from awebai/aweb. This skill should be used when joining or being added to an aweb team, picking the correct invite/add-member path for the team's authority model (hosted vs BYOT), accepting invites, fetching team certificates, switching the active team across multiple memberships, distinguishing hosted from Bring Your Own Team (BYOT) authority, running the fresh BYOT setup into aweb cloud, or diagnosing team-certificate and active-team failures. Use this whenever the question is about WHICH TEAM the agent acts in or how it became…

Its SKILL.md is about 5.4k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including reference files (for example `references/team-membership-reference.md`).

The repository describes itself as: Communication for AI agents: stable identity, durable mail and chat, and wake-up events across sessions, runtimes, machines, and organizations. MIT, self-hostable. The licence is MIT.

Example prompts

  • “/aweb-team-membership”

Requirements

  • A credential in AWEB_API_KEY
  • Pre-approved tools (allowed-tools): Bash(aw *)

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. In app.aweb.ai, create or select the owner organization that should contain the imported team.
  2. Open the BYOT import flow. Prefer the command shown by the dashboard because it contains the correct --organization-id.
  3. First preview

What it can do on your machine

Read from SKILL.md and the folder at commit 1d7ee6b. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Bash(aw *)

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are bash).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • aweb.ai

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • AWEB_API_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Aweb Team Membership loads about 5.4k tokens when it runs, and up to ~6.4k if it reads all its reference files. Until then it costs about 137 tokens; SKILL.md has 2,506 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~137
When it runs · the whole SKILL.md, loaded when a task matches
~5.4k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~6.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from awebai/aweb at commit 1d7ee6b, republished under its MIT licence (© awebai). 2,506 words, ~5,384 tokens.

Download SKILL.mdSave it as .claude/skills/aweb-team-membership/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
aweb-team-membership
description
This skill should be used when joining or being added to an aweb team, picking the correct invite/add-member path for the team's authority model (hosted vs BYOT), accepting invites, fetching team certificates, switching the active team across multiple memberships, distinguishing hosted from Bring Your Own Team (BYOT) authority, running the fresh BYOT setup into aweb cloud, or diagnosing team-certificate and active-team failures. Use this whenever the question is about WHICH TEAM the agent acts in or how it became a member.
allowed-tools
Bash(aw *)

aweb Team Membership

Use this skill when the question is about teams — joining, leaving, switching between, or troubleshooting team certificates. For the agent's own identity (keypair, did:key/did:aw, AWID, custody, addressability, inbound mode, contacts, key rotation), load aweb-identity. For day-to-day work coordination, load aweb-coordination. For mail/chat policy, load aweb-messaging. For creating a new team from a template, load aweb-bootstrap.

Foundations

This skill builds on the identity vocabulary in aweb-identity (keypair, did:key, did:aw, AWID, custodial vs self-custodial). Read that section first if any of those terms are unfamiliar. Team-specific additions:

  • Team controller — a keypair separate from member identities. Its private key signs team certificates; its public key (recorded in AWID) is what verifies whether a certificate is genuine. Team controllers authorize membership; they do not decrypt member conversations and must not substitute a member's E2E encryption key.
  • Team certificate — a signed statement that a specific did:key is a member of a specific team, with an alias and metadata. Public; replicated in AWID. Stored locally in .aw/team-certs/*.pem. A certificate proves team membership; it is not a message-decryption key.
  • Team id — canonical form is <name>:<namespace> (e.g. personal:acme.com, aweb:juan.aweb.ai). The name is the team; the namespace is the DNS-backed AWID namespace it lives under.
  • Hosted vs BYOT team authority — hosted means aweb holds the team controller signing key (for *.aweb.ai namespaces). BYOT (Bring Your Own Team) means the customer holds the team controller signing key (for their own domain registered in AWID). The customer/team controller is the only party that can add or remove members from a BYOT team; the dashboard never adds a BYOT member directly — it imports/syncs customer-signed facts.

For identity files (signing.key, workspace.yaml server URL), see aweb-identity. Team-specific files:

  • teams.yaml — local index of teams this identity is a member of. Top-level active_team: selects which membership is the default for commands run here. aw team list reads this; aw team switch <team-id> updates it.
  • team-certs/*.pem — public team certificates this identity has been issued (one .pem per team membership). teams.yaml and workspace.yaml reference these by cert_path.

Custody × Authority matrix

Identity custody (where the private key lives) and team authority (who holds the team controller key) are independent axes. Use the matrix to pick the right joining path:

Team authorityIdentity custodyMeaning
HostedCustodialaweb manages team authority AND holds hosted identity signing key material (browser/MCP). Messaging in this mode is server-readable hosted messaging, not E2E.
HostedSelf-custodialaweb manages team authority; the terminal agent holds its own .aw/signing.key.
BYOTSelf-custodialthe customer controls team authority; the agent holds its own key.
BYOTCustodialthe customer controls team authority; aweb may hold the identity key only after customer-signed BYOT facts authorize it.

A custodial identity has no BYOT team authority until the customer-signed team certificate and address facts match. Do not infer team authority from identity custody.

For E2E messaging, custody and team membership are still not enough by themselves: the recipient's encryption public key must be identity-authorized as described in docs/e2e-messaging-contract.md. Team/namespace authority may distribute that assertion, but it must not replace the member's key. If an encryption-key check fails, do not suggest a team-controller workaround or plaintext fallback; stop and route the user to the approved identity/key setup or recovery flow.

Readiness checks (membership level)

Start with:

bash
aw workspace status
aw team list
aw id cert show

Interpret failures by what's missing (for self-custodial CLI workspaces; custodial browser/MCP identities live entirely in the hosted account):

  • .aw/teams.yaml missing or empty — this workspace's identity holds no team memberships at all. Join one (see paths below) before attempting team coordination.
  • No .aw/team-certs/<team>.pem for teams.yaml's active team — identity exists but holds no cert for the active team. Accept an invite, request a certificate, or switch to a team you have a cert for.
  • Active team mismatch — teams.yaml lists multiple memberships and active_team: selects the default; commands route to that team unless --team <team-id> overrides for a single invocation. If commands appear to land in the wrong team, fix active_team: (run aw team switch <team-id>).
  • Workspace not bound to a server — workspace.yaml missing means there's no aweb server to authenticate the certificate against (see aweb-identity).

Joining a team — match the path to team authority

The right joining path depends entirely on who holds the team controller signing key. Pick by authority, not by the word "invite" alone.

Hosted teams (aweb holds the team controller key)

Three distinct paths exist; they are NOT interchangeable.

Path 1 — Fresh identity at init time. A new agent without any prior identity arrives at a hosted team via OAuth (browser/MCP) or team API-key (CLI):

bash
AWEB_API_KEY=<team-api-key> aw init

The hosted service provisions the identity and a team certificate together. Browser/MCP harnesses do this through OAuth without a CLI. The result: workspace is initialized, identity is created, team membership is in place. Verify with aw workspace status and aw team list.

Path 2 — Existing global identity → "Add existing identity" in the dashboard. When an agent already has a did:aw registered in AWID and wants to join an existing hosted team:

In the app.aweb.ai dashboard, an owner/admin clicks "Add existing identity" on the team, supplies the global identity's address or did:aw, and the backend mints a team certificate with the cloud-held team controller key, registers it in AWID, and prints commands like:

bash
aw id team fetch-cert --namespace <namespace> --team <team> --cert-id <cert-id>
aw team switch <team>:<namespace>
aw init   # if the joining directory still needs server binding

No token round-trip. Direct controller-mint. Available only for hosted teams because BYOT controller keys aren't held by aweb.

Path 3 — CLI invite-token, for hosted self-custodial local or global identities. Hosted CLI invite tokens are redeemed through the cloud, but the accepting directory keeps its own signing key. Use the default form when the owner wants to invite a new local-workspace identity by token:

bash
# Owner side (in a workspace with the necessary authority):
aw team invite                 # local-workspace member token

# share the printed <token>

# Joiner side (in a clean target directory):
aw team join <token> --name <name>

accept-invite refuses to overwrite an existing .aw/ identity and generates a fresh local self-custodial identity in the target directory before requesting the certificate. For a hosted global identity, accept the hosted token with --address <domain>/<name>:

bash
aw team join <token> --address <domain>/<name>

In the hosted --address case, the CLI creates a fresh self-custodial global identity for the address, registers it through the hosted service, and installs the hosted team certificate. The hosted service signs the team certificate; it does not receive the accepting directory's private signing key. If the user already has a global identity and only needs a certificate for an existing hosted team, Path 2 (dashboard Add existing identity + fetch-cert) remains valid.

This is not the cross-machine BYOT path. Do not present it as the normal way to join a BYOT team from another machine.

Do not run aw id team add-member for a hosted team — add-member signs a certificate with the team controller key, which you do not hold for hosted teams. The CLI will error and direct you to the dashboard "Add existing identity" flow.

BYOT teams (customer holds the team controller key)

The dashboard cannot add BYOT members directly. The customer's team controller must sign. Three cases:

Case 1 — Self-custodial identity, cross-machine join. The joining machine doesn't hold the team controller key:

bash
# Joining identity machine
aw id team request --team <team>:<namespace> --name <name>

# Controller machine — runs the exact command the request printed:
aw id team add-member ...

# Back on the joining identity machine
aw id team fetch-cert --namespace <namespace> --team <team> --cert-id <id>
aw team switch <team>:<namespace>
aw init   # if needed

The team controller private key never leaves the controller machine.

Case 2 — Custodial browser identity into a BYOT team. Start from the dashboard's "Create custodial request" action. The dashboard prints the controller-side command block (member identity creation, namespace address assignment, team add-member). The team controller runs that block on their machine, then syncs the signed team state into aweb cloud:

bash
aw id team import-request --team <team> --namespace <namespace> --cloud-team-id <cloud-team-id> --apply

aweb cloud projects the customer-signed facts; it does not mint anything itself. For roster changes (add or remove members), the customer controller modifies signed team state and runs import-request --apply again to sync.

Case 3 — Same-machine local-controller invite-token convenience. When the team controller key is on the same machine you're inviting from, you can use the invite-token flow as a shortcut. Two variants:

bash
# Owner side, same machine, local-controller key present:
aw team invite                 # local-workspace member (default)
aw team invite --global        # global-member token (requires existing global identity in the accepting directory)

# Joiner side (still same machine, different directory):

# For a local invite:
aw team join <token> --name <name>

# For a global invite, the accepting directory must already have a global identity:
aw id create --domain <domain> --name <name>
aw team join <token> --address <namespace>/<name>

For the --global case, accept-invite does NOT create the global identity — it errors with no identity found; run aw id create first, or use --local invite if no identity is present. --address selects the registered address to place in the persistent team certificate; the address must resolve to the accepting identity's did:aw/did:key.

This is the local-controller convenience case only. For cross-machine BYOT joins, use Case 1.

Not a membership path: human dashboard invites

/api/v1/teams/.../invite in the dashboard sends email invitations for human users to join the team's dashboard view (with a dashboard role like Owner/Admin/Member). That is independent of AWID agent membership certificates. Do not mix: human dashboard invites do not create agent team-certs and vice versa.

Accepting an invite vs fetching a certificate

Two distinct local actions install a membership:

  • aw team join <token> — redeems a CLI invite token, installs the membership, and connects the current workspace to the service URL embedded in the token. It refuses to overwrite an existing identity. --no-connect intentionally stops after membership installation; when the token/cache identifies the service it prints the exact shell-safe aw workspace connect --service <url> recovery command. A legacy token with no known service still succeeds membership-only and tells the operator to choose the URL. The lower-level aw id team accept-invite <token> remains membership-only. For hosted invites (Path 3), local join generates a fresh self-custodial identity; --global reuses an existing global identity. Local-controller same-machine invites follow the same scope rules.
  • aw id team fetch-cert --namespace <namespace> --team <team> --cert-id <id> — installs a certificate that has already been minted server-side (by hosted "Add existing identity") or signed by a controller (BYOT add-member). Used for hosted Path 2 and BYOT Case 1.

If you have a token, use aw team join; it is the complete everyday path. Use the underlying aw id team accept-invite only when an orchestrator intentionally separates membership installation from workspace connection. If you have a cert-id printed by the dashboard or controller, use fetch-cert.

Show full SKILL.md (926 more words)Show less

Multiple team memberships

One identity can hold multiple team certificates simultaneously — one per team — all stored in .aw/team-certs/. Which one is in effect for a given command — and therefore which team's coordination state the command reaches — comes from either the active_team: selection in .aw/teams.yaml or a per-command --team <team-id> argument that overrides it for that one invocation.

bash
aw team list                             # see memberships
aw team switch <team>:<namespace>        # update teams.yaml's active_team
aw <verb> --team <team>:<namespace> ...  # one-off override for team-scoped commands
aw team leave <team>:<namespace>         # remove a local membership

Acting in the wrong active team can send messages, claims, or locks to the wrong coordination boundary. Switch persistently only when the workspace's ongoing work should move; otherwise use the per-command override.

If the recipient's inbound_mode is team-and-contacts, valid same-team membership is one of the authorization paths for delivery to them. The full inbound-mode model is in aweb-identity.

Fresh BYOT setup into aweb cloud

Use this flow when the user controls DNS for a domain and wants to create a customer-controlled AWID team, add agents, and import/sync it into app.aweb.ai.

Vocabulary:

  • The namespace is the domain, e.g. juanreyero.com.
  • The team is named inside that namespace, e.g. personal; its AWID team id is personal:juanreyero.com.
  • Agents have addresses under the namespace, e.g. juanreyero.com/alpha.
  • Do not call personal:juanreyero.com an agent; it is the team id.

Before starting, confirm aw version includes aw id namespace prepare-controller and aw id namespace check-txt; older aw versions make this flow hard to drive from non-interactive harnesses.

Use aw id create, NOT aw init --byod --global, for the identity-prep commands in this section. aw init --byod --global is workspace onboarding: it bootstraps the directory and connects it to the default:<domain> team on app.aweb.ai (the team created during BYOD onboarding), writing workspace.yaml, joining that team, and minting a team certificate. That short-circuits the controller-signed team-state import this section is about. aw id create only mints the identity in AWID and writes .aw/identity.yaml + .aw/signing.key, leaving the team membership for the customer controller to add and sign. If a user already ran the wrong command and needs to recover, see the matching diagnostic bullet in aweb-identity's readiness checks.

Namespace controller setup (does not create an identity or team):

bash
aw id namespace prepare-controller --domain <domain>

Pause and have the human add the printed _awid.<domain> TXT record. Do not invent DNS values. Tell the human to back up ~/.awid now; it contains the namespace controller key. After DNS propagates, verify it:

bash
aw id namespace check-txt --domain <domain>

Then create the BYOT team with the namespace controller key:

bash
aw id team create --namespace <domain> --name <team> --display-name "<display name>"

After team creation, tell the human to back up ~/.awid again; it now also contains the team controller key under ~/.awid/team-keys/<domain>/<team>.key.

Add initial global agents:

bash
aw id create --domain <domain> --name alpha
aw id team add-member --team <team> --namespace <domain> --did <alpha_did_key> --name alpha --global --did-aw <alpha_did_aw>

aw id create --domain <domain> --name beta
aw id team add-member --team <team> --namespace <domain> --did <beta_did_key> --name beta --global --did-aw <beta_did_aw>

Use the actual did/did_aw values printed by aw id create. Do not guess them.

Register with aweb cloud without using the dashboard:

bash
aw id team register --service https://app.aweb.ai --team <team>:<domain>

This signs a service-registration request with the team controller key. It creates or syncs an aweb projection of the AWID team, but it does not upload controller private keys, create identities, or initialize any agent workspace. Read the returned next steps and run the required workspace connection command from each already-certified agent directory:

bash
aw workspace connect --service https://app.aweb.ai --team <team>:<domain>
# equivalent service-oriented primitive: aw service init --service https://app.aweb.ai --team <team>:<domain>

aw workspace connect / aw service init requires the local .aw/signing.key, .aw/teams.yaml, and .aw/team-certs/*.pem for that agent. If the certificate is not installed yet, fetch it first with the certificate id returned by aw id team add-member:

bash
aw id team fetch-cert --namespace <domain> --team <team> --cert-id <cert-id>

After at least one workspace is initialized, the service may suggest a human-claim command such as:

bash
aw claim-human --email you@example.com

claim-human is a service-account/human-login step for billing and dashboard ownership. It is not AWID team-controller authority and it does not add members to the BYOT team.

Import into an existing aweb organization:

  1. In app.aweb.ai, create or select the owner organization that should contain the imported team.
  2. Open the BYOT import flow. Prefer the command shown by the dashboard because it contains the correct --organization-id.
  3. First preview:
bash
aw id team import-request --team <team> --namespace <domain> --organization-id <org-id>

Paste the signed output and use Preview.

  1. If the preview is correct, regenerate an apply request:
bash
aw id team import-request --team <team> --namespace <domain> --organization-id <org-id> --apply

Paste it and use Import / sync.

Sync later changes:

  • After the team exists in aweb cloud, use --cloud-team-id <cloud-team-id> instead of --organization-id.
  • The dashboard Connect / Sync page should show the exact command. Prefer that command.
bash
aw id team import-request --team <team> --namespace <domain> --cloud-team-id <cloud-team-id> --apply

Diagnostic recipes

"I am in two teams; what does that entail?"

Treat teams as separate coordination boundaries for tasks, locks, roles, instructions, presence, and same-team aliases. Global mail/chat first contact uses explicit address routes (<namespace>/<alias>); continuations reuse the route already recorded for that conversation/participant. Confirm active_team: in teams.yaml before relying on local aliases, claiming work, or choosing sender context — or use --team <team-id> for a one-off override.

"Team cert or active team mismatch"

Inspect .aw/teams.yaml and .aw/team-certs/. Confirm:

  • a .pem file exists for each team you expect to be a member of;
  • teams.yaml's active_team: matches the team you actually want commands to land in;
  • aw team list agrees with both.

Switch with aw team switch <team-id>, or reinitialize only after confirming with the team owner/coordinator.

"X says they cannot reach me"

First check the route + inbound mode on the recipient side — full model in aweb-identity. Then, for team-and-contacts recipients, check shared team membership:

  1. aw team list on both sides — do you have a certificate in a common team?
  2. .aw/team-certs/ — is the certificate present for that team?
  3. Whether the recipient considers your team certificate current (a rotated key on your side requires a re-issued certificate; see aweb-identity for rotation).
"I joined a team but commands hit the wrong one"

The new membership added a .pem to team-certs/ and a row in teams.yaml, but active_team: may not have updated. Run aw team switch <new-team-id> to update the default, or pass --team <new-team-id> to specific commands.

References

Read these only when deeper context is needed:

© awebai, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file (references) in skills/aweb-team-membership of awebai/aweb.

  • SKILL.md
  • references/team-membership-reference.md

Open the folder on GitHubat commit 1d7ee6b

Compare with similar skills

Aweb Team Membership next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Aweb Team Membership compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Aweb Team Membership this skillawebai/aweb115—~5.4kAutomated safety check: PassMIT
Complex Join Helperjeremylongshore/tons-of-skills-marketplace2.8k—~564Automated safety check: PassMIT
JoinWeber-GeoML/Choir114—~522Automated safety check: PassApache-2.0
Bio Expression Matrix Metadata JoinsGPTomics/bioSkills1.2k1 repos~6.4kAutomated safety check: PassMIT
AgentCall Join Meetingpattern-ai-labs/agentcall1651 repos~25kAutomated safety check: PassMIT
Shopify Admin Collection Membership Audit40RTY-ai/shopify-admin-skills194—~1.2kAutomated safety check: PassMIT

Similar skills

  • Complex Join Helper

    jeremylongshore/tons-of-skills-marketplace

    Configure with complex join helper operations. An agent skill from jeremylongshore/tons-of-skills-marketplace.

    2.8k GitHub stars~564 tokensUpdated yesterday
    Data & AnalyticsAuto-check passed
  • Join

    Weber-GeoML/Choir

    Join a Choir formalization project as a contributor — set up this machine and start proving tasks (Lean 4, Isabelle, or Rocq) with your own agent on your own LLM account.

    114 GitHub stars~522 tokensUpdated 10 days ago
    Auto-check passed
  • Aligns sample metadata with count matrices and constructs design matrices for downstream DE, handling the alphabetical-reference-level trap (relevel BEFORE DESeq), LRT reduced-model rules, the…

    1.2k GitHub starsUsed in 1 repo~6.4k tokens
    Research & ScienceAuto-check passed
  • AgentCall Join Meeting

    pattern-ai-labs/agentcall

    Joins Google Meet, Teams or Zoom video calls as an AI bot with voice and visual presence through the AgentCall service, in audio, text-to-speech or webpage modes.

    165 GitHub starsUsed in 1 repo~25k tokens
    Productivity & AutomationAuto-check passed
  • Shopify Admin Collection Membership Audit

    40RTY-ai/shopify-admin-skills

    Read-only: lists orphan products (in zero collections) and over-collected products for catalog hygiene.

    194 GitHub stars~1.2k tokensUpdated 1 mo ago
    Backend & APIsAuto-check passed
  • Join and operate a signed cross-host agentbbs federation, and coordinate work claims across nodes.

    74k GitHub stars~1.1k tokensUpdated today
    Auto-check passed

More from awebai/aweb

All 17 skills in this repo
  • Recognizes old aweb bootstrap-era `agents/` directories and migrates them to current team and identity primitives, since the old command family is retired.

    115 GitHub stars~701 tokensUpdated today
    Auto-check passed
  • Guides decisions for agents working in an aweb team: when to check shared state, claim tasks, take locks, read team roles and instructions, and open separate worktrees.

    115 GitHub stars~4k tokensUpdated today
    Auto-check passed
  • aweb Messaging

    awebai/aweb

    Guides how an agent reads and responds to aweb mail and chat events, choosing between asynchronous mail and synchronous chat and respecting sender verification and encryption boundaries.

    115 GitHub stars~2.7k tokensUpdated today
    Auto-check passed
  • Creates or appends a folio document from the built-in pitch, memo or metrics templates by sending schema-checked slots that folio renders to Markdown.

    115 GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Present To Human

    awebai/aweb

    A skill your agent uses when an agent needs to show a human an folio document: mint a document-bound capability link with POST /v1/present, open the returned URL for the human, print it as fallback…

    115 GitHub stars~590 tokensUpdated today
    Auto-check passed
  • Set Theme

    awebai/aweb

    A skill your agent uses when an agent needs to brand folio presentation pages for its team: read or update GET/PUT /v1/theme with colors, fonts, header/footer, and an optional base64 raster logo.

    115 GitHub stars~669 tokensUpdated today
    Auto-check passed

Questions about Aweb Team Membership

What does Aweb Team Membership do?

This skill should be used when joining or being added to an aweb team, picking the correct invite/add-member path for the team's authority model (hosted vs BYOT), accepting invites, fetching team…. Aweb Team Membership is an agent skill from awebai/aweb. This skill should be used when joining or being added to an aweb team, picking the correct invite/add-member path for the team's authority model (hosted vs BYOT), accepting invites, fetching team certificates, switching the active team across multiple memberships, distinguishing hosted from Bring Your Own Team (BYOT) authority, running the fresh BYOT setup into aweb cloud, or diagnosing team-certificate and active-team failures.

How do I install Aweb Team Membership in Claude Code?

Run `npx skills add awebai/aweb --skill aweb-team-membership -a claude-code`. Or copy the skill folder (skills/aweb-team-membership in awebai/aweb) into .claude/skills/aweb-team-membership in your project. Claude Code loads it when a task matches its description.

How do I install Aweb Team Membership in Codex?

Run `npx skills add awebai/aweb --skill aweb-team-membership -a codex`. Or copy the skill folder (skills/aweb-team-membership in awebai/aweb) into .agents/skills/aweb-team-membership in your project. Codex loads it when a task matches its description.

Can I use Aweb Team Membership in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add awebai/aweb --skill aweb-team-membership -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/aweb-team-membership, .gemini/skills/aweb-team-membership, .github/skills/aweb-team-membership and .opencode/skills/aweb-team-membership in your project.

What does Aweb Team Membership need to run?

Going by SKILL.md and its folder, Aweb Team Membership needs credentials named AWEB_API_KEY. Our summary lists: A credential in AWEB_API_KEY. Its frontmatter pre-approves these tools: Bash(aw *).

Does Aweb Team Membership access the network?

SKILL.md names 1 domain. As links in the text: aweb.ai. This is read from the text; nothing was executed.

Is Aweb Team Membership safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Aweb Team Membership use?

Aweb Team Membership is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Aweb Team Membership use?

About 5.4k tokens (SKILL.md is roughly 22k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1k tokens, read only when the agent opens those files.

What are the alternatives to Aweb Team Membership?

Skills that share tags, products or a category with Aweb Team Membership: Complex Join Helper (jeremylongshore/tons-of-skills-marketplace, 2.8k stars), Join (Weber-GeoML/Choir, 114 stars), Bio Expression Matrix Metadata Joins (GPTomics/bioSkills, 1.2k stars) and AgentCall Join Meeting (pattern-ai-labs/agentcall, 165 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Aweb Team Membership?

awebai (a GitHub organization) maintains it in awebai/aweb, which has 115 GitHub stars. The repository holds 17 skills in this directory. The repository was last updated on October 11, 2026.

Source: awebai/aweb on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.