Agent skill

Deployment

by matrixorigin in matrixorigin/memoria

Deploy Memoria with Docker Compose or Kubernetes. An agent skill from matrixorigin/memoria.

Apache-2.0Auto-check: notesDevOps & Cloud

Install Deployment

skills CLI
$ npx skills add matrixorigin/memoria --skill deployment -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install matrixorigin/memoria deployment --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/matrixorigin/memoria.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/deployment .claude/skills/deployment && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
deployment
GitHub stars
607
Token cost
~1.6k tokens
SKILL.md length
355 words
Files
1
Skills in repo
9
Repo updated
First seen
Licence
Apache-2.0

At a glance

Deploy Memoria with Docker Compose or Kubernetes. An agent skill from matrixorigin/memoria.

  • Configuring Memoria
  • SKILL.md covers Docker Compose (Single Instance), Environment Variables, External MatrixOne and Multi-Instance (K8s), plus 3 more sections
  • Calls docker and curl; needs MEMORIA_MASTER_KEY and MEMORIA_EMBEDDING_API_KEY
  • Tasks that involve Container orchestration

What it does

Deployment is an agent skill from matrixorigin/memoria. Deploy Memoria with Docker Compose or Kubernetes. Environment variables, multi-instance setup, security. Use when deploying or configuring Memoria.

Its SKILL.md is about 1.6k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in DevOps & Cloud, covering Container orchestration, Containers and Deployment. It works with Kubernetes, Docker and OpenAI. The repository describes itself as: Secure memory management for AI Agents • Ensures data integrity • Reduces hallucinations • Maintains consistent long-term context. The licence is Apache-2.0.

When your agent uses it

  • Configuring Memoria
  • Tasks that involve Container orchestration
  • Tasks that involve Containers

Example prompts

  • “/deployment”

Requirements

  • Docker
  • A credential in MEMORIA_MASTER_KEY
  • A credential in MEMORIA_EMBEDDING_API_KEY

What it can do on your machine

Read from SKILL.md and the folder at commit 81c5cc6. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • docker
    • curl

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use docker and curl, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • MEMORIA_MASTER_KEY
    • MEMORIA_EMBEDDING_API_KEY
    • MEMORIA_API_KEY_SECRET
    • API_KEY
    • MASTER_KEY
    • MEMORIA_DB_PASSWORD
    • LLM_API_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Deployment loads about 1.6k tokens when it runs. Until then it costs about 40 tokens; SKILL.md has 355 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~40
When it runs · the whole SKILL.md, loaded when a task matches
~1.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:10
    cp .env.example .env   # Set MEMORIA_MASTER_KEY, MEMORIA_EMBEDDING_API_KEY

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from matrixorigin/memoria at commit 81c5cc6, republished under its Apache-2.0 licence (© matrixorigin). 355 words, ~1,633 tokens.

Download SKILL.mdSave it as .claude/skills/deployment/SKILL.md (or your agent's skills folder).
name
deployment
description
Deploy Memoria with Docker Compose or Kubernetes. Environment variables, multi-instance setup, security. Use when deploying or configuring Memoria.

Docker Compose (Single Instance)

bash
cd Memoria
cp .env.example .env   # Set MEMORIA_MASTER_KEY, MEMORIA_EMBEDDING_API_KEY
docker compose up -d

Services: API on :8100, MatrixOne on :6001. Verify: curl http://localhost:8100/health

Environment Variables

Required
VariableDescription
MEMORIA_MASTER_KEYAdmin API key (min 16 chars)
Database
VariableDefaultDescription
MEMORIA_DB_HOSTmatrixoneMatrixOne host
MEMORIA_DB_PORT6001MatrixOne port
MEMORIA_DB_USERrootDatabase user
MEMORIA_DB_PASSWORD111Database password
MEMORIA_DB_NAMEmemoriaDatabase name
Embedding
VariableDefaultDescription
MEMORIA_EMBEDDING_PROVIDERlocallocal or openai
MEMORIA_EMBEDDING_MODELall-MiniLM-L6-v2Model name
MEMORIA_EMBEDDING_API_KEY—Required if provider is openai (single-backend)
MEMORIA_EMBEDDING_BASE_URL—Custom endpoint, OpenAI-compatible (single-backend)
MEMORIA_EMBEDDING_ENDPOINTS—JSON array for multi-backend round-robin. When set, supersedes BASE_URL/API_KEY. Format: [{"url":"https://api1.example.com/v1","api_key":"sk-1"},{"url":"https://api2.example.com/v1","api_key":"sk-2"}]. All endpoints must serve the same model. Requests rotate round-robin; failed/rate-limited endpoints are skipped automatically.
MEMORIA_EMBEDDING_DIM0 (auto)Embedding dimension
Distributed
VariableDefaultDescription
MEMORIA_INSTANCE_IDRandom UUIDUnique instance ID. Set to Pod name in K8s
MEMORIA_LOCK_TTL_SECS120Distributed lock TTL. Heartbeat renews every TTL/3
Governance
VariableDefaultDescription
MEMORIA_GOVERNANCE_ENABLEDfalseEnable background governance scheduler
MEMORIA_GOVERNANCE_PLUGIN_BINDINGdefaultRepository binding name
MEMORIA_GOVERNANCE_PLUGIN_SUBJECTsystemSubject key for binding resolution
MEMORIA_GOVERNANCE_PLUGIN_DIR—Local plugin dir (dev mode, skips signature)
Security
VariableDefaultDescription
MEMORIA_API_KEY_SECRET—HMAC secret for key hashing. Set independently of MASTER_KEY
LLM (for reflect/extract-entities/episodic)
VariableDescription
LLM_API_KEYOpenAI-compatible API key
LLM_BASE_URLAPI base URL
LLM_MODELModel name

External MatrixOne

Use an existing MatrixOne instead of the bundled one:

bash
MEMORIA_DB_HOST=your-host MEMORIA_DB_PORT=6001 docker compose up -d api

Tables are auto-created on first startup.

Show full SKILL.md (146 more words)Show less

Multi-Instance (K8s)

All coordination uses the shared MatrixOne database — zero external dependencies.

How it works:

  • Governance scheduler: Each instance acquires a DB lock before each task. Only one wins; others skip. Heartbeat renews every TTL/3.
  • Async tasks: Stored in mem_async_tasks table, visible cross-instance.
  • Lock expiry: Crashed instance's locks expire after TTL, another takes over.
  • Single-instance: NoopDistributedLock — zero overhead, identical behavior.
K8s Manifest
yaml
apiVersion: apps/v1
kind: Deployment
metadata:
  name: memoria-api
spec:
  replicas: 3
  selector:
    matchLabels:
      app: memoria-api
  template:
    metadata:
      labels:
        app: memoria-api
    spec:
      containers:
        - name: memoria
          image: matrixorigin/memoria:latest
          ports:
            - containerPort: 8100
          env:
            - name: MEMORIA_INSTANCE_ID
              valueFrom:
                fieldRef:
                  fieldPath: metadata.name
            - name: MEMORIA_MASTER_KEY
              valueFrom:
                secretKeyRef:
                  name: memoria-secrets
                  key: master-key
            - name: MEMORIA_DB_HOST
              value: "matrixone.default.svc.cluster.local"
            - name: MEMORIA_DB_PORT
              value: "6001"
            - name: MEMORIA_EMBEDDING_PROVIDER
              value: "openai"
            - name: MEMORIA_EMBEDDING_API_KEY
              valueFrom:
                secretKeyRef:
                  name: memoria-secrets
                  key: embedding-api-key
            # Optional: multi-backend round-robin (supersedes API_KEY + MODEL single-backend)
            # - name: MEMORIA_EMBEDDING_ENDPOINTS
            #   value: '[{"url":"https://api1.example.com/v1","api_key":"sk-1"},{"url":"https://api2.example.com/v1","api_key":"sk-2"}]'
            - name: MEMORIA_EMBEDDING_MODEL
              value: "BAAI/bge-m3"
            - name: MEMORIA_EMBEDDING_DIM
              value: "1024"
            - name: MEMORIA_GOVERNANCE_ENABLED
              value: "true"
            - name: MEMORIA_LOCK_TTL_SECS
              value: "120"
          livenessProbe:
            httpGet:
              path: /health
              port: 8100
            initialDelaySeconds: 5
            periodSeconds: 10
          readinessProbe:
            httpGet:
              path: /health/instance
              port: 8100
            initialDelaySeconds: 5
            periodSeconds: 10
---
apiVersion: v1
kind: Service
metadata:
  name: memoria-api
spec:
  selector:
    app: memoria-api
  ports:
    - port: 8100
      targetPort: 8100

Key points:

  • MEMORIA_INSTANCE_ID → fieldRef: metadata.name (Pod name)
  • All replicas share one MatrixOne
  • Leader election is automatic
  • Liveness: /health, Readiness: /health/instance

Data Persistence

MatrixOne data bind-mounted to ./data/matrixone. Survives restarts. Change: MATRIXONE_DATA_DIR=/your/path

Security Notes

  • API keys are HMAC-SHA256 hashed at rest
  • Set MEMORIA_API_KEY_SECRET independently of MASTER_KEY for key rotation
  • All queries scoped to authenticated user_id
  • Snapshot names are regex-validated before SQL
  • Rate limiting per API key (in-memory sliding window)
  • Run behind reverse proxy with TLS in production

Rate Limits

Configurable via env: MEMORIA_RATE_LIMIT_AUTH_KEYS=1000,60 (format: max_requests,window_seconds)

© matrixorigin, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/deployment of matrixorigin/memoria.

Open the folder on GitHubat commit 81c5cc6

Compare with similar skills

Deployment next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Deployment compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Deployment this skillmatrixorigin/memoria607—~1.6kAutomated safety check: NotesApache-2.0
LangBot Deployment Guidelangbot-app/LangBot18k—~1.2kAutomated safety check: NotesApache-2.0
Debug Openshell ClusterNVIDIA/OpenShell15k—~19kAutomated safety check: NotesApache-2.0
Onboarding Validationopen-edge-platform/edge-ai-suites140—~3.3kAutomated safety check: PassApache-2.0
Agenticx DeployerDemonDamon/AgenticX279—~866Automated safety check: PassApache-2.0
Vss Deploy Warehouse HelmNVIDIA-AI-Blueprints/video-search-and-summarization1.9k—~4.2kAutomated safety check: PassApache-2.0

Similar skills

  • LangBot Deployment Guide

    langbot-app/LangBot

    Deploys and configures a LangBot instance with Docker Compose or Kubernetes, covering config.yaml, the Box sandbox runtime, the plugin runtime and the global API key.

    18k GitHub stars~1.2k tokensUpdated today
    DevOps & CloudAuto-check: notes
  • Debug Openshell Cluster

    NVIDIA/OpenShell

    Official

    Debug why an OpenShell gateway deployment is unhealthy, unreachable, or unable to create sandboxes.

    15k GitHub stars~19k tokensUpdated today
    DevOps & CloudAuto-check: notes
  • Onboarding Validation

    open-edge-platform/edge-ai-suites

    Validate the get-started experience of Open Edge Platform (OEP) software components from the perspective of a first-time user.

    140 GitHub stars~3.3k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Agenticx Deployer

    DemonDamon/AgenticX

    Guide for deploying AgenticX agents to production including Docker containerization, Kubernetes orchestration, Volcengine AgentKit cloud deployment, and API server setup.

    279 GitHub stars~866 tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Vss Deploy Warehouse Helm

    NVIDIA-AI-Blueprints/video-search-and-summarization

    A skill your agent uses when the user asks to deploy, upgrade, or size the VSS warehouse blueprint (2D / 3D / MV3DT) on Kubernetes via Helm — as opposed to Docker Compose, which is covered by…

    1.9k GitHub stars~4.2k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Aspire Deployment

    CommunityToolkit/Aspire

    WORKFLOW SKILL — Deploy Aspire apps from AppHost models to Docker Compose, Kubernetes, Azure, AWS, or preview Radius.

    629 GitHub stars~4.5k tokensUpdated today
    DevOps & CloudAuto-check: notes

More from matrixorigin/memoria

All 9 skills in this repo
  • Thememoria

    matrixorigin/memoria

    Use Memoria as OpenClaw's durable memory slot. An agent skill from matrixorigin/memoria.

    607 GitHub stars~728 tokensUpdated today
    Auto-check passed
  • API Reference

    matrixorigin/memoria

    Memoria REST API endpoints, request/response formats, auth, rate limits.

    607 GitHub stars~2.3k tokensUpdated today
    Auto-check passed
  • Architecture

    matrixorigin/memoria

    Memoria codebase structure, workspace layout, key traits, database tables, config patterns, and testing conventions.

    607 GitHub stars~1.8k tokensUpdated today
    Auto-check passed
  • Local Embedding

    matrixorigin/memoria

    Run embedding on-device with ONNX Runtime. An agent skill from matrixorigin/memoria.

    607 GitHub stars~444 tokensUpdated today
    Auto-check: notes
  • Plugin Development

    matrixorigin/memoria

    Create, test, sign, and publish Memoria governance plugins. An agent skill from matrixorigin/memoria.

    607 GitHub stars~1k tokensUpdated today
    Auto-check passed
  • Release

    matrixorigin/memoria

    Cut a Memoria release. An agent skill from matrixorigin/memoria.

    607 GitHub stars~494 tokensUpdated today
    Auto-check passed

Categories

Questions about Deployment

What does Deployment do?

Deploy Memoria with Docker Compose or Kubernetes. An agent skill from matrixorigin/memoria. Deployment is an agent skill from matrixorigin/memoria. Deploy Memoria with Docker Compose or Kubernetes.

When should I use Deployment?

Deployment fits situations like: configuring Memoria; tasks that involve Container orchestration; tasks that involve Containers.

How do I install Deployment in Claude Code?

Run `npx skills add matrixorigin/memoria --skill deployment -a claude-code`. Or copy the skill folder (skills/deployment in matrixorigin/memoria) into .claude/skills/deployment in your project. Claude Code loads it when a task matches its description.

How do I install Deployment in Codex?

Run `npx skills add matrixorigin/memoria --skill deployment -a codex`. Or copy the skill folder (skills/deployment in matrixorigin/memoria) into .agents/skills/deployment in your project. Codex loads it when a task matches its description.

Can I use Deployment in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add matrixorigin/memoria --skill deployment -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/deployment, .gemini/skills/deployment, .github/skills/deployment and .opencode/skills/deployment in your project.

What does Deployment need to run?

Going by SKILL.md and its folder, Deployment needs the command-line tools its instructions call (docker and curl) and credentials named MEMORIA_MASTER_KEY, MEMORIA_EMBEDDING_API_KEY, MEMORIA_API_KEY_SECRET and API_KEY. Our summary lists: Docker; A credential in MEMORIA_MASTER_KEY; A credential in MEMORIA_EMBEDDING_API_KEY.

Does Deployment access the network?

SKILL.md contains no URLs. Its commands use docker and curl, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Deployment safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Deployment use?

Deployment is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Deployment use?

About 1.6k tokens (SKILL.md is roughly 6.5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Deployment?

Skills that share tags, products or a category with Deployment: LangBot Deployment Guide (langbot-app/LangBot, 18k stars), Debug Openshell Cluster (NVIDIA/OpenShell, 15k stars), Onboarding Validation (open-edge-platform/edge-ai-suites, 140 stars) and Agenticx Deployer (DemonDamon/AgenticX, 279 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Deployment?

matrixorigin (a GitHub organization) maintains it in matrixorigin/memoria, which has 607 GitHub stars. The repository holds 9 skills in this directory. The repository was last updated on October 7, 2026.

Source: matrixorigin/memoria on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.