Agent skill

Managed Agent

by ruvnet in ruvnet/ruflo

Run an Anthropic Claude Managed Agent — a cloud agent harness (container + filesystem + tools), the cloud counterpart of the local wasm-agent runtime

MITAuto-check: notes

Install Managed Agent

skills CLI
$ npx skills add ruvnet/ruflo --skill managed-agent -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install ruvnet/ruflo managed-agent --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/ruvnet/ruflo.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugins/ruflo-agent/skills/managed-agent .claude/skills/managed-agent && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
managed-agent
GitHub stars
74k
Used in
1 other repo
Token cost
~1.2k tokens
SKILL.md length
368 words
Files
1
Skills in repo
264
Repo updated
First seen
Licence
MIT

At a glance

Run an Anthropic Claude Managed Agent — a cloud agent harness (container + filesystem + tools), the cloud counterpart of the local wasm-agent runtime

  • Works in 5 steps: Create —… → Prompt —… → Inspect —… → …
  • SKILL.md covers Prerequisites, Steps, Cost & safety and Quick example
  • Needs ANTHROPIC_API_KEY and CLAUDE_API_KEY

What it does

Managed Agent is an agent skill from ruvnet/ruflo. Run an Anthropic Claude Managed Agent — a cloud agent harness (container + filesystem + tools), the cloud counterpart of the local wasm-agent runtime

Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It works with WebAssembly and Model Context Protocol. The repository describes itself as: 🌊 The original agent harness. Deploy intelligent multi-player swarms, coordinate autonomous workflows, and build conversational AI systems. Features adaptive memory…. The licence is MIT.

Example prompts

  • “/managed-agent”

Requirements

  • A credential in ANTHROPIC_API_KEY
  • A credential in CLAUDE_API_KEY
  • Pre-approved tools (allowed-tools): mcp__plugin_ruflo-core_ruflo__managed_agent_create, mcp__plugin_ruflo-core_ruflo__managed_agent_prompt, mcp__plugin_ruflo-core_ruflo__managed_agent_status, mcp__plugin_ruflo-core_ruflo__managed_agent_events, mcp__plugin_ruflo-core_ruflo__managed_agent_list, mcp__plugin_ruflo-core_ruflo__managed_agent_terminate, mcp__plugin_ruflo-core_ruflo__wasm_agent_create, Bash

Workflow steps

5 steps, taken from the first numbered list in SKILL.md.

  1. Create — mcpplugin_ruflo-core_ruflomanaged_agent_create
  2. Prompt — mcpplugin_ruflo-core_ruflomanaged_agent_prompt
  3. Inspect — mcpplugin_ruflo-core_ruflomanaged_agent_status { sessionId } (idle/running/error) ·…
  4. List — mcpplugin_ruflo-core_ruflomanaged_agent_list { limit? } — every session on the org (so you can see which are still running /…
  5. Terminate — mcpplugin_ruflo-core_ruflomanaged_agent_terminate { sessionId, environmentId? } — always do this when done: a cloud session…

What it can do on your machine

Read from SKILL.md and the folder at commit de590e1. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • mcp__plugin_ruflo-core_ruflo__managed_agent_create
    • mcp__plugin_ruflo-core_ruflo__managed_agent_prompt
    • mcp__plugin_ruflo-core_ruflo__managed_agent_status
    • mcp__plugin_ruflo-core_ruflo__managed_agent_events
    • mcp__plugin_ruflo-core_ruflo__managed_agent_list
    • mcp__plugin_ruflo-core_ruflo__managed_agent_terminate
    • mcp__plugin_ruflo-core_ruflo__wasm_agent_create
    • Bash

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • platform.claude.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • ANTHROPIC_API_KEY
    • CLAUDE_API_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Managed Agent loads about 1.2k tokens when it runs. Until then it costs about 41 tokens; SKILL.md has 368 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~41
When it runs · the whole SKILL.md, loaded when a task matches
~1.2k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NotePre-approves every shell command (allowed-tools: Bash)SKILL.md
    allowed-tools: mcp__plugin_ruflo-core_ruflo__managed_agent_create, mcp__plugin_ruflo-core_ruflo__managed_agent_prom

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from ruvnet/ruflo at commit de590e1, republished under its MIT licence (© ruvnet). 368 words, ~1,182 tokens.

Download SKILL.mdSave it as .claude/skills/managed-agent/SKILL.md (or your agent's skills folder).
name
managed-agent
description
Run an Anthropic Claude Managed Agent — a cloud agent harness (container + filesystem + tools), the cloud counterpart of the local wasm-agent runtime
allowed-tools
mcp__plugin_ruflo-core_ruflo__managed_agent_create, mcp__plugin_ruflo-core_ruflo__managed_agent_prompt, mcp__plugin_ruflo-core_ruflo__managed_agent_status, mcp__plugin_ruflo-core_ruflo__managed_agent_events, mcp__plugin_ruflo-core_ruflo__managed_agent_list, mcp__plugin_ruflo-core_ruflo__managed_agent_terminate, mcp__plugin_ruflo-core_ruflo__wasm_agent_create, Bash
argument-hint
<create|prompt|status|events|list|terminate> [options]

Managed Agent (Anthropic cloud runtime)

ruflo-agent has two agent runtimes behind one mental model:

RuntimeToolsUse it when
WASM (local, rvagent)wasm_agent_* / wasm_gallery_*fast, free, ephemeral, offline, untrusted code in a sandbox
Managed (Anthropic cloud)managed_agent_* (this skill)long-running / async work (minutes–hours), a real cloud container with pre-installed packages + network, persistent filesystem + transcript across turns

This skill drives the managed runtime — Anthropic's Claude Managed Agents (beta). The model: Agent (model + system + tools + MCP servers + skills) → Environment (container template) → Session (running instance) → Events (turns / tool-use / status, persisted server-side). See docs/adr/0001-wasm-contract.md and project ADR-115.

Prerequisites

  • ANTHROPIC_API_KEY (or CLAUDE_API_KEY) in the environment, with Claude Managed Agents beta access.
  • If absent, every managed_agent_* tool returns a structured "use wasm_agent_create for a local no-key runtime" error — fall back to the WASM skill.

Steps

  1. Create — mcp__plugin_ruflo-core_ruflo__managed_agent_create { model?, system?, name?, networking?, packages?, initScript?, mcpServers?, skills? } → { sessionId, agentId, environmentId, status }. Provisions Agent + Environment + Session. Save the three ids.

    • mcpServers: [{type:"url", url, name, authorization_token?}] — the cloud agent must be able to reach the URL. A local ruflo mcp start is not reachable from Anthropic's cloud; deploy/tunnel an HTTP ruflo MCP server first if you want the cloud agent to have ruflo's tools.
    • packages: {pip?:[], npm?:[], apt?:[], cargo?:[], gem?:[], go?:[]} — installed in the container.
  2. Prompt — mcp__plugin_ruflo-core_ruflo__managed_agent_prompt { sessionId, message, maxWaitMs? } → sends a user turn, polls the event log until the session goes idle (default 180s, capped 600s) → { finished, status, stopReason, assistantText, toolUses[], eventCount }. For very long tasks, raise maxWaitMs or follow up with managed_agent_events.

  3. Inspect — mcp__plugin_ruflo-core_ruflo__managed_agent_status { sessionId } (idle/running/error) · mcp__plugin_ruflo-core_ruflo__managed_agent_events { sessionId, raw? } (full transcript: user turns, agent thinking, tool_use, tool_result, status — the cloud counterpart of wasm_agent_files).

  4. List — mcp__plugin_ruflo-core_ruflo__managed_agent_list { limit? } — every session on the org (so you can see which are still running / billing).

  5. Terminate — mcp__plugin_ruflo-core_ruflo__managed_agent_terminate { sessionId, environmentId? } — always do this when done: a cloud session keeps billing container time + tokens until deleted. Pass environmentId to also delete the environment ruflo created.

Show full SKILL.md (53 more words)Show less

Cost & safety

  • Managed Agents bill per session (LM tokens + container time) and are rate-limited per org. Estimate before a long run; record completed sessions to the cost-tracking namespace.
  • Treat orphaned sessions like leaked resources — managed_agent_list then managed_agent_terminate anything stale.
  • Beta API (managed-agents-2026-04-01); multiagent / define-outcomes on the agent config are research preview.

Quick example

managed_agent_create  { "model": "claude-haiku-4-5-20251001", "system": "Terse. Do exactly what is asked.", "name": "scratch" }
  → { sessionId: "sesn_…", agentId: "agent_…", environmentId: "env_…", status: "idle" }
managed_agent_prompt  { "sessionId": "sesn_…", "message": "echo hello > /tmp/x && cat /tmp/x — then stop." , "maxWaitMs": 60000 }
  → { finished: true, status: "idle", stopReason: "end_turn", assistantText: "Done.", toolUses: [{name:"bash", input:{command:"echo hello > /tmp/x && cat /tmp/x"}}] }
managed_agent_terminate { "sessionId": "sesn_…", "environmentId": "env_…" }
  → { sessionDeleted: true, environmentDeleted: true }

© ruvnet, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in plugins/ruflo-agent/skills/managed-agent of ruvnet/ruflo.

Open the folder on GitHubat commit de590e1

Used in 1 other repository

We found 1 copy of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in ruvnet/ruflo, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Managed Agent next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Managed Agent compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Managed Agent this skillruvnet/ruflo74k1 repos~1.2kAutomated safety check: NotesMIT
Spider Kingaoyunyang/spider-king-skill507—~7.3kAutomated safety check: PassMIT
Webapp Buildersidequery/sidemantic129—~5.5kAutomated safety check: PassAGPL-3.0
Bringupjenissimo/bottleship131—~2.9kAutomated safety check: PassApache-2.0
Harnessskillsynchq/txcript153—~4.2kAutomated safety check: PassApache-2.0
Meridian MCPMeridiona/meridian405—~967Automated safety check: NotesCustom licence

Similar skills

  • Spider King

    aoyunyang/spider-king-skill

    Pure-web protocol reverse skill: turn hostile browser clients into browser-free Python collectors.

    507 GitHub stars~7.3k tokensUpdated 1 mo ago
    Backend & APIsAuto-check passed
  • Webapp Builder

    sidequery/sidemantic

    Build interactive analytics webapps, demos, dashboards, or embedded app surfaces from Sidemantic semantic models using copyable component primitives and deterministic query inspection.

    129 GitHub stars~5.5k tokensUpdated yesterday
    DatabasesAuto-check passed
  • Bringup

    jenissimo/bottleship

    Drive and observe the BottleShip emulator to bring up a game, using the AI-agent harness (window.BS.harness + bun tools/harness.ts).

    131 GitHub stars~2.9k tokensUpdated yesterday
    Agent WorkflowsAuto-check passed
  • Harness

    skillsynchq/txcript

    Integrate a new AI coding-agent harness into txcript — native Body types, Codec, TextCodec, Store, wiring, and tests.

    153 GitHub stars~4.2k tokensUpdated 9 days ago
    Auto-check passed
  • Meridian MCP

    Meridiona/meridian

    Build, configure, and debug the Meridian MCP server. An agent skill from Meridiona/meridian.

    405 GitHub stars~967 tokensUpdated today
    Agent WorkflowsAuto-check: notes
  • Release

    skillsynchq/txcript

    Cut a txcript release — dispatch the prepare-release workflow, approve the plan, watch the tag publish to crates.io, npm, and GitHub Releases, and verify.

    153 GitHub stars~775 tokensUpdated 9 days ago
    DevelopmentAuto-check passed

More from ruvnet/ruflo

All 264 skills in this repo
  • Stores, searches, and retrieves successful patterns with HNSW-indexed semantic search so agents can reuse past solutions instead of relearning them.

    74k GitHub starsUsed in 2 repos~830 tokens
    Auto-check passed
  • Runs claude-flow CLI security scans for input validation, path traversal, SQL injection, XSS, hardcoded secrets and known CVEs, and writes an audit report.

    74k GitHub starsUsed in 2 repos~823 tokens
    Auto-check passed
  • Applies the SPARC method (specification, pseudocode, architecture, refinement, completion) with 17 specialized modes and multi-agent orchestration, from research to deployment.

    74k GitHub starsUsed in 2 repos~829 tokens
    Auto-check passed
  • Coordinates a hierarchical swarm of specialized agents through the claude-flow CLI for work that spans several files or modules at once.

    74k GitHub starsUsed in 2 repos~779 tokens
    Auto-check passed
  • Sets up and drives Ruflo, an npm-installed orchestration layer for multi-agent swarms, persistent memory, routing, hooks and its MCP tool catalog.

    74k GitHub starsUsed in 1 repo~975 tokens
    Auto-check passed
  • Agent Coordination

    ruvnet/ruflo

    Reference for spawning, listing, monitoring and stopping agents with claude-flow commands, with agent type families, routing codes and coordination tips.

    74k GitHub starsUsed in 2 repos~519 tokens
    Auto-check passed

Questions about Managed Agent

What does Managed Agent do?

Run an Anthropic Claude Managed Agent — a cloud agent harness (container + filesystem + tools), the cloud counterpart of the local wasm-agent runtime. Managed Agent is an agent skill from ruvnet/ruflo.

How do I install Managed Agent in Claude Code?

Run `npx skills add ruvnet/ruflo --skill managed-agent -a claude-code`. Or copy the skill folder (plugins/ruflo-agent/skills/managed-agent in ruvnet/ruflo) into .claude/skills/managed-agent in your project. Claude Code loads it when a task matches its description.

How do I install Managed Agent in Codex?

Run `npx skills add ruvnet/ruflo --skill managed-agent -a codex`. Or copy the skill folder (plugins/ruflo-agent/skills/managed-agent in ruvnet/ruflo) into .agents/skills/managed-agent in your project. Codex loads it when a task matches its description.

Can I use Managed Agent in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ruvnet/ruflo --skill managed-agent -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/managed-agent, .gemini/skills/managed-agent, .github/skills/managed-agent and .opencode/skills/managed-agent in your project.

What does Managed Agent need to run?

Going by SKILL.md and its folder, Managed Agent needs credentials named ANTHROPIC_API_KEY and CLAUDE_API_KEY. Our summary lists: A credential in ANTHROPIC_API_KEY; A credential in CLAUDE_API_KEY. Its frontmatter pre-approves these tools: mcp__plugin_ruflo-core_ruflo__managed_agent_create, mcp__plugin_ruflo-core_ruflo__managed_agent_prompt, mcp__plugin_ruflo-core_ruflo__managed_agent_status, mcp__plugin_ruflo-core_ruflo__managed_agent_events, mcp__plugin_ruflo-core_ruflo__managed_agent_list, mcp__plugin_ruflo-core_ruflo__managed_agent_terminate, mcp__plugin_ruflo-core_ruflo__wasm_agent_create, Bash.

Does Managed Agent access the network?

SKILL.md names 1 domain. As links in the text: platform.claude.com. This is read from the text; nothing was executed.

Is Managed Agent safe to install?

Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Managed Agent use?

Managed Agent is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Managed Agent use?

About 1.2k tokens (SKILL.md is roughly 4.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Managed Agent?

Skills that share tags, products or a category with Managed Agent: Spider King (aoyunyang/spider-king-skill, 507 stars), Webapp Builder (sidequery/sidemantic, 129 stars), Bringup (jenissimo/bottleship, 131 stars) and Harness (skillsynchq/txcript, 153 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Managed Agent?

ruvnet (a GitHub user) maintains it in ruvnet/ruflo, which has 74,012 GitHub stars. The repository holds 264 skills in this directory. The repository was last updated on October 7, 2026.

Source: ruvnet/ruflo on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.