Agent skill

Hosted Agents

by sickn33 in sickn33/agentic-awesome-skills

Build background agents in sandboxed environments. An agent skill from sickn33/agentic-awesome-skills.

MITAuto-check passed

Install Hosted Agents

skills CLI
$ npx skills add sickn33/agentic-awesome-skills --skill hosted-agents -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install sickn33/agentic-awesome-skills hosted-agents --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/sickn33/agentic-awesome-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/hosted-agents .claude/skills/hosted-agents && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
hosted-agents
GitHub stars
47k
Used in
2 other repos
Token cost
~3k tokens
SKILL.md length
1,548 words
Files
1
Skills in repo
1,493
Repo updated
First seen
Licence
MIT

At a glance

Build background agents in sandboxed environments. An agent skill from sickn33/agentic-awesome-skills.

  • Works in 4 steps: Sandbox pushes changes (updating git… → Sandbox sends event to API with branch… → API uses user's GitHub token to create PR → …
  • Hosted coding agents
  • SKILL.md covers When to Use, Core Concepts, Detailed Topics and Practical Guidance, plus 6 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Hosted Agents is an agent skill from sickn33/agentic-awesome-skills. Build background agents in sandboxed environments. Use for hosted coding agents, sandboxed VMs, Modal sandboxes, and remote coding environments.

Its SKILL.md is about 3k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

The repository describes itself as: AAS Core is the local, agent-first control plane for complete catalog discovery, agent-owned selection, stack validation, and planning, backed by 2,400+ agentic skills. Includes… The licence is MIT.

When your agent uses it

  • Hosted coding agents
  • Modal sandboxes
  • Remote coding environments

Example prompts

  • “/hosted-agents”

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. Sandbox pushes changes (updating git user config)
  2. Sandbox sends event to API with branch name and session ID
  3. API uses user's GitHub token to create PR
  4. GitHub webhooks notify API of PR events

What it can do on your machine

Read from SKILL.md and the folder at commit 680176d. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • builders.ramp.com
    • modal.com
    • developers.cloudflare.com
    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Hosted Agents loads about 3k tokens when it runs. Until then it costs about 40 tokens; SKILL.md has 1,548 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~40
When it runs · the whole SKILL.md, loaded when a task matches
~3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from sickn33/agentic-awesome-skills at commit 680176d, republished under its MIT licence (© sickn33). 1,548 words, ~3,042 tokens.

Download SKILL.mdSave it as .claude/skills/hosted-agents/SKILL.md (or your agent's skills folder).
name
hosted-agents
description
Build background agents in sandboxed environments. Use for hosted coding agents, sandboxed VMs, Modal sandboxes, and remote coding environments.
risk
critical
source
community
date_added
2026-09-04

Hosted Agent Infrastructure

Hosted agents run in remote sandboxed environments rather than on local machines. When designed well, they provide unlimited concurrency, consistent execution environments, and multiplayer collaboration. The critical insight is that session speed should be limited only by model provider time-to-first-token, with all infrastructure setup completed before the user starts their session.

When to Use

Activate this skill when:

  • Building background coding agents that run independently of user devices
  • Designing sandboxed execution environments for agent workloads
  • Implementing multiplayer agent sessions with shared state
  • Creating multi-client agent interfaces (Slack, Web, Chrome extensions)
  • Scaling agent infrastructure beyond local machine constraints
  • Building systems where agents spawn sub-agents for parallel work

Core Concepts

Hosted agents address the fundamental limitation of local agent execution: resource contention, environment inconsistency, and single-user constraints. By moving agent execution to remote sandboxed environments, teams gain unlimited concurrency, reproducible environments, and collaborative workflows.

The architecture consists of three layers: sandbox infrastructure for isolated execution, API layer for state management and client coordination, and client interfaces for user interaction across platforms. Each layer has specific design requirements that enable the system to scale.

Detailed Topics

Sandbox Infrastructure

The Core Challenge Spinning up full development environments quickly is the primary technical challenge. Users expect near-instant session starts, but development environments require cloning repositories, installing dependencies, and running build steps.

Image Registry Pattern Pre-build environment images on a regular cadence (every 30 minutes works well). Each image contains:

  • Cloned repository at a known commit
  • All runtime dependencies installed
  • Initial setup and build commands completed
  • Cached files from running app and test suite once

When starting a session, spin up a sandbox from the most recent image. The repository is at most 30 minutes out of date, making synchronization with the latest code much faster.

Snapshot and Restore Take filesystem snapshots at key points:

  • After initial image build (base snapshot)
  • When agent finishes making changes (session snapshot)
  • Before sandbox exit for potential follow-up

This enables instant restoration for follow-up prompts without re-running setup.

Git Configuration for Background Agents Since git operations are not tied to a specific user during image builds:

  • Generate GitHub app installation tokens for repository access during clone
  • Update git config's user.name and user.email when committing and pushing changes
  • Use the prompting user's identity for commits, not the app identity

Warm Pool Strategy Maintain a pool of pre-warmed sandboxes for high-volume repositories:

  • Sandboxes are ready before users start sessions
  • Expire and recreate pool entries as new image builds complete
  • Start warming sandbox as soon as user begins typing (predictive warm-up)
Agent Framework Selection

Server-First Architecture Choose an agent framework structured as a server first, with TUI and desktop apps as clients. This enables:

  • Multiple custom clients without duplicating agent logic
  • Consistent behavior across all interaction surfaces
  • Plugin systems for extending functionality
  • Event-driven architectures for real-time updates

Code as Source of Truth Select frameworks where the agent can read its own source code to understand behavior. This is underrated in AI development: having the code as source of truth prevents hallucination about the agent's own capabilities.

Plugin System Requirements The framework should support plugins that:

  • Listen to tool execution events (e.g., tool.execute.before)
  • Block or modify tool calls conditionally
  • Inject context or state at runtime
Speed Optimizations

Predictive Warm-Up Start warming the sandbox as soon as a user begins typing their prompt:

  • Clone latest changes in parallel with user typing
  • Run initial setup before user hits enter
  • For fast spin-up, sandbox can be ready before user finishes typing

Parallel File Reading Allow the agent to start reading files immediately, even if sync from latest base branch is not complete:

  • In large repositories, incoming prompts rarely modify recently-changed files
  • Agent can research immediately without waiting for git sync
  • Block file edits (not reads) until synchronization completes

Maximize Build-Time Work Move everything possible to the image build step:

  • Full dependency installation
  • Database schema setup
  • Initial app and test suite runs (populates caches)
  • Build-time duration is invisible to users
Self-Spawning Agents

Agent-Spawned Sessions Create tools that allow agents to spawn new sessions:

  • Research tasks across different repositories
  • Parallel subtask execution for large changes
  • Multiple smaller PRs from one major task

Frontier models are capable of containing themselves. The tools should:

  • Start a new session with specified parameters
  • Read status of any session (check-in capability)
  • Continue main work while sub-sessions run in parallel

Prompt Engineering for Self-Spawning Engineer prompts to guide when agents spawn sub-sessions:

  • Research tasks that require cross-repository exploration
  • Breaking monolithic changes into smaller PRs
  • Parallel exploration of different approaches
API Layer

Per-Session State Isolation Each session requires its own isolated state storage:

  • Dedicated database per session (SQLite per session works well)
  • No session can impact another's performance
  • Handles hundreds of concurrent sessions

Real-Time Streaming Agent work involves high-frequency updates:

  • Token streaming from model providers
  • Tool execution status updates
  • File change notifications

WebSocket connections with hibernation APIs reduce compute costs during idle periods while maintaining open connections.

Synchronization Across Clients Build a single state system that synchronizes across:

  • Chat interfaces
  • Slack bots
  • Chrome extensions
  • Web interfaces
  • VS Code instances

All changes sync to the session state, enabling seamless client switching.

Multiplayer Support

Why Multiplayer Matters Multiplayer enables:

  • Teaching non-engineers to use AI effectively
  • Live QA sessions with multiple team members
  • Real-time PR review with immediate changes
  • Collaborative debugging sessions

Implementation Requirements

  • Data model must not tie sessions to single authors
  • Pass authorship info to each prompt
  • Attribute code changes to the prompting user
  • Share session links for instant collaboration

With proper synchronization architecture, multiplayer support is nearly free to add.

Show full SKILL.md (631 more words)Show less
Authentication and Authorization

User-Based Commits Use GitHub authentication to:

  • Obtain user tokens for PR creation
  • Open PRs on behalf of the user (not the app)
  • Prevent users from approving their own changes

Sandbox-to-API Flow

  1. Sandbox pushes changes (updating git user config)
  2. Sandbox sends event to API with branch name and session ID
  3. API uses user's GitHub token to create PR
  4. GitHub webhooks notify API of PR events
Client Implementations

Slack Integration The most effective distribution channel for internal adoption:

  • Creates virality loop as team members see others using it
  • No syntax required, natural chat interface
  • Classify repository from message, thread context, and channel name

Build a classifier to determine which repository to work in:

  • Fast model with descriptions of available repositories
  • Include hints for common repositories
  • Allow "unknown" option for ambiguous cases

Web Interface Core features:

  • Works on desktop and mobile
  • Real-time streaming of agent work
  • Hosted VS Code instance running inside sandbox
  • Streamed desktop view for visual verification
  • Before/after screenshots for PRs

Statistics page showing:

  • Sessions resulting in merged PRs (primary metric)
  • Usage over time
  • Live "humans prompting" count (prompts in last 5 minutes)

Chrome Extension For non-engineering users:

  • Sidebar chat interface with screenshot tool
  • DOM and React internals extraction instead of raw images
  • Reduces token usage while maintaining precision
  • Distribute via managed device policy (bypasses Chrome Web Store)

Practical Guidance

Follow-Up Message Handling

Decide how to handle messages sent during execution:

  • Queue approach: Messages wait until current prompt completes
  • Insert approach: Messages are processed immediately

Queueing is simpler to manage and lets users send thoughts on next steps while agent works. Build mechanism to stop agent mid-execution when needed.

Metrics That Matter

Track metrics that indicate real value:

  • Sessions resulting in merged PRs (primary success metric)
  • Time from session start to first model response
  • PR approval rate and revision count
  • Agent-written code percentage across repositories
Adoption Strategy

Internal adoption patterns that work:

  • Work in public spaces (Slack channels) for visibility
  • Let the product create virality loops
  • Don't force usage over existing tools
  • Build to people's needs, not hypothetical requirements

Guidelines

  1. Pre-build environment images on regular cadence (30 minutes is a good default)
  2. Start warming sandboxes when users begin typing, not when they submit
  3. Allow file reads before git sync completes; block only writes
  4. Structure agent framework as server-first with clients as thin wrappers
  5. Isolate state per session to prevent cross-session interference
  6. Attribute commits to the user who prompted, not the app
  7. Track merged PRs as primary success metric
  8. Build for multiplayer from the start; it is nearly free with proper sync architecture

Integration

This skill builds on multi-agent-patterns for agent coordination and tool-design for agent-tool interfaces. It connects to:

  • multi-agent-patterns - Self-spawning agents follow supervisor patterns
  • tool-design - Building tools for agent spawning and status checking
  • context-optimization - Managing context across distributed sessions
  • filesystem-context - Using filesystem for session state and artifacts

References

Internal reference:

  • Infrastructure Patterns - Detailed implementation patterns

Related skills in this collection:

  • multi-agent-patterns - Coordination patterns for self-spawning agents
  • tool-design - Designing tools for hosted environments
  • context-optimization - Managing context in distributed systems

External resources:


Skill Metadata

Created: 2026-01-12 Last Updated: 2026-01-12 Author: Agent Skills for Context Engineering Contributors Version: 1.0.0

When to Use

Use this skill when tackling tasks related to its primary domain or functionality as described above.

Example

User request:

Build background coding agents that run independently of user devices.

Limitations

  • Use this skill only when the task clearly matches the scope described above.
  • Do not treat the output as a substitute for environment-specific validation, testing, or expert review.
  • Stop and ask for clarification if required inputs, permissions, safety boundaries, or success criteria are missing.

© sickn33, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/hosted-agents of sickn33/agentic-awesome-skills.

Open the folder on GitHubat commit 680176d

Used in 2 other repositories

We found 11 copies of this SKILL.md (exact, near-identical or edited) in other folders, from 2 other GitHub owners. This page covers the copy in sickn33/agentic-awesome-skills, which our catalogue first saw on October 9, 2026.

Compare with similar skills

Hosted Agents next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Hosted Agents compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Hosted Agents this skillsickn33/agentic-awesome-skills47k2 repos~3kAutomated safety check: PassMIT
Flox Environmentsaffaan-m/ECC276k1 repos~3.5kAutomated safety check: NotesMIT
Agent Sandboxruvnet/ruflo74k2 repos~777Automated safety check: PassMIT
Remote Environmentsasgeirtj/system_prompts_leaks69k—~1.4kAutomated safety check: PassCC0-1.0
Sandbox Benchvercel/next.js143k—~4.1kAutomated safety check: PassMIT
Python Background Jobswshobson/agents40k—~1.8kAutomated safety check: PassMIT

Similar skills

  • Flox Environments

    affaan-m/ECC

    Create reproducible, cross-platform (macOS/Linux) development environments with Flox, a declarative Nix-based environment manager.

    276k GitHub starsUsed in 1 repo~3.5k tokens
    DatabasesAuto-check: notes
  • Agent Sandbox

    ruvnet/ruflo

    Agent skill for sandbox - invoke with $agent-sandbox. An agent skill from ruvnet/ruflo.

    74k GitHub starsUsed in 2 repos~777 tokens
    Auto-check passed
  • Remote Environments

    asgeirtj/system_prompts_leaks

    Discover available task environments and create or continue tasks when the user names an environment or computer, or refers to files or apps specifically on their computer.

    69k GitHub stars~1.4k tokensUpdated yesterday
    Auto-check passed
  • Sandbox Bench

    vercel/next.js

    Official

    Benchmark React or Next.js changes on Vercel Sandbox VMs with paired A/B statistics: react PR/commit vs base, or Next.js PR/commit vs base, measured end-to-end through the bench/render-pipeline app…

    143k GitHub stars~4.1k tokensUpdated today
    Data & AnalyticsAuto-check passed
  • Python Background Jobs

    wshobson/agents

    Python background job patterns including task queues, workers, and event-driven architecture.

    40k GitHub stars~1.8k tokensUpdated 4 days ago
    Backend & APIsAuto-check passed
  • Sandbox

    alsk1992/CloddsBot

    Visual HTML canvas sandbox for agent-driven UI and live previews

    2.9k GitHub stars~341 tokensUpdated 6 days ago
    Auto-check passed

More from sickn33/agentic-awesome-skills

All 1,493 skills in this repo
  • Liuguang Banlan UI

    sickn33/agentic-awesome-skills

    Implements an interface in one of two named color modes, iridescent white or colorful black, from a parameterized starter that reports measured color intensity.

    47k GitHub starsUsed in 1 repo~2.5k tokens
    Auto-check passed
  • User Thoughts Memory

    sickn33/agentic-awesome-skills

    Saves a user's project decisions, rules and preferences into a project-local mdbase so later sessions and other agents can recover the intent.

    47k GitHub starsUsed in 1 repo~2.5k tokens
    Auto-check passed
  • Using LWC Memory and Graphs

    sickn33/agentic-awesome-skills

    Keeps project decisions, research and verified results available across coding-agent sessions through LWC memory, a document Wiki graph and a CodeGraph code index.

    47k GitHub starsUsed in 1 repo~2k tokens
    Auto-check passed
  • Find Complementary Founders

    sickn33/agentic-awesome-skills

    Guides an agent through assessing its own owner for cofounder fit, publishing an approved profile, and ranking complementary profiles other agents published for their owners.

    47k GitHub starsUsed in 1 repo~4.8k tokens
    Auto-check passed
  • Whatsapp Cloud API

    sickn33/agentic-awesome-skills

    Integracao com WhatsApp Business Cloud API (Meta). An agent skill from sickn33/agentic-awesome-skills.

    47k GitHub starsUsed in 2 repos~4.5k tokens
    Auto-check passed
  • Cline Pilot

    sickn33/agentic-awesome-skills

    Acts as a proxy for the Cline CLI, dispatching coding tasks one at a time, monitoring runs by hard evidence, relaying decisions to you and learning per-project preferences.

    47k GitHub starsUsed in 1 repo~4.6k tokens
    Auto-check passed

Questions about Hosted Agents

What does Hosted Agents do?

Build background agents in sandboxed environments. An agent skill from sickn33/agentic-awesome-skills. Hosted Agents is an agent skill from sickn33/agentic-awesome-skills. Build background agents in sandboxed environments.

When should I use Hosted Agents?

Hosted Agents fits situations like: hosted coding agents; modal sandboxes; remote coding environments.

How do I install Hosted Agents in Claude Code?

Run `npx skills add sickn33/agentic-awesome-skills --skill hosted-agents -a claude-code`. Or copy the skill folder (skills/hosted-agents in sickn33/agentic-awesome-skills) into .claude/skills/hosted-agents in your project. Claude Code loads it when a task matches its description.

How do I install Hosted Agents in Codex?

Run `npx skills add sickn33/agentic-awesome-skills --skill hosted-agents -a codex`. Or copy the skill folder (skills/hosted-agents in sickn33/agentic-awesome-skills) into .agents/skills/hosted-agents in your project. Codex loads it when a task matches its description.

Can I use Hosted Agents in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add sickn33/agentic-awesome-skills --skill hosted-agents -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/hosted-agents, .gemini/skills/hosted-agents, .github/skills/hosted-agents and .opencode/skills/hosted-agents in your project.

What does Hosted Agents need to run?

SKILL.md names no scripts, command-line tools or credentials: Hosted Agents is instructions for the agent only.

Does Hosted Agents access the network?

SKILL.md names 4 domains. As links in the text: builders.ramp.com, modal.com, developers.cloudflare.com and github.com. This is read from the text; nothing was executed.

Is Hosted Agents safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Hosted Agents use?

Hosted Agents is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Hosted Agents use?

About 3k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Hosted Agents?

Skills that share tags, products or a category with Hosted Agents: Flox Environments (affaan-m/ECC, 276k stars), Agent Sandbox (ruvnet/ruflo, 74k stars), Remote Environments (asgeirtj/system_prompts_leaks, 69k stars) and Sandbox Bench (vercel/next.js, 143k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Hosted Agents?

sickn33 (a GitHub user) maintains it in sickn33/agentic-awesome-skills, which has 47,379 GitHub stars. The repository holds 1,493 skills in this directory. The repository was last updated on October 9, 2026.

Source: sickn33/agentic-awesome-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.