Agent skill

Headless Claude Code

by vellum-ai in vellum-ai/vellum-assistant

Reference guide for running Claude Code in third-party headless, container, and CI environments.

MITAuto-check passedBackend & APIs

Install Headless Claude Code

skills CLI
$ npx skills add vellum-ai/vellum-assistant --skill headless-claude-code -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install vellum-ai/vellum-assistant headless-claude-code --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/vellum-ai/vellum-assistant.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/headless-claude-code .claude/skills/headless-claude-code && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
headless-claude-code
GitHub stars
1.4k
Token cost
~4.3k tokens
SKILL.md length
1,273 words
Files
1
Skills in repo
108
Repo updated
First seen
Licence
MIT

At a glance

Reference guide for running Claude Code in third-party headless, container, and CI environments.

  • Works in 8 steps: Authentication → First-Run Onboarding & Interactive Prompts → tmux Orchestration → …
  • Backend & APIs work in your project
  • SKILL.md covers 1. Authentication, 2. First-Run Onboarding &…, 3. tmux Orchestration and 4. Root User & Permissions, plus 4 more sections
  • Calls claude, git and gh; reaches github.com; needs CLAUDE_CODE_OAUTH_TOKEN and ANTHROPIC_API_KEY

What it does

Headless Claude Code is an agent skill from vellum-ai/vellum-assistant. Reference guide for running Claude Code in third-party headless, container, and CI environments. Covers auth strategies, interactive mode pitfalls, tmux orchestration, root user workarounds, and git auth without SSH agents or keychains

Its SKILL.md is about 4.3k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts. Compatibility notes: Any environment running Claude Code headlessly

It sits in Backend & APIs. It works with tmux and Git. The repository describes itself as: An AI Assistant that’s easy to setup, does your work 24/7, knows your preferences and gets better over time. The licence is MIT.

When your agent uses it

  • Backend & APIs work in your project

Example prompts

  • “/headless-claude-code”

Requirements

  • Python 3
  • Docker
  • A credential in ANTHROPIC_AUTH_TOKEN
  • A credential in ANTHROPIC_API_KEY
  • Compatibility (from SKILL.md): Any environment running Claude Code headlessly

Workflow steps

8 steps, taken from the step headings in SKILL.md.

  1. Authentication
  2. First-Run Onboarding & Interactive Prompts
  3. tmux Orchestration
  4. Root User & Permissions
  5. Git Auth in Containers
  6. CC --settings Deep Merge Behavior
  7. Common Failure Modes
  8. Quick Start: Container Checklist

What it can do on your machine

Read from SKILL.md and the folder at commit c92ead1. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • claude
    • git
    • gh
    • apt-get
    • python3

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • CLAUDE_CODE_OAUTH_TOKEN
    • ANTHROPIC_API_KEY
    • GITHUB_TOKEN
    • ANTHROPIC_AUTH_TOKEN

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Any environment running Claude Code headlessly

    From compatibility in the SKILL.md frontmatter.

Context cost

Headless Claude Code loads about 4.3k tokens when it runs. Until then it costs about 64 tokens; SKILL.md has 1,273 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~64
When it runs · the whole SKILL.md, loaded when a task matches
~4.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from vellum-ai/vellum-assistant at commit c92ead1, republished under its MIT licence (© vellum-ai). 1,273 words, ~4,270 tokens.

Download SKILL.mdSave it as .claude/skills/headless-claude-code/SKILL.md (or your agent's skills folder).
name
headless-claude-code
description
Reference guide for running Claude Code in third-party headless, container, and CI environments. Covers auth strategies, interactive mode pitfalls, tmux orchestration, root user workarounds, and git auth without SSH agents or keychains
compatibility
Any environment running Claude Code headlessly
metadata.emoji
🖥️

Headless Claude Code

Running Claude Code outside a desktop terminal — in Docker containers, CI runners, cloud VMs, or orchestrated by another process — is full of undocumented friction. This guide covers everything we've learned getting CC to work reliably in these environments.


1. Authentication

CC tries multiple auth strategies in a fixed priority order. Understanding this chain is the key to headless auth.

Priority Order (highest → lowest)
  1. Cloud provider ambient credentials — AWS Bedrock, GCP Vertex (auto-detected)
  2. ANTHROPIC_AUTH_TOKEN — raw bearer token for Anthropic's API
  3. ANTHROPIC_API_KEY — direct API key (pay-per-token, no Pro subscription features)
  4. apiKeyHelper — executable that prints a token to stdout (set via --settings)
  5. CLAUDE_CODE_OAUTH_TOKEN — OAuth token (Pro/Team subscription)
  6. /login — interactive browser OAuth dance (unusable in headless)

The most flexible headless strategy. Point CC at a script that returns a valid token:

json
{
  "apiKeyHelper": "/path/to/your-auth-script"
}

Pass it via --settings /path/to/settings.json on launch. CC calls this script whenever it needs a token, so it handles rotation naturally.

Example helper (reads from a credential vault):

bash
#!/bin/bash
# Prints the OAuth token to stdout. CC calls this on demand.
your-vault-cli get anthropic-oauth-token

The script MUST:

  • Print exactly one token to stdout (no trailing newline issues — CC trims)
  • Exit 0 on success
  • Be executable (chmod +x)
setup-token (One-Time OAuth Bootstrap)

If you have a browser somewhere (your laptop, a jump host), you can bootstrap OAuth credentials into a headless machine:

bash
# On the headless machine:
claude setup-token
# Prints a URL and waits for a token

# Open that URL in any browser, complete the OAuth flow.
# The token is saved to ~/.claude/ and CC uses it going forward.

This is good for initial setup but tokens expire. For long-running environments, apiKeyHelper with a refresh mechanism is more robust.

CLAUDE_CODE_OAUTH_TOKEN env var

Set a Pro/Team subscription OAuth token directly:

bash
export CLAUDE_CODE_OAUTH_TOKEN="oat-..."
claude

This is the simplest headless auth method and works in both -p mode and interactive mode. The main limitation: no automatic refresh. When the token expires, CC dies.

Caveat: on first launch in interactive mode, CC may still show the login method picker even with this env var set. Complete onboarding once (see Section 2) and subsequent launches will use the token without prompting.

What NOT to Use
  • ANTHROPIC_API_KEY works but bills per-token (no Pro subscription). Fine for CI where you want predictable billing; bad for long interactive sessions.
  • /login (the interactive browser flow) requires a real browser. In containers, this hangs or errors. The whole point of this guide is avoiding it.

2. First-Run Onboarding & Interactive Prompts

CC has several interactive prompts that block on first launch. In headless environments where no human is watching, these are silent killers.

The Onboarding Gauntlet

On first launch, CC may prompt for:

  1. Theme selection — light/dark/system theme picker
  2. Trust dialog — "Do you trust the files in this directory?"
  3. Bypass-permissions warning — safety acknowledgment (when using --dangerously-skip-permissions)
  4. OAuth login — browser-based auth (if no token is configured)

Each of these blocks the process waiting for input. In a tmux session or piped context, CC just hangs silently.

Pre-Seeding .claude.json (Skip Almost Everything)

CC stores onboarding and trust state in $HOME/.claude.json. Pre-populate it to skip all skippable prompts:

python
import json, os

config_path = os.path.expanduser("~/.claude.json")
config = {}

# Skip theme picker + welcome screen
config["hasCompletedOnboarding"] = True

# Pre-accept workspace trust per directory
config["projects"] = {
    "/workspace/my-repo": {
        "hasTrustDialogAccepted": True
    }
}

with open(config_path, "w") as f:
    json.dump(config, f, indent=2)

This eliminates the theme picker, welcome screen, and trust dialog. The only prompt that can't be pre-seeded is the bypass-permissions safety warning — CC always shows it when --dangerously-skip-permissions is used. Auto-accept it with:

bash
# After launching CC in tmux, wait for it to render, then:
sleep 5
tmux send-keys -t session_name Down    # Select "Yes, I accept"
tmux send-keys -t session_name Enter
Why Not -p (Print Mode)?

claude -p "prompt" seems ideal for headless use, but it has critical limitations:

  • Buffers ALL output until completion — no streaming, no progress visibility
  • No session continuity — each invocation is a fresh session with no memory
  • No mid-flight interaction — can't course-correct or add context

Interactive mode in tmux is better for anything beyond one-shot queries. You get streaming output, session continuity, and can inject follow-up prompts via load-buffer/paste-buffer (see Section 3).


3. tmux Orchestration

For persistent headless sessions, tmux is the right primitive. But the integration has sharp edges.

Prompt Injection: load-buffer + paste-buffer, NOT send-keys

This is the single most important tmux pattern. Do not use send-keys to type prompts into CC. Special characters, quotes, newlines, and shell metacharacters all break unpredictably.

bash
# ✅ CORRECT — works with any content
echo "Your prompt here, with 'quotes' and \"escapes\" and $variables" > /tmp/prompt.txt
tmux load-buffer /tmp/prompt.txt
tmux paste-buffer -t session_name
tmux send-keys -t session_name Enter

# ❌ WRONG — breaks on quotes, newlines, $, !, etc.
tmux send-keys -t session_name "Fix the bug in auth.ts" Enter

send-keys is fine for simple strings (Enter, Y, N) but not for arbitrary prompt text. The load-buffer/paste-buffer pattern treats the content as raw text, bypassing all shell interpretation.

Reading Output: capture-pane
bash
# Last 50 lines of a session
tmux capture-pane -t session_name -p -S -50

# Full scrollback to a file
tmux capture-pane -t session_name -p -S - > /tmp/session-output.txt
Session Lifecycle
bash
# Create a detached session in a working directory
tmux new-session -d -s my-session -c /path/to/repo

# Kill when done
tmux kill-session -t my-session

# List all sessions
tmux list-sessions
Reference Launcher: cc-session

A complete launcher that handles auth, user switching, onboarding bypass, git tokens, and the bypass-permissions warning — zero human interaction required:

bash
#!/bin/bash
# cc-session <name> [working-dir] [-- claude-args...]
set -euo pipefail

SESSION_NAME="${1:?Usage: cc-session <name> [working-dir]}"
WORK_DIR="${2:-/path/to/default/repo}"

# Install tmux if missing (containers lose it on restart)
command -v tmux &>/dev/null || apt-get install -y -qq tmux

# Find or create a non-root user
CC_USER=$(grep -E '/bin/(ba)?sh$' /etc/passwd | grep -v '^root:' | head -1 | cut -d: -f1)
[ -z "$CC_USER" ] && { useradd -m ccuser; CC_USER="ccuser"; }
CC_HOME=$(eval echo "~$CC_USER")

# Pre-seed .claude.json to skip onboarding + trust prompts
mkdir -p "$CC_HOME/.claude"
python3 -c "
import json
config = {'hasCompletedOnboarding': True, 'projects': {'$WORK_DIR': {'hasTrustDialogAccepted': True}}}
with open('$CC_HOME/.claude.json', 'w') as f: json.dump(config, f)
"
chown -R "$CC_USER:$CC_USER" "$CC_HOME/.claude" "$CC_HOME/.claude.json"

# Write a wrapper script (keeps the token out of tmux scrollback)
LAUNCHER="/tmp/.cc-launch-$SESSION_NAME.sh"
cat > "$LAUNCHER" << EOF
#!/bin/bash
export PATH="/path/to/bun/bin:\$PATH"
export HOME=$CC_HOME
export CLAUDE_CODE_OAUTH_TOKEN="\$(your-vault-cli get anthropic-token)"
cd $WORK_DIR
exec claude --dangerously-skip-permissions
EOF
chmod +x "$LAUNCHER"

# Create session and launch
tmux new-session -d -s "$SESSION_NAME" -c "$WORK_DIR"
sleep 1
tmux send-keys -t "$SESSION_NAME" "su -s /bin/bash $CC_USER -c $LAUNCHER" Enter

# Poll for bypass-permissions warning and auto-accept
for i in $(seq 1 30); do
  tmux capture-pane -t "$SESSION_NAME" -p 2>/dev/null | grep -q "Yes, I accept" && {
    tmux send-keys -t "$SESSION_NAME" Down; sleep 0.3; tmux send-keys -t "$SESSION_NAME" Enter; break
  }; sleep 1
done

# Poll for ready prompt
for i in $(seq 1 20); do
  tmux capture-pane -t "$SESSION_NAME" -p 2>/dev/null | grep -q "bypass permissions on" && break
  sleep 1
done

Key design decisions:

  • Wrapper script instead of send-keys exports — token never appears in scrollback
  • Polling loops instead of fixed sleep — adapts to slow/fast startup
  • Readiness check — script doesn't return until CC is actually at the prompt
Reference Prompt Sender: cc-prompt
bash
#!/bin/bash
# cc-prompt <session> <file>    — send file contents as prompt
# cc-prompt <session> -c "text" — send inline text as prompt
set -euo pipefail

SESSION_NAME="$1"; shift

if [ "${1:-}" = "-c" ]; then
  shift
  PROMPT_FILE=$(mktemp)
  echo "$*" > "$PROMPT_FILE"
  CLEANUP=true
else
  PROMPT_FILE="$1"
  CLEANUP=false
fi

tmux load-buffer "$PROMPT_FILE"
tmux paste-buffer -t "$SESSION_NAME"
sleep 0.5
tmux send-keys -t "$SESSION_NAME" Enter

[ "$CLEANUP" = true ] && rm -f "$PROMPT_FILE"

4. Root User & Permissions

Containers often run as root. CC has special behavior here that will bite you.

--dangerously-skip-permissions Refuses Root

CC deliberately refuses --dangerously-skip-permissions when running as root (UID 0). The flag is designed for trusted local development; root + skip-permissions is considered too dangerous.

Error: --dangerously-skip-permissions cannot be used as root
Show full SKILL.md (505 more words)Show less

Most container images have at least one non-root user, or you can create one. The key insight: CC only checks uid == 0 — any non-root uid works, regardless of the username or whether the user has a real home directory.

bash
# Find existing non-root users with a shell
grep -E '/bin/(ba)?sh$' /etc/passwd | grep -v '^root:'

# If none exist, create one
useradd -m ccuser

# Switch and launch
su -s /bin/bash ccuser -c '
  export PATH="/path/to/bun/or/node/bin:$PATH"
  export HOME=/home/ccuser
  export CLAUDE_CODE_OAUTH_TOKEN="your-token"
  claude --dangerously-skip-permissions
'

In a tmux launcher, the pattern is:

bash
tmux new-session -d -s my-session -c /workspace
tmux send-keys -t my-session "su -s /bin/bash ccuser" Enter
sleep 1
tmux send-keys -t my-session "export PATH=/path/to/bin:\$PATH" Enter
tmux send-keys -t my-session "export HOME=/home/ccuser" Enter
tmux send-keys -t my-session "export CLAUDE_CODE_OAUTH_TOKEN='$TOKEN'" Enter
tmux send-keys -t my-session "claude --dangerously-skip-permissions" Enter

Important: set HOME explicitly after su. Some containers default root's HOME to /root or /data, and su doesn't always update it. CC stores config in $HOME/.claude and $HOME/.claude.json, so a wrong HOME means it can't find its auth or onboarding state.

Alternative: --settings with permissions.allow

If you can't switch users, pre-approve tools via settings so CC never prompts:

json
{
  "permissions": {
    "allow": ["Bash(*)", "Read(*)", "Write(*)", "Edit(*)"]
  }
}

Pass via claude --settings /path/to/settings.json. This is functionally equivalent to skip-permissions but works as root. Use only in trusted environments.

Fallback: Auto-Approve via send-keys

When CC asks for permission, send approval:

bash
# Watch for permission prompts and auto-approve
while true; do
  OUTPUT=$(tmux capture-pane -t session_name -p -S -5)
  if echo "$OUTPUT" | grep -q "Allow\|approve\|permission"; then
    tmux send-keys -t session_name "Y" Enter
  fi
  sleep 2
done

This is janky and race-prone. Use it as a last resort.


5. Git Auth in Containers

Containers don't have SSH agents, keychains, or credential managers. Git auth needs to be handled explicitly.

HTTPS with Token in Remote URL

The simplest approach — embed an access token directly in the remote URL:

bash
git remote set-url origin "https://x-access-token:${TOKEN}@github.com/org/repo.git"

Works with:

  • GitHub App installation tokens
  • Personal access tokens (PATs)
  • Fine-grained tokens
Token Refresh

GitHub App tokens expire (typically 1 hour). For long sessions, refresh before push:

bash
# Refresh token and update remote
TOKEN=$(your-token-refresh-command)
git remote set-url origin "https://x-access-token:${TOKEN}@github.com/org/repo.git"
git push origin HEAD

Build this into your launcher or run it before CC tries to push.

gh CLI Auth

If gh is installed, it can handle auth for git operations:

bash
gh auth setup-git  # configures git credential helper

But gh itself needs auth — either GITHUB_TOKEN env var or gh auth login with a token. In containers, set GITHUB_TOKEN and run gh auth setup-git during setup.

What Doesn't Work
  • SSH keys — no ssh-agent in most containers; mounting keys is a security risk
  • macOS Keychain — obviously not available
  • Git Credential Manager — requires a credential store that doesn't exist
  • git credential-store — writes plaintext to disk; works but ugly

6. CC --settings Deep Merge Behavior

--settings doesn't replace ~/.claude/settings.json — it deep-merges on top of it. This means:

  • Your apiKeyHelper in --settings overrides the one in ~/.claude/settings.json
  • Hooks from ~/.claude/settings.json are preserved
  • Array fields (like permissions.allow) are merged, not replaced

This is useful: you can have repo-level settings in ~/.claude/settings.json (hooks, tool configs) and overlay auth-only settings via --settings at launch.


7. Common Failure Modes

SymptomCauseFix
CC hangs on launchFirst-run onboarding promptsPre-seed ~/.claude.json with hasCompletedOnboarding + hasTrustDialogAccepted
CC hangs on launchNo valid auth tokenSet apiKeyHelper, CLAUDE_CODE_OAUTH_TOKEN, or run setup-token
"cannot be used as root"--dangerously-skip-permissions as rootsu to any non-root user, or use --settings with permissions.allow
Git push fails: 401Token expiredRefresh token and update remote URL
Git push fails: 403Token lacks permissionsCheck token scopes (need contents:write)
Prompt text mangledUsing send-keys for complex textUse load-buffer + paste-buffer
-p mode: no output for minutesPrint mode buffers everythingUse interactive mode in tmux instead
CC asks for login mid-sessionOAuth token expiredUse apiKeyHelper with refresh logic
tmux: command not foundContainer restartedInstall tmux in your launcher script

8. Quick Start: Container Checklist

□ Auth: CLAUDE_CODE_OAUTH_TOKEN env var or apiKeyHelper configured
□ Onboarding: ~/.claude.json pre-seeded (hasCompletedOnboarding + hasTrustDialogAccepted)
□ User: running as non-root (su if needed) for --dangerously-skip-permissions
□ Bypass warning: auto-accepted via send-keys Down+Enter after launch
□ tmux: installed in launcher (won't persist across container restarts)
□ Prompts: injected via load-buffer/paste-buffer (NOT send-keys)
□ Git: token embedded in remote URL, refresh mechanism for long sessions
□ Monitoring: capture-pane for output (not -p buffering)

© vellum-ai, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/headless-claude-code of vellum-ai/vellum-assistant.

Open the folder on GitHubat commit c92ead1

Compare with similar skills

Headless Claude Code next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Headless Claude Code compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Headless Claude Code this skillvellum-ai/vellum-assistant1.4k—~4.3kAutomated safety check: PassMIT
CodeGraph Agent Evalcolbymchenry/codegraph73k—~950Automated safety check: PassMIT
Using Tmux For Interactive Commandsobra/superpowers-lab4303 repos~1.3kAutomated safety check: PassMIT
Huashu Agent Swarmalchaincyf/huashu-skills1.7k1 repos~576Automated safety check: PassMIT
Git History Bug Auditben-manes/caffeine18k—~3.3kAutomated safety check: PassApache-2.0
Agent Deckasheshgoplani/agent-deck1k—~1.7kAutomated safety check: PassMIT

Similar skills

  • CodeGraph Agent Eval

    colbymchenry/codegraph

    Benchmarks how much CodeGraph helps a coding agent on a real repository, comparing runs with and without it for a chosen local or published version.

    73k GitHub stars~950 tokensUpdated yesterday
    Agent WorkflowsAuto-check passed
  • A skill your agent uses when you need to run interactive CLI tools (vim, git rebase -i, Python REPL, etc.) that require real-time input/output - provides tmux-based approach for controlling…

    430 GitHub starsUsed in 3 repos~1.3k tokens
    DevelopmentAuto-check passed
  • Huashu Agent Swarm

    alchaincyf/huashu-skills

    多Agent蜂群并行协作,纯git自组织,适合大型项目开发。当用户提到"蜂群模式"、"多agent"、"并行开发"、"agent swarm"时使用。

    1.7k GitHub starsUsed in 1 repo~576 tokens
    Agent WorkflowsAuto-check passed
  • Git History Bug Audit

    ben-manes/caffeine

    Audits a module by walking its git history commit by commit, tracking unresolved issues forward, and reporting the ones that survive to HEAD as findings.

    18k GitHub stars~3.3k tokensUpdated 2 days ago
    DevelopmentAuto-check passed
  • Agent Deck

    asheshgoplani/agent-deck

    agent-deck, the terminal session manager for AI coding agents.

    1k GitHub stars~1.7k tokensUpdated 2 days ago
    Agent WorkflowsAuto-check passed
  • Clawteam

    win4r/ClawTeam-OpenClaw

    Multi-agent swarm orchestration. An agent skill from win4r/ClawTeam-OpenClaw.

    1.5k GitHub stars~3.1k tokensUpdated 3 mo ago
    Agent WorkflowsAuto-check passed

More from vellum-ai/vellum-assistant

All 108 skills in this repo
  • Vellum GitHub App Setup

    vellum-ai/vellum-assistant

    Create and configure a GitHub App so the assistant can push commits, open PRs, and comment under its own bot identity.

    1.4k GitHub stars~3.1k tokensUpdated today
    Auto-check passed
  • Discord App Setup

    vellum-ai/vellum-assistant

    Connect a Discord bot to the assistant via the Discord Gateway with guided application creation and intent configuration

    1.4k GitHub stars~4.2k tokensUpdated today
    Auto-check passed
  • Sentry App Setup

    vellum-ai/vellum-assistant

    Create and configure a Sentry internal integration so the assistant can manage issues, alerts, and releases under its own identity

    1.4k GitHub stars~1.3k tokensUpdated today
    Auto-check passed
  • Memory Corpus Ingest

    vellum-ai/vellum-assistant

    Ingest a large dataset into memory as a skimmed map. An agent skill from vellum-ai/vellum-assistant.

    1.4k GitHub stars~3k tokensUpdated today
    Auto-check: notes
  • Plugin Builder

    vellum-ai/vellum-assistant

    A skill your agent uses when the user wants to build, scaffold, ship, or edit a Vellum plugin that bundles multiple surfaces (hooks, tools, skills, and more) into one installable package.

    1.4k GitHub stars~3.1k tokensUpdated today
    Auto-check passed
  • Slack App Setup

    vellum-ai/vellum-assistant

    Connect a Slack app to the Vellum Assistant via Socket Mode.

    1.4k GitHub stars~2.5k tokensUpdated today
    Auto-check: warnings

Works with

Categories

Questions about Headless Claude Code

What does Headless Claude Code do?

Reference guide for running Claude Code in third-party headless, container, and CI environments. Headless Claude Code is an agent skill from vellum-ai/vellum-assistant. Reference guide for running Claude Code in third-party headless, container, and CI environments.

When should I use Headless Claude Code?

Headless Claude Code fits situations like: backend & APIs work in your project.

How do I install Headless Claude Code in Claude Code?

Run `npx skills add vellum-ai/vellum-assistant --skill headless-claude-code -a claude-code`. Or copy the skill folder (skills/headless-claude-code in vellum-ai/vellum-assistant) into .claude/skills/headless-claude-code in your project. Claude Code loads it when a task matches its description.

How do I install Headless Claude Code in Codex?

Run `npx skills add vellum-ai/vellum-assistant --skill headless-claude-code -a codex`. Or copy the skill folder (skills/headless-claude-code in vellum-ai/vellum-assistant) into .agents/skills/headless-claude-code in your project. Codex loads it when a task matches its description.

Can I use Headless Claude Code in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add vellum-ai/vellum-assistant --skill headless-claude-code -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/headless-claude-code, .gemini/skills/headless-claude-code, .github/skills/headless-claude-code and .opencode/skills/headless-claude-code in your project.

What does Headless Claude Code need to run?

Going by SKILL.md and its folder, Headless Claude Code needs the command-line tools its instructions call (claude, git, gh, apt-get and python3) and credentials named CLAUDE_CODE_OAUTH_TOKEN, ANTHROPIC_API_KEY, GITHUB_TOKEN and ANTHROPIC_AUTH_TOKEN. Our summary lists: Python 3; Docker; A credential in ANTHROPIC_AUTH_TOKEN; A credential in ANTHROPIC_API_KEY. Compatibility (from SKILL.md): Any environment running Claude Code headlessly.

Does Headless Claude Code access the network?

SKILL.md names 1 domain. In commands or code: github.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Headless Claude Code safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Headless Claude Code use?

Headless Claude Code is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Headless Claude Code use?

About 4.3k tokens (SKILL.md is roughly 17k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Headless Claude Code?

Skills that share tags, products or a category with Headless Claude Code: CodeGraph Agent Eval (colbymchenry/codegraph, 73k stars), Using Tmux For Interactive Commands (obra/superpowers-lab, 430 stars), Huashu Agent Swarm (alchaincyf/huashu-skills, 1.7k stars) and Git History Bug Audit (ben-manes/caffeine, 18k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Headless Claude Code?

vellum-ai (a GitHub organization) maintains it in vellum-ai/vellum-assistant, which has 1,397 GitHub stars. The repository holds 108 skills in this directory. The repository was last updated on October 7, 2026.

Source: vellum-ai/vellum-assistant on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.