All skills
rivet-dev avatar

/rivet-agentos

@6bead6f official
by Rivetrivet-dev/skills31 stars
8

agentOS: A computer for every agent.

Use this Skill: https://skilld.dev/gh/rivet-dev/skills/rivet-agentos

This session only. Nothing lands on disk.

examplespermissionsREADME.md

≈365 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Permission policies decide what guest code is allowed to touch: the network, the filesystem, and named host functions. Reach for this when you need to hand untrusted or agent-generated code a VM that can only do exactly what you intend.

How it works

Each policy is a small object passed to agentOS({ permissions }). A policy sets a default (allow or deny) and a list of rules that flip the decision for specific paths, hosts, or host-function names. This example composes four policies and merges them into one permission set:

  • Network granted outright, with a stricter override that denies by default and allows only api.example.com.
  • Filesystem allowed by default but denied for anything under /vault/**.
  • Host functions denied by default, allowing only add by name.

Rules are evaluated against the defaults, so you compose from broad posture down to narrow exceptions. The resulting VM enforces all of them on every guest operation.

Run it

npm install
npx tsx server.ts

The registry starts with a VM whose guest can reach api.example.com, cannot read /vault, and can only invoke the add host function.

Source

View the source on GitHub: https://github.com/rivet-dev/agent-os/tree/main/examples/permissions

Source: SKILL.md on GitHub

1 warningtoday3 checks · Risk SAFE
  • Gen Agent Trust Hubtoday

    This skill is a comprehensive collection of developer documentation and code examples for the agentOS platform. It demonstrates core features such as virtual machine isolation, process management, and host-to-guest function calls. While it includes examples of command execution and external tool installation, these are standard development practices intended for instructional use within the platform's security boundaries.

  • Sockettoday

    12 alerts: gptAnomaly

  • Snyktoday

    Risk: LOW · No issues

Signed by skilld at 6bead6f. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 18 hours ago.

Activeupdated yesterday

README badge

README badge for rivet-dev/skills/rivet-agentos