Guides
How to build, run and share agents stored as .adf files.
On this page
Reading order
- Getting startedInstall ADF Studio, make an agent from a message and send it somewhere.
- Core conceptsSovereignty, the agent and its document, execution scopes and portability.
- CapabilitiesEverything an agent can do, then the mechanisms underneath.
- Creating agentsMake an agent, give it tools and instructions, and run it.
The guides show ADF Studio as the example app. Where the ADF CLI has a matching page, it is linked under the guide. For servers and custom clients, see the Daemon API.
1Start here
The ideas the rest of the guides build on, and everything an agent can do.
- Core concepts
One file, one agent; the access boundary; execution scopes; portability
- Capabilities
Everything an agent can do and what you can do with it, then the mechanisms underneath.
2Agents
Create, configure and run agents.
- Creating agents
Walkthrough of creating an agent and every per-agent setting: identity, model, context, tools, messaging, limits, serving
CLI: Agent settings
- Agent templates
The .adf files new agents are made from, the three Studio ships, what an instance carries, and how to edit, share and pick a template
CLI: Templates and skills
- Agent states
The agent state model and how to control it: states, transitions, loop modes, turn tools, and the birth-to-death lifecycle
- Documents and files
The virtual filesystem: README.md, mind.md, soul.md, protection levels, templating, meta keys, local tables, adf-file:// links
CLI: Files
3Tools and code
Built-in tools, skills, the code sandbox, compute environments and MCP servers.
- Tools
Every built-in tool plus the access-control model (enabled/visible/restricted), locking, and cross-cutting parameters
- Skills
Skill package conventions: first-party catalog, directory layout, SKILL.md frontmatter, the runtime indexer, security boundary
CLI: Templates and skills
- Code execution
The sandbox all agent code runs in: contexts, security model, globals, packages, transforms, timeouts, state persistence
- The adf object
The global adf RPC proxy in code execution: calling convention and every special method (model_invoke, identity, attestations, events)
- Authorized code
File-level trust boundary for privileged code: restricting methods and tools, authorization flow, governance patterns
- Compute
Where agents run commands: shared/isolated/external containers and host access, approval policies, security posture
- Computer and browser
The Computer tab: each isolated agent's visible desktop with a managed Chromium session, Openbox/tint2 window management, computer-use CLI tools, user takeover for security checks, and portable browser profiles
- Computer use
How an agent drives its own desktop: look at the screen, click, type, open apps and files, share the screen with its principal, using compute_exec, fs_transfer, xdotool, scrot and xclip
- MCP integration
Connecting external MCP tool servers: installation, credentials, OAuth, per-agent attachment, and tool lifecycle
CLI: MCP servers
4Triggers and scheduling
What wakes an agent, when it runs, and how work is split across loops.
- Triggers
Event-driven agent activation: trigger types, targets, scopes, filters, timing modifiers, and lambda event payloads
- Timers
Scheduling future events: one-time, interval, and cron timers, timer lambdas, lifecycle, and missed-timer handling
CLI: Loops and timers
- Tasks
Deferred and asynchronous tool executions in adf_tasks: creation paths, statuses, querying, and resolution
- Inner loops
Inner loops (side loops): up to 16 named loops inside one agent, each with its own transcript, goal, tool subset and pacing
CLI: Loops and timers
- Pre-LLM hook
Transform a normal conversational provider request with a workspace lambda
5Memory
Conversation history, compaction and the long-term mind.
- Memory management
Managing the loop (conversation history) and mind (working memory): compaction, audit, context blocks, long-running strategies
CLI: Context
- Agent memory
The mind wiki pattern: OKF frontmatter format for mind pages, index/log contract, citation scheme, audit retrieval recipe
6Messaging and networking
Agent-to-agent messages, chat channels, discovery and serving over HTTP.
- Messaging
The full messaging system: DID mesh messaging, delivery, security, and per-platform channel adapter setup walkthroughs
- Channels
Channel adapter contract: addressing, content modes, form render contracts, credentials and self-setup, offline catch-up, group context, chat_info
CLI: Channels
- Contacts
Agent-level contact management patterns: what to remember, whom to trust, how to route; runtime primitives vs agent policy
- LAN discovery
Finding agents across machines via mDNS: announcements, discovery merging, and LAN troubleshooting
- WebSocket
Persistent bidirectional agent connections and NAT traversal: hot/cold paths, auth, reconnection, binary frames, backpressure
- HTTP serving
HTTP serving through the mesh server: public files, shared workspace globs, and lambda-backed API routes
- Middleware
Custom middleware lambdas in the message and request pipelines: inbox, outbox, fetch, and route interception points
- Network traffic
Every outbound connection Studio and the daemon make, who starts it, and how to turn it off.
7Security and identity
Trust boundaries, keys, encryption and sharing agents safely.
- Security architecture
The runtime security model: trust boundaries, defense-in-depth layers, and hardening controls
- Security and identity
The identity and secret-protection stack: owner/runtime/agent DIDs, envelope encryption, sharing, claiming, and attestations
8Observability
Logs and the live event stream of what an agent is doing.
- Logging
adf_logs reference: entry schema, what gets logged, filter/retention config, ring buffer, on_logs trigger, querying
- The umbilical
The real-time event stream of an agent's own activity: taps, loop protection, replay, and the durable-tap recipe
- Umbilical events
Reference for every umbilical event type: envelope, per-namespace payloads, and stability tiers
9Knowledge base
Task-oriented notes and recipes that combine several features.
- About the knowledge base
Task-oriented Knowledge Base for humans and agents using ADF capabilities
- Desktop apps
Run visible Linux desktop applications in isolated compute, transfer files, and validate visual results without assuming generic desktop automation
- Engineering work
General software-engineering practice for ADF agents and humans: isolated workspaces, GitHub access checks, identity-owned credentials, bounded delegation, and accountable delivery
10Implementing ADF
For runtimes, tools and clients that read, write or host .adf files.
- Specifications
The ADF file format and the ALF message format, with status and versions.
- ADF specification
File structure, schema, configuration, states, triggers, security and portability. Draft.
- ALF
The signed message format agents use to talk to each other. Draft.
- openapi.json
OpenAPI document of the Daemon API, for generating clients. Reference: Daemon API.