On this page

Reading order

  1. Getting startedInstall ADF Studio, make an agent from a message and send it somewhere.
  2. Core conceptsSovereignty, the agent and its document, execution scopes and portability.
  3. CapabilitiesEverything an agent can do, then the mechanisms underneath.
  4. Creating agentsMake an agent, give it tools and instructions, and run it.

The guides show ADF Studio as the example app. Where the ADF CLI has a matching page, it is linked under the guide. For servers and custom clients, see the Daemon API.

1Start here

The ideas the rest of the guides build on, and everything an agent can do.

  • Core concepts

    One file, one agent; the access boundary; execution scopes; portability

  • Capabilities

    Everything an agent can do and what you can do with it, then the mechanisms underneath.

2Agents

Create, configure and run agents.

  • Creating agents

    Walkthrough of creating an agent and every per-agent setting: identity, model, context, tools, messaging, limits, serving

    CLI: Agent settings

  • Agent templates

    The .adf files new agents are made from, the three Studio ships, what an instance carries, and how to edit, share and pick a template

    CLI: Templates and skills

  • Agent states

    The agent state model and how to control it: states, transitions, loop modes, turn tools, and the birth-to-death lifecycle

  • Documents and files

    The virtual filesystem: README.md, mind.md, soul.md, protection levels, templating, meta keys, local tables, adf-file:// links

    CLI: Files

3Tools and code

Built-in tools, skills, the code sandbox, compute environments and MCP servers.

  • Tools

    Every built-in tool plus the access-control model (enabled/visible/restricted), locking, and cross-cutting parameters

  • Skills

    Skill package conventions: first-party catalog, directory layout, SKILL.md frontmatter, the runtime indexer, security boundary

    CLI: Templates and skills

  • Code execution

    The sandbox all agent code runs in: contexts, security model, globals, packages, transforms, timeouts, state persistence

  • The adf object

    The global adf RPC proxy in code execution: calling convention and every special method (model_invoke, identity, attestations, events)

  • Authorized code

    File-level trust boundary for privileged code: restricting methods and tools, authorization flow, governance patterns

  • Compute

    Where agents run commands: shared/isolated/external containers and host access, approval policies, security posture

  • Computer and browser

    The Computer tab: each isolated agent's visible desktop with a managed Chromium session, Openbox/tint2 window management, computer-use CLI tools, user takeover for security checks, and portable browser profiles

  • Computer use

    How an agent drives its own desktop: look at the screen, click, type, open apps and files, share the screen with its principal, using compute_exec, fs_transfer, xdotool, scrot and xclip

  • MCP integration

    Connecting external MCP tool servers: installation, credentials, OAuth, per-agent attachment, and tool lifecycle

    CLI: MCP servers

4Triggers and scheduling

What wakes an agent, when it runs, and how work is split across loops.

  • Triggers

    Event-driven agent activation: trigger types, targets, scopes, filters, timing modifiers, and lambda event payloads

  • Timers

    Scheduling future events: one-time, interval, and cron timers, timer lambdas, lifecycle, and missed-timer handling

    CLI: Loops and timers

  • Tasks

    Deferred and asynchronous tool executions in adf_tasks: creation paths, statuses, querying, and resolution

  • Inner loops

    Inner loops (side loops): up to 16 named loops inside one agent, each with its own transcript, goal, tool subset and pacing

    CLI: Loops and timers

  • Pre-LLM hook

    Transform a normal conversational provider request with a workspace lambda

5Memory

Conversation history, compaction and the long-term mind.

  • Memory management

    Managing the loop (conversation history) and mind (working memory): compaction, audit, context blocks, long-running strategies

    CLI: Context

  • Agent memory

    The mind wiki pattern: OKF frontmatter format for mind pages, index/log contract, citation scheme, audit retrieval recipe

6Messaging and networking

Agent-to-agent messages, chat channels, discovery and serving over HTTP.

  • Messaging

    The full messaging system: DID mesh messaging, delivery, security, and per-platform channel adapter setup walkthroughs

  • Channels

    Channel adapter contract: addressing, content modes, form render contracts, credentials and self-setup, offline catch-up, group context, chat_info

    CLI: Channels

  • Contacts

    Agent-level contact management patterns: what to remember, whom to trust, how to route; runtime primitives vs agent policy

  • LAN discovery

    Finding agents across machines via mDNS: announcements, discovery merging, and LAN troubleshooting

  • WebSocket

    Persistent bidirectional agent connections and NAT traversal: hot/cold paths, auth, reconnection, binary frames, backpressure

  • HTTP serving

    HTTP serving through the mesh server: public files, shared workspace globs, and lambda-backed API routes

  • Middleware

    Custom middleware lambdas in the message and request pipelines: inbox, outbox, fetch, and route interception points

  • Network traffic

    Every outbound connection Studio and the daemon make, who starts it, and how to turn it off.

7Security and identity

Trust boundaries, keys, encryption and sharing agents safely.

8Observability

Logs and the live event stream of what an agent is doing.

  • Logging

    adf_logs reference: entry schema, what gets logged, filter/retention config, ring buffer, on_logs trigger, querying

  • The umbilical

    The real-time event stream of an agent's own activity: taps, loop protection, replay, and the durable-tap recipe

  • Umbilical events

    Reference for every umbilical event type: envelope, per-namespace payloads, and stability tiers

9Knowledge base

Task-oriented notes and recipes that combine several features.

  • About the knowledge base

    Task-oriented Knowledge Base for humans and agents using ADF capabilities

  • Desktop apps

    Run visible Linux desktop applications in isolated compute, transfer files, and validate visual results without assuming generic desktop automation

  • Engineering work

    General software-engineering practice for ADF agents and humans: isolated workspaces, GitHub access checks, identity-owned credentials, bounded delegation, and accountable delivery

10Implementing ADF

For runtimes, tools and clients that read, write or host .adf files.

  • Specifications

    The ADF file format and the ALF message format, with status and versions.

  • ADF specification

    File structure, schema, configuration, states, triggers, security and portability. Draft.

  • ALF

    The signed message format agents use to talk to each other. Draft.

  • openapi.json

    OpenAPI document of the Daemon API, for generating clients. Reference: Daemon API.