Sandbox: filesystem/network/resource guard configured via flags.
Skills: auto + manual activation with force flag.
Subagents: chooser with builtin + custom deploy guard.
Commands: slash command parser executes inline script inside the prompt.
Run
cd examples/04-advanced
# set ANTHROPIC_API_KEY or ANTHROPIC_AUTH_TOKEN only if you swap in a real provider; demo model is offline-safe
go run . --prompt "生成一份安全巡检摘要" --enable-mcp=false
Useful flags:
--enable-mcp toggle MCP server registration (requires uvx in PATH).
--enable-trace and --trace-dir trace-out to inspect trace logs.
--enable-hooks/--enable-skills/--enable-subagents/--enable-commands/--enable-sandbox to isolate components.
--force-skill add-note to run manual skills; --target-subagent plan to pin a subagent.
Expected output
Final agent message that merges tool results (observe_logs + optional MCP time).