Agent controlled run tools
English reading guide. The complete Chinese specification remains the authoritative source for exact fields, examples, implementation status, and historical details. This page is a concise guide, not a full translation.
Keep automated execution within authorized boundaries
A tool call must operate through supported capabilities and the permissions of its current context. Do not infer access from a UI label or source declaration alone.
Validate the actual request identity and payload before starting work, and preserve clear cancellation and completion states.
Use scoped data and resources. Avoid exposing internal bridge details or silently expanding account access.
The source defines exact controlled-run tool contracts and constraints. Use those fields rather than constructing a private parallel API.
Continue reading
- Complete Chinese specification
- Documentation overview
- Plugin development
- API reference
- Packaging and submission
Source: docs/agent-controlled-run.md.