File-backed local mail, MCP tools, and push delivery for Codex project agents
Project description
InterAgentMail
InterAgentMail gives local Codex project agents durable mailboxes, MCP tools, and automatic wake-up delivery. Messages are stored as JSON on disk, so they remain queued while Codex or the receiving agent is offline.
One shared Codex app-server and one background InterAgentMail supervisor manage every registered project. Users do not need a bridge terminal, a port per agent, or copied Codex session IDs.
Requirements
- Python 3.10 or newer
- The OpenAI Codex CLI installed, available on
PATH, and signed in - Windows, macOS, or Linux; background operation is tested most heavily on Windows
Install
Install the isolated command-line application from PyPI with pipx:
pipx install cgl-interagentmail
Register one or more Codex projects, then start delivery:
iam setup "C:\Projects\MainApp" "C:\Projects\SecurityReviewer" "C:\Projects\UXReviewer"
iam start
Open the correct agent from any registered project:
cd C:\Projects\SecurityReviewer
iam open
The complete Windows, macOS, Linux, upgrade, troubleshooting, and uninstall instructions are in docs/INSTALL.md.
Source code, releases, and issue tracking are hosted at https://github.com/cerberusgamelabs/cgl-interagentmail.
Everyday commands
iam status
iam doctor
iam report
iam open [PROJECT]
iam restart
iam stop
iam stop --all
iam register [PROJECT ...]
iam unregister [PROJECT ...]
iam capabilities --json
iam statusshows services, projects, and pinned thread IDs;--jsonprovides stable schema 1.0 output.iam doctorruns read-only health checks for IAM, Codex, services, project registration, MCP configuration, mailboxes, safety policy, and resumable threads.iam reportcreates a privacy-sanitized Markdown support report under the IAM data directory.iam openresumes the exact thread owned by the current or named project.iam stopstops mail delivery but leaves the shared app-server running.iam stop --allstops both IAM-managed background services.iam unregisterremoves IAM's managed MCP block and project registration while preserving mailbox data.
Setup behavior
iam setup is safe to run again. It:
- Initializes the project's durable mailbox.
- Records its project directory and safety policy.
- Adds a clearly marked
mcp_servers.interagentmailblock to.codex/config.toml. - Establishes the existing-inbox baseline so old mail does not unexpectedly trigger work.
Use iam setup --process-existing when existing inbox messages should be delivered immediately.
Installed releases keep data under %LOCALAPPDATA%\InterAgentMail on Windows or ~/.local/share/interagentmail on macOS/Linux. Set INTERAGENTMAIL_HOME before setup to use another shared data directory.
Project folder basenames become mailbox addresses. IAM records mailbox ownership and refuses to register two different project roots with the same address before changing either project or mailbox.
Automation and reviewer platforms
Version 1.2 adds a stable JSON interface for tools that create reviewer projects or manage agent fleets:
iam capabilities --json
iam register "C:\Projects\SecurityReviewer" --json
iam status --json
iam doctor --project "C:\Projects\SecurityReviewer" --json
iam unregister "C:\Projects\SecurityReviewer" --json
iam register is the automation-oriented alias for iam setup and is safe to repeat while delivery is running. Human-facing identity remains optional: --display-name supplies a label, but IAM does not force a persona. See docs/INTEGRATION.md for the versioned envelope, stable errors, collision behavior, identity ownership, and full lifecycle contract.
Diagnostics and support reports
Run a read-only installation check at any time:
iam doctor
Warnings describe optional or currently stopped components. Failures produce a nonzero exit status and identify configuration that needs attention.
Create a report suitable for attaching to a support issue:
iam report
The report contains software versions, operating-system information, service health, registered-project checks, mailbox counts, and bounded log statistics. It replaces project names, display names, project paths, user paths, email addresses, thread IDs, message IDs, and common credential formats. It never reads message bodies or chat contents into the report and deliberately omits raw app-server logs because those logs can contain source code or private instructions.
Use iam report --stdout to inspect or pipe the report, iam report --output PATH to choose its location, and iam report --log-lines N to change how many trailing log lines are counted. Existing output files are preserved unless --force is supplied. Automated sanitization is intentionally conservative, but review any report before sharing it publicly.
Safety
New agents use workspace-write with on-request approvals. The unattended supervisor rejects interactive approval requests instead of granting them. A task that needs approval remains uncompleted until a person opens that agent.
Only for a trusted project that genuinely requires unrestricted filesystem and network access:
iam setup "C:\Projects\SecurityReviewer" --full-access
InterAgentMail is a local coordination mechanism, not an authentication boundary. Any local process that can write to its data directory can inject or modify mail. Do not share that directory with untrusted users or accept untrusted message content as instructions.
Sending mail
Agents normally use the project-bound InterAgentMail MCP tools. People and fallback workflows can use the CLI:
interagentmail send --project-root "C:\Projects\MainApp" --to SecurityReviewer --subject "Security review" --body "Review the current release and send back actionable findings."
The receiving supervisor wakes the correct Codex thread. The agent reads the message through MCP, performs the work, sends a substantive reply when appropriate, and archives the message only after it is handled.
Protocol and low-level bridge details are in SYSTEM.md. Release history is in CHANGELOG.md.
Support
InterAgentMail is free and open source. If it helps your agents work together, you can support Cerberus Game Labs on Ko-fi.
License
InterAgentMail is open-source software released under the MIT License. Use it, modify it, distribute it, and build on it. Copyright 2026 Cerberus Game Labs.
Contributions are welcome; see CONTRIBUTING.md.
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file cgl_interagentmail-1.2.0.tar.gz.
File metadata
- Download URL: cgl_interagentmail-1.2.0.tar.gz
- Upload date:
- Size: 52.7 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
479d18481f8dd1ec2ba76bebae7cf0dfb760e8680541a3a89f165f9790fa4006
|
|
| MD5 |
f139d55fb6db38cdab3e6e38b960b850
|
|
| BLAKE2b-256 |
7f4f6e7e53603a9f50a2c158ad80b101983092867e61dd1dfc641cc8b03e1c02
|
Provenance
The following attestation bundles were made for cgl_interagentmail-1.2.0.tar.gz:
Publisher:
publish.yml on cerberusgamelabs/cgl-interagentmail
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
cgl_interagentmail-1.2.0.tar.gz -
Subject digest:
479d18481f8dd1ec2ba76bebae7cf0dfb760e8680541a3a89f165f9790fa4006 - Sigstore transparency entry: 2285879585
- Sigstore integration time:
-
Permalink:
cerberusgamelabs/cgl-interagentmail@7f2da15d1f769d1827ac635a7726e6425883c429 -
Branch / Tag:
refs/tags/v1.2.0 - Owner: https://github.com/cerberusgamelabs
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@7f2da15d1f769d1827ac635a7726e6425883c429 -
Trigger Event:
release
-
Statement type:
File details
Details for the file cgl_interagentmail-1.2.0-py3-none-any.whl.
File metadata
- Download URL: cgl_interagentmail-1.2.0-py3-none-any.whl
- Upload date:
- Size: 37.4 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
c0913dcba919003ef410873e4908b7ff00d3c4a538b574fa04b91226c9936d85
|
|
| MD5 |
16ef3a8f3512eddb36e746eab0bd8bc9
|
|
| BLAKE2b-256 |
a3eba23510f47ffaec6a0fb85cf1f1f8f26a3081db31e99be7a7ea7f59a0d867
|
Provenance
The following attestation bundles were made for cgl_interagentmail-1.2.0-py3-none-any.whl:
Publisher:
publish.yml on cerberusgamelabs/cgl-interagentmail
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
cgl_interagentmail-1.2.0-py3-none-any.whl -
Subject digest:
c0913dcba919003ef410873e4908b7ff00d3c4a538b574fa04b91226c9936d85 - Sigstore transparency entry: 2285879739
- Sigstore integration time:
-
Permalink:
cerberusgamelabs/cgl-interagentmail@7f2da15d1f769d1827ac635a7726e6425883c429 -
Branch / Tag:
refs/tags/v1.2.0 - Owner: https://github.com/cerberusgamelabs
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@7f2da15d1f769d1827ac635a7726e6425883c429 -
Trigger Event:
release
-
Statement type: