mantos
The command-line client for Mantos — reach your tenant's API from a terminal, a CI job, a container, or an agent session.
pipx install mantos # or: pip install mantos
One environment variable
A Mantos API key carries its own tenant slug, so the key is the whole configuration:
export MANTOS_API_KEY=mtk_<tenant>_<keyid>_<secret>
mantos env list
mantos agent list --env dev
There is nothing else to set — no host, no tenant, no profile. Mint a key in the Mantos console (Settings → API keys); the secret is shown once, at mint, and is not recoverable afterwards.
Most commands read one environment. Export MANTOS_ENV to stop typing --env;
the flag still wins where you pass it.
Commands
Objects are singular, and the verb comes last — mantos <object> <verb>.
mantos env list | get SLUG
mantos agent list | get AGENT_ID --env
mantos skill list | get SKILL_ID --env
mantos history list | get RECORD_ID --env
mantos audit list
mantos knowledge base list | get BASE_ID
mantos knowledge reference list | get REFERENCE_ID
mantos auth status
mantos config show | set-host HOST
mantos api METHOD PATH [--field K=V] [--raw-field K=V]
Every command takes --json and --timeout S. Run mantos <object> --help for
the filters a list accepts — --status, --since, --limit and so on, which
differ by object because they are exactly what the API accepts there.
Lists print a table for a person; --json prints the response body
unaltered, on one line, for a parser. Nothing the table renderer does can
reach that output.
mantos auth status asks the server who your key is — its tenant, the person
whose authority it carries, when it expires, and what it was granted. Unlike
config show, which reads your shell, it catches a key that is revoked,
expired, or whose owner was deactivated.
The escape hatch
The curated commands cover reading. mantos api reaches any tenant API
path directly, including everything that writes:
mantos api GET api/tenant/v1/skills
mantos api POST api/tenant/v1/knowledge/bases --field name=Support \
--field root_topic=Onboarding
PATH includes any query string, and a leading slash is optional — on Git Bash,
omitting it avoids the shell rewriting the argument into a Windows filesystem
path before the CLI sees it.
--field K=V builds a JSON body, parsing V as JSON when it parses and sending
it as a string when it does not; --raw-field always sends a string. Neither is
accepted on GET or HEAD, where the API takes no body — silently dropping a
field would let you believe a filter was applied that never was.
Output, so a parser and a person can both read it
The answer is the only thing written to stdout — the response body, or the
table a list renders. The status line for a failure goes to stderr, and so
does anything that is commentary rather than data: No results., and the hint
naming the --cursor to pass for the next page. Pipe stdout straight into jq
without stripping anything, and still see why a call went red.
Exit codes
| Code | Meaning |
|---|---|
0 |
The request succeeded (2xx). |
1 |
The request was made and did not succeed — any non-2xx other than 401, plus a transport failure. |
2 |
The invocation was wrong, or MANTOS_API_KEY is not set. Nothing was sent. |
3 |
The credential was not accepted (401). |
A 403 is 1, not 3. Authenticated-but-refused is a different fact from
credential-rejected: a key whose grants are narrower than its owner's authority
is supposed to be refused inside a scope it only partly holds, and that is the
authorization gate working rather than a broken key.
Host resolution
MANTOS_HOST › the tenant named by the key › a host stored with
mantos config set-host.
The environment variable wins so a support session, a smoke test, or a one-off against another deployment needs no stored state and leaves none behind. A stored host is the last resort precisely because it is invisible: a pin left behind by an earlier session must not silently outrank the credential in front of it.
Mantos is a product of Systematic Labs LLC. This client talks to a deployed Mantos tenant over HTTPS and contains no server code.
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file mantos-0.8.0.tar.gz.
File metadata
- Download URL: mantos-0.8.0.tar.gz
- Upload date:
- Size: 157.7 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
b1aedf9656b41c57e815c6cdbe877a38a585fb3d62ffb48c4809c48d1ded8151
|
|
| MD5 |
bb3d6c314f81dddd1159396849d188e9
|
|
| BLAKE2b-256 |
f99fed75ce54d67effbed7a7c6d091525ab29d2d46ea6b42f2bee115b21dc028
|
Provenance
The following attestation bundles were made for mantos-0.8.0.tar.gz:
Publisher:
release-cli.yml on systematiclabs-llc/mantos
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
mantos-0.8.0.tar.gz -
Subject digest:
b1aedf9656b41c57e815c6cdbe877a38a585fb3d62ffb48c4809c48d1ded8151 - Sigstore transparency entry: 2799250679
- Sigstore integration time:
-
Permalink:
systematiclabs-llc/mantos@cd69b68b5ac8de86c3f21c5cbe7953c2b2c7138c -
Branch / Tag:
refs/tags/cli-v0.8.0 - Owner: https://github.com/systematiclabs-llc
-
Access:
private
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release-cli.yml@cd69b68b5ac8de86c3f21c5cbe7953c2b2c7138c -
Trigger Event:
push
-
Statement type:
File details
Details for the file mantos-0.8.0-py3-none-any.whl.
File metadata
- Download URL: mantos-0.8.0-py3-none-any.whl
- Upload date:
- Size: 165.3 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
d318e27efb7dc8a0eb5f363d157189e15ea8c7b0ba6a3e67d12105ae2ddc5f7e
|
|
| MD5 |
a1a77fe6d436ba89f8bf81caee845aa9
|
|
| BLAKE2b-256 |
0c64835c254233869b046e5611958d238516eaf6771a74bdfbaf650468fac2c2
|
Provenance
The following attestation bundles were made for mantos-0.8.0-py3-none-any.whl:
Publisher:
release-cli.yml on systematiclabs-llc/mantos
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
mantos-0.8.0-py3-none-any.whl -
Subject digest:
d318e27efb7dc8a0eb5f363d157189e15ea8c7b0ba6a3e67d12105ae2ddc5f7e - Sigstore transparency entry: 2799250721
- Sigstore integration time:
-
Permalink:
systematiclabs-llc/mantos@cd69b68b5ac8de86c3f21c5cbe7953c2b2c7138c -
Branch / Tag:
refs/tags/cli-v0.8.0 - Owner: https://github.com/systematiclabs-llc
-
Access:
private
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release-cli.yml@cd69b68b5ac8de86c3f21c5cbe7953c2b2c7138c -
Trigger Event:
push
-
Statement type: