Declarative YAML-based framework for defining, managing, and orchestrating AI coding agent instances
Project description
SciTeX Agent Container (scitex-agent-container)
Agent in Apptainer
Full Documentation · uv pip install scitex-agent-container[all]
Problem and Solution
| # | Problem | Solution |
|---|---|---|
| 1 | Scripting an agentic workflow is hard. | scitex-agent-container (sac) declares the agent as a single YAML file (spec.yaml). |
| 2 | Subagents don't scale across hosts, projects, and contexts. | sac lets agents spawn full agents on local AND remote hosts. |
| 3 | Controlling agent permissions is difficult. | sac runs every agent inside Apptainer — full mount/env/security options exposed in spec.yaml. |
| 4 | Supporting the A2A protocol by hand is time-consuming. | sac needs just one YAML field (spec.a2a.port). |
| 5 | Version-controlling Apptainer recipes is laborious. | sac enables layered Apptainer images with a sandbox/update/freeze workflow via scitex-container. |
Installation
uv pip install "scitex-agent-container[all]"
Quickstart
Step 1 — Build the base image (one-time, ~5 min)
sac image build base
Step 2 — Create agent directories
# Each agent lives in its own directory; the directory name is the agent name.
mkdir -p ~/.scitex/agent-container/agents/hello-agent-{1,2}
Step 3 — Write spec.yaml (copy into each agent directory, adjust startup_prompts)
# ~/.scitex/agent-container/agents/hello-agent-1/spec.yaml
apiVersion: scitex-agent-container/v3
kind: Agent
spec:
runtime: apptainer
apptainer:
image: ~/.scitex/agent-container/containers/sac-base.sif
claude:
model: haiku
flags:
- --dangerously-skip-permissions
startup_prompts:
- "Reply with the string 'Hello! I am hello-agent-1' and nothing else."
health:
enabled: true
interval: 60
method: sdk-alive
restart:
policy: never
Or copy the bundled example:
cp -r examples/agents/hello-agent ~/.scitex/agent-container/agents/hello-agent-1
Step 4 — Run
# Start in foreground (waits for completion)
sac agents start hello-agent-1 hello-agent-2 --foreground
# Check status
sac agents list
# Start in background, read output, stop, delete
sac agents start hello-agent-1 hello-agent-2
sac agents tail hello-agent-1 hello-agent-2 --json
sac agents stop hello-agent-1 hello-agent-2
sac agents delete hello-agent-1 hello-agent-2 -y
Tutorial
examples/ walks through the runtime in 15 lessons (image build, sandbox/update/freeze, versioning, run/send/tail, logs/exec, stop/remove, binds, env+user, writing your first spec.yaml, to_home/, A2A endpoint, health+restart, multi-host, debugging). Run them read-only with bash examples/00_run_all.sh, or --apply to execute the mutating ones.
How it works
scitex-agent-container (sac) materializes a spec.yaml into a long-lived, externally addressable Claude agent:
spec.yaml ─┐
to_home/ ─┴─→ sac agents start ──→ apptainer instance
│
▼
long-lived Claude SDK session
│
├── <workdir> (= spec.workdir, mounted rw)
├── spec.mounts[] ← host-path allowlist (ro/rw)
├── state-dir (~/.scitex/agent-container/runtime/<name>/)
└─→ POST /v1/turn (per-agent A2A inbound)
Full architecture → — launch flow, to_home merge rules, A2A inbound, control plane, restart/health.
YAML Spec Reference (v3) → — annotated full example + field table (apiVersion, spec.apptainer., spec.claude., a2a, health, restart).
Talking to a Running Agent → — three transports (A2A POST /v1/turn, sac agents send, host-level sac listen), when to use which, copy-pasteable curl examples.
Container Isolation → — 10 Apptainer-default leak paths + sac's hardened-by-default countermeasures (--containall auto-prepended, opt-out via spec.apptainer.relaxed: true). The reference for reproducibility claims.
Configuration and Runtime Directories
Full directory reference → — complete tree, configuration cascade (CLI flag → env var → project config → user config).
~/.scitex/agent-container/
├── agents/<name>/spec.yaml ← agent definition (SSoT)
├── containers/sac-base.sif ← built images (gitignored)
└── runtime/<name>/ ← live state: pid, heartbeat, session.jsonl
Apptainer images → — base vs scitex layers, sandbox/freeze workflow, version pinning.
1 Interfaces
CLI ⭐⭐⭐ (primary)
# Agent lifecycle
sac agents start <name> [--foreground] # daemon by default; --foreground streams stdio
sac agents stop <name> # graceful SIGTERM, escalate to SIGKILL after 5 s
sac agents restart <name>
sac agents send <name> "<prompt>" # send a follow-up turn to a running session
sac agents send <name> --key ESC # interrupt current turn
sac agents list [<name>] [--snapshot] [--priority]
sac agents health <name>
sac agents tail <name> # render session.jsonl (structured transcript)
sac agents recall <name> # human-readable session summary
sac agents check <name> # preflight (validates yaml + probes runtime deps)
sac agents find <capability>
# Control plane (HTTP/JSON, loopback-only)
sac listen [--bind 127.0.0.1:7878] # boot per-host REST API (bearer-auth)
sac peer post-turn <to> "<msg>" # local agent-to-agent message via sac listen
# Image lifecycle (delegates to scitex-container)
sac image build [base|scitex] [--sandbox] [--runtime apptainer|docker]
sac image sandbox SOURCE # SIF → writable sandbox
sac image update SANDBOX [-p PKG] # pip install --upgrade
sac image freeze SANDBOX OUT.sif # sandbox → SIF
sac image list # installed versions
sac image switch VERSION # atomic flip
sac image rollback # restore previous
sac image status # unified dashboard
sac image snapshot [-o env.json] # reproducibility capsule
# Account / quota
sac accounts list / save / delete / switch / watch-quota
# Network / peers
sac host list / add / remove / set / probe / exec / validate
sac peer post-turn AGENT TEXT # A2A outbound
sac a2a serve <yamls...> # A2A inbound for non-SDK runtimes
# Misc
sac event ingest # Claude Code hook event ingestor
sac db query / show / clean / migrate # state.db inspection
sac registry reconcile # singleton placement reconcile across fleet
sac --help-recursive # full subcommand tree
Part of SciTeX
scitex-agent-container is part of SciTeX. Install via the umbrella with pip install scitex[agent-container] to use as scitex.agent_container (Python) or scitex agent-container ... (CLI).
scitex-orochi adds cross-host message routing, a Slack-like chatops UI, and a peer registry on top of sac. The dependency is one-way — orochi reads sac's on-disk state; sac never imports orochi. For details, see docs/sac-and-orochi.md — architecture diagram, responsibility split, how to wire server:orochi-push.
Four Freedoms for Research
- The freedom to run your research anywhere — your machine, your terms.
- The freedom to study how every step works — from raw data to final manuscript.
- The freedom to redistribute your workflows, not just your papers.
- The freedom to modify any module and share improvements with the community.
AGPL-3.0 — because we believe research infrastructure deserves the same freedoms as the software it runs on.
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file scitex_agent_container-0.21.1.tar.gz.
File metadata
- Download URL: scitex_agent_container-0.21.1.tar.gz
- Upload date:
- Size: 18.1 MB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.12
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
ec86063d23d5f8e6f74ce086653fc949b511f4b982f10e0a9c81e1703116f917
|
|
| MD5 |
971e994af08fc3789ae15869e73d5554
|
|
| BLAKE2b-256 |
d94f0052c550627aa9c0c707e82e4eda2eea1df9555dc966ee9cd2b859996a39
|
Provenance
The following attestation bundles were made for scitex_agent_container-0.21.1.tar.gz:
Publisher:
pypi-publish-and-github-release-on-tag.yml on ywatanabe1989/scitex-agent-container
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
scitex_agent_container-0.21.1.tar.gz -
Subject digest:
ec86063d23d5f8e6f74ce086653fc949b511f4b982f10e0a9c81e1703116f917 - Sigstore transparency entry: 1635353775
- Sigstore integration time:
-
Permalink:
ywatanabe1989/scitex-agent-container@6604cb339e7f8ce3fd3914b1b880f5085cb2e05f -
Branch / Tag:
refs/tags/v0.21.1 - Owner: https://github.com/ywatanabe1989
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
pypi-publish-and-github-release-on-tag.yml@6604cb339e7f8ce3fd3914b1b880f5085cb2e05f -
Trigger Event:
push
-
Statement type:
File details
Details for the file scitex_agent_container-0.21.1-py3-none-any.whl.
File metadata
- Download URL: scitex_agent_container-0.21.1-py3-none-any.whl
- Upload date:
- Size: 8.8 MB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.12
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
70256df00f2da7dc452a084d0f647ce3d5532f7f092533a12e2e26e974a400fb
|
|
| MD5 |
9c4f225a311ee21aa228430733f01b1f
|
|
| BLAKE2b-256 |
2f357945dfc64bd248eee7771f7169092a166b48d10c5cc08524048ec5c05cb3
|
Provenance
The following attestation bundles were made for scitex_agent_container-0.21.1-py3-none-any.whl:
Publisher:
pypi-publish-and-github-release-on-tag.yml on ywatanabe1989/scitex-agent-container
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
scitex_agent_container-0.21.1-py3-none-any.whl -
Subject digest:
70256df00f2da7dc452a084d0f647ce3d5532f7f092533a12e2e26e974a400fb - Sigstore transparency entry: 1635353796
- Sigstore integration time:
-
Permalink:
ywatanabe1989/scitex-agent-container@6604cb339e7f8ce3fd3914b1b880f5085cb2e05f -
Branch / Tag:
refs/tags/v0.21.1 - Owner: https://github.com/ywatanabe1989
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
pypi-publish-and-github-release-on-tag.yml@6604cb339e7f8ce3fd3914b1b880f5085cb2e05f -
Trigger Event:
push
-
Statement type: