Bitrix24 Agent (Lean + Reliable)
Use this skill to deliver correct Bitrix24 integrations with low token usage and production-safe defaults.
Quick Start
Use this flow unless the user asks for a different one:
- Pick intent + one minimal pack (
core by default).
- Run a read probe first.
- For writes, use plan then execute with confirmation.
Read probe:
python3 skills/bitrix24-agent/scripts/bitrix24_client.py user.current --params '{}'
Safer write flow:
python3 skills/bitrix24-agent/scripts/bitrix24_client.py crm.lead.add \
--params '{"fields":{"TITLE":"Plan demo"}}' \
--packs core \
--plan-only
python3 skills/bitrix24-agent/scripts/bitrix24_client.py \
--execute-plan <plan_id> \
--confirm-write
Runtime Prerequisites
Required environment:
B24_DOMAIN
B24_AUTH_MODE = webhook or oauth
Webhook mode:
B24_WEBHOOK_USER_ID
B24_WEBHOOK_CODE
OAuth mode:
B24_ACCESS_TOKEN
B24_REFRESH_TOKEN
B24_CLIENT_ID and B24_CLIENT_SECRET (for --auto-refresh)
Useful safety/reliability flags:
B24_REQUIRE_PLAN=1 for mandatory plan->execute on write/destructive calls
B24_PACKS=core,... for default pack set
B24_RATE_LIMITER=file with B24_RATE_LIMITER_RATE and B24_RATE_LIMITER_BURST
Default Mode: Lean
Apply these limits unless the user asks for deep detail:
- Load at most 2 reference files before first actionable step.
- Start from
references/packs.md.
- Then open only one target file:
references/catalog-<pack>.md.
- Open
references/chains-<pack>.md only if the user needs workflow steps.
- Open
references/bitrix24.md only for auth architecture, limits, event reliability, or unknown errors.
Response limits:
- Use concise output (goal + next action + one command).
- Do not retell documentation.
- Do not dump large JSON unless requested.
- Return only delta if guidance was already given.
Routing Workflow
- Determine intent:
- method call
- troubleshooting
- architecture decision
- event/reliability setup
- Normalize product vocabulary:
- "collabs", "workgroups", "projects", "social network groups" ->
collab (and boards for scrum).
- "Copilot", "CoPilot", "BitrixGPT", "AI prompts" ->
platform (ai.*).
- "open lines", "contact center connectors", "line connectors" ->
comms (imopenlines.*, imconnector.*).
- "feed", "live feed", "news feed" ->
collab (log.*).
- "sites", "landing pages", "landing" ->
sites (landing.*).
- "booking", "calendar", "work time", "time tracking" ->
services (booking.*, calendar.*, timeman.*).
- "orders", "payments", "catalog", "products" ->
commerce (sale.*, catalog.*).
- "consents", "consent", "e-signature", "sign" ->
compliance (userconsent.*, sign.*).
- Choose auth quickly:
- one portal/internal integration: webhook
- app or multi-portal lifecycle: OAuth
- Select minimal packs:
- default
core
- add only required packs:
comms, automation, collab, content, boards, commerce, services, platform, sites, compliance, diagnostics
Execution Flow (Safe by Default)
Command template:
python3 skills/bitrix24-agent/scripts/bitrix24_client.py <method> \
--params '<json>' \
--packs core
Guardrails to enforce:
- allowlist via packs and
--method-allowlist
- write gate with
--confirm-write
- destructive gate with
--confirm-destructive
- optional two-phase write with
--plan-only and --execute-plan
- idempotency for writes (auto or
--idempotency-key)
- audit trail unless
--no-audit is explicitly needed
Reliability and Performance
Pagination and sync safety:
- Never stop after first
*.list page.
- Keep deterministic ordering and persist checkpoints after successful page persistence.
Batch rules:
- Maximum 50 commands per
batch.
- No nested
batch.
- Split oversized batches and parse per-command errors.
Limits and retries:
- Treat
QUERY_LIMIT_EXCEEDED and 5xx as transient.
- Use exponential backoff with jitter (client default).
- Use shared rate limiter keyed by portal in multi-worker setups.
Events:
- Online events are not guaranteed delivery.
- For no-loss pipelines, use offline flow:
event.offline.get(clear=0)
- process idempotently with retry budget
event.offline.error for failed items
event.offline.clear only for successful/DLQ'ed items
- Use
scripts/offline_sync_worker.py as baseline.
Error Handling
Fast mapping:
| Error code |
Typical cause |
Immediate action |
WRONG_AUTH_TYPE |
method called with wrong auth model |
switch webhook/OAuth model for this method |
insufficient_scope |
missing scope |
add scope and reinstall/reissue auth |
expired_token |
OAuth token expired |
refresh token (--auto-refresh or external refresh flow) |
QUERY_LIMIT_EXCEEDED |
burst above portal budget |
backoff, queue, tune limiter, reduce concurrency |
ERROR_BATCH_LENGTH_EXCEEDED |
batch payload too large |
split batch |
ERROR_BATCH_METHOD_NOT_ALLOWED |
unsupported method in batch |
call directly |
Escalate to deep reference (references/bitrix24.md) on:
- unknown auth/permission behavior
- recurring limit failures
- offline event loss concerns
- OAuth refresh race or tenant isolation issues
Quality Guardrails
- Never expose webhook/OAuth secrets.
- Enforce least-privilege scopes and tenant isolation.
- Keep writes idempotent where possible.
- Validate
application_token in event handlers.
- Prefer REST v3 where compatible; fallback to v2 where needed.
Reference Loading Map
references/packs.md for pack and loading strategy.
references/catalog-<pack>.md for method shortlist.
references/chains-<pack>.md for implementation chains.
references/bitrix24.md for protocol-level troubleshooting and architecture decisions.
Useful search shortcuts:
rg -n "^# Catalog|^# Chains" references/catalog-*.md references/chains-*.md
rg -n "WRONG_AUTH_TYPE|insufficient_scope|QUERY_LIMIT_EXCEEDED|expired_token" references/bitrix24.md
rg -n "offline|event\\.bind|event\\.offline|application_token" references/bitrix24.md
Scripts
scripts/bitrix24_client.py: method calls, packs, allowlist, confirmations, plans, idempotency, audit, rate limiting, retries.
scripts/offline_sync_worker.py: offline queue polling, bounded retries, DLQ handling, safe clear flow, graceful shutdown.
1---2name: bitrix24-agent3description: Bitrix24 Agent (Lean + Reliable)4---5# Bitrix24 Agent (Lean + Reliable)67Use this skill to deliver correct Bitrix24 integrations with low token usage and production-safe defaults.89## Quick Start1011Use this flow unless the user asks for a different one:12131. Pick intent + one minimal pack (`core` by default).142. Run a read probe first.153. For writes, use plan then execute with confirmation.1617Read probe:1819```bash20python3 skills/bitrix24-agent/scripts/bitrix24_client.py user.current --params '{}'21```2223Safer write flow:2425```bash26python3 skills/bitrix24-agent/scripts/bitrix24_client.py crm.lead.add \27 --params '{"fields":{"TITLE":"Plan demo"}}' \28 --packs core \29 --plan-only3031python3 skills/bitrix24-agent/scripts/bitrix24_client.py \32 --execute-plan <plan_id> \33 --confirm-write34```3536## Runtime Prerequisites3738Required environment:3940- `B24_DOMAIN`41- `B24_AUTH_MODE` = `webhook` or `oauth`4243Webhook mode:4445- `B24_WEBHOOK_USER_ID`46- `B24_WEBHOOK_CODE`4748OAuth mode:4950- `B24_ACCESS_TOKEN`51- `B24_REFRESH_TOKEN`52- `B24_CLIENT_ID` and `B24_CLIENT_SECRET` (for `--auto-refresh`)5354Useful safety/reliability flags:5556- `B24_REQUIRE_PLAN=1` for mandatory plan->execute on write/destructive calls57- `B24_PACKS=core,...` for default pack set58- `B24_RATE_LIMITER=file` with `B24_RATE_LIMITER_RATE` and `B24_RATE_LIMITER_BURST`5960## Default Mode: Lean6162Apply these limits unless the user asks for deep detail:6364- Load at most 2 reference files before first actionable step.65- Start from `references/packs.md`.66- Then open only one target file: `references/catalog-<pack>.md`.67- Open `references/chains-<pack>.md` only if the user needs workflow steps.68- Open `references/bitrix24.md` only for auth architecture, limits, event reliability, or unknown errors.6970Response limits:7172- Use concise output (goal + next action + one command).73- Do not retell documentation.74- Do not dump large JSON unless requested.75- Return only delta if guidance was already given.7677## Routing Workflow78791. Determine intent:80- method call81- troubleshooting82- architecture decision83- event/reliability setup84852. Normalize product vocabulary:8687- "collabs", "workgroups", "projects", "social network groups" -> `collab` (and `boards` for scrum).88- "Copilot", "CoPilot", "BitrixGPT", "AI prompts" -> `platform` (`ai.*`).89- "open lines", "contact center connectors", "line connectors" -> `comms` (`imopenlines.*`, `imconnector.*`).90- "feed", "live feed", "news feed" -> `collab` (`log.*`).91- "sites", "landing pages", "landing" -> `sites` (`landing.*`).92- "booking", "calendar", "work time", "time tracking" -> `services` (`booking.*`, `calendar.*`, `timeman.*`).93- "orders", "payments", "catalog", "products" -> `commerce` (`sale.*`, `catalog.*`).94- "consents", "consent", "e-signature", "sign" -> `compliance` (`userconsent.*`, `sign.*`).95963. Choose auth quickly:9798- one portal/internal integration: webhook99- app or multi-portal lifecycle: OAuth1001014. Select minimal packs:102103- default `core`104- add only required packs: `comms`, `automation`, `collab`, `content`, `boards`, `commerce`, `services`, `platform`, `sites`, `compliance`, `diagnostics`105106## Execution Flow (Safe by Default)107108Command template:109110```bash111python3 skills/bitrix24-agent/scripts/bitrix24_client.py <method> \112 --params '<json>' \113 --packs core114```115116Guardrails to enforce:117118- allowlist via packs and `--method-allowlist`119- write gate with `--confirm-write`120- destructive gate with `--confirm-destructive`121- optional two-phase write with `--plan-only` and `--execute-plan`122- idempotency for writes (auto or `--idempotency-key`)123- audit trail unless `--no-audit` is explicitly needed124125## Reliability and Performance126127Pagination and sync safety:128129- Never stop after first `*.list` page.130- Keep deterministic ordering and persist checkpoints after successful page persistence.131132Batch rules:133134- Maximum 50 commands per `batch`.135- No nested `batch`.136- Split oversized batches and parse per-command errors.137138Limits and retries:139140- Treat `QUERY_LIMIT_EXCEEDED` and `5xx` as transient.141- Use exponential backoff with jitter (client default).142- Use shared rate limiter keyed by portal in multi-worker setups.143144Events:145146- Online events are not guaranteed delivery.147- For no-loss pipelines, use offline flow:148 - `event.offline.get(clear=0)`149 - process idempotently with retry budget150 - `event.offline.error` for failed items151 - `event.offline.clear` only for successful/DLQ'ed items152- Use `scripts/offline_sync_worker.py` as baseline.153154## Error Handling155156Fast mapping:157158| Error code | Typical cause | Immediate action |159|---|---|---|160| `WRONG_AUTH_TYPE` | method called with wrong auth model | switch webhook/OAuth model for this method |161| `insufficient_scope` | missing scope | add scope and reinstall/reissue auth |162| `expired_token` | OAuth token expired | refresh token (`--auto-refresh` or external refresh flow) |163| `QUERY_LIMIT_EXCEEDED` | burst above portal budget | backoff, queue, tune limiter, reduce concurrency |164| `ERROR_BATCH_LENGTH_EXCEEDED` | batch payload too large | split batch |165| `ERROR_BATCH_METHOD_NOT_ALLOWED` | unsupported method in batch | call directly |166167Escalate to deep reference (`references/bitrix24.md`) on:168169- unknown auth/permission behavior170- recurring limit failures171- offline event loss concerns172- OAuth refresh race or tenant isolation issues173174## Quality Guardrails175176- Never expose webhook/OAuth secrets.177- Enforce least-privilege scopes and tenant isolation.178- Keep writes idempotent where possible.179- Validate `application_token` in event handlers.180- Prefer REST v3 where compatible; fallback to v2 where needed.181182## Reference Loading Map1831841. `references/packs.md` for pack and loading strategy.1852. `references/catalog-<pack>.md` for method shortlist.1863. `references/chains-<pack>.md` for implementation chains.1874. `references/bitrix24.md` for protocol-level troubleshooting and architecture decisions.188189Useful search shortcuts:190191```bash192rg -n "^# Catalog|^# Chains" references/catalog-*.md references/chains-*.md193rg -n "WRONG_AUTH_TYPE|insufficient_scope|QUERY_LIMIT_EXCEEDED|expired_token" references/bitrix24.md194rg -n "offline|event\\.bind|event\\.offline|application_token" references/bitrix24.md195```196197## Scripts198199- `scripts/bitrix24_client.py`: method calls, packs, allowlist, confirmations, plans, idempotency, audit, rate limiting, retries.200- `scripts/offline_sync_worker.py`: offline queue polling, bounded retries, DLQ handling, safe clear flow, graceful shutdown.