Self-Customization
You can modify your own environment. Different kinds of changes have different workflows.
Decision Tree
What needs to change?
CLAUDE.local.md or files in your workspace → Edit directly, no approval needed. Your workspace (/workspace/agent/) is persisted on the host. (Note: the composed CLAUDE.md itself is read-only and regenerated every spawn — write to CLAUDE.local.md instead.)
- System package (apt) or global npm package →
install_packages. Requires admin approval. On approval, image rebuild + container restart happen automatically.
- MCP server →
add_mcp_server. Requires admin approval. On approval, container restarts with the new server wired up (no rebuild — bun runs TS directly).
- Your source code or Dockerfile → Delegate to a builder agent via
create_agent (see below).
- A new specialist capability →
create_agent to spin up a dedicated agent for it.
Workflow: Code Changes via Builder Agent
For anything that requires editing source files (your own code, Dockerfile, etc.), do not edit directly — delegate to a builder agent. This gives the user a reviewable boundary and keeps your main session focused.
- Describe what you need changed in concrete terms (files, behavior, acceptance criteria)
- Call
create_agent({ name: "Builder", instructions: "<builder prompt>" }) — the returned agent group ID is your builder
- Call
send_to_agent({ agentGroupId, text: "<task description with specific files and changes>" })
- The builder works in its own container, makes the changes, and reports back
- You review the builder's summary and confirm with the user. Source-code edits inside
/app/src are picked up automatically on the next container start — no rebuild step needed (bun runs TS directly). If the builder also installed packages, its own install_packages approval will have rebuilt the image.
Builder Agent Instructions (use as CLAUDE.md when creating)
You are a builder agent. Your job is to make precise, minimal code changes to NanoClaw source files when the main agent requests it.
## Rules
- **Minimal scope.** Only change what was requested. Do not refactor surrounding code, "improve" unrelated files, or add features not asked for.
- **Diff size limits.** Reject any change that exceeds 200 new lines or 150 modified lines in a single task. If the change is larger, push back and ask for it to be split into smaller tasks.
- **Read before writing.** Always read the target file fully before editing. Understand the existing patterns.
- **Test if possible.** If there are relevant tests, run them after your change.
- **Report back.** When done, use send_to_agent to tell the requesting agent: (a) what files you changed, (b) a summary of the changes, (c) any follow-up needed (rebuild, tests, migrations).
- **No silent failures.** If you can't complete the task, explain why — don't produce partial work without flagging it.
## Safety
- Never edit files outside the requested scope
- Never commit or push anything
- Never modify secrets, credentials, or .env files
- If a change would break existing tests, stop and report
Diff Size Limits — Why
A 50-line focused change is reviewable. A 500-line sweep is not. Hard limits force the agent to decompose work into reviewable chunks, which:
- Makes human approval meaningful (you can actually read 150 lines)
- Catches runaway edits early (if the first task hits the limit, the scope was wrong)
- Forces clear acceptance criteria per task
The limits are per builder task, not per session. A 500-line feature is fine as 4 sequential builder tasks of ~125 lines each, each with its own scope.
Example: Adding a New MCP Tool to Yourself
User: "Can you add a tool for reading RSS feeds?"
- Check mcp.so for an existing RSS MCP server
- If one exists →
add_mcp_server({ name: "rss", command: "npx", args: ["some-rss-mcp"] }) → admin approves → container restarts with the new server → done
- If nothing suitable exists → delegate to a builder agent:
create_agent({ name: "RSS Tool Builder", instructions: "<builder prompt from above>" })
send_to_agent({ agentGroupId, text: "Add an MCP tool 'read_rss' to container/agent-runner/src/mcp-tools/. It should fetch an RSS URL and return the latest N items. Register it in mcp-tools/index.ts. Target: <200 new lines." })
- Wait for builder's report — new tool code is picked up on the next container start (bun runs TS directly)
Example: Installing a System Tool
User: "Can you transcribe audio?"
- Check what's available —
which ffmpeg (likely not installed in base image)
- Decide approach:
@xenova/transformers (npm, workspace-local) or whisper.cpp (apt + compile)
- For persistent system tool:
install_packages({ apt: ["ffmpeg"], npm: ["@xenova/transformers"], reason: "Audio transcription for voice messages" })
- Wait for admin approval — on approve, the image is rebuilt and your container is restarted automatically
- Test the new capability once the container restarts
When NOT to Self-Customize
- The change is for a one-off task — just do it in your workspace, don't modify the container
- The request is ambiguous — ask the user what they actually need before spinning up builders or requesting installs
- You don't know if it will work — prototype in your workspace first (
pnpm install in /workspace/agent/), then promote to container-level install if it proves useful
1---2name: self-customize3description: Customize your own agent — add capabilities, install packages, add MCP servers, edit code or CLAUDE.md. Use when the user asks you to add a feature, install a tool, or modify how you work. For non-trivial code changes, delegate to a builder agent via create_agent.4---5
6# Self-Customization
7
8You can modify your own environment. Different kinds of changes have different workflows.
9
10## Decision Tree
11
12**What needs to change?**
13
14- **`CLAUDE.local.md` or files in your workspace** → Edit directly, no approval needed. Your workspace (`/workspace/agent/`) is persisted on the host. (Note: the composed `CLAUDE.md` itself is read-only and regenerated every spawn — write to `CLAUDE.local.md` instead.)
15- **System package (apt) or global npm package** → `install_packages`. Requires admin approval. On approval, image rebuild + container restart happen automatically.
16- **MCP server** → `add_mcp_server`. Requires admin approval. On approval, container restarts with the new server wired up (no rebuild — bun runs TS directly).
17- **Your source code or Dockerfile** → Delegate to a builder agent via `create_agent` (see below).
18- **A new specialist capability** → `create_agent` to spin up a dedicated agent for it.
19
20## Workflow: Code Changes via Builder Agent
21
22For anything that requires editing source files (your own code, Dockerfile, etc.), **do not edit directly** — delegate to a builder agent. This gives the user a reviewable boundary and keeps your main session focused.
23
241. Describe what you need changed in concrete terms (files, behavior, acceptance criteria)
252. Call `create_agent({ name: "Builder", instructions: "<builder prompt>" })` — the returned agent group ID is your builder
263. Call `send_to_agent({ agentGroupId, text: "<task description with specific files and changes>" })`
274. The builder works in its own container, makes the changes, and reports back
285. You review the builder's summary and confirm with the user. Source-code edits inside `/app/src` are picked up automatically on the next container start — no rebuild step needed (bun runs TS directly). If the builder also installed packages, its own `install_packages` approval will have rebuilt the image.
29
30### Builder Agent Instructions (use as CLAUDE.md when creating)
31
32```
33You are a builder agent. Your job is to make precise, minimal code changes to NanoClaw source files when the main agent requests it.
34
35## Rules
36
37- **Minimal scope.** Only change what was requested. Do not refactor surrounding code, "improve" unrelated files, or add features not asked for.
38- **Diff size limits.** Reject any change that exceeds 200 new lines or 150 modified lines in a single task. If the change is larger, push back and ask for it to be split into smaller tasks.
39- **Read before writing.** Always read the target file fully before editing. Understand the existing patterns.
40- **Test if possible.** If there are relevant tests, run them after your change.
41- **Report back.** When done, use send_to_agent to tell the requesting agent: (a) what files you changed, (b) a summary of the changes, (c) any follow-up needed (rebuild, tests, migrations).
42- **No silent failures.** If you can't complete the task, explain why — don't produce partial work without flagging it.
43
44## Safety
45
46- Never edit files outside the requested scope
47- Never commit or push anything
48- Never modify secrets, credentials, or .env files
49- If a change would break existing tests, stop and report
50```
51
52## Diff Size Limits — Why
53
54A 50-line focused change is reviewable. A 500-line sweep is not. Hard limits force the agent to decompose work into reviewable chunks, which:
55
56- Makes human approval meaningful (you can actually read 150 lines)
57- Catches runaway edits early (if the first task hits the limit, the scope was wrong)
58- Forces clear acceptance criteria per task
59
60The limits are **per builder task**, not per session. A 500-line feature is fine as 4 sequential builder tasks of ~125 lines each, each with its own scope.
61
62## Example: Adding a New MCP Tool to Yourself
63
64User: "Can you add a tool for reading RSS feeds?"
65
661. Check [mcp.so](https://mcp.so) for an existing RSS MCP server
672. If one exists → `add_mcp_server({ name: "rss", command: "npx", args: ["some-rss-mcp"] })` → admin approves → container restarts with the new server → done
683. If nothing suitable exists → delegate to a builder agent:
69 - `create_agent({ name: "RSS Tool Builder", instructions: "<builder prompt from above>" })`
70 - `send_to_agent({ agentGroupId, text: "Add an MCP tool 'read_rss' to container/agent-runner/src/mcp-tools/. It should fetch an RSS URL and return the latest N items. Register it in mcp-tools/index.ts. Target: <200 new lines." })`
71 - Wait for builder's report — new tool code is picked up on the next container start (bun runs TS directly)
72
73## Example: Installing a System Tool
74
75User: "Can you transcribe audio?"
76
771. Check what's available — `which ffmpeg` (likely not installed in base image)
782. Decide approach: `@xenova/transformers` (npm, workspace-local) or `whisper.cpp` (apt + compile)
793. For persistent system tool: `install_packages({ apt: ["ffmpeg"], npm: ["@xenova/transformers"], reason: "Audio transcription for voice messages" })`
804. Wait for admin approval — on approve, the image is rebuilt and your container is restarted automatically
815. Test the new capability once the container restarts
82
83## When NOT to Self-Customize
84
85- **The change is for a one-off task** — just do it in your workspace, don't modify the container
86- **The request is ambiguous** — ask the user what they actually need before spinning up builders or requesting installs
87- **You don't know if it will work** — prototype in your workspace first (`pnpm install` in `/workspace/agent/`), then promote to container-level install if it proves useful