# Cuga Agent Foundation

> Use when building LangGraph policy layers for agents: intent guards, playbooks, tool guides, tool approval HITL, output formatters, ToolGuard runtime enforcement plus its build-time code generation, policy storage/sync, agent-state reducers, decision observability, and the shared agent-loop kernel (CoreGraphAdapter, call_model routing, fenced-code extraction, approval interrupt/resume, execution-backend resolution, runtime tool injection), plus the provider-dialect structured-output chain factory, the three-tier tool-call budget, and the code-execution plane (unified charging entry, timeout/exit evidence recovery, two-tier AST security, JSON-safe variable capture, monotonic-safe clock freeze, remote sandbox transport, shell workspace isolation, sandbox session caching) — plus the platform-infra plane: total-context-aware summarization with hard-truncation fallback, slash-command soft dispatch with four-pass arg substitution, never-raise secret resolution/seeding, multi-issuer JWT/IAM validation, hybrid RAG…

- Skill: `ryan-brosas/cuga-agent-foundation` (Agent Skill, multi-file: 213 files)
- Install (CLI): `npx skillmds@latest add ryan-brosas/cuga-agent-foundation`
- Raw SKILL.md: https://api.skillmd.com/api/skills/ryan-brosas/cuga-agent-foundation/raw
- Safety review: pending
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: DevOps & Infra
- Author: ryan-brosas (https://skillmd.com/u/ryan-brosas)
- Updated: 2026-09-17
- Page: https://skillmd.com/skills/ryan-brosas/cuga-agent-foundation

---

# Cuga Agent Foundation

## Foundation contract

This is a cold, source-specific foundation, not an operational procedure. It is
historical, revision-pinned evidence rather than timeless guidance. Current
project source, tests, requirements, and runtime behavior outrank this
projection and decide what ships.

## Provenance and revision

- Source record: `cuga-agent`; portable upstream identity, license, coverage caveats, and retrieval history are preserved in the index.
- Recorded revision: `main@5de53ade77c36166da6ace906af488b2b445454f`.
- Full provenance, coverage caveats, boundaries, and preserved evidence:
  `references/index.md`.

## Topic map

- Representative topics: Policy data model; Config wiring; Matching engine;
  Enactment; Intent blocking; Tool description guides; Human approval; Output
  formatting.
- Scope and retrieval questions: `references/index.md#use-this-for`.
- Complete capsule chooser: `references/index.md#load-the-matching-source-dump`.
- Detailed grouped map: `references/index.md#capsule-map`.
- Source limitations and portability boundaries: `references/index.md#boundaries`.

## Retrieval

Open the index, choose one capsule matching the active question, and load only
that capsule. Revalidate its cited source and revision before relying on it. Do
not bulk-load the inventory, treat historical claims as current truth, or apply
this foundation as a procedure.

