skill manages skills and spaces on AgentKit. skills generates wrappers, uploads and downloads packages, and publishes paired real and secure skills
Command overview
skill list
List skills.skill show
Show a skill’s details.skill versions
List a skill’s versions.skill spaces
List skill spaces.skill delete
Delete a skill.skills secure
Generate secure Skill wrappers in bulk from a local skills directory. The source directory should contain one or more child directories, each with aSKILL.md whose frontmatter includes at least name and description. The command creates a same-name output directory for each skill and keeps only the invocation instructions needed by a managed agent; it does not copy the real Skill prompt, references, scripts, dependencies, or credentials.
For example, create
skills/report and save this complete minimal skill file
skills/report/SKILL.md
skills publish-secure for binding the real skills to a sandbox
skills upload
Upload skill packages to the selected platform. Each SKILL.md must containname and description
--skill-space-id or SKILL_SPACE_ID. Dry runs do not require a space or create remote resources. Each skill is limited to 500 files, 25 MiB per file, and 50 MiB for both total file size and the ZIP package
GitHub sources use https://github.com/<owner>/<repo>/tree/<ref>/<path> and require Git. Ark uses ARK_API_KEY; AgentKit uses cloud credentials for the selected Volcengine or BytePlus account
skills download
Download a skill package and extract it locallyunzip. ZIP packages are limited to 50 MiB and unsafe extraction paths are rejected. Downloads from ark_ma are not supported
skills download-space
Download every skill at the version bound to the space, using a subdirectory for each skill IDunzip. ZIP packages are limited to 50 MiB and unsafe extraction paths are rejected. Downloads from ark_ma are not supported
skills publish-secure
Publish real skills and portable secure wrappers into two newly created skill spaces, then read both spaces to verify the pairs. Wrappers contain names, descriptions, and remote invocation scripts without real skill instructions or resources<prefix>_real_<suffix> and <prefix>_secure_<suffix>, with a random suffix. Interactive terminals show a plan and request confirmation. JSON output and CI require explicit --yes
Before executing a wrapper, create or select a Skill sandbox tool bound to the real space. Install agentkit-sdk-python>=0.8,<0.9 in the client runtime and provide credentials through the SDK default credential chain. Set AGENTKIT_TOOL_ID to that tool ID. AGENTKIT_REGION defaults to cn-beijing; set it explicitly for other regions