Name a toolset
A toolset is the small group of MCP servers and skills one kind of task needs. It selects capabilities; it does not grant extra permission.
Create one#
$ agentstack toolset create backend --server github --server postgres --skill api-review
$ agentstack toolset listAt a terminal, create shows the change and asks before writing. It updates the manifest and lock but does not render native MCP or skill files.
The result is simple TOML:
[toolsets.backend]
servers = ["github", "postgres"]
skills = ["api-review"]Make it automatic#
$ agentstack toolset default backend
$ agentstack toolset default backend --write
$ agentstack trust .A trusted new gateway connection opens the default automatically. There is no daily use command in the normal zero-files workflow.
If a project declares exactly one toolset, AgentStack can use it as the effective default. Declaring default_toolset is still clearer for people and becomes necessary when the project has several toolsets.
Several tasks#
default_toolset = "backend"
[toolsets.backend]
servers = ["github", "postgres"]
skills = ["api-review", "sql-review"]
[toolsets.incident]
servers = ["grafana", "logs"]
skills = ["oncall-runbook"]New connections open backend. A protected run can choose another fence:
$ agentstack run claude-code --toolset incidentTo move every new request onto another toolset, change the project default with agentstack toolset default <name> --write; to pin one launch instead, use the launcher flag above. A modern connection re-derives the trusted default on its next request, so it picks the change up without reconnecting. Only a legacy connection keeps its opening selection — connection-scoped toolset leases are legacy-only, and the binary refuses one for a modern connection.
After editing a toolset#
$ agentstack lock # preview
$ agentstack lock --write
$ agentstack trust .
$ agentstack statusUse agentstack use <name> --write only for a file-only CLI or an intentional rendered compatibility lane. It is not how live zero-files switching works.
Next: Central library · Trust · Concepts
Source of truth: docs/howto/name-a-toolset.md — this page is generated from it.