cua-driver
Required host-generated bearer token when the local MCP HTTP endpoint is enabled.
Use Cua Volume, the one volume every Space and agent of this user shares. Inside a Space it is mounted as a folder (/volume on Linux, ~/Cua Volume on macOS), so any program reads and writes it directly. Use it for anything that must outlive this Space - your memory and outputs
$ npx -y skills add trycua/cua --skill cua-volume --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/cua-volumeContext preview
The summary Claude sees to decide when to auto-load this skill.
Use Cua Volume, the one volume every Space and agent of this user shares. Inside a Space it is mounted as a folder (/volume on Linux, ~/Cua Volume on macOS), so any program reads and writes it directly. Use it for anything that must outlive this Space - your memory and outputs
name: cua-volume description: Use Cua Volume, the one volume every Space and agent of this user shares. Inside a Space it is mounted as a folder (/volume on Linux, ~/Cua Volume on macOS), so any program reads and writes it directly. Use it for anything that must outlive this Space - your memory and outputs in your agent home, shared reference in public/ - and to hand files to the user or to other agents. Use when the user mentions the volume, Cua Volume, shared files, your home or memory, or saving results.
One versioned volume per user. Every write is a new version; deletes keep history. The same files appear on the user's Mac (Finder) and in every Space, within seconds.
| Where you run | Path | |---|---| | A Linux Space | `/volume` (or `~/Cua Volume` when `/volume` is absent) | | A macOS Space | `~/Cua Volume` | | No mount (Windows for now, or the Space has none) | use the `volume_*` tools below |
Check with `ls /volume` or `ls ~/"Cua Volume"`. If neither exists, use the tools.
| Folder | You (an agent in a Space) | |---|---| | `public/` | read only: shared reference from the user | | `agents/<you>/` | read and write: your home (memory, `outputs/`, `inbox/`) | | `spaces/<this space>/` | read and write: this Space's scratch and outputs | | another agent's home, another Space | not visible; ask with `volume_request_access` |
Put results the user should see in `agents/<you>/outputs/` (or this Space's folder) and tell them the path. A refused write means the folder is not yours: do not retry elsewhere to get around it, ask.
| Tool | Use | |---|---| | `volume_ls`, `volume_read`, `volume_write` | The same files without the mount; each file's `sync` state | | `volume_delete`, `volume_history`, `volume_restore` | Where offered: delete, old versions, restore one | | `volume_request_access` | Ask the user for more (a folder, `r` or `rw`, and why); they approve in Cua | | `volume_sync_status` | Sync health, each device's last sync, your files still uploading, conflicts |
Inside a Space these tools answer from the user's machine, so they show its view of sync, not only this Space's.
relying on one, check `volume_sync_status`: `feed` is `live` (syncing), `off` (storage on this machine only: nothing to wait for) or `offline` (the bucket is unreachable, see `last_error`: say so rather than trust a stale file). `devices` shows when each device last synced.
`pending_upload` (not yet stored, other devices cannot see it yet), `conflict` (a write lost to a later one; kept at `conflict_path`), `conflict_copy`, and `written_by` when another device wrote it last.
a moment without writes). Close files before telling the user they are ready.
is kept next to it as `name (conflict from <device> <date>).ext`. Nothing is lost. Do not delete a conflict copy yourself: tell the user, or merge the two into the current file if the task asks for it.
API keys, tokens, passwords and private keys belong in the user's Keyvault. Writes to agent homes are scanned; a write with a secret is refused (`secret_detected`) and logged. Do not work around the refusal: remove the secret.
Scale computer-use 2.0 with open-source drivers, cross-OS fleets, and benchmarks for training, evaluation, and data generation.
Repo: trycua/cua
Required host-generated bearer token when the local MCP HTTP endpoint is enabled.
Create, use and clean up cua sandboxes (disposable Linux or macOS computers) locally or in…
Work inside cua Spaces through the cua MCP server. A Space is a remote or local computer the…
Use when you need to visually interact with a GUI: test buttons, fill forms, verify visual…
Build or adapt a bounded computer-use loop where Cua Driver observes and acts, TypeSafe Jev…