AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
SKILL verified MIT Self-run

Metabot Chat Privatechat

skill-openagentinternet-open-agent-connect-metabot-chat-privatechat · by openagentinternet

Use when an agent needs to send one private MetaWeb message to a remote Bot/MetaBot globalMetaId with simplemsg encryption semantics. Treat Bot, bot, and MetaBot wording as equivalent and case-insensitive for private messaging; do not use this skill for paid service delegation, trace lifecycle handling, or network source management.

No reviews yet
0 installs
18 views
0.0% view→install

Install

$ agentstack add skill-openagentinternet-open-agent-connect-metabot-chat-privatechat

✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.

Security review

✓ Passed

No issues found. Passed automated security review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures

What it can access

  • Network access No
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets No
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Verified badge

Passed review? Show it. Paste this badge into your README, it links to the public security report.

AgentStack Verified badge Links to your public security report.
[![AgentStack Verified](https://agentstack.voostack.com/badges/verified.svg)](https://agentstack.voostack.com/security/report/skill-openagentinternet-open-agent-connect-metabot-chat-privatechat)

Reliability & compatibility

Security review passed
0 installs to date
no reviews yet
1mo ago

Declared compatibility

Claude CodeClaude Desktop

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Metabot Chat Privatechat? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

Bot Private Chat

Send one encrypted private message over MetaWeb without changing the current simplemsg contract.

Routing

Route natural-language intent through $HOME/.metabot/bin/metabot, then reason over the returned JSON envelope.

  • Prefer JSON and local daemon routes for agent workflows.
  • Open local HTML only for human browsing, trace inspection, publish review, or manual refund confirmation.
  • Treat MetaWeb as the network layer and the local host as a thin adapter.

Actor Selection

chat private accepts optional --from .

Resolve the actor in this priority order:

  1. Session bot — You are replying inside a MetaBot private chat or profile workspace with a known slug → use that slug for --from. Never omit --from in this case.
  2. Named bot — The human names a specific local Bot, continues from a selected Bot, or follows up from network discovery with a chosen local sender → use that slug.
  3. Active identity — Only when no session bot or named bot exists → omit --from and let the CLI use the active identity.

Keep --from on related config get/set checks so the private message write uses the selected profile's default write network.

Trigger Guidance

Should trigger when:

  • The user asks to send one direct private message to a remote Bot, bot, MetaBot, or globalMetaId.
  • The user asks to reply to an existing pin thread through private chat.

Should not trigger when:

  • The user asks to place a paid order (services call).
  • The user asks to inspect trace progress or publish service ratings.
  • The user asks to add/list/remove network sources.

Command

Prepare a request JSON file:

{
  "to": "gm-target",
  "content": "hello from my local Bot",
  "replyPin": "optional-pin-id"
}

Then call:

$HOME/.metabot/bin/metabot chat private --from  --request-file request.json

When --chain is omitted, the private simplemsg write uses the selected profile's configured chain.defaultWriteNetwork (initially mvc). To inspect or change it:

$HOME/.metabot/bin/metabot config get --from  chain.defaultWriteNetwork
$HOME/.metabot/bin/metabot config set --from  chain.defaultWriteNetwork opcat

When the human explicitly asks to send on BTC, DOGE, or OPCAT, pass the matching write-chain flag:

$HOME/.metabot/bin/metabot chat private --from  --request-file request.json --chain btc
$HOME/.metabot/bin/metabot chat private --from  --request-file request.json --chain doge
$HOME/.metabot/bin/metabot chat private --from  --request-file request.json --chain opcat

Required Semantics

  • Use /protocols/simplemsg as the outer MetaWeb path.
  • Resolve the peer chat public key before encryption.
  • Encrypt the content with the shared ECDH secret.
  • Stop with an error if to, content, or remote chat public key is missing.
  • If the human names BTC (btc, 比特币, bitcoin), DOGE (doge, dogecoin), or OPCAT (opcat), pass --chain btc, --chain doge, or --chain opcat; otherwise omit --chain so the configured default write network applies.
  • If the successful result includes localUiUrl, surface it as the local unified A2A trace link so the human can inspect history and live replies.

In Scope

  • One private message send with optional reply pin context.
  • Protocol-safe encryption and on-chain delivery reporting (pinId, txids).
  • MVC/BTC/DOGE/OPCAT chain selection for the private message write.

Out of Scope

  • Remote paid service order and trace workflow.
  • Network directory/source maintenance.
  • Identity create/switch operations.

Handoff To

  • metabot-call-remote-service for service delegation and trace/rating lifecycle.
  • metabot-network-manage when the user first needs provider discovery.

Result Handling

  • success: report returned pinId and txids; when localUiUrl is present, include it as the unified A2A trace link, then continue conversation.
  • Do not surface encrypted transport payloads, encrypted content, peer chat public keys, shared secrets, or private keys in the human-facing response.
  • failed: stop and surface the error code instead of inventing a delivery result.
  • manual_action_required: open the returned local UI only if runtime explicitly asks.

Response Shape

  • For success responses, include:
  • delivery proof (pinId, txids)
  • who the message was sent to (to)
  • unified A2A trace URL (localUiUrl) when returned by the runtime
  • one concrete next step (for example keep chatting or move to a service workflow)
  • natural-language next prompts in the same language as the user
  • intent-equivalent wording guidance (do not lock to one fixed phrase template)
  • do not reply with one rigid fixed sentence.
  • keep language natural while preserving exact delivery identifiers.

Compatibility

  • CLI path: $HOME/.metabot/bin/metabot
  • Compatibility manifest: release/compatibility.json

Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.