Coding agent

Poolside Agent CLI

Provider-flexible terminal and ACP client with explicit policy, traces, and optional sandboxes.

Status
Active
License
Proprietary client
Evidence
Documented, 15 sources
Product record checked
2026-07-30

At a glance

Poolside's proprietary-distribution CLI combines interactive and JSONL automation modes, ACP client and server roles, OpenRouter and local OpenAI-compatible models, MCP, skills, worktrees, structured trajectories, and optional local container sandboxes.

Good choice if

  • Developers who want one TUI to drive Poolside, OpenRouter, Ollama, local OpenAI-compatible models, or other ACP agents
  • Self-managed workflows that need reviewable local policies, trajectories, and container sandbox definitions
  • Scripts and ACP-compatible editors that need structured output, resumable sessions, MCP, and skills

Check before choosing

  • Local container sandbox isolation must be explicitly configured for user-managed runs
  • Remote HTTP or SSE MCP servers are outside local sandbox network restrictions
  • Rewind removes conversation turns but does not restore files, so no harness checkpoint or file rollback is claimed
See 2 more considerations
  • No delegated subagent workflow was verified; parallel isolation is limited to manually launched worktrees or separate sessions
  • The public repository distributes binaries, documentation, and a changelog rather than the proprietary client source, and its v1.0.13 tag points to a tree whose changelog still says 1.0.12

Capability support

Documented first-class product support, checked against the sources below.

External tools (MCP)
DocumentedProduct-supported MCP integrationSource · checked 2026-07-30The source establishes the mechanism, not its quality or availability in every mode.
Reusable skills
DocumentedProduct-supported reusable skill packagesSource · checked 2026-07-30Support does not establish portability, package quality, safety, or adoption.
Local models
DocumentedLocal or self-hosted model pathSource · checked 2026-07-30The source establishes the mechanism, not its quality or availability in every mode.
Agent parallelism
Not documentedNo first-class support established by the current recordAbsence of current documentation is not proof that the capability is impossible.
Runs without an open UI
DocumentedNon-interactive or automation surfaceSource · checked 2026-07-30The source establishes the mechanism, not its quality or availability in every mode.
Browser control
Not documentedNo first-class support established by the current recordAbsence of current documentation is not proof that the capability is impossible.
Isolated execution
Depends on surfaceConfigured local container isolation for user-managed runsSource · checked 2026-07-30The source establishes the mechanism, not its quality or availability in every mode.
Undo file changes
Not documentedNo first-class support established by the current recordAbsence of current documentation is not proof that the capability is impossible.

Getting started

Install Poolside Agent CLI 1.0.13, then authenticate to Poolside or OpenRouter, launch through Ollama or an OpenAI-compatible endpoint, or select another ACP server; configure local policies and a container sandbox explicitly for untrusted work.

Open official documentation

Classification and operating model

Category fit and technical mechanisms are evidence records, not product-quality scores.

Category fit
Qualifies, 4/4 criteria
Operating model
7/7 layers documented
Inspect category criteria and operating mechanismsFirst-party records

Why it qualifies as a coding harness

This confirms category fit, not product quality. Every required criterion links back to first-party evidence.

Qualifies4 of 4 required criteria evidenced
  • Adaptive agent loop

    Documented

    The system repeatedly observes results and chooses the next action instead of following a fixed one-pass graph.

  • Repository tool execution

    Documented

    The system can use tools to inspect and change a repository or its execution environment.

  • Task-aware context management

    Documented

    The runtime assembles, updates, compacts, retrieves, or persists task-relevant context while work proceeds.

  • Model-independent runtime control

    Documented

    Permissions, budgets, interruption, policy, or stop controls operate outside the model's own text generation.

Membership establishes category fit only. It does not score quality, safety, autonomy, model capability, or benchmark performance. · Read the membership rule.

How it works under the hood

Seven mechanisms mapped from first-party records. These labels describe what the harness provides, not how intelligent its model is.

7/7layers documented
  • Execution & isolationSandbox availableDocumented mechanism, not a performance score.
  • Tooling & integrationsExtensible toolsDocumented mechanism, not a performance score.
  • Context & stateManaged contextDocumented mechanism, not a performance score.
  • Lifecycle & recoverySession resumeDocumented mechanism, not a performance score.
  • ObservabilityStructured tracesDocumented mechanism, not a performance score.
  • VerificationTool-assistedDocumented mechanism, not a performance score.
  • Governance & permissionsPolicy controlsDocumented mechanism, not a performance score.

Measured and public context

Configuration-specific measurements and source-native activity stay separate from general product capability.

Inspect code audit, measured configurations, and ecosystem signalsContext, not a product score

Public code audit

Unrankedsupport-only repository
Security policy
Not found
CI workflow
Not found
Automated tests
Not found
Evaluation assets
Not found
Contributor documentation
Not found

The public repository contains binary releases, a readme, a changelog, license notices, and issue tracking, but no client or service source, CI, engineering tests, or evaluation suite. The v1.0.13 Git tag resolves to ca5306676ab5fa9a0cfda2d4844470bf7d435741, where CHANGELOG.md still begins at 1.0.12; the 1.0.13 changelog entry was added later on main.

Inspect commit 39e9094bd5d49d2dc4df780753cc6da37fc88eb6, checked 2026-07-27

Measured configurations

No benchmark run passes the full metadata admission policy for this harness yet. Missing data is not scored as zero.

Benchmark policy and all runs
Context, not quality

Public ecosystem signals

Source-native observations for exact mapped artifacts and reviewed stable release trains. Different units and populations stay separate, and missing coverage is never treated as zero.

View this harness in Usage
  • Latest stable releasev1.0.16Released 2026-08-14; 11 stable releases in 90 daysOpen release
  • OpenRouter 30d tokens13.21B#54 coding app; 2026-08-09 to 2026-09-07Open app page
  • Release asset downloads5.66K14 stable releases; 84 matched assetsOpen artifact
  • GitHub stars423Support repository; 25 forksOpen artifact

Routing, package retrievals, release downloads, editor installs, and repository interest observe different populations. They are never added together and never affect capability evidence, classification, or measured results.

Interpretation rulesSignals checked

First-party evidence

Each capability claim links to the first-party record that supports it.

15 first-party sourcesProduct record checked

Additional first-party sources

15 sources
View 14 more sources