All tools
Every tool the cua MCP server exposes, with its permission and parameters.
Every tool the cua MCP server exposes, with its permission and parameters.
cua mcp (and cua daemon mcp, the same server backed by the cua daemon) serves these tools over stdio. See MCP server for client setup.
Contract version 0.7.0; MCP protocol revision 2025-06-18.
The Spaces contract: register, claim and release Spaces, run commands, move files, stream, run agents and teleport. Reference.
| Tool | Description |
|---|---|
add_space | Add an existing machine as a Space by address and token. |
remove_space | Forget a registered Space without touching it. |
list_spaces | List the Spaces this connection can see. |
create_space | Create a Space: a new sandbox on this machine, on one of your machines, or in the cloud. |
delete_space | Delete a Space's sandbox and forget it. |
stop_space | Turn a Space off: suspend it (memory kept) or stop it (disk kept). |
start_space | Turn a Space back on: resume or boot it. |
space_bash | Run a shell command inside the Space. |
space_write | Write literal text to a path inside the Space. |
upload | Send a local file or folder into the Space. |
send_file | Send a host file or folder into the Space's Downloads, verified by sha256 on arrival. |
download | Fetch a file or folder out of the Space. |
stream_endpoint | Return a ticketed media endpoint for the Space's desktop or one window. |
list_space_windows | List the windows open inside the Space. |
stream_space_window | Draw one Space window on the operator's desktop. |
show_space_pip | Pin the Space as picture-in-picture on the operator's desktop. |
hide_space_pip | Unpin the picture-in-picture window. |
open_space_viewer | Open the full Space viewer on the operator's desktop. |
list_tools | List the MCP services and tools reachable inside the Space. |
call_tool | Call a service tool inside the Space. |
agent_start | Start a coding agent in the Space. |
agent_message | Send a follow-up to an agent run. |
agent_events | Read an agent run's events after a cursor. |
agent_status | Read an agent run's status and result. |
agent_interrupt | Interrupt an agent run's current turn. |
agent_stop | Stop an agent run. |
agent_list | List agent runs in the Space. |
agent_capabilities | Report what the agent harnesses support. |
persistent_agent_create | Create a named agent whose memory outlives its Space. |
persistent_agent_list | List persistent agents. |
persistent_agent_remove | Forget a persistent agent. |
persistent_agent_send | Give a persistent agent a turn. |
persistent_agent_save | Save a persistent agent's home now. |
agent_pause | Pause a persistent agent: its run, its routines and its Space. |
agent_resume | Resume a paused persistent agent. |
routine_add | Schedule a recurring turn for a persistent agent. |
routine_list | List routines. |
routine_remove | Delete a routine. |
routine_set_enabled | Turn a routine on or off. |
notify_user | Tell the user something in the Cua app. |
notifications_list | Read the notifications feed. |
notifications_ack | Mark notifications read. |
computer_access_grant | Let a persistent agent use one of the user's computers. |
computer_access_revoke | Take back a persistent agent's access to a computer. |
computer_access_list | List per-agent computer access. |
teleport_manifest | Describe what a session teleport would move. |
teleport_app | Move an app session into the Space. |
request_site_login | Sign in to a site in the Space with the user's saved password. |
hotspot_start | Start sharing this machine's network with a Space. |
hotspot_stop | Stop sharing this machine's network. |
hotspot_status | Report which Spaces are sharing this machine's network, with counters. |
volume_ls | List a folder of the Cua Volume. |
volume_read | Read a file from the Cua Volume. |
volume_write | Write a file to the Cua Volume. |
volume_delete | Delete a file from the Cua Volume. |
volume_history | List a Cua Volume file's versions. |
volume_restore | Restore an old version of a Cua Volume file. |
volume_grant | Grant an agent or Space more Cua Volume access. |
volume_revoke | Revoke a Cua Volume grant. |
volume_grants | List Cua Volume grants. |
volume_request_access | Ask the user for more Cua Volume access. |
volume_requests | List Cua Volume access requests waiting for the user. |
volume_approve | Approve a Cua Volume access request. |
volume_deny | Decline a Cua Volume access request. |
volume_audit | Read the Cua Volume audit log. |
volume_storage | Show where the Cua Volume keeps its bytes. |
volume_storage_set | Test or change where the Cua Volume keeps its bytes. |
volume_mount_status | Show whether the Cua Volume is mounted as a volume. |
volume_mount | Mount the Cua Volume as a volume. |
volume_unmount | Unmount the Cua Volume volume. |
volume_sync_status | Show the Cua Volume's sync state across devices. |
volume_sync_events | Wait for Cua Volume sync events. |
volume_sync_resolve | Mark a Cua Volume sync conflict as seen. |
volume_cache_stats | Show the Cua Volume block cache. |
volume_cache_set | Set the Cua Volume block cache's size cap. |
volume_cache_clear | Clear the Cua Volume block cache. |
share_space | Let another cua.ai account watch or edit a Space. |
unshare_space | Stop sharing a Space with an account, or with everyone. |
space_shares | List who a Space is shared with. |
relay_register_space | Publish a Space on the relay for the account's other devices. |
relay_unregister_space | Take a Space off the relay. |
cloud_status | List your clouds (AWS, Google Cloud, Modal): found credentials, the connected account and region, what each can run at what hourly cost, and what Cua created there. |
cloud_connect | Connect a cloud account Spaces can be created in. |
cloud_test | Check a cloud account without creating anything. |
cloud_disconnect | Forget a connected cloud account. |
cloud_sweep | Find and delete what Cua left in your clouds. |
The sandbox image catalog: which images exist and which ship a browser. Reference.
| Tool | Description |
|---|---|
images_list | List the sandbox image catalog (the images the docs list): ref, OS, container or VM, local and cloud runtime, whether it ships cua-spacesd and which browsers, its other variants, and the command that creates it. |
Create and manage sandboxes, local or in the cloud. Reference.
| Tool | Description |
|---|---|
sandbox_list | List sandboxes: local, direct and cloud (Fleet) ones by default, each row with location (local, cloud or direct). |
sandbox_create | Create a sandbox from any image. |
sandbox_get | Get details for a sandbox. |
sandbox_start | Start (resume) a sandbox. |
sandbox_stop | Stop (suspend) a sandbox. |
sandbox_restart | Restart a sandbox. |
sandbox_suspend | Suspend a sandbox. |
sandbox_delete | Delete a sandbox. |
sandbox_view | Get a browser link to the sandbox desktop in the cua-spacesd HTML5 viewer (video, audio, input, clipboard, files). |
sandbox_vnc | Deprecated: use sandbox_view. |
sandbox_open_browser | Launch Chromium with a fresh throwaway profile inside an existing sandbox (an image with cua-spacesd and Chromium, see images_list), bind it and optionally open a URL. |
Move a signed-in browser session, per site, into a sandbox through the Cua Keyvault, with consent. Reference.
| Tool | Description |
|---|---|
teleport_browser_session | Teleport the user's signed-in session for specific sites (for example github.com) from their Firefox or Chrome into a sandbox, through the Cua Keyvault. |
Screenshots, input, windows, files and shell on a sandbox desktop. Reference.
| Tool | Description |
|---|---|
computer_screenshot | Take a screenshot (long edge at most 1200 px). |
computer_click | Click at screenshot coordinates. |
computer_double_click | Double-click at screenshot coordinates. |
computer_move_cursor | Move the cursor. |
computer_mouse_down | Press a mouse button. |
computer_mouse_up | Release a mouse button. |
computer_type | Type text. |
computer_key | Press a key (enter, escape, tab, a, ...). |
computer_key_down | Hold a key. |
computer_key_up | Release a key. |
computer_hotkey | Press a shortcut such as ctrl+c or cmd+shift+s. |
computer_scroll | Scroll up, down, left or right. |
computer_drag | Drag between two points. |
computer_clipboard_get | Read clipboard text. |
computer_clipboard_set | Set clipboard text. |
computer_file_read | Read a text file. |
computer_file_write | Write a text file (the Spaces space_write implementation, on this sandbox). |
computer_file_list | List a directory. |
computer_shell | Run a shell command (sh -c, 120 s timeout; the Spaces space_bash implementation, on this sandbox). |
computer_window_list | List windows. |
computer_window_open | Open a file or URL. |
computer_window_focus | Focus a window. |
computer_window_unfocus | Remove focus from the current window (Escape). |
computer_window_minimize | Minimize a window. |
computer_window_maximize | Maximize a window. |
computer_window_close | Close a window. |
computer_window_resize | Resize a window. |
computer_window_move | Move a window. |
computer_window_get_info | Get a window's title, position and size. |
computer_launch | Launch an application. |
computer_get_screen_size | Primary display size in points. |
computer_get_cursor_position | Cursor position in points. |
computer_get_current_window | The focused window's id and title. |
computer_get_accessibility_tree | Accessibility tree of the focused (or given) window. |
computer_accessibility_act | Act on an accessibility element (press, focus, set_value, ...). |
List, read, record and delete skills (recorded demonstrations). Reference.
| Tool | Description |
|---|---|
skills_list | List recorded skills. |
skills_read | Read a skill and its steps. |
skills_delete | Delete a skill. |
skills_record | How to record a skill (recording is interactive: cua skills record). |
Tools are gated by --permissions (or CUA_MCP_PERMISSIONS), a comma-separated list of permissions and groups; the default is all. Each group has an all and a readonly form (sandbox:readonly); each tool lists its own permission.
| Group | Grants | :readonly grants |
|---|---|---|
computer:all | 12 permissions | computer:screenshot |
images:all | images:list | images:list |
sandbox:all | 10 permissions | sandbox:list, sandbox:get |
skills:all | skills:list, skills:read, skills:record, skills:delete | skills:list, skills:read |
spaces:all | 86 permissions | 28 permissions |
teleport:all | teleport:browser | none |