Events changedapi/beta/sessions/threads/events
Nearest release: v2.1.296, published 4 hours before this site recorded the change. Shown because the two are within 24 hours of each other. Nothing here says the release caused the edit.
Recorded here
Lines+1,667added
Lines−879removed
From line
383
where the diff opens
First seen
14 Aug 2026
this site's first read of the page
Recorded edits22to this page, all time
The whole hunk
from line 383, old and new numbered
/
The two sides of this change are more than 400 edits apart, too far apart to line up, so this is the differ's own diff of it and the words inside a line are not marked.
from line 383
383383
384384 - `custom_tool_use_id: string`
385385
386 The id of the `agent.custom_tool_use` event this result corresponds to, which can be found in the last `session.status_idle` [event's](https://platform.claude.com/docs/en/api/beta/sessions/events/list#beta_managed_agents_session_requires_action.event_ids) `stop_reason.event_ids` field.
386 The id of the `agent.custom_tool_use` event this result corresponds to. It is also listed in the last `session.status_idle` [event's](https://platform.claude.com/docs/en/api/beta/sessions/events/list#beta_managed_agents_session_requires_action.event_ids) `stop_reason.event_ids` field.
387387
388388 - `content: optional array of BetaManagedAgentsTextBlock or BetaManagedAgentsImageBlock or BetaManagedAgentsDocumentBlock or BetaManagedAgentsSearchResultBlock`
389389
from line 455
455455
456456 - `BetaManagedAgentsAgentCustomToolUseEvent object`
457457
458 Event emitted when the agent calls a custom tool. The session goes idle until the client sends a `user.custom_tool_result` event with the result.
458 Event emitted when the agent calls a custom tool. The session goes idle until the client sends a `user.custom_tool_result` event with the result. The client can send it as soon as this event arrives, without waiting for `session.status_idle`.
459459
460460 - `type: "agent.custom_tool_use"`
461461
from line 1397
13971397
13981398 Public `sthr_` ID of the newly created thread.
13991399
1400 - `workflow_run_id: string or null`
1401
1402 Identifier of the workflow run that created the thread, or `null` for any other thread.
1403
14001404 - `BetaManagedAgentsSpanOutcomeEvaluationStartEvent object`
14011405
14021406 Emitted when an outcome evaluation cycle begins.
from line 1901
18971901
18981902 - `"claude-haiku-4-5"`
18991903
1900 Fastest model with near-frontier intelligence
1901
19021904 - `"claude-haiku-4-5-20251001"`
19031905
1904 Fastest model with near-frontier intelligence
1905
19061906 - `"claude-opus-4-5"`
19071907
19081908 Powerful intelligence for long-running agents and coding
from line 1971
19711971
19721972 - `"fast"`
19731973
1974 - `multiagent: BetaManagedAgentsSessionMultiagentCoordinator or null`
1974 - `multiagent: BetaManagedAgentsSessionMultiagent or null`
19751975
19761976 Resolved multiagent orchestration configuration. Null when the agent is single-threaded.
19771977
1978 - `type: "coordinator"`
1979
1980 - `agents: array of BetaManagedAgentsSessionThreadAgent or BetaManagedAgentsAdvisor`
1981
1982 Full `agent` definitions the coordinator may spawn as session threads.
1983
1984 - `BetaManagedAgentsSessionThreadAgent object`
1985
1986 Resolved `agent` definition for a single `session_thread`. Snapshot of the agent at thread creation time. The multiagent roster is not repeated here; read it from `Session.agent`.
1987
1988 - `type: "agent"`
1989
1990 - `id: string`
1991
1992 - `description: string or null`
1993
1994 - `mcp_servers: array of BetaManagedAgentsMCPServerURLDefinition`
1995
1996 - `type: "url"`
1978 - `BetaManagedAgentsSessionMultiagentCoordinator object`
1979
1980 Resolved coordinator topology with full agent definitions for each roster member.
1981
1982 - `type: "coordinator"`
1983
1984 - `agents: array of BetaManagedAgentsSessionThreadAgent or BetaManagedAgentsAdvisor`
1985
1986 Full `agent` definitions the coordinator may spawn as session threads.
1987
1988 - `BetaManagedAgentsSessionThreadAgent object`
1989
1990 Resolved `agent` definition for a single `session_thread`. Snapshot of the agent at thread creation time. The multiagent roster is not repeated here; read it from `Session.agent`.
1991
1992 - `type: "agent"`
1993
1994 - `id: string`
1995
1996 - `description: string or null`
1997
1998 - `mcp_servers: array of BetaManagedAgentsMCPServerURLDefinition`
1999
2000 - `type: "url"`
2001
2002 - `name: string`
2003
2004 - `url: string`
2005
2006 - `model: BetaManagedAgentsModelConfig`
2007
2008 Model identifier and configuration.
19972009
19982010 - `name: string`
19992011
2000 - `url: string`
2001
2002 - `model: BetaManagedAgentsModelConfig`
2003
2004 Model identifier and configuration.
2005
2006 - `name: string`
2007
2008 - `skills: array of BetaManagedAgentsAnthropicSkill or BetaManagedAgentsCustomSkill`
2009
2010 - `BetaManagedAgentsAnthropicSkill object`
2011
2012 A resolved Anthropic-managed skill.
2013
2014 - `type: "anthropic"`
2015
2016 - `skill_id: string`
2017
2018 - `version: string`
2019
2020 - `BetaManagedAgentsCustomSkill object`
2021
2022 A resolved user-created custom skill.
2023
2024 - `type: "custom"`
2025
2026 - `skill_id: string`
2027
2028 - `version: string`
2029
2030 - `system: string or null`
2031
2032 - `tools: array of BetaManagedAgentsAgentToolset20260401 or BetaManagedAgentsMCPToolset or BetaManagedAgentsCustomTool`
2033
2034 - `BetaManagedAgentsAgentToolset20260401 object`
2035
2036 - `type: "agent_toolset_20260401"`
2037
2038 - `configs: array of BetaManagedAgentsAgentToolConfig`
2039
2040 - `BetaManagedAgentsBashToolConfig object`
2041
2042 Configuration for the bash tool.
2043
2044 - `type: "bash"`
2012 - `skills: array of BetaManagedAgentsAnthropicSkill or BetaManagedAgentsCustomSkill`
2013
2014 - `BetaManagedAgentsAnthropicSkill object`
2015
2016 A resolved Anthropic-managed skill.
2017
2018 - `type: "anthropic"`
2019
2020 - `skill_id: string`
2021
2022 - `version: string`
2023
2024 - `BetaManagedAgentsCustomSkill object`
2025
2026 A resolved user-created custom skill.
2027
2028 - `type: "custom"`
2029
2030 - `skill_id: string`
2031
2032 - `version: string`
2033
2034 - `system: string or null`
2035
2036 - `tools: array of BetaManagedAgentsAgentToolset20260401 or BetaManagedAgentsMCPToolset or BetaManagedAgentsCustomTool`
2037
2038 - `BetaManagedAgentsAgentToolset20260401 object`
2039
2040 - `type: "agent_toolset_20260401"`
2041
2042 - `configs: array of BetaManagedAgentsAgentToolConfig`
2043
2044 - `BetaManagedAgentsBashToolConfig object`
2045
2046 Configuration for the bash tool.
2047
2048 - `type: "bash"`
2049
2050 - `enabled: boolean`
2051
2052 - `name: "bash"`
2053
2054 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2055
2056 Permission policy for tool execution.
2057
2058 - `BetaManagedAgentsAlwaysAllowPolicy object`
2059
2060 Tool calls are automatically approved without user confirmation.
2061
2062 - `type: "always_allow"`
2063
2064 - `BetaManagedAgentsAlwaysAskPolicy object`
2065
2066 Tool calls require user confirmation before execution.
2067
2068 - `type: "always_ask"`
2069
2070 - `BetaManagedAgentsAutoPolicy object`
2071
2072 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2073
2074 - `type: "auto"`
2075
2076 - `BetaManagedAgentsEditToolConfig object`
2077
2078 Configuration for the edit tool.
2079
2080 - `type: "edit"`
2081
2082 - `enabled: boolean`
2083
2084 - `name: "edit"`
2085
2086 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2087
2088 Permission policy for tool execution.
2089
2090 - `BetaManagedAgentsAlwaysAllowPolicy object`
2091
2092 Tool calls are automatically approved without user confirmation.
2093
2094 - `BetaManagedAgentsAlwaysAskPolicy object`
2095
2096 Tool calls require user confirmation before execution.
2097
2098 - `BetaManagedAgentsAutoPolicy object`
2099
2100 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2101
2102 - `BetaManagedAgentsReadToolConfig object`
2103
2104 Configuration for the read tool.
2105
2106 - `type: "read"`
2107
2108 - `enabled: boolean`
2109
2110 - `name: "read"`
2111
2112 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2113
2114 Permission policy for tool execution.
2115
2116 - `BetaManagedAgentsAlwaysAllowPolicy object`
2117
2118 Tool calls are automatically approved without user confirmation.
2119
2120 - `BetaManagedAgentsAlwaysAskPolicy object`
2121
2122 Tool calls require user confirmation before execution.
2123
2124 - `BetaManagedAgentsAutoPolicy object`
2125
2126 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2127
2128 - `BetaManagedAgentsWriteToolConfig object`
2129
2130 Configuration for the write tool.
2131
2132 - `type: "write"`
2133
2134 - `enabled: boolean`
2135
2136 - `name: "write"`
2137
2138 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2139
2140 Permission policy for tool execution.
2141
2142 - `BetaManagedAgentsAlwaysAllowPolicy object`
2143
2144 Tool calls are automatically approved without user confirmation.
2145
2146 - `BetaManagedAgentsAlwaysAskPolicy object`
2147
2148 Tool calls require user confirmation before execution.
2149
2150 - `BetaManagedAgentsAutoPolicy object`
2151
2152 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2153
2154 - `BetaManagedAgentsGlobToolConfig object`
2155
2156 Configuration for the glob tool.
2157
2158 - `type: "glob"`
2159
2160 - `enabled: boolean`
2161
2162 - `name: "glob"`
2163
2164 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2165
2166 Permission policy for tool execution.
2167
2168 - `BetaManagedAgentsAlwaysAllowPolicy object`
2169
2170 Tool calls are automatically approved without user confirmation.
2171
2172 - `BetaManagedAgentsAlwaysAskPolicy object`
2173
2174 Tool calls require user confirmation before execution.
2175
2176 - `BetaManagedAgentsAutoPolicy object`
2177
2178 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2179
2180 - `BetaManagedAgentsGrepToolConfig object`
2181
2182 Configuration for the grep tool.
2183
2184 - `type: "grep"`
2185
2186 - `enabled: boolean`
2187
2188 - `name: "grep"`
2189
2190 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2191
2192 Permission policy for tool execution.
2193
2194 - `BetaManagedAgentsAlwaysAllowPolicy object`
2195
2196 Tool calls are automatically approved without user confirmation.
2197
2198 - `BetaManagedAgentsAlwaysAskPolicy object`
2199
2200 Tool calls require user confirmation before execution.
2201
2202 - `BetaManagedAgentsAutoPolicy object`
2203
2204 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2205
2206 - `BetaManagedAgentsWebFetchToolConfig object`
2207
2208 Configuration for the web_fetch tool.
2209
2210 - `type: "web_fetch"`
2211
2212 - `enabled: boolean`
2213
2214 - `name: "web_fetch"`
2215
2216 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2217
2218 Permission policy for tool execution.
2219
2220 - `BetaManagedAgentsAlwaysAllowPolicy object`
2221
2222 Tool calls are automatically approved without user confirmation.
2223
2224 - `BetaManagedAgentsAlwaysAskPolicy object`
2225
2226 Tool calls require user confirmation before execution.
2227
2228 - `BetaManagedAgentsAutoPolicy object`
2229
2230 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2231
2232 - `url_sources: BetaManagedAgentsWebFetchURLSources or null`
2233
2234 Which sources contribute URLs the tool may fetch, always in the object form. Null when not set, which allows every source.
2235
2236 - `client_tool_results: BetaManagedAgentsWebFetchURLSourceToolFilter or null`
2237
2238 Which custom tools' results contribute URLs that may be fetched. Null when not set, which allows every custom tool's results.
2239
2240 - `BetaManagedAgentsWebFetchURLSourceAll object`
2241
2242 Every URL from this source may be fetched. This is the default.
2243
2244 - `type: "all"`
2245
2246 - `BetaManagedAgentsWebFetchURLSourceNone object`
2247
2248 This source contributes no URLs that may be fetched.
2249
2250 - `type: "none"`
2251
2252 - `BetaManagedAgentsWebFetchURLSourceOnly object`
2253
2254 Only the named tools' results contribute URLs that may be fetched.
2255
2256 - `type: "only"`
2257
2258 - `tools: array of BetaManagedAgentsWebFetchURLSourceToolReference`
2259
2260 The tools whose results contribute. Between 1 and 128 entries, each with a different name. An empty list is rejected; use "none" to allow no tool's results.
2261
2262 - `type: "tool_reference"`
2263
2264 Must be "tool_reference".
2265
2266 - `name: string`
2267
2268 Name of the tool. Compared exactly, so upper and lower case letters are different.
2269
2270 minLength: 1, maxLength: 128
2271
2272 - `BetaManagedAgentsWebFetchURLSourceExcept object`
2273
2274 Every tool's results contribute URLs that may be fetched, except the named tools' results.
2275
2276 - `type: "except"`
2277
2278 - `tools: array of BetaManagedAgentsWebFetchURLSourceToolReference`
2279
2280 The tools whose results do not contribute. Between 1 and 128 entries, each with a different name. An empty list is rejected; use "all" to leave out no tool's results.
2281
2282 - `type: "tool_reference"`
2283
2284 Must be "tool_reference".
2285
2286 - `name: string`
2287
2288 Name of the tool. Compared exactly, so upper and lower case letters are different.
2289
2290 minLength: 1, maxLength: 128
2291
2292 - `server_tool_results: BetaManagedAgentsWebFetchURLSourceToolFilter or null`
2293
2294 Which of the web_search and web_fetch tools' results contribute URLs that may be fetched. Null when not set, which allows both.
2295
2296 - `user_input: BetaManagedAgentsWebFetchURLSourceUserInput or null`
2297
2298 Whether URLs in the text of user messages may be fetched. Null when not set, which allows them.
2299
2300 - `BetaManagedAgentsWebFetchURLSourceAll object`
2301
2302 Every URL from this source may be fetched. This is the default.
2303
2304 - `BetaManagedAgentsWebFetchURLSourceNone object`
2305
2306 This source contributes no URLs that may be fetched.
2307
2308 - `allowed_domains: optional array of string`
2309
2310 - `blocked_domains: optional array of string`
2311
2312 - `max_content_tokens: optional number or null`
2313
2314 format: int32
2315
2316 - `BetaManagedAgentsWebSearchToolConfig object`
2317
2318 Configuration for the web_search tool.
2319
2320 - `type: "web_search"`
2321
2322 - `enabled: boolean`
2323
2324 - `name: "web_search"`
2325
2326 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2327
2328 Permission policy for tool execution.
2329
2330 - `BetaManagedAgentsAlwaysAllowPolicy object`
2331
2332 Tool calls are automatically approved without user confirmation.
2333
2334 - `BetaManagedAgentsAlwaysAskPolicy object`
2335
2336 Tool calls require user confirmation before execution.
2337
2338 - `BetaManagedAgentsAutoPolicy object`
2339
2340 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2341
2342 - `allowed_domains: optional array of string`
2343
2344 - `blocked_domains: optional array of string`
2345
2346 - `user_location: optional BetaManagedAgentsUserLocation or null`
2347
2348 Approximate user location for search result localization.
2349
2350 - `type: "approximate"`
2351
2352 Location precision. Only "approximate" is supported.
2353
2354 - `city: optional string or null`
2355
2356 City name.
2357
2358 minLength: 1, maxLength: 255
2359
2360 - `country: optional string or null`
2361
2362 Two-letter ISO 3166-1 country code, uppercase.
2363
2364 - `region: optional string or null`
2365
2366 Region or state name.
2367
2368 minLength: 1, maxLength: 255
2369
2370 - `timezone: optional string or null`
2371
2372 IANA timezone identifier, e.g. "America/Los_Angeles".
2373
2374 minLength: 1, maxLength: 255
2375
2376 - `default_config: BetaManagedAgentsAgentToolsetDefaultConfig`
2377
2378 Resolved default configuration for agent tools.
20452379
20462380 - `enabled: boolean`
20472381
2048 - `name: "bash"`
2049
20502382 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
20512383
20522384 Permission policy for tool execution.
from line 2387
20552387
20562388 Tool calls are automatically approved without user confirmation.
20572389
2058 - `type: "always_allow"`
2059
20602390 - `BetaManagedAgentsAlwaysAskPolicy object`
20612391
20622392 Tool calls require user confirmation before execution.
20632393
2064 - `type: "always_ask"`
2065
20662394 - `BetaManagedAgentsAutoPolicy object`
20672395
20682396 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
20692397
2070 - `type: "auto"`
2071
2072 - `BetaManagedAgentsEditToolConfig object`
2073
2074 Configuration for the edit tool.
2075
2076 - `type: "edit"`
2398 - `BetaManagedAgentsMCPToolset object`
2399
2400 - `type: "mcp_toolset"`
2401
2402 - `configs: array of BetaManagedAgentsMCPToolConfig`
20772403
20782404 - `enabled: boolean`
20792405
2080 - `name: "edit"`
2406 - `name: string`
20812407
20822408 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
20832409
from line 2421
20952421
20962422 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
20972423
2098 - `BetaManagedAgentsReadToolConfig object`
2099
2100 Configuration for the read tool.
2101
2102 - `type: "read"`
2424 - `default_config: BetaManagedAgentsMCPToolsetDefaultConfig`
2425
2426 Resolved default configuration for all tools from an MCP server.
21032427
21042428 - `enabled: boolean`
21052429
2106 - `name: "read"`
2107
21082430 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
21092431
21102432 Permission policy for tool execution.
from line 2443
21212443
21222444 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
21232445
2124 - `BetaManagedAgentsWriteToolConfig object`
2125
2126 Configuration for the write tool.
2127
2128 - `type: "write"`
2129
2130 - `enabled: boolean`
2131
2132 - `name: "write"`
2133
2134 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2135
2136 Permission policy for tool execution.
2137
2138 - `BetaManagedAgentsAlwaysAllowPolicy object`
2139
2140 Tool calls are automatically approved without user confirmation.
2141
2142 - `BetaManagedAgentsAlwaysAskPolicy object`
2143
2144 Tool calls require user confirmation before execution.
2145
2146 - `BetaManagedAgentsAutoPolicy object`
2147
2148 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2149
2150 - `BetaManagedAgentsGlobToolConfig object`
2151
2152 Configuration for the glob tool.
2153
2154 - `type: "glob"`
2155
2156 - `enabled: boolean`
2157
2158 - `name: "glob"`
2159
2160 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2161
2162 Permission policy for tool execution.
2163
2164 - `BetaManagedAgentsAlwaysAllowPolicy object`
2165
2166 Tool calls are automatically approved without user confirmation.
2167
2168 - `BetaManagedAgentsAlwaysAskPolicy object`
2169
2170 Tool calls require user confirmation before execution.
2171
2172 - `BetaManagedAgentsAutoPolicy object`
2173
2174 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2175
2176 - `BetaManagedAgentsGrepToolConfig object`
2177
2178 Configuration for the grep tool.
2179
2180 - `type: "grep"`
2181
2182 - `enabled: boolean`
2183
2184 - `name: "grep"`
2185
2186 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2187
2188 Permission policy for tool execution.
2189
2190 - `BetaManagedAgentsAlwaysAllowPolicy object`
2191
2192 Tool calls are automatically approved without user confirmation.
2193
2194 - `BetaManagedAgentsAlwaysAskPolicy object`
2195
2196 Tool calls require user confirmation before execution.
2197
2198 - `BetaManagedAgentsAutoPolicy object`
2199
2200 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2201
2202 - `BetaManagedAgentsWebFetchToolConfig object`
2203
2204 Configuration for the web_fetch tool.
2205
2206 - `type: "web_fetch"`
2207
2208 - `enabled: boolean`
2209
2210 - `name: "web_fetch"`
2211
2212 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2213
2214 Permission policy for tool execution.
2215
2216 - `BetaManagedAgentsAlwaysAllowPolicy object`
2217
2218 Tool calls are automatically approved without user confirmation.
2219
2220 - `BetaManagedAgentsAlwaysAskPolicy object`
2221
2222 Tool calls require user confirmation before execution.
2223
2224 - `BetaManagedAgentsAutoPolicy object`
2225
2226 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2227
2228 - `url_sources: BetaManagedAgentsWebFetchURLSources or null`
2229
2230 Which sources contribute URLs the tool may fetch, always in the object form. Null when not set, which allows every source.
2231
2232 - `client_tool_results: BetaManagedAgentsWebFetchURLSourceToolFilter or null`
2233
2234 Which custom tools' results contribute URLs that may be fetched. Null when not set, which allows every custom tool's results.
2235
2236 - `BetaManagedAgentsWebFetchURLSourceAll object`
2237
2238 Every URL from this source may be fetched. This is the default.
2239
2240 - `type: "all"`
2241
2242 - `BetaManagedAgentsWebFetchURLSourceNone object`
2243
2244 This source contributes no URLs that may be fetched.
2245
2246 - `type: "none"`
2247
2248 - `BetaManagedAgentsWebFetchURLSourceOnly object`
2249
2250 Only the named tools' results contribute URLs that may be fetched.
2251
2252 - `type: "only"`
2253
2254 - `tools: array of BetaManagedAgentsWebFetchURLSourceToolReference`
2255
2256 The tools whose results contribute. Between 1 and 128 entries, each with a different name. An empty list is rejected; use "none" to allow no tool's results.
2257
2258 - `type: "tool_reference"`
2259
2260 Must be "tool_reference".
2261
2262 - `name: string`
2263
2264 Name of the tool. Compared exactly, so upper and lower case letters are different.
2265
2266 minLength: 1, maxLength: 128
2267
2268 - `BetaManagedAgentsWebFetchURLSourceExcept object`
2269
2270 Every tool's results contribute URLs that may be fetched, except the named tools' results.
2271
2272 - `type: "except"`
2273
2274 - `tools: array of BetaManagedAgentsWebFetchURLSourceToolReference`
2275
2276 The tools whose results do not contribute. Between 1 and 128 entries, each with a different name. An empty list is rejected; use "all" to leave out no tool's results.
2277
2278 - `type: "tool_reference"`
2279
2280 Must be "tool_reference".
2281
2282 - `name: string`
2283
2284 Name of the tool. Compared exactly, so upper and lower case letters are different.
2285
2286 minLength: 1, maxLength: 128
2287
2288 - `server_tool_results: BetaManagedAgentsWebFetchURLSourceToolFilter or null`
2289
2290 Which of the web_search and web_fetch tools' results contribute URLs that may be fetched. Null when not set, which allows both.
2291
2292 - `user_input: BetaManagedAgentsWebFetchURLSourceUserInput or null`
2293
2294 Whether URLs in the text of user messages may be fetched. Null when not set, which allows them.
2295
2296 - `BetaManagedAgentsWebFetchURLSourceAll object`
2297
2298 Every URL from this source may be fetched. This is the default.
2299
2300 - `BetaManagedAgentsWebFetchURLSourceNone object`
2301
2302 This source contributes no URLs that may be fetched.
2303
2304 - `allowed_domains: optional array of string`
2305
2306 - `blocked_domains: optional array of string`
2307
2308 - `max_content_tokens: optional number or null`
2309
2310 format: int32
2311
2312 - `BetaManagedAgentsWebSearchToolConfig object`
2313
2314 Configuration for the web_search tool.
2315
2316 - `type: "web_search"`
2317
2318 - `enabled: boolean`
2319
2320 - `name: "web_search"`
2321
2322 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2323
2324 Permission policy for tool execution.
2325
2326 - `BetaManagedAgentsAlwaysAllowPolicy object`
2327
2328 Tool calls are automatically approved without user confirmation.
2329
2330 - `BetaManagedAgentsAlwaysAskPolicy object`
2331
2332 Tool calls require user confirmation before execution.
2333
2334 - `BetaManagedAgentsAutoPolicy object`
2335
2336 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2337
2338 - `allowed_domains: optional array of string`
2339
2340 - `blocked_domains: optional array of string`
2341
2342 - `user_location: optional BetaManagedAgentsUserLocation or null`
2343
2344 Approximate user location for search result localization.
2345
2346 - `type: "approximate"`
2347
2348 Location precision. Only "approximate" is supported.
2349
2350 - `city: optional string or null`
2351
2352 City name.
2353
2354 minLength: 1, maxLength: 255
2355
2356 - `country: optional string or null`
2357
2358 Two-letter ISO 3166-1 country code, uppercase.
2359
2360 - `region: optional string or null`
2361
2362 Region or state name.
2363
2364 minLength: 1, maxLength: 255
2365
2366 - `timezone: optional string or null`
2367
2368 IANA timezone identifier, e.g. "America/Los_Angeles".
2369
2370 minLength: 1, maxLength: 255
2371
2372 - `default_config: BetaManagedAgentsAgentToolsetDefaultConfig`
2373
2374 Resolved default configuration for agent tools.
2375
2376 - `enabled: boolean`
2377
2378 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2379
2380 Permission policy for tool execution.
2381
2382 - `BetaManagedAgentsAlwaysAllowPolicy object`
2383
2384 Tool calls are automatically approved without user confirmation.
2385
2386 - `BetaManagedAgentsAlwaysAskPolicy object`
2387
2388 Tool calls require user confirmation before execution.
2389
2390 - `BetaManagedAgentsAutoPolicy object`
2391
2392 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2393
2394 - `BetaManagedAgentsMCPToolset object`
2395
2396 - `type: "mcp_toolset"`
2397
2398 - `configs: array of BetaManagedAgentsMCPToolConfig`
2399
2400 - `enabled: boolean`
2446 - `mcp_server_name: string`
2447
2448 - `BetaManagedAgentsCustomTool object`
2449
2450 A custom tool as returned in API responses.
2451
2452 - `type: "custom"`
2453
2454 - `description: string`
2455
2456 - `input_schema: BetaManagedAgentsCustomToolInputSchema`
2457
2458 JSON Schema for custom tool input parameters.
2459
2460 - `type: "object"`
2461
2462 - `properties: optional map[unknown] or null`
2463
2464 - `required: optional array of string or null`
24012465
24022466 - `name: string`
24032467
2404 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2405
2406 Permission policy for tool execution.
2407
2408 - `BetaManagedAgentsAlwaysAllowPolicy object`
2409
2410 Tool calls are automatically approved without user confirmation.
2411
2412 - `BetaManagedAgentsAlwaysAskPolicy object`
2413
2414 Tool calls require user confirmation before execution.
2415
2416 - `BetaManagedAgentsAutoPolicy object`
2417
2418 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2419
2420 - `default_config: BetaManagedAgentsMCPToolsetDefaultConfig`
2421
2422 Resolved default configuration for all tools from an MCP server.
2423
2424 - `enabled: boolean`
2425
2426 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
2427
2428 Permission policy for tool execution.
2429
2430 - `BetaManagedAgentsAlwaysAllowPolicy object`
2431
2432 Tool calls are automatically approved without user confirmation.
2433
2434 - `BetaManagedAgentsAlwaysAskPolicy object`
2435
2436 Tool calls require user confirmation before execution.
2437
2438 - `BetaManagedAgentsAutoPolicy object`
2439
2440 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
2441
2442 - `mcp_server_name: string`
2443
2444 - `BetaManagedAgentsCustomTool object`
2445
2446 A custom tool as returned in API responses.
2447
2448 - `type: "custom"`
2449
2450 - `description: string`
2451
2452 - `input_schema: BetaManagedAgentsCustomToolInputSchema`
2453
2454 JSON Schema for custom tool input parameters.
2455
2456 - `type: "object"`
2457
2458 - `properties: optional map[unknown] or null`
2459
2460 - `required: optional array of string or null`
2468 - `version: number`
2469
2470 format: int32
2471
2472 - `BetaManagedAgentsAdvisor object`
2473
2474 Platform advisor roster entry: a model the session's primary thread may consult mid-turn.
2475
2476 - `type: "advisor"`
2477
2478 - `model: string`
2479
2480 The advisor model id.
2481
2482 - `BetaManagedAgentsSessionMultiagent20261001 object`
2483
2484 Resolved multiagent configuration with three members, as copied to the `session` at creation.
2485
2486 - `type: "multiagent_20261001"`
2487
2488 - `advisor: BetaManagedAgentsMultiagentAdvisor`
2489
2490 Whether the session's primary thread can consult an advisor model.
2491
2492 - `BetaManagedAgentsMultiagentAdvisorEnabled object`
2493
2494 The session's primary thread can consult `model` mid-turn.
2495
2496 - `type: "enabled"`
2497
2498 - `model: string`
2499
2500 The advisor model id.
2501
2502 - `BetaManagedAgentsMultiagentAdvisorDisabled object`
2503
2504 The agent has no advisor.
2505
2506 - `type: "disabled"`
2507
2508 - `subagents: BetaManagedAgentsSessionMultiagentSubagents`
2509
2510 Whether the agent can spawn session threads.
2511
2512 - `BetaManagedAgentsSessionMultiagentSubagentsEnabled object`
2513
2514 The agent can spawn session threads.
2515
2516 - `type: "enabled"`
2517
2518 - `inline_agents: BetaManagedAgentsMultiagentInlineAgents`
2519
2520 Whether the agent can define inline agents, which are not saved, when it spawns session threads.
2521
2522 - `BetaManagedAgentsMultiagentInlineAgentsEnabled object`
2523
2524 The agent can define inline agents.
2525
2526 - `type: "enabled"`
2527
2528 - `BetaManagedAgentsMultiagentInlineAgentsDisabled object`
2529
2530 The agent cannot define inline agents.
2531
2532 - `type: "disabled"`
2533
2534 - `predefined_agents: array of BetaManagedAgentsSessionThreadAgent`
2535
2536 Full `agent` definitions of the predefined agents, which are saved agents that this agent can spawn as session threads.
2537
2538 - `type: "agent"`
2539
2540 - `id: string`
2541
2542 - `description: string or null`
2543
2544 - `mcp_servers: array of BetaManagedAgentsMCPServerURLDefinition`
2545
2546 - `model: BetaManagedAgentsModelConfig`
2547
2548 Model identifier and configuration.
24612549
24622550 - `name: string`
24632551
2464 - `version: number`
2465
2466 format: int32
2467
2468 - `BetaManagedAgentsAdvisor object`
2469
2470 Platform advisor roster entry: a model the session's primary thread may consult mid-turn.
2471
2472 - `type: "advisor"`
2473
2474 - `model: string`
2475
2476 The advisor model id.
2552 - `skills: array of BetaManagedAgentsAnthropicSkill or BetaManagedAgentsCustomSkill`
2553
2554 - `system: string or null`
2555
2556 - `tools: array of BetaManagedAgentsAgentToolset20260401 or BetaManagedAgentsMCPToolset or BetaManagedAgentsCustomTool`
2557
2558 - `version: number`
2559
2560 format: int32
2561
2562 - `BetaManagedAgentsMultiagentSubagentsDisabled object`
2563
2564 The agent cannot spawn session threads.
2565
2566 - `type: "disabled"`
2567
2568 - `workflows: BetaManagedAgentsSessionMultiagentWorkflows`
2569
2570 Whether the agent can start workflow runs.
2571
2572 - `BetaManagedAgentsSessionMultiagentWorkflowsEnabled object`
2573
2574 The agent can start workflow runs.
2575
2576 - `type: "enabled"`
2577
2578 - `inline_agents: BetaManagedAgentsMultiagentInlineAgents`
2579
2580 Whether a run's plan can define inline agents, which are not saved.
2581
2582 - `predefined_agents: array of BetaManagedAgentsSessionThreadAgent`
2583
2584 Full `agent` definitions of the predefined agents, which are saved agents that a run's plan can use.
2585
2586 - `type: "agent"`
2587
2588 - `id: string`
2589
2590 - `description: string or null`
2591
2592 - `mcp_servers: array of BetaManagedAgentsMCPServerURLDefinition`
2593
2594 - `model: BetaManagedAgentsModelConfig`
2595
2596 Model identifier and configuration.
2597
2598 - `name: string`
2599
2600 - `skills: array of BetaManagedAgentsAnthropicSkill or BetaManagedAgentsCustomSkill`
2601
2602 - `system: string or null`
2603
2604 - `tools: array of BetaManagedAgentsAgentToolset20260401 or BetaManagedAgentsMCPToolset or BetaManagedAgentsCustomTool`
2605
2606 - `version: number`
2607
2608 format: int32
2609
2610 - `BetaManagedAgentsMultiagentWorkflowsDisabled object`
2611
2612 The agent cannot start workflow runs.
2613
2614 - `type: "disabled"`
24772615
24782616 - `name: string`
24792617
from line 2778
26402778 - `budget: optional BetaManagedAgentsBudgetLimit or null`
26412779
26422780 The session's configured budget at the snapshot time, or null when the session has no budget.
2781
2782 - `BetaManagedAgentsWorkflowRunCreatedEvent object`
2783
2784 A workflow run was created. A workflow run is background work that the session's agent starts. Emitted once per run, before the run's other `workflow_run.*` events.
2785
2786 - `type: "workflow_run.created"`
2787
2788 - `id: string`
2789
2790 Unique identifier for this event.
2791
2792 - `description: string or null`
2793
2794 Description that the agent gave the run, passed on as written, or `null` if it gave none.
2795
2796 - `name: string`
2797
2798 Name that the agent gave the run, passed on as written, or a name that the server assigned.
2799
2800 - `phases: array of BetaManagedAgentsWorkflowRunPhase`
2801
2802 The phases that the run's plan declares, in the plan's order. Can be empty.
2803
2804 - `id: string`
2805
2806 Unique identifier for the phase.
2807
2808 - `description: string or null`
2809
2810 Description that the agent gave the phase, passed on as written, or `null` if it gave none.
2811
2812 - `name: string`
2813
2814 Name that the agent gave the phase, passed on as written.
2815
2816 - `processed_at: string`
2817
2818 Timestamp when this event was processed.
2819
2820 format: date-time
2821
2822 - `workflow_run_id: string`
2823
2824 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
2825
2826 - `BetaManagedAgentsWorkflowRunStatusEndedEvent object`
2827
2828 A workflow run ended. Emitted once per run, as the last of the run's `workflow_run.*` events.
2829
2830 - `type: "workflow_run.status_ended"`
2831
2832 - `id: string`
2833
2834 Unique identifier for this event.
2835
2836 - `processed_at: string`
2837
2838 Timestamp when this event was processed.
2839
2840 format: date-time
2841
2842 - `result: BetaManagedAgentsWorkflowRunResult`
2843
2844 How the run ended.
2845
2846 - `BetaManagedAgentsWorkflowRunResultCompleted object`
2847
2848 The run's plan, a program that the agent wrote, finished. This does not say whether the work succeeded.
2849
2850 - `type: "completed"`
2851
2852 - `BetaManagedAgentsWorkflowRunResultError object`
2853
2854 The run failed or reached its time limit.
2855
2856 - `type: "error"`
2857
2858 - `error: BetaManagedAgentsWorkflowRunError`
2859
2860 Why the run did not finish.
2861
2862 - `BetaManagedAgentsTimeoutWorkflowRunError object`
2863
2864 The run reached its time limit.
2865
2866 - `type: "timeout_error"`
2867
2868 - `message: string`
2869
2870 Short explanation written by the server. It never contains content from the run or its agents.
2871
2872 - `BetaManagedAgentsProgramWorkflowRunError object`
2873
2874 The plan, a program that the agent wrote, failed, or the server refused it.
2875
2876 - `type: "program_error"`
2877
2878 - `message: string`
2879
2880 Short explanation written by the server. It never contains content from the run or its agents.
2881
2882 - `BetaManagedAgentsUnknownWorkflowRunError object`
2883
2884 A failure that has no type of its own.
2885
2886 - `type: "unknown_error"`
2887
2888 - `message: string`
2889
2890 Short explanation written by the server. It never contains content from the run or its agents.
2891
2892 - `BetaManagedAgentsThreadLimitWorkflowRunError object`
2893
2894 The run exceeded the limit on the number of threads that a run can create.
2895
2896 - `type: "thread_limit_error"`
2897
2898 - `message: string`
2899
2900 Short explanation written by the server. It never contains content from the run or its agents.
2901
2902 - `BetaManagedAgentsMaxWorkflowRunsWorkflowRunError object`
2903
2904 No run was created, because the session was at its limit of open workflow runs, which are runs that have not ended. Only `workflow_run.error` carries this type.
2905
2906 - `type: "max_workflow_runs_error"`
2907
2908 - `message: string`
2909
2910 Short explanation written by the server. It never contains content from the run or its agents.
2911
2912 - `BetaManagedAgentsWorkflowRunResultStopped object`
2913
2914 The agent stopped the run.
2915
2916 - `type: "stopped"`
2917
2918 - `workflow_run_id: string`
2919
2920 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
2921
2922 - `BetaManagedAgentsWorkflowRunPhaseStartedEvent object`
2923
2924 A workflow run's plan entered a phase.
2925
2926 - `type: "workflow_run.phase_started"`
2927
2928 - `id: string`
2929
2930 Unique identifier for this event.
2931
2932 - `processed_at: string`
2933
2934 Timestamp when this event was processed.
2935
2936 format: date-time
2937
2938 - `workflow_run_id: string`
2939
2940 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
2941
2942 - `workflow_run_phase_id: string`
2943
2944 Identifier of the phase, as in `phases` on the run's `workflow_run.created` event.
2945
2946 - `BetaManagedAgentsWorkflowRunPhaseEndedEvent object`
2947
2948 A workflow run's plan left a phase, or the run's end closed it. Emitted once for every `workflow_run.phase_started` event, before the run's `workflow_run.status_ended` event. The event does not say whether the plan finished the phase's work, or why it left.
2949
2950 - `type: "workflow_run.phase_ended"`
2951
2952 - `id: string`
2953
2954 Unique identifier for this event.
2955
2956 - `phase_started_id: string`
2957
2958 Identifier of the `workflow_run.phase_started` event that opened the phase.
2959
2960 - `processed_at: string`
2961
2962 Timestamp when this event was processed.
2963
2964 format: date-time
2965
2966 - `workflow_run_id: string`
2967
2968 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
2969
2970 - `workflow_run_phase_id: string`
2971
2972 Identifier of the phase, as in `phases` on the run's `workflow_run.created` event.
2973
2974 - `BetaManagedAgentsWorkflowRunStatusRunningEvent object`
2975
2976 A workflow run is running. Emitted when the run starts to execute, and each time it resumes after being idle. A run that starts idle emits `workflow_run.status_idle` first.
2977
2978 - `type: "workflow_run.status_running"`
2979
2980 - `id: string`
2981
2982 Unique identifier for this event.
2983
2984 - `processed_at: string`
2985
2986 Timestamp when this event was processed.
2987
2988 format: date-time
2989
2990 - `workflow_run_id: string`
2991
2992 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
2993
2994 - `BetaManagedAgentsWorkflowRunStatusIdleEvent object`
2995
2996 A workflow run is idle. Emitted each time the run goes idle, whatever the cause. If the run ends while idle, no `workflow_run.status_running` comes between this event and its `workflow_run.status_ended`.
2997
2998 - `type: "workflow_run.status_idle"`
2999
3000 - `id: string`
3001
3002 Unique identifier for this event.
3003
3004 - `processed_at: string`
3005
3006 Timestamp when this event was processed.
3007
3008 format: date-time
3009
3010 - `workflow_run_id: string`
3011
3012 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
3013
3014 - `BetaManagedAgentsWorkflowRunErrorEvent object`
3015
3016 A workflow run met an error, or an error kept a run from being created. A run that ends with a `result.type` of `error` emits this event before its `workflow_run.status_ended`, with the same `error`.
3017
3018 - `type: "workflow_run.error"`
3019
3020 - `id: string`
3021
3022 Unique identifier for this event.
3023
3024 - `error: BetaManagedAgentsWorkflowRunError`
3025
3026 Why the run did not finish, or was not created.
3027
3028 - `processed_at: string`
3029
3030 Timestamp when this event was processed.
3031
3032 format: date-time
3033
3034 - `workflow_run_id: string or null`
3035
3036 Identifier of the run that met the error, or `null` when the error kept a run from being created.
26433037
26443038- `next_page: optional string or null`
26453039
from line 3220
28263220
28273221### Returns
28283222
2829- `BetaManagedAgentsStreamSessionThreadEvents = BetaManagedAgentsUserMessageEvent or BetaManagedAgentsUserInterruptEvent or BetaManagedAgentsUserToolConfirmationEvent or 34 more`
3223- `BetaManagedAgentsStreamSessionThreadEvents = BetaManagedAgentsUserMessageEvent or BetaManagedAgentsUserInterruptEvent or BetaManagedAgentsUserToolConfirmationEvent or 41 more`
28303224
28313225 Server-sent event in a single thread's stream.
28323226
from line 3460
30663460
30673461 - `custom_tool_use_id: string`
30683462
3069 The id of the `agent.custom_tool_use` event this result corresponds to, which can be found in the last `session.status_idle` [event's](https://platform.claude.com/docs/en/api/beta/sessions/events/list#beta_managed_agents_session_requires_action.event_ids) `stop_reason.event_ids` field.
3463 The id of the `agent.custom_tool_use` event this result corresponds to. It is also listed in the last `session.status_idle` [event's](https://platform.claude.com/docs/en/api/beta/sessions/events/list#beta_managed_agents_session_requires_action.event_ids) `stop_reason.event_ids` field.
30703464
30713465 - `content: optional array of BetaManagedAgentsTextBlock or BetaManagedAgentsImageBlock or BetaManagedAgentsDocumentBlock or BetaManagedAgentsSearchResultBlock`
30723466
from line 3532
31383532
31393533 - `BetaManagedAgentsAgentCustomToolUseEvent object`
31403534
3141 Event emitted when the agent calls a custom tool. The session goes idle until the client sends a `user.custom_tool_result` event with the result.
3535 Event emitted when the agent calls a custom tool. The session goes idle until the client sends a `user.custom_tool_result` event with the result. The client can send it as soon as this event arrives, without waiting for `session.status_idle`.
31423536
31433537 - `type: "agent.custom_tool_use"`
31443538
from line 4474
40804474
40814475 Public `sthr_` ID of the newly created thread.
40824476
4477 - `workflow_run_id: string or null`
4478
4479 Identifier of the workflow run that created the thread, or `null` for any other thread.
4480
40834481 - `BetaManagedAgentsSpanOutcomeEvaluationStartEvent object`
40844482
40854483 Emitted when an outcome evaluation cycle begins.
from line 4978
45804978
45814979 - `"claude-haiku-4-5"`
45824980
4583 Fastest model with near-frontier intelligence
4584
45854981 - `"claude-haiku-4-5-20251001"`
45864982
4587 Fastest model with near-frontier intelligence
4588
45894983 - `"claude-opus-4-5"`
45904984
45914985 Powerful intelligence for long-running agents and coding
from line 5048
46545048
46555049 - `"fast"`
46565050
4657 - `multiagent: BetaManagedAgentsSessionMultiagentCoordinator or null`
5051 - `multiagent: BetaManagedAgentsSessionMultiagent or null`
46585052
46595053 Resolved multiagent orchestration configuration. Null when the agent is single-threaded.
46605054
4661 - `type: "coordinator"`
4662
4663 - `agents: array of BetaManagedAgentsSessionThreadAgent or BetaManagedAgentsAdvisor`
4664
4665 Full `agent` definitions the coordinator may spawn as session threads.
4666
4667 - `BetaManagedAgentsSessionThreadAgent object`
4668
4669 Resolved `agent` definition for a single `session_thread`. Snapshot of the agent at thread creation time. The multiagent roster is not repeated here; read it from `Session.agent`.
4670
4671 - `type: "agent"`
4672
4673 - `id: string`
4674
4675 - `description: string or null`
4676
4677 - `mcp_servers: array of BetaManagedAgentsMCPServerURLDefinition`
4678
4679 - `type: "url"`
5055 - `BetaManagedAgentsSessionMultiagentCoordinator object`
5056
5057 Resolved coordinator topology with full agent definitions for each roster member.
5058
5059 - `type: "coordinator"`
5060
5061 - `agents: array of BetaManagedAgentsSessionThreadAgent or BetaManagedAgentsAdvisor`
5062
5063 Full `agent` definitions the coordinator may spawn as session threads.
5064
5065 - `BetaManagedAgentsSessionThreadAgent object`
5066
5067 Resolved `agent` definition for a single `session_thread`. Snapshot of the agent at thread creation time. The multiagent roster is not repeated here; read it from `Session.agent`.
5068
5069 - `type: "agent"`
5070
5071 - `id: string`
5072
5073 - `description: string or null`
5074
5075 - `mcp_servers: array of BetaManagedAgentsMCPServerURLDefinition`
5076
5077 - `type: "url"`
5078
5079 - `name: string`
5080
5081 - `url: string`
5082
5083 - `model: BetaManagedAgentsModelConfig`
5084
5085 Model identifier and configuration.
46805086
46815087 - `name: string`
46825088
4683 - `url: string`
4684
4685 - `model: BetaManagedAgentsModelConfig`
4686
4687 Model identifier and configuration.
4688
4689 - `name: string`
4690
4691 - `skills: array of BetaManagedAgentsAnthropicSkill or BetaManagedAgentsCustomSkill`
4692
4693 - `BetaManagedAgentsAnthropicSkill object`
4694
4695 A resolved Anthropic-managed skill.
4696
4697 - `type: "anthropic"`
4698
4699 - `skill_id: string`
4700
4701 - `version: string`
4702
4703 - `BetaManagedAgentsCustomSkill object`
4704
4705 A resolved user-created custom skill.
4706
4707 - `type: "custom"`
4708
4709 - `skill_id: string`
4710
4711 - `version: string`
4712
4713 - `system: string or null`
4714
4715 - `tools: array of BetaManagedAgentsAgentToolset20260401 or BetaManagedAgentsMCPToolset or BetaManagedAgentsCustomTool`
4716
4717 - `BetaManagedAgentsAgentToolset20260401 object`
4718
4719 - `type: "agent_toolset_20260401"`
4720
4721 - `configs: array of BetaManagedAgentsAgentToolConfig`
4722
4723 - `BetaManagedAgentsBashToolConfig object`
4724
4725 Configuration for the bash tool.
4726
4727 - `type: "bash"`
5089 - `skills: array of BetaManagedAgentsAnthropicSkill or BetaManagedAgentsCustomSkill`
5090
5091 - `BetaManagedAgentsAnthropicSkill object`
5092
5093 A resolved Anthropic-managed skill.
5094
5095 - `type: "anthropic"`
5096
5097 - `skill_id: string`
5098
5099 - `version: string`
5100
5101 - `BetaManagedAgentsCustomSkill object`
5102
5103 A resolved user-created custom skill.
5104
5105 - `type: "custom"`
5106
5107 - `skill_id: string`
5108
5109 - `version: string`
5110
5111 - `system: string or null`
5112
5113 - `tools: array of BetaManagedAgentsAgentToolset20260401 or BetaManagedAgentsMCPToolset or BetaManagedAgentsCustomTool`
5114
5115 - `BetaManagedAgentsAgentToolset20260401 object`
5116
5117 - `type: "agent_toolset_20260401"`
5118
5119 - `configs: array of BetaManagedAgentsAgentToolConfig`
5120
5121 - `BetaManagedAgentsBashToolConfig object`
5122
5123 Configuration for the bash tool.
5124
5125 - `type: "bash"`
5126
5127 - `enabled: boolean`
5128
5129 - `name: "bash"`
5130
5131 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5132
5133 Permission policy for tool execution.
5134
5135 - `BetaManagedAgentsAlwaysAllowPolicy object`
5136
5137 Tool calls are automatically approved without user confirmation.
5138
5139 - `type: "always_allow"`
5140
5141 - `BetaManagedAgentsAlwaysAskPolicy object`
5142
5143 Tool calls require user confirmation before execution.
5144
5145 - `type: "always_ask"`
5146
5147 - `BetaManagedAgentsAutoPolicy object`
5148
5149 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5150
5151 - `type: "auto"`
5152
5153 - `BetaManagedAgentsEditToolConfig object`
5154
5155 Configuration for the edit tool.
5156
5157 - `type: "edit"`
5158
5159 - `enabled: boolean`
5160
5161 - `name: "edit"`
5162
5163 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5164
5165 Permission policy for tool execution.
5166
5167 - `BetaManagedAgentsAlwaysAllowPolicy object`
5168
5169 Tool calls are automatically approved without user confirmation.
5170
5171 - `BetaManagedAgentsAlwaysAskPolicy object`
5172
5173 Tool calls require user confirmation before execution.
5174
5175 - `BetaManagedAgentsAutoPolicy object`
5176
5177 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5178
5179 - `BetaManagedAgentsReadToolConfig object`
5180
5181 Configuration for the read tool.
5182
5183 - `type: "read"`
5184
5185 - `enabled: boolean`
5186
5187 - `name: "read"`
5188
5189 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5190
5191 Permission policy for tool execution.
5192
5193 - `BetaManagedAgentsAlwaysAllowPolicy object`
5194
5195 Tool calls are automatically approved without user confirmation.
5196
5197 - `BetaManagedAgentsAlwaysAskPolicy object`
5198
5199 Tool calls require user confirmation before execution.
5200
5201 - `BetaManagedAgentsAutoPolicy object`
5202
5203 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5204
5205 - `BetaManagedAgentsWriteToolConfig object`
5206
5207 Configuration for the write tool.
5208
5209 - `type: "write"`
5210
5211 - `enabled: boolean`
5212
5213 - `name: "write"`
5214
5215 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5216
5217 Permission policy for tool execution.
5218
5219 - `BetaManagedAgentsAlwaysAllowPolicy object`
5220
5221 Tool calls are automatically approved without user confirmation.
5222
5223 - `BetaManagedAgentsAlwaysAskPolicy object`
5224
5225 Tool calls require user confirmation before execution.
5226
5227 - `BetaManagedAgentsAutoPolicy object`
5228
5229 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5230
5231 - `BetaManagedAgentsGlobToolConfig object`
5232
5233 Configuration for the glob tool.
5234
5235 - `type: "glob"`
5236
5237 - `enabled: boolean`
5238
5239 - `name: "glob"`
5240
5241 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5242
5243 Permission policy for tool execution.
5244
5245 - `BetaManagedAgentsAlwaysAllowPolicy object`
5246
5247 Tool calls are automatically approved without user confirmation.
5248
5249 - `BetaManagedAgentsAlwaysAskPolicy object`
5250
5251 Tool calls require user confirmation before execution.
5252
5253 - `BetaManagedAgentsAutoPolicy object`
5254
5255 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5256
5257 - `BetaManagedAgentsGrepToolConfig object`
5258
5259 Configuration for the grep tool.
5260
5261 - `type: "grep"`
5262
5263 - `enabled: boolean`
5264
5265 - `name: "grep"`
5266
5267 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5268
5269 Permission policy for tool execution.
5270
5271 - `BetaManagedAgentsAlwaysAllowPolicy object`
5272
5273 Tool calls are automatically approved without user confirmation.
5274
5275 - `BetaManagedAgentsAlwaysAskPolicy object`
5276
5277 Tool calls require user confirmation before execution.
5278
5279 - `BetaManagedAgentsAutoPolicy object`
5280
5281 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5282
5283 - `BetaManagedAgentsWebFetchToolConfig object`
5284
5285 Configuration for the web_fetch tool.
5286
5287 - `type: "web_fetch"`
5288
5289 - `enabled: boolean`
5290
5291 - `name: "web_fetch"`
5292
5293 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5294
5295 Permission policy for tool execution.
5296
5297 - `BetaManagedAgentsAlwaysAllowPolicy object`
5298
5299 Tool calls are automatically approved without user confirmation.
5300
5301 - `BetaManagedAgentsAlwaysAskPolicy object`
5302
5303 Tool calls require user confirmation before execution.
5304
5305 - `BetaManagedAgentsAutoPolicy object`
5306
5307 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5308
5309 - `url_sources: BetaManagedAgentsWebFetchURLSources or null`
5310
5311 Which sources contribute URLs the tool may fetch, always in the object form. Null when not set, which allows every source.
5312
5313 - `client_tool_results: BetaManagedAgentsWebFetchURLSourceToolFilter or null`
5314
5315 Which custom tools' results contribute URLs that may be fetched. Null when not set, which allows every custom tool's results.
5316
5317 - `BetaManagedAgentsWebFetchURLSourceAll object`
5318
5319 Every URL from this source may be fetched. This is the default.
5320
5321 - `type: "all"`
5322
5323 - `BetaManagedAgentsWebFetchURLSourceNone object`
5324
5325 This source contributes no URLs that may be fetched.
5326
5327 - `type: "none"`
5328
5329 - `BetaManagedAgentsWebFetchURLSourceOnly object`
5330
5331 Only the named tools' results contribute URLs that may be fetched.
5332
5333 - `type: "only"`
5334
5335 - `tools: array of BetaManagedAgentsWebFetchURLSourceToolReference`
5336
5337 The tools whose results contribute. Between 1 and 128 entries, each with a different name. An empty list is rejected; use "none" to allow no tool's results.
5338
5339 - `type: "tool_reference"`
5340
5341 Must be "tool_reference".
5342
5343 - `name: string`
5344
5345 Name of the tool. Compared exactly, so upper and lower case letters are different.
5346
5347 minLength: 1, maxLength: 128
5348
5349 - `BetaManagedAgentsWebFetchURLSourceExcept object`
5350
5351 Every tool's results contribute URLs that may be fetched, except the named tools' results.
5352
5353 - `type: "except"`
5354
5355 - `tools: array of BetaManagedAgentsWebFetchURLSourceToolReference`
5356
5357 The tools whose results do not contribute. Between 1 and 128 entries, each with a different name. An empty list is rejected; use "all" to leave out no tool's results.
5358
5359 - `type: "tool_reference"`
5360
5361 Must be "tool_reference".
5362
5363 - `name: string`
5364
5365 Name of the tool. Compared exactly, so upper and lower case letters are different.
5366
5367 minLength: 1, maxLength: 128
5368
5369 - `server_tool_results: BetaManagedAgentsWebFetchURLSourceToolFilter or null`
5370
5371 Which of the web_search and web_fetch tools' results contribute URLs that may be fetched. Null when not set, which allows both.
5372
5373 - `user_input: BetaManagedAgentsWebFetchURLSourceUserInput or null`
5374
5375 Whether URLs in the text of user messages may be fetched. Null when not set, which allows them.
5376
5377 - `BetaManagedAgentsWebFetchURLSourceAll object`
5378
5379 Every URL from this source may be fetched. This is the default.
5380
5381 - `BetaManagedAgentsWebFetchURLSourceNone object`
5382
5383 This source contributes no URLs that may be fetched.
5384
5385 - `allowed_domains: optional array of string`
5386
5387 - `blocked_domains: optional array of string`
5388
5389 - `max_content_tokens: optional number or null`
5390
5391 format: int32
5392
5393 - `BetaManagedAgentsWebSearchToolConfig object`
5394
5395 Configuration for the web_search tool.
5396
5397 - `type: "web_search"`
5398
5399 - `enabled: boolean`
5400
5401 - `name: "web_search"`
5402
5403 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5404
5405 Permission policy for tool execution.
5406
5407 - `BetaManagedAgentsAlwaysAllowPolicy object`
5408
5409 Tool calls are automatically approved without user confirmation.
5410
5411 - `BetaManagedAgentsAlwaysAskPolicy object`
5412
5413 Tool calls require user confirmation before execution.
5414
5415 - `BetaManagedAgentsAutoPolicy object`
5416
5417 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5418
5419 - `allowed_domains: optional array of string`
5420
5421 - `blocked_domains: optional array of string`
5422
5423 - `user_location: optional BetaManagedAgentsUserLocation or null`
5424
5425 Approximate user location for search result localization.
5426
5427 - `type: "approximate"`
5428
5429 Location precision. Only "approximate" is supported.
5430
5431 - `city: optional string or null`
5432
5433 City name.
5434
5435 minLength: 1, maxLength: 255
5436
5437 - `country: optional string or null`
5438
5439 Two-letter ISO 3166-1 country code, uppercase.
5440
5441 - `region: optional string or null`
5442
5443 Region or state name.
5444
5445 minLength: 1, maxLength: 255
5446
5447 - `timezone: optional string or null`
5448
5449 IANA timezone identifier, e.g. "America/Los_Angeles".
5450
5451 minLength: 1, maxLength: 255
5452
5453 - `default_config: BetaManagedAgentsAgentToolsetDefaultConfig`
5454
5455 Resolved default configuration for agent tools.
47285456
47295457 - `enabled: boolean`
47305458
4731 - `name: "bash"`
4732
47335459 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
47345460
47355461 Permission policy for tool execution.
from line 5464
47385464
47395465 Tool calls are automatically approved without user confirmation.
47405466
4741 - `type: "always_allow"`
4742
47435467 - `BetaManagedAgentsAlwaysAskPolicy object`
47445468
47455469 Tool calls require user confirmation before execution.
47465470
4747 - `type: "always_ask"`
4748
47495471 - `BetaManagedAgentsAutoPolicy object`
47505472
47515473 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
47525474
4753 - `type: "auto"`
4754
4755 - `BetaManagedAgentsEditToolConfig object`
4756
4757 Configuration for the edit tool.
4758
4759 - `type: "edit"`
5475 - `BetaManagedAgentsMCPToolset object`
5476
5477 - `type: "mcp_toolset"`
5478
5479 - `configs: array of BetaManagedAgentsMCPToolConfig`
47605480
47615481 - `enabled: boolean`
47625482
4763 - `name: "edit"`
5483 - `name: string`
47645484
47655485 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
47665486
from line 5498
47785498
47795499 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
47805500
4781 - `BetaManagedAgentsReadToolConfig object`
4782
4783 Configuration for the read tool.
4784
4785 - `type: "read"`
5501 - `default_config: BetaManagedAgentsMCPToolsetDefaultConfig`
5502
5503 Resolved default configuration for all tools from an MCP server.
47865504
47875505 - `enabled: boolean`
47885506
4789 - `name: "read"`
4790
47915507 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
47925508
47935509 Permission policy for tool execution.
from line 5520
48045520
48055521 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
48065522
4807 - `BetaManagedAgentsWriteToolConfig object`
4808
4809 Configuration for the write tool.
4810
4811 - `type: "write"`
4812
4813 - `enabled: boolean`
4814
4815 - `name: "write"`
4816
4817 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
4818
4819 Permission policy for tool execution.
4820
4821 - `BetaManagedAgentsAlwaysAllowPolicy object`
4822
4823 Tool calls are automatically approved without user confirmation.
4824
4825 - `BetaManagedAgentsAlwaysAskPolicy object`
4826
4827 Tool calls require user confirmation before execution.
4828
4829 - `BetaManagedAgentsAutoPolicy object`
4830
4831 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
4832
4833 - `BetaManagedAgentsGlobToolConfig object`
4834
4835 Configuration for the glob tool.
4836
4837 - `type: "glob"`
4838
4839 - `enabled: boolean`
4840
4841 - `name: "glob"`
4842
4843 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
4844
4845 Permission policy for tool execution.
4846
4847 - `BetaManagedAgentsAlwaysAllowPolicy object`
4848
4849 Tool calls are automatically approved without user confirmation.
4850
4851 - `BetaManagedAgentsAlwaysAskPolicy object`
4852
4853 Tool calls require user confirmation before execution.
4854
4855 - `BetaManagedAgentsAutoPolicy object`
4856
4857 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
4858
4859 - `BetaManagedAgentsGrepToolConfig object`
4860
4861 Configuration for the grep tool.
4862
4863 - `type: "grep"`
4864
4865 - `enabled: boolean`
4866
4867 - `name: "grep"`
4868
4869 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
4870
4871 Permission policy for tool execution.
4872
4873 - `BetaManagedAgentsAlwaysAllowPolicy object`
4874
4875 Tool calls are automatically approved without user confirmation.
4876
4877 - `BetaManagedAgentsAlwaysAskPolicy object`
4878
4879 Tool calls require user confirmation before execution.
4880
4881 - `BetaManagedAgentsAutoPolicy object`
4882
4883 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
4884
4885 - `BetaManagedAgentsWebFetchToolConfig object`
4886
4887 Configuration for the web_fetch tool.
4888
4889 - `type: "web_fetch"`
4890
4891 - `enabled: boolean`
4892
4893 - `name: "web_fetch"`
4894
4895 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
4896
4897 Permission policy for tool execution.
4898
4899 - `BetaManagedAgentsAlwaysAllowPolicy object`
4900
4901 Tool calls are automatically approved without user confirmation.
4902
4903 - `BetaManagedAgentsAlwaysAskPolicy object`
4904
4905 Tool calls require user confirmation before execution.
4906
4907 - `BetaManagedAgentsAutoPolicy object`
4908
4909 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
4910
4911 - `url_sources: BetaManagedAgentsWebFetchURLSources or null`
4912
4913 Which sources contribute URLs the tool may fetch, always in the object form. Null when not set, which allows every source.
4914
4915 - `client_tool_results: BetaManagedAgentsWebFetchURLSourceToolFilter or null`
4916
4917 Which custom tools' results contribute URLs that may be fetched. Null when not set, which allows every custom tool's results.
4918
4919 - `BetaManagedAgentsWebFetchURLSourceAll object`
4920
4921 Every URL from this source may be fetched. This is the default.
4922
4923 - `type: "all"`
4924
4925 - `BetaManagedAgentsWebFetchURLSourceNone object`
4926
4927 This source contributes no URLs that may be fetched.
4928
4929 - `type: "none"`
4930
4931 - `BetaManagedAgentsWebFetchURLSourceOnly object`
4932
4933 Only the named tools' results contribute URLs that may be fetched.
4934
4935 - `type: "only"`
4936
4937 - `tools: array of BetaManagedAgentsWebFetchURLSourceToolReference`
4938
4939 The tools whose results contribute. Between 1 and 128 entries, each with a different name. An empty list is rejected; use "none" to allow no tool's results.
4940
4941 - `type: "tool_reference"`
4942
4943 Must be "tool_reference".
4944
4945 - `name: string`
4946
4947 Name of the tool. Compared exactly, so upper and lower case letters are different.
4948
4949 minLength: 1, maxLength: 128
4950
4951 - `BetaManagedAgentsWebFetchURLSourceExcept object`
4952
4953 Every tool's results contribute URLs that may be fetched, except the named tools' results.
4954
4955 - `type: "except"`
4956
4957 - `tools: array of BetaManagedAgentsWebFetchURLSourceToolReference`
4958
4959 The tools whose results do not contribute. Between 1 and 128 entries, each with a different name. An empty list is rejected; use "all" to leave out no tool's results.
4960
4961 - `type: "tool_reference"`
4962
4963 Must be "tool_reference".
4964
4965 - `name: string`
4966
4967 Name of the tool. Compared exactly, so upper and lower case letters are different.
4968
4969 minLength: 1, maxLength: 128
4970
4971 - `server_tool_results: BetaManagedAgentsWebFetchURLSourceToolFilter or null`
4972
4973 Which of the web_search and web_fetch tools' results contribute URLs that may be fetched. Null when not set, which allows both.
4974
4975 - `user_input: BetaManagedAgentsWebFetchURLSourceUserInput or null`
4976
4977 Whether URLs in the text of user messages may be fetched. Null when not set, which allows them.
4978
4979 - `BetaManagedAgentsWebFetchURLSourceAll object`
4980
4981 Every URL from this source may be fetched. This is the default.
4982
4983 - `BetaManagedAgentsWebFetchURLSourceNone object`
4984
4985 This source contributes no URLs that may be fetched.
4986
4987 - `allowed_domains: optional array of string`
4988
4989 - `blocked_domains: optional array of string`
4990
4991 - `max_content_tokens: optional number or null`
4992
4993 format: int32
4994
4995 - `BetaManagedAgentsWebSearchToolConfig object`
4996
4997 Configuration for the web_search tool.
4998
4999 - `type: "web_search"`
5000
5001 - `enabled: boolean`
5002
5003 - `name: "web_search"`
5004
5005 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5006
5007 Permission policy for tool execution.
5008
5009 - `BetaManagedAgentsAlwaysAllowPolicy object`
5010
5011 Tool calls are automatically approved without user confirmation.
5012
5013 - `BetaManagedAgentsAlwaysAskPolicy object`
5014
5015 Tool calls require user confirmation before execution.
5016
5017 - `BetaManagedAgentsAutoPolicy object`
5018
5019 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5020
5021 - `allowed_domains: optional array of string`
5022
5023 - `blocked_domains: optional array of string`
5024
5025 - `user_location: optional BetaManagedAgentsUserLocation or null`
5026
5027 Approximate user location for search result localization.
5028
5029 - `type: "approximate"`
5030
5031 Location precision. Only "approximate" is supported.
5032
5033 - `city: optional string or null`
5034
5035 City name.
5036
5037 minLength: 1, maxLength: 255
5038
5039 - `country: optional string or null`
5040
5041 Two-letter ISO 3166-1 country code, uppercase.
5042
5043 - `region: optional string or null`
5044
5045 Region or state name.
5046
5047 minLength: 1, maxLength: 255
5048
5049 - `timezone: optional string or null`
5050
5051 IANA timezone identifier, e.g. "America/Los_Angeles".
5052
5053 minLength: 1, maxLength: 255
5054
5055 - `default_config: BetaManagedAgentsAgentToolsetDefaultConfig`
5056
5057 Resolved default configuration for agent tools.
5058
5059 - `enabled: boolean`
5060
5061 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5062
5063 Permission policy for tool execution.
5064
5065 - `BetaManagedAgentsAlwaysAllowPolicy object`
5066
5067 Tool calls are automatically approved without user confirmation.
5068
5069 - `BetaManagedAgentsAlwaysAskPolicy object`
5070
5071 Tool calls require user confirmation before execution.
5072
5073 - `BetaManagedAgentsAutoPolicy object`
5074
5075 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5076
5077 - `BetaManagedAgentsMCPToolset object`
5078
5079 - `type: "mcp_toolset"`
5080
5081 - `configs: array of BetaManagedAgentsMCPToolConfig`
5082
5083 - `enabled: boolean`
5523 - `mcp_server_name: string`
5524
5525 - `BetaManagedAgentsCustomTool object`
5526
5527 A custom tool as returned in API responses.
5528
5529 - `type: "custom"`
5530
5531 - `description: string`
5532
5533 - `input_schema: BetaManagedAgentsCustomToolInputSchema`
5534
5535 JSON Schema for custom tool input parameters.
5536
5537 - `type: "object"`
5538
5539 - `properties: optional map[unknown] or null`
5540
5541 - `required: optional array of string or null`
50845542
50855543 - `name: string`
50865544
5087 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5088
5089 Permission policy for tool execution.
5090
5091 - `BetaManagedAgentsAlwaysAllowPolicy object`
5092
5093 Tool calls are automatically approved without user confirmation.
5094
5095 - `BetaManagedAgentsAlwaysAskPolicy object`
5096
5097 Tool calls require user confirmation before execution.
5098
5099 - `BetaManagedAgentsAutoPolicy object`
5100
5101 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5102
5103 - `default_config: BetaManagedAgentsMCPToolsetDefaultConfig`
5104
5105 Resolved default configuration for all tools from an MCP server.
5106
5107 - `enabled: boolean`
5108
5109 - `permission_policy: BetaManagedAgentsAlwaysAllowPolicy or BetaManagedAgentsAlwaysAskPolicy or BetaManagedAgentsAutoPolicy`
5110
5111 Permission policy for tool execution.
5112
5113 - `BetaManagedAgentsAlwaysAllowPolicy object`
5114
5115 Tool calls are automatically approved without user confirmation.
5116
5117 - `BetaManagedAgentsAlwaysAskPolicy object`
5118
5119 Tool calls require user confirmation before execution.
5120
5121 - `BetaManagedAgentsAutoPolicy object`
5122
5123 The server decides each tool call individually: it judges, from the tool, its input, and the session content so far, whether the call is safe to execute or high-risk, and evaluates it to allow when judged safe and to deny when judged high-risk. A call the server cannot reach a judgement on evaluates to ask.
5124
5125 - `mcp_server_name: string`
5126
5127 - `BetaManagedAgentsCustomTool object`
5128
5129 A custom tool as returned in API responses.
5130
5131 - `type: "custom"`
5132
5133 - `description: string`
5134
5135 - `input_schema: BetaManagedAgentsCustomToolInputSchema`
5136
5137 JSON Schema for custom tool input parameters.
5138
5139 - `type: "object"`
5140
5141 - `properties: optional map[unknown] or null`
5142
5143 - `required: optional array of string or null`
5545 - `version: number`
5546
5547 format: int32
5548
5549 - `BetaManagedAgentsAdvisor object`
5550
5551 Platform advisor roster entry: a model the session's primary thread may consult mid-turn.
5552
5553 - `type: "advisor"`
5554
5555 - `model: string`
5556
5557 The advisor model id.
5558
5559 - `BetaManagedAgentsSessionMultiagent20261001 object`
5560
5561 Resolved multiagent configuration with three members, as copied to the `session` at creation.
5562
5563 - `type: "multiagent_20261001"`
5564
5565 - `advisor: BetaManagedAgentsMultiagentAdvisor`
5566
5567 Whether the session's primary thread can consult an advisor model.
5568
5569 - `BetaManagedAgentsMultiagentAdvisorEnabled object`
5570
5571 The session's primary thread can consult `model` mid-turn.
5572
5573 - `type: "enabled"`
5574
5575 - `model: string`
5576
5577 The advisor model id.
5578
5579 - `BetaManagedAgentsMultiagentAdvisorDisabled object`
5580
5581 The agent has no advisor.
5582
5583 - `type: "disabled"`
5584
5585 - `subagents: BetaManagedAgentsSessionMultiagentSubagents`
5586
5587 Whether the agent can spawn session threads.
5588
5589 - `BetaManagedAgentsSessionMultiagentSubagentsEnabled object`
5590
5591 The agent can spawn session threads.
5592
5593 - `type: "enabled"`
5594
5595 - `inline_agents: BetaManagedAgentsMultiagentInlineAgents`
5596
5597 Whether the agent can define inline agents, which are not saved, when it spawns session threads.
5598
5599 - `BetaManagedAgentsMultiagentInlineAgentsEnabled object`
5600
5601 The agent can define inline agents.
5602
5603 - `type: "enabled"`
5604
5605 - `BetaManagedAgentsMultiagentInlineAgentsDisabled object`
5606
5607 The agent cannot define inline agents.
5608
5609 - `type: "disabled"`
5610
5611 - `predefined_agents: array of BetaManagedAgentsSessionThreadAgent`
5612
5613 Full `agent` definitions of the predefined agents, which are saved agents that this agent can spawn as session threads.
5614
5615 - `type: "agent"`
5616
5617 - `id: string`
5618
5619 - `description: string or null`
5620
5621 - `mcp_servers: array of BetaManagedAgentsMCPServerURLDefinition`
5622
5623 - `model: BetaManagedAgentsModelConfig`
5624
5625 Model identifier and configuration.
51445626
51455627 - `name: string`
51465628
5147 - `version: number`
5148
5149 format: int32
5150
5151 - `BetaManagedAgentsAdvisor object`
5152
5153 Platform advisor roster entry: a model the session's primary thread may consult mid-turn.
5154
5155 - `type: "advisor"`
5156
5157 - `model: string`
5158
5159 The advisor model id.
5629 - `skills: array of BetaManagedAgentsAnthropicSkill or BetaManagedAgentsCustomSkill`
5630
5631 - `system: string or null`
5632
5633 - `tools: array of BetaManagedAgentsAgentToolset20260401 or BetaManagedAgentsMCPToolset or BetaManagedAgentsCustomTool`
5634
5635 - `version: number`
5636
5637 format: int32
5638
5639 - `BetaManagedAgentsMultiagentSubagentsDisabled object`
5640
5641 The agent cannot spawn session threads.
5642
5643 - `type: "disabled"`
5644
5645 - `workflows: BetaManagedAgentsSessionMultiagentWorkflows`
5646
5647 Whether the agent can start workflow runs.
5648
5649 - `BetaManagedAgentsSessionMultiagentWorkflowsEnabled object`
5650
5651 The agent can start workflow runs.
5652
5653 - `type: "enabled"`
5654
5655 - `inline_agents: BetaManagedAgentsMultiagentInlineAgents`
5656
5657 Whether a run's plan can define inline agents, which are not saved.
5658
5659 - `predefined_agents: array of BetaManagedAgentsSessionThreadAgent`
5660
5661 Full `agent` definitions of the predefined agents, which are saved agents that a run's plan can use.
5662
5663 - `type: "agent"`
5664
5665 - `id: string`
5666
5667 - `description: string or null`
5668
5669 - `mcp_servers: array of BetaManagedAgentsMCPServerURLDefinition`
5670
5671 - `model: BetaManagedAgentsModelConfig`
5672
5673 Model identifier and configuration.
5674
5675 - `name: string`
5676
5677 - `skills: array of BetaManagedAgentsAnthropicSkill or BetaManagedAgentsCustomSkill`
5678
5679 - `system: string or null`
5680
5681 - `tools: array of BetaManagedAgentsAgentToolset20260401 or BetaManagedAgentsMCPToolset or BetaManagedAgentsCustomTool`
5682
5683 - `version: number`
5684
5685 format: int32
5686
5687 - `BetaManagedAgentsMultiagentWorkflowsDisabled object`
5688
5689 The agent cannot start workflow runs.
5690
5691 - `type: "disabled"`
51605692
51615693 - `name: string`
51625694
from line 5905
53735905 - `budget: optional BetaManagedAgentsBudgetLimit or null`
53745906
53755907 The session's configured budget at the snapshot time, or null when the session has no budget.
5908
5909 - `BetaManagedAgentsWorkflowRunCreatedEvent object`
5910
5911 A workflow run was created. A workflow run is background work that the session's agent starts. Emitted once per run, before the run's other `workflow_run.*` events.
5912
5913 - `type: "workflow_run.created"`
5914
5915 - `id: string`
5916
5917 Unique identifier for this event.
5918
5919 - `description: string or null`
5920
5921 Description that the agent gave the run, passed on as written, or `null` if it gave none.
5922
5923 - `name: string`
5924
5925 Name that the agent gave the run, passed on as written, or a name that the server assigned.
5926
5927 - `phases: array of BetaManagedAgentsWorkflowRunPhase`
5928
5929 The phases that the run's plan declares, in the plan's order. Can be empty.
5930
5931 - `id: string`
5932
5933 Unique identifier for the phase.
5934
5935 - `description: string or null`
5936
5937 Description that the agent gave the phase, passed on as written, or `null` if it gave none.
5938
5939 - `name: string`
5940
5941 Name that the agent gave the phase, passed on as written.
5942
5943 - `processed_at: string`
5944
5945 Timestamp when this event was processed.
5946
5947 format: date-time
5948
5949 - `workflow_run_id: string`
5950
5951 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
5952
5953 - `BetaManagedAgentsWorkflowRunStatusEndedEvent object`
5954
5955 A workflow run ended. Emitted once per run, as the last of the run's `workflow_run.*` events.
5956
5957 - `type: "workflow_run.status_ended"`
5958
5959 - `id: string`
5960
5961 Unique identifier for this event.
5962
5963 - `processed_at: string`
5964
5965 Timestamp when this event was processed.
5966
5967 format: date-time
5968
5969 - `result: BetaManagedAgentsWorkflowRunResult`
5970
5971 How the run ended.
5972
5973 - `BetaManagedAgentsWorkflowRunResultCompleted object`
5974
5975 The run's plan, a program that the agent wrote, finished. This does not say whether the work succeeded.
5976
5977 - `type: "completed"`
5978
5979 - `BetaManagedAgentsWorkflowRunResultError object`
5980
5981 The run failed or reached its time limit.
5982
5983 - `type: "error"`
5984
5985 - `error: BetaManagedAgentsWorkflowRunError`
5986
5987 Why the run did not finish.
5988
5989 - `BetaManagedAgentsTimeoutWorkflowRunError object`
5990
5991 The run reached its time limit.
5992
5993 - `type: "timeout_error"`
5994
5995 - `message: string`
5996
5997 Short explanation written by the server. It never contains content from the run or its agents.
5998
5999 - `BetaManagedAgentsProgramWorkflowRunError object`
6000
6001 The plan, a program that the agent wrote, failed, or the server refused it.
6002
6003 - `type: "program_error"`
6004
6005 - `message: string`
6006
6007 Short explanation written by the server. It never contains content from the run or its agents.
6008
6009 - `BetaManagedAgentsUnknownWorkflowRunError object`
6010
6011 A failure that has no type of its own.
6012
6013 - `type: "unknown_error"`
6014
6015 - `message: string`
6016
6017 Short explanation written by the server. It never contains content from the run or its agents.
6018
6019 - `BetaManagedAgentsThreadLimitWorkflowRunError object`
6020
6021 The run exceeded the limit on the number of threads that a run can create.
6022
6023 - `type: "thread_limit_error"`
6024
6025 - `message: string`
6026
6027 Short explanation written by the server. It never contains content from the run or its agents.
6028
6029 - `BetaManagedAgentsMaxWorkflowRunsWorkflowRunError object`
6030
6031 No run was created, because the session was at its limit of open workflow runs, which are runs that have not ended. Only `workflow_run.error` carries this type.
6032
6033 - `type: "max_workflow_runs_error"`
6034
6035 - `message: string`
6036
6037 Short explanation written by the server. It never contains content from the run or its agents.
6038
6039 - `BetaManagedAgentsWorkflowRunResultStopped object`
6040
6041 The agent stopped the run.
6042
6043 - `type: "stopped"`
6044
6045 - `workflow_run_id: string`
6046
6047 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
6048
6049 - `BetaManagedAgentsWorkflowRunPhaseStartedEvent object`
6050
6051 A workflow run's plan entered a phase.
6052
6053 - `type: "workflow_run.phase_started"`
6054
6055 - `id: string`
6056
6057 Unique identifier for this event.
6058
6059 - `processed_at: string`
6060
6061 Timestamp when this event was processed.
6062
6063 format: date-time
6064
6065 - `workflow_run_id: string`
6066
6067 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
6068
6069 - `workflow_run_phase_id: string`
6070
6071 Identifier of the phase, as in `phases` on the run's `workflow_run.created` event.
6072
6073 - `BetaManagedAgentsWorkflowRunPhaseEndedEvent object`
6074
6075 A workflow run's plan left a phase, or the run's end closed it. Emitted once for every `workflow_run.phase_started` event, before the run's `workflow_run.status_ended` event. The event does not say whether the plan finished the phase's work, or why it left.
6076
6077 - `type: "workflow_run.phase_ended"`
6078
6079 - `id: string`
6080
6081 Unique identifier for this event.
6082
6083 - `phase_started_id: string`
6084
6085 Identifier of the `workflow_run.phase_started` event that opened the phase.
6086
6087 - `processed_at: string`
6088
6089 Timestamp when this event was processed.
6090
6091 format: date-time
6092
6093 - `workflow_run_id: string`
6094
6095 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
6096
6097 - `workflow_run_phase_id: string`
6098
6099 Identifier of the phase, as in `phases` on the run's `workflow_run.created` event.
6100
6101 - `BetaManagedAgentsWorkflowRunStatusRunningEvent object`
6102
6103 A workflow run is running. Emitted when the run starts to execute, and each time it resumes after being idle. A run that starts idle emits `workflow_run.status_idle` first.
6104
6105 - `type: "workflow_run.status_running"`
6106
6107 - `id: string`
6108
6109 Unique identifier for this event.
6110
6111 - `processed_at: string`
6112
6113 Timestamp when this event was processed.
6114
6115 format: date-time
6116
6117 - `workflow_run_id: string`
6118
6119 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
6120
6121 - `BetaManagedAgentsWorkflowRunStatusIdleEvent object`
6122
6123 A workflow run is idle. Emitted each time the run goes idle, whatever the cause. If the run ends while idle, no `workflow_run.status_running` comes between this event and its `workflow_run.status_ended`.
6124
6125 - `type: "workflow_run.status_idle"`
6126
6127 - `id: string`
6128
6129 Unique identifier for this event.
6130
6131 - `processed_at: string`
6132
6133 Timestamp when this event was processed.
6134
6135 format: date-time
6136
6137 - `workflow_run_id: string`
6138
6139 Identifier of the run. The same value is on all of the run's `workflow_run.*` events.
6140
6141 - `BetaManagedAgentsWorkflowRunErrorEvent object`
6142
6143 A workflow run met an error, or an error kept a run from being created. A run that ends with a `result.type` of `error` emits this event before its `workflow_run.status_ended`, with the same `error`.
6144
6145 - `type: "workflow_run.error"`
6146
6147 - `id: string`
6148
6149 Unique identifier for this event.
6150
6151 - `error: BetaManagedAgentsWorkflowRunError`
6152
6153 Why the run did not finish, or was not created.
6154
6155 - `processed_at: string`
6156
6157 Timestamp when this event was processed.
6158
6159 format: date-time
6160
6161 - `workflow_run_id: string or null`
6162
6163 Identifier of the run that met the error, or `null` when the error kept a run from being created.
53766164
53776165### Example
53786166
53796167
No line in this hunk matches that.