postbag
Two local coding-agent sessions, Claude Code or Codex, write letters to each other through each agent's native input. CLI and MCP tools, stdlib core, no daemon.
Install / Use
claude mcp add parasxos -- npx -y github:parasxos/postbagIf the server publishes to npm under a different name, use that package instead — check the repo README.
MCP Server
Model Context Protocol server
Quality Score
Category
AutomationSupported Platforms
Our assessment of postbag
postbag scores 74/100 on our quality scale, 2622nd of 2,895 Automation skills we index.
Its MCP Server is 4.7 KB long, split into 7 sections with 1 code example: a solid amount of guidance for an agent.
It has 10 GitHub stars, so there is little community track record yet; judge it on its content.
Maintenance, license and trust
- The repository was last updated 7 days ago, so postbag is actively maintained.
- It is released under the MIT license, a permissive license that allows use, modification and commercial use with attribution.
- Its trust signals score 97/100, with no cautions. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.
postbag compared with similar skills
All 4 of these similar skills score higher than postbag; compare them before choosing.
| Skill | Score | Stars | Updated | Format |
|---|---|---|---|---|
| postbag (this skill)by parasxos | 74 | 10 | 7d ago | MCP Server |
| Agent-Reachby Panniantong | 100 | 95.7k | 3d ago | CLAUDE.md |
| headroomby headroomlabs-ai | 100 | 75.0k | today | CLAUDE.md |
| CowAgentby zhayujie | 100 | 47.3k | today | CLAUDE.md |
| Scraplingby D4Vinci | 100 | 86.8k | today | MCP Server |
Frequently asked questions
- How do I install postbag?
- Run
claude mcp add parasxos -- npx -y github:parasxos/postbag. The install tabs above show the steps for each supported agent. - Which AI agents does postbag work with?
- It is written for Claude Code, Claude Desktop and OpenAI Codex, as a MCP Server file. Other agents that read the same format can often use it too.
- Is postbag safe to use?
- It is MIT-licensed and scores 97/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
- Is postbag still maintained?
- The repository was last updated 7 days ago, so postbag is actively maintained.
Skill content
View source on GitHubpostbag
Let Codex and Claude Code talk to each other.
A local MCP server. Ask Codex to review what Claude Code just wrote, or the other way round. The answer arrives as a new turn. No copying text between windows.
</div>
Install
Needs Python 3.10 or later, Claude Code and a recent Codex CLI with
codex queue. Run both sessions on one machine with the same postbag version.
Delivery is tested on macOS.
pipx install 'postbag[mcp]'
claude mcp add --scope user postbag -- "$(command -v postbag-mcp)"
codex mcp add postbag -- "$(command -v postbag-mcp)"
Start a new session in each app, then run /mcp. postbag should list five
tools. For uvx and other setups, see
MCP setup.
Or ask your agent: Install postbag using llms-install.md.
Quick start
A bag is a named conversation. Both agents join the same one. Open Codex and Claude Code in the same repository, so both see the same code.
- In Codex:
Join postbag bag "review" as codex.
- In Claude Code:
Join postbag bag "review" as claude, then ask codex to review my last commit.
Codex joins first so Claude Code has someone to write to. Approve the postbag tools when asked. Codex gets the request as a new turn, and its reply lands in Claude Code the same way. Either side can end with a final letter, which asks for no reply.
What to use it for
- Cross review. Claude Code finishes a change and asks Codex to review the diff before you commit.
- Split work. Codex writes the tests while Claude Code writes the implementation. They compare notes by letter.
- Second opinion. When one agent is stuck on a bug, it asks the other for a fresh read.
Tools
Your agents call these. You just ask in plain words.
| Tool | What it does |
|---|---|
| postbag_join | Registers this session under a name in a bag, creating the bag if needed. |
| postbag_send | Sends a letter to a name in the bag. final: true asks for no reply. |
| postbag_read | Pages through the bag's history. |
| postbag_bags | Lists local bags with letter counts and registered names. |
| postbag_leave | Withdraws this session from the bag. History stays. |
How it works
- Native delivery. Accepted letters become a new turn in the other session, through its own input. postbag adds no delivery daemon, polling or hooks.
- No setup prompts. Every letter ends with how to reply, or asks for no reply.
- One shared history. Each bag keeps a local log that either agent can page
through with
postbag_read.
A successful send confirms submission and recording. Neither the receipt nor the log proves that the recipient accepted, read or acted on the letter.
Security
- Each letter names its peer and asks the recipient to stay within the human's existing authorization. This is model guidance, not a security boundary. Connect only sessions you trust with the task.
- There is no letter limit. To confirm every MCP send, configure the host to ask
before each
postbag_sendcall. - Ledgers under
~/.postbag/hold Claude Code inbox tokens. New files use mode0600. Never commit or share them.
See SECURITY.md.
MCP setup · Concept · Changelog · Contributing · MIT
Related Skills
Agent-Reach
95.7kGive your AI agent eyes to see the entire internet. Read & search Twitter, Reddit, YouTube, GitHub, Bilibili, XiaoHongShu — one CLI, zero API fees.
headroom
75.0kCompress tool outputs, logs, files, and RAG chunks before they reach the LLM. 20% fewer tokens for coding agents, 60-95% fewer tokens for JSON, same answers. Library, proxy, MCP server.
CowAgent
47.3kOpen-source personal AI assistant & Agent Harness. Plans tasks, runs tools and skills, self-evolves with memory and knowledge. Multi-agent, multi-model, multi-channel. Lightweight, extensible, one-line install.
Scrapling
86.8k🕷️ An adaptive Web Scraping framework that handles everything from a single request to a full-scale crawl! Don't be shy, join here: https://discord.gg/EMgGbDceNQ and follow here for daily tips and tricks: https://x.com/Scrapling_dev
Languages
Trust signals
From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.
