CLI
Skills, MCP and repository trust
Customize Cortex CLI while keeping executable repository content disabled by default.
cortex trust status --workspace .cortex trust set --workspace . --agents-md allow --hooks deny --skills allow --compatibility deny --plugins denycortex skills list --workspace .cortex mcp listUser skills are loaded from the protected user configuration area. Repository
skills under .cortex/skills/ require explicit trust for their current
revision. AGENTS.md, hooks, compatibility content and plugins have independent
allow or deny decisions.
Organization-managed MCP servers are listed and inspected through Cortex. Login, logout, add and remove remain subject to policy. Provider and MCP credentials stay server-side; the CLI does not persist them in repository configuration.

