tilde deploy. The flow is the same for direct and sidecar agents. Only the target differs.
Click to zoom
What your pipeline needs
- A registration credential, stored as a CI secret. Expose it only to trusted deploy jobs. See Registration credentials.
- Network access to the gateway. For a self-hosted gateway, use a runner inside your network.
- The agent ID of the agent you are releasing.
Register a deployment
tilde deploy loads your agent’s entry module without starting it, finds the prompts, tools, and skills your code declares, and registers them with the new deployment. It prints the deployment token.
TILDE_URL, TILDE_API_KEY, and TILDE_AGENT_ID, or pass them as options. Useful options:
Run it after you build, in the same environment as your agent’s dependencies, so framework adapters can read your agent. See Prompts.
Registration credentials
- Cloud and Enterprise
- OSS
Use a management API key that holds the
deploy action on the agent. A deployer role is enough.How a release works
- Push or merge to your release branch.
- Build and test the agent image: your code, your framework, the core SDK, and its adapter. Node and Python images follow the same steps.
- Push the image to your private registry.
- Register the deployment. Your pipeline runs
tilde deploy. It registers the release with its prompts, tools, and skills. Tilde returns a deployment ID and a one-time token. The release is registered but offline. - Deploy. Your pipeline stores the token in your secret manager and rolls out the new release with your usual tooling.
- Agent replicas start. They dial the gateway with the token and send ready heartbeats. The deployment becomes serving.
- Routing moves traffic. New conversations go to the new release according to your routing mode. Existing conversations stay pinned to their original deployment, so keep the old release running until they drain.