<!--
Sitemap:
- [Installation](/installation)
- [Upgrading](/upgrading): Version-specific steps for upgrading an existing Bento install.
- [Concepts](/concepts)
- [Build your first pipeline](/tutorials/pipeline-args)
- [Target a specific issue or PR from a URL](/tutorials/url-targeting)
- [Keep state across runs](/tutorials/pipeline-state)
- [Fire a pipeline on a schedule or on demand](/tutorials/schedule-and-fire)
- [Deploy a box to Railway](/tutorials/deploy-to-railway)
- [Operate a hosted daemon](/tutorials/operate-a-hosted-daemon)
- [Configuration](/configuration)
- [Members](/members)
- [Knowledge base](/knowledge-base/)
- [Method and delivery](/knowledge-base/modes)
- [Config](/knowledge-base/config)
- [MCP](/knowledge-base/mcp)
- [Pipeline configuration reference](/pipelines/config)
- [Filters](/pipelines/filters)
- [Triggers](/triggers/)
- [GitHub trigger](/triggers/github)
- [Linear trigger](/triggers/linear)
- [Webhook trigger](/triggers/webhook)
- [Schedule trigger](/triggers/schedule)
- [Manual trigger](/triggers/manual)
- [Traces](/pipelines/traces)
- [Slack](/integrations/slack)
- [Public access](/public-access)
- [Context engineering](/context-engineering)
- [Best practices](/best-practices)
- [Troubleshooting](/troubleshooting)
- [Architecture](/architecture/vision)
- [Workspaces](/workspaces)
- [Authentication](/authentication)
- [Identity](/identity)
- [Security](/security)
- [References](/references)
- [Changelog](/changelog): Bento release history.
- [CLI reference](/cli/)
- [Setup](/cli/setup)
- [Secrets](/cli/secrets)
- [Lifecycle](/cli/lifecycle)
- [Sandbox image](/cli/image)
- [Sandboxes](/cli/sandbox)
- [Observability](/cli/observability)
- [Diagnostics](/cli/diagnostics)
- [Triggers](/cli/triggers)
- [Workbench](/cli/workbench)
- [Auth](/cli/auth)
- [Knowledge](/cli/knowledge)
- [Evals](/cli/evals)
- [Bento](/index)
- [Runtime wrapper](/architecture/runtime-wrapper)
- [Skill evolve](/architecture/skill-evolve)
-->

# CLI reference

The `bento` CLI manages the daemon lifecycle and provides operational visibility.

| Section | Commands |
|---------|----------|
| [Setup](/cli/setup) | `init`, `update`, `setup gh`, `setup linear`, `setup webhook`, `setup codex`, `setup claude` |
| [Secrets](/cli/secrets) | `secrets key --generate/--import/--rotate`, `secrets set/list/rm` |
| [Lifecycle](/cli/lifecycle) | `daemon start/stop/restart/install/uninstall`, `serve` |
| [Sandbox image](/cli/image) | `image pull` |
| [Sandbox](/cli/sandbox) | `sandbox setup/status/update/destroy`, `sandbox snapshot build/create/list/retry` |
| [Observability](/cli/observability) | `daemon status`, `daemon logs`, `trace`, `graph list/show/node`, `queue status/resume/reconcile/purge`, `ps`, `invocation list/status/show/get-run/logs` |
| [Diagnostics](/cli/diagnostics) | `config validate`, `doctor`, `probe` |
| [Triggers](/cli/triggers) | `trigger list/stats/fire/inspect/replay/schedule` |
| [Workbench](/cli/workbench) | `workbench open/pause/destroy/remove/sweep/diff` |
| [Auth](/cli/auth) | `auth setup`, `auth login`, `token`, `connect github`, `connections list/remove` |
| [Knowledge](/cli/knowledge) | `ask`, `knowledge-base` (`kb`) |
| [Evals](/cli/evals) | `evals list/accept/reject/scorecard` |

## Daemon endpoint

Commands resolve the daemon address in this order:

1. `BENTO_DAEMON_URL`, which accepts a full origin for a local or remote daemon.
2. `BENTO_PORT`.
3. `port:` in the project's `.bento/daemon.yaml`, including support for the legacy `webhooks.port`.
4. Port `7890`.
