Back to Blog
Artificial Intelligence

Agent Plugins 1.0: Your Company's AI Tooling Becomes Portable

Origami TeamEditorial Team
8 min read
Agent Plugins 1.0: Your Company's AI Tooling Becomes Portable
Like what we publish? Pin Origami as a preferred source on Google.Add as a preferred source on Google

Agent Plugins 1.0: Your Company's AI Tooling Becomes Portable

Agent Plugins 1.0 is an open, vendor-neutral standard that packages an AI agent's capabilities (skills, MCP servers, commands and rules) into a single installable plugin, so you build it once and run it across different tools instead of rebuilding it for each one. In August 2026 GitHub announced full support for the standard in VS Code, Copilot CLI, the Copilot app and its SDK, across all Copilot plans. The direct meaning for a business owner: the time and money you spend customizing AI tooling for your team is no longer hostage to a single platform.

What problem does it actually solve?

Over the past two years AI tools moved from being a chat box to being agents that read your files, call your systems and execute real steps. To customize those agents for your company you need to give them three things: written instructions explaining how your business works, a connection to your internal systems through MCP servers, and rules that stop them from exceeding their authority.

The problem was that every tool demanded all of this in its own format. Your team writes customizations for one tool, then a year later the company decides to move to something faster or cheaper, and discovers the entire body of work is non-portable and needs rewriting. That is not merely a technical annoyance; it is a real cost that repeats with every vendor change, and it is the reason many companies postpone serious customization out of fear of waste.

What does a plugin contain in practice?

A single package under the standard is simple in shape and clearly defined. It consists of:

  • A plugin.json manifest carrying the plugin name and version number, which is what makes updating and tracking possible.
  • A skills folder holding the written instructions that tell the agent how to carry out a recurring task in your company the way you want it done.
  • An mcp.json file defining the MCP servers that connect the agent to your actual systems: inventory, customer database, billing.
  • Tool-specific extensions placed in a separate namespace, so the shared parts stay portable even when a given vendor adds a feature of its own.

Separating the shared part from the vendor-specific part is the smartest thing in the design: it does not stop any provider from differentiating with its own features, and it does not force you to lose everything if you change your mind later.

Why should a business owner care, not just a developer?

Governance is the real difference. The standard is developed in public under an open license, overseen by a technical steering committee with representatives from Amazon, Microsoft, OpenAI, Cursor and Vercel. When competing companies agree on one format, that is a signal the format will outlive a single product cycle, and that it is not one party's attempt to lock its customers in.

This matters because the biggest risk in adopting AI today is not technical but contractual. The provider you pick today may raise prices, discontinue a service you depend on, or shift in quality. An open standard does not eliminate those risks, but it lowers your cost of exit, and a low cost of exit is the strongest negotiating card you hold.

What does this mean for businesses in Saudi Arabia?

With 2026 designated the Year of Artificial Intelligence in the Kingdom, many companies have entered a phase of serious experimentation after years of demos. The recurring pattern we see is a company buying subscriptions for its team, then customizing nothing, and ending up with a generic assistant that knows everything about the world and nothing about its systems. The real value comes from customization, not from the subscription.

With a portable standard in place, the decision to customize became far less risky. A company can write an internal plugin that explains its approval cycle, connect the agent to its billing or order management system, and distribute it across the whole team, confident that the investment stays valid if it moves to another tool next year.

But note one essential point: a package being portable does not mean access to your data becomes permissible. Any plugin that connects an agent to your internal systems remains subject to the Personal Data Protection Law, and you must define precisely what the agent can and cannot read, and document it.

Practical steps to start this week

  • Inventory your current customizations. Write down what your team has actually built in instructions, connections and rules, and identify where each piece lives today.
  • Start with one recurring task. Do not convert everything at once; pick one daily process that visibly consumes time and package it as a single plugin.
  • Set permissions before you distribute. Business and enterprise plans include central settings that control which plugins are allowed and from which approved sources. Configure that before usage spreads, not after.
  • Document what ports and what does not. The shared parts move across tools; tool-specific extensions may not. Know the limits of portability before you build a promise on top of it.

The takeaway is that the industry is moving from a mess of competing formats toward a shared one, and this is the stage at which investing in AI customization becomes a calculated decision rather than a gamble. At Origami we build these plugins and the connections into our clients' real systems, designing from the start so that ownership and flexibility stay with the client, not the vendor.

Sources

#Artificial Intelligence#AI Agents#Open Standards#Digital Transformation

Frequently asked questions

What is Agent Plugins 1.0 in short?+

An open, vendor-neutral standard that packages an AI agent's skills, MCP servers and rules into a single installable plugin, so you build it once and it works across multiple tools instead of rebuilding it for each one.

Do I have to change what we already built?+

No. GitHub stated that existing plugins not targeting the new version remain supported and there is no forced migration, so you can move gradually starting with the next plugin you build.

How does this reduce my lock-in to one vendor?+

Because the shared parts of a plugin work across different tools, the cost of moving from one provider to another drops. It does not remove every risk, but it turns a switching decision from a full rebuild into a limited migration.

Does the standard cover my customers' data protection?+

No. The standard unifies the packaging format only and grants no permissions. Defining what the agent may read from your systems and complying with the Personal Data Protection Law remain your responsibility, enforced through permissions and central settings.

Follow Origami in Google

Pin Origami as a preferred source and our articles will surface first for you in Google Search and Top Stories.

Add as a preferred source on Google

Related articles

Weekly newsletter

The latest articles that matter to business owners, once a week. Just your email.

Have a project in mind?

We build custom systems, apps and websites for your business. Tell us your idea and we will give you a straight answer on it.

One session. Twenty minutes. No commitments.