# Set up a coding agent

`aptarium setup <workspace>` signs in with Google, detects installed agents,
installs Aptarium skills and MCP configuration, mints a 90-day credential with
`data:read`, `apps:read`, and `apps:deploy`, verifies MCP initialization,
and records the device pairing. Use `--agent codex` to target one client.

Sharing is intentionally excluded. Use `--share` only when the agent should
receive `share:manage`. The secret is installed but never printed. Rerunning
rotates the device credential. If any local write fails, prior agent files are
restored and the newly minted token is revoked.
