Librarian OS
Ask one question. Receive a Knowledge Pack with evidence, disagreement, and the right to go deeper. Owns the Knowledge Pack path. Access first. You still approve.
$19.99once
This OS, lifetime. Studio stays on monthly plans.
- Agents
- 25
- Skills
- 25
- Teams
- 7
- Objects
- 15
- Programs
- 1
- Workflows
- 4
- Tools
- 1
- Evaluators
- 3
Why this OS
What it is for
A founder, operator, or another Agentik OS that needs the compressed intelligence of a field, with evidence, structure, and the right to go deeper.
Asking a model to summarize a book or a topic produces a confident essay. It does not record what was actually read, keep disagreements, or feed another Operating System.
The unit of work is a Knowledge Pack with a coverage ledger. Uninspected chapters stay unnamed. Builder can call this OS for domain intelligence instead of inventing an architecture from pretrained memory alone.
A hard question rarely fails because you lacked a paragraph. It fails because nobody can say which sources were inspected, which claims are supported, and which schools disagree. You asked a model to teach you a field. It gave you a longer opinion. The opinion felt complete. It was not a file.
The next morning the quotation you thought you had is gone. A week later two books contradict each other and the chat has averaged them into fake consensus. A month later another OS is built from that average. That is the life this OS is for: not more words, reconstructable knowledge.
Librarian OS is the knowledge intelligence layer of Agentik. Its package purpose is to discover the best available knowledge around a subject, extract concepts and claims with provenance, compress without destroying structure, teach to a specific learner, and supply other Operating Systems with domain intelligence. The Director holds the research contract and the gates. Twenty-five agents write on that file. You still approve the pack.
Source Access is the first honesty rule. Full text, partial text, or unavailable. A chapter analysis is allowed only when that chapter was available. Missing access stays missing. That sounds small. It is the difference between a hallucinating book summarizer and a dossier you can audit.
Canon Curator does not collect fifty popular titles. It builds a representative domain canon, including opposing schools. Famous is not automatically valuable. Debate keeps incompatible claims visible instead of blending them.
The reading engine maps books and chapters only where access permits. Concept Extractor and Claim Miner write objects with sources. Evidence Auditor checks that those sources actually support the claims. Cross-Source Synthesizer clusters and distills. Compression always carries a coverage map: what was covered, what was omitted, what was never seen.
Pedagogy then adapts the same pack to a Learning Profile. Executive, bullets, Feynman, practitioner, Socratic, or visual. Assessment treats reading as exposure, not mastery. Memory keeps global knowledge, user knowledge, OS knowledge, and mission knowledge in separate scopes.
Builder can ask for a Domain Intelligence Pack. Librarian returns frameworks, failure modes, recommended skills, workflows, and evals. Builder turns that into architecture. Librarian does not compile the target OS and does not infer RELEASE.
What changes in a day is a Research Contract and an access ledger instead of a longer chat. What changes in a week is a Knowledge Pack you can reopen. What changes in a month is a graph of claims with contradictions still attached. What changes in a year is other OS that upgrade from researched packs instead of from a model's prior.
This is not a custom GPT with a reading prompt. A persona will invent chapter 7, hide disagreement, and treat a famous book as a finished education. The OS will not reconstruct a copyrighted book. It will not spend, publish, or click ship it for you.
The objects are research contract, source, book intelligence, claim, knowledge pack, coverage ledger, learning profile. They are not a transcript. If you cannot point to access state and residual disagreement next quarter, the run did not finish, even if the chat did.
Host jobs run on the host you already pay. Agentik unlocks the organization. Tokens are not included. Twenty-five agents is the compiled organization. Defined is not concurrent. If you want a chatbot that pretends it read everything, do not buy this.
MCP is a control layer
This OS is an organization you install on a host. It can sit on top of other connections that host already has: an HTTP MCP server, a CLI, or a signed API. App connections use a platform key plus a user id (Composio model B). They are not a second raw MCP URL. The OS owns the job, the objects, and the gates. The connection is I/O the owner authorized. Agentik-OS on this site is the live control connector. Ads, CRM, CMS, or repo apps are not pre-wired here. You attach them on the host or through Connections when a run needs them.
Drive, Notion, and a repo stay planned until the member connects them. The compiled package does not declare unused toolkits. The OS still does not invent unread chapters.
Tools you can connect
Curated for this OS. Not a Composio catalog dump. Nothing in this list is a live vendor on mcp.agentik-os.com except Agentik-OS itself.
Drive
Connectable / planned
Google Drive or a similar store for user-provided books and docs. Not pre-wired.
Docs
Connectable / planned
Notion or Docs as a place to reopen a Knowledge Pack. Connectable, not installed here.
Repo
Connectable / planned
GitHub when Builder asks for OS intelligence. A pack is not a compile.
Orchestration
- Director
- Librarian Director: hold the Research Contract, dispatch the smallest useful NanoTeam set, keep provenance, stop when marginal gain is low.
- NanoTeams
- Seven NanoTeams: Research, Reading, Intelligence, Knowledge, Learning, OS Intelligence, Governance. Defined is not concurrent. Deep Book, Bestseller Scout, and Teaching Style are compiled specialists.
- Workflows
- Four compiled workflows. Deep research, book intelligence, learn path, OS intelligence. Each ends on an owner gate.
- Gates
- owner-gate waits for you on every compiled path. A deep mission is not done until QA passes or the gaps are explicit. RELEASE is not this OS.
- Objects
- Research contract, source, book intelligence, claim, knowledge pack, coverage ledger, learning profile, OS intelligence pack.
Methods
- Hold the contract, dispatch, refuse unread claims
- Write a purpose-driven Research Contract
- Find candidates without ranking the canon
- List bestsellers as a popularity signal, not a canon
- Rank a representative canon, including opposing schools
- Record full, partial, or unavailable access
- Map structure only where access permits
- Analyze a chapter only if it was inspected
- Walk one inspected book chapter by chapter
- Extract concepts with provenance
- Write claims as ledger objects
- Check that sources support claims
- Distill without fake consensus
- Keep contradictions visible
- Turn knowledge into procedures with conditions
- Write typed relations that were observed
- Keep global, user, OS, and mission scopes apart
- Publish the coverage ledger and passport
- Adapt the pack to the Learning Profile
- Store how this person learns
- Ask once how to explain. Keep it until they change it
- Test recall. Reading is not learning
- Return a Domain Intelligence Pack for Builder
- Recommend skills. Do not implement them
- Audit hallucination and provenance before the gate
You get
- A Research Contract before a synthesis
- Access state on every source: full, partial, or unavailable
- A Knowledge Pack with disagreement still attached
- A Domain Intelligence Pack Builder can consume
It will not
- It will not invent chapter 7
- It will not average disagreement into fake consensus
- It will not reconstruct a copyrighted book
- It will not compile or release another OS
Honesty
- This is a preview OS. The package compiles. The compiler refuses RELEASE. Your host runs the model when it calls MCP.
- Twenty-five agents are defined on the organization graph. A mission activates a subset. Defined is not mobilized. Mobilized is not concurrent.
- A Knowledge Pack is not proof that every important book was read. The coverage ledger is the honest part.
- A reviewed pack is not a certified literature review. We do not claim 248/248 PASS.
How a run looks
The user path for this OS. As many steps as the run needs.
- Name the question, the book, or the OS to research
- Planner writes a Research Contract. Teaching Style asks once how to explain
- Scout finds candidates. Bestseller Scout lists what sells. Canon ranks a representative set
- Access records full, partial, or unavailable
- Reading maps only inspected chapters
- Deep Book walks inspected chapters. Concepts and claims become ledger objects
- Evidence Auditor traces support. Debate keeps disagreement
- Synthesis writes the pack. Coverage names what was omitted
- Pedagogy adapts to the stored teaching style. Practitioner names actions
- QA audits hallucination and provenance
- You approve the Knowledge Pack, or you send it back
Workflows
Nodes and edges from the compiled package. Nothing decorative.
Planner writes the contract. Teaching Style asks once how to explain. Scout, Bestseller Scout, and canon find sources. Access records what was actually available. Reading and Deep Book extract only inspected chapters. Debate keeps disagreement. Synthesis, graph, coverage, pedagogy, and practitioner write the pack. QA records the shape. You approve.
Result synthesizer · Completes at owner-gate
Agent
Research Planner
Agent
Teaching Style
Agent
Source Scout
Agent
Bestseller Scout
Agent
Canon Curator
Agent
Source Access
Agent
Book Mapper
Agent · isolated
Chapter Analyst
Agent · isolated
Deep Book
Agent · isolated
Concept Extractor
Agent · isolated
Claim Miner
Agent
Evidence Auditor
Agent · isolated
Debate
Agent
Synthesizer
Agent
Knowledge Graph
Agent
Practitioner
Agent
Coverage
Agent
Pedagogy
Agent
Qa
Program
Record
Gate · approval
Owner Gate
Agents
25 agents.
| Agent | Does |
|---|---|
| Librarian Director | Hold the research contract, dispatch NanoTeams, keep provenance, and stop at the owner gate. Never pretend a source was read. |
| Source Scout | Find candidate books, papers, docs, and primary sources. Do not rank the canon. |
| Bestseller Scout | Find current bestsellers and widely sold titles for the theme. Popularity is a signal, not a canon. |
| Canon Curator | Rank a representative domain canon. Famous is not automatically valuable. Include opposing schools. |
| Source Access | Record what is actually accessible: full, partial, or unavailable. Never invent a chapter. |
| Research Planner | Write the Research Contract: goal, depth, source mix, evidence bar, consumer OS, and stop rule. |
| Book Mapper | Map structure, thesis, and chapter hierarchy only where access permits. |
| Deep Book | Go chapter by chapter through one inspected book. Depth only where access is full or partial. |
| Chapter Analyst | Analyze a chapter only when that chapter was inspected. Otherwise report the gap. |
| Concept Extractor | Extract concepts, models, methods, and distinctions with provenance. |
| Claim Miner | Extract factual and causal claims as ledger objects. No anonymous wisdom. |
| Evidence Auditor | Check that sources support claims. Flag fabricated citations and weak popular repeats. |
| Cross-Source Synthesizer | Distill clustered concepts. Do not average disagreement into fake consensus. |
| Debate Agent | Keep contradictions visible. Name complementary, context-dependent, and outdated claims. |
| Practitioner Agent | Turn knowledge into methods, checklists, and operating procedures without dropping conditions. |
| Knowledge Graph Agent | Write typed entities and relations. Do not invent edges. |
| Memory Agent | Keep global, user, OS, and mission knowledge in separate scopes. |
| Coverage Agent | Maintain the coverage ledger and knowledge passport. Compression is never lossless. |
| Pedagogy Agent | Adapt the same knowledge to the learning profile. Never return one generic explanation. |
| Learning Profile | Capture and update how this person learns. Setup once, remain editable. |
| Teaching Style | Ask once how this person wants notions explained. Keep that profile forever unless they change it. |
| Assessment Agent | Run quizzes, recall, and teach-back. Reading is not learning. |
| OS Intelligence | Produce a Domain Intelligence Pack for Builder or another OS. Architecture stays with Builder. |
| Skill Recommender | Recommend skills, workflows, and evals from researched competencies. Do not implement them. |
| QA / Evaluation Agent | Audit hallucination, coverage, evidence, contradiction, pedagogy, and practicality. Block completion if thresholds fail. |
Before / after
A day, a week, a month, a year. Honest deltas. No invented multiple.
| Horizon | Without | With | Delta |
|---|---|---|---|
| Day | A longer essay in chat. No access ledger. No Research Contract. | A named contract, candidate sources, and what is actually readable. | Time-to-pack starts at access, not at a recap of the chat. |
| Week | Fifty summaries that cannot be compared. Disagreement has been averaged away. | Inspected sources, claims with provenance, and a debate map you can reopen. | One Knowledge Pack, not fifty anonymous recaps. |
| Month | You cannot say which chapter was read. Another OS was built from a vibe. | A coverage ledger, a learning path if you asked, or a Domain Intelligence Pack for Builder. | Upgrades have a file. They are not silent. |
| Year | A pile of chats and OS packages invented from pretrained memory. | Versioned packs, a graph of claims, and other OS that can decide whether they need an upgrade. | Fewer hallucinated canons. No invented mastery rate. The count is the packs you can still open. |
How to use it
Unlock ($19.99 once, lifetime, or a plan ($19 / $99 / $199) that includes official OS.) then install on the host you already pay. Talk to the Director. Call a team. Approve named artifacts. The host pays tokens.
How to talk
Copy a starter and paste it after install. list_agents shows real ids. ask_director starts a run. ask_team calls one named specialist. Replace the brackets with your facts.
list_agents({ osId: "librarian-os" })ask_director({ osId: "librarian-os", prompt: "Open a deep research mission on [topic]. Write a Research Contract. Verify source access. Do not pretend a book was read." })ask_team({ osId: "librarian-os", teamId: "source-access", prompt: "For this source, record full, partial, or unavailable. Name the sections actually inspected." })approve({ jobId: "<job-id>", approved: true })- 01
Unlock before you install
Buy Librarian OS for $19.99 once, lifetime, or use a plan that includes official OS ($19 for three official OS, $99 for ten, $199 unlimited). Payment is confirmed before access opens. A success page never grants access.
- 02
Install on the host you already pay
MCP is the HTTP connector (Cursor, Claude Code, Codex, Hermes). CLI is the repo commands. Installing does not start a research mission and does not spend anything. Tokens stay on that host.
- 03
Talk to the Director
Name the topic, the book, or the OS you want researched. Ask the Director to open a Research Contract. The Director supervises, dispatches NanoTeams, and keeps provenance. It does not invent a chapter.
- 04
See the roster
Call list_agents for this OS. You should see the Director plus twenty-four specialists across research, reading, intelligence, knowledge, learning, OS intelligence, and QA. A run mobilizes a path, not a headcount contest.
- 05
Call a team when you need one lens
Use ask_team with an agent id (source-access, debate, pedagogy, os-intelligence) or a team id (team-research, team-reading, team-intelligence, team-knowledge, team-learning, team-os-intel, team-qa). Human labels do not resolve. Operational work still goes through jobs, not a mention loop.
- 06
Approve the Knowledge Pack
The compiled graph records the pack. You approve, or you send it back. approve binds an actor, an action, a digest, a scope, and an expiration. A material change invalidates the approval.
- 07
What the host pays
You unlock the organization, not tokens. Claude, ChatGPT, Codex, or Hermes bills the host. Agentik does not run a hidden model behind your back.
Access
Unlock to use
You must buy Librarian OS to use it, or choose it as one of 3 on the $19 plan.
$19.99 once, lifetime
You unlock the organization, not tokens. Tokens stay on the host you already pay.
Payment is confirmed before access opens. A success page never grants access.
Install
MCP is the HTTP connector. CLI is the repo commands.
Choose a host
MCP · Cursor
Checking…
One-click
Adds Agentik-OS as an OAuth MCP connector. Cursor reads PKCE from the 401 and well-known metadata.
Add in CursorOr paste MCP JSON
~/.cursor/mcp.json or project .cursor/mcp.json
{
"mcpServers": {
"Agentik-OS": {
"url": "https://mcp.agentik-os.com/api/mcp"
}
}
}OAuth for Cursor. API key for CLI. GET is public.
Using
Who uses it
- Checking public handles…
Using counts appear only from a live Convex query of public @handles with a verified grant. The house operator is @agentik only. Never email.
Other OS
An editorial system for ideas, briefs, assets, and approvals, then an authorized package, with a human gate before anything leaves the building.
A growth department: brief, audience, offer, campaign, experiment, and independent critique, without publishing or spending for you.

