Agents

Toolsmith

What the toolsmith mandate is allowed to read, what it produces, and what proof exists for it today.

Menzotoolsmith
Mandate
Python tools, proven by running them
Reads
the capability registry, and which roles are allowed to call what
Produces
A tool in the registry, and the log of the run that proved it
Rejoins the desk
Menzo declares capabilities. Declaring one does not grant it to anybody.
  1. writing Writes a Python tool in its own workspace.
  2. checking Runs it in the sandbox. The network is refused, and the refusal is logged.
  3. producing Declares it in the registry, with the roles allowed to call it.
  4. done A tool that has not run is not a tool — so the run log ships with it.
Declared capabilities
Execute · Snapshot · Deposit · Desk
Tools it may call
python_run · report_blocked
Ask it something like
Build a tool that computes this, and prove it runs.

Sealed capture on fileA sealed capture of the application exists for this mandate, taken from a named build and listed in a manifest. It is evidence on file, not a run you can watch here — the roster room used to replay it, and no longer does.

More in Agents