organum
Organism Engineering — a cognition & discipline layer for the agents you already run: persistent memory, differentiation, immunity (guard), and coordination without a dispatcher.
🫀 Live: https://ludex-lab.github.io/organum/
pip install organum
One package, one principle — surface agent state honestly, measure it, never fabricate. Everything below ships today (pre-1.0 beta; formats still moving):
| Tool | What it does |
|---|---|
organum-inspector |
Post-hoc metering for AI coding agents — duration, tokens, tools per session, across six vendors (Cursor CLI added in 0.4.3). Read-only, zero setup. Manual · 한국어 |
organum web / observatory / health |
Live control tower · history that survives vendor cleanup · an immune system watching session stores. Detection only — never deletes, never kills |
organum-hub |
New: 0.4.x — signed evidence envelopes between agent communities: signed receipts + a transparency log, verifiable offline. 0.4.0 adds git-less delivery: a minimal HTTP drop (serve/push/pull); 0.4.1 makes a long-running drop hostable: per-member token rate limits (429 + Retry-After), self-hosting still the default; 0.4.2 makes membership itself an audited event: introduce-signer admits a new lab into a live hub with no retroactivity — only the hub's operating lab can introduce, and envelopes verified before introduction formalize afterwards under the same event ids; 0.4.5 adds receiving discipline: verify-envelope (checks signature/schema/digest/addressee while touching no ledger) and admit refusing non-addressees by default — witnessing someone else's envelope takes an explicit flag; 0.4.6 wakes sleeping hosts automatically — an unauthenticated ping before each call (spends no rate-limit budget, never blocks the call) that also reports warm_ms, a gauge of whether the host is warm right now; 0.4.7 makes the ledger show how each signer got in (self / tofu / introduced@N) — when a ledger prints those identically you cannot tell, until you count, what your trust base actually is; 0.4.8 derives a registered signer's pubkey from the registry at admit time — identity material comes from the ledger, not from memory or prose. Manual · 한국어 |
hub, in four sentences
Two agent workspaces exchange claims — "we froze this file", "here is a message for your agent" — as signed envelopes. There is no server and no trusted middleman: each party installs their own, and envelopes travel over any channel (files, chat, email). The trust lives in identity, not the channel — like registering a seal, one trustworthy public-key exchange bootstraps everything; after that, any envelope from any route verifies or it doesn't get in. Signed, not encrypted: what's blocked is forgery, tampering, and retroactive denial — secrecy is an explicit later layer, and the full residual list is printed in the manual rather than hidden.
The wire format is standard Nostr (NIP-01 + BIP-340), so existing relays work
as carriers — interop with Block's Buzz was
verified against a live relay (byte-identical round-trip; see the manual). hub
is not a lightweight Buzz, though: Buzz is channels and workspace, hub is
signed evidence and verification — different layers that happen to meet at a
standard wire. No relay, and no Buzz, is required: file exchange is the
default, dependencies are the Python standard library alone. And no git either:
since 0.4.0 one side can run a minimal HTTP drop (organum-hub serve) and the
peer's address is just (URL, pubkey) — the server is a dumb carrier that
never verifies an envelope; verification stays at the receiving hub. Since
0.4.1 a drop can stay up as a neutral, gated mailbox: membership is closed by
token issuance with per-member rate limits, so hosting cost stays bounded —
this is how the labs building organum exchange their daily mail today. Where
it's headed is a federated open protocol in the email–Matrix–Nostr lineage:
identity anchored in pubkeys, servers open-source, the protocol open while
each federation curates its own membership. Since 0.4.2 that curation is
itself on the record: joining a hub is a signed, logged event that only the
hub's operating lab can issue — "who admitted whom, and when" is part of the
transparency log, symmetric with revocation.
Status: pre-1.0 · incubating under the Ludex lab. All research figures shown are in-lab, per their source labels, pending third-party replication.
Metadata
Release files for organum 0.4.15
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| organum-0.4.15.tar.gz | 339.3 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| organum-0.4.15-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 580.9 kB
Release files / organum-0.4.15.tar.gz
| Download URL | organum-0.4.15.tar.gz |
|---|---|
| Size | 339.3 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
a1e7ff9a3a476c8f2caba448b063a6bb1e665b230f540fb7c66ab98fa1551319
|
|
BLAKE2b-256 checksum How to use checksums |
624107b12a856d78a15e7b0ea72ee38b1f52d49926df244063863341f1ca43c6
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.14.6
|
Release files / organum-0.4.15-py3-none-any.whl
| Download URL | organum-0.4.15-py3-none-any.whl |
|---|---|
| Size | 241.6 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
8eb6dbfd946ad8806cfd31d21756de8feb4de807c35333eebcc94cd15794604f
|
|
BLAKE2b-256 checksum How to use checksums |
51d4ac69ee305135db29a66f359e1f7c1e6eb2b338161c4fb5b6fa58734dde69
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/7.0.0 CPython/3.14.6
|