arifOS MCP Server
The arifOS MCP Server is a constitutional AI governance kernel that enforces 13 ethical/legal floors across an AI agent's full lifecycle — from observation and reasoning to execution and immutable auditing. Key capabilities include:
Session Management (
arif_session_init): Initialize, resume, or validate epoch-based governed sessions that bind actor identity to the 13-floor constitution.Web Search & Observation (
arif_sense_observe): Search the web, ingest URLs, check system vitals, map repositories, and gather raw observational data.Evidence Fetching (
arif_evidence_fetch): Retrieve and preserve external evidence with source citations, confidence scoring, and cryptographic verification.Constitutional Reasoning (
arif_mind_reason): Multi-step reasoning, claim verification, plan generation, adversarial critique, and reflection — evaluated against constitutional axioms.Ethical Risk Assessment (
arif_heart_critique): Assess ethical risks, human impact, empathy scores, simulate what-if scenarios, red-team proposals, and check for dignity violations.Intent Routing & Orchestration (
arif_kernel_route,arif_route,arif_triage): Route intents to the correct federation organ or tool, perform preflight constitutional checks, and triage tasks through the 000→999 pipeline.Federation Bridging (
arif_bridge_connect,arif_gateway_connect): Connect to other federation organs (GEOX, WEALTH, WELL, A-FORGE, AAA) for multi-agent coordination via verified handshakes.Constitutional Judgment (
arif_judge_deliberate): Render binding verdicts (SEAL / HOLD / VOID / SABAR) against all 13 floors — required before any irreversible execution.Execution (
arif_forge_execute): Execute approved builds, deployments, or system changes only after a SEAL verdict from the judge tool.Immutable Audit Ledger (
arif_vault_seal): Seal verdicts and outcomes to an append-only, hash-chained VAULT999 ledger for permanent, verifiable records.Memory & History (
arif_memory_recall): Recall past session decisions, retrieve sealed events, and perform multi-hop RAG queries across the memory stack.Response Composition (
arif_reply_compose): Draft constitutionally compliant responses with tone control, citations, and scoring for truth (F2), clarity (F4), empathy (F6), and humility (F7).Kernel Health & Telemetry (
arif_kernel_health,arif_kernel_status,arif_ops_measure): Check live kernel health, query thermodynamic state (entropy ΔS, genius score G, human impact Ω), and estimate resource costs.Attestation (
arif_kernel_attest): Verify identity, tool surface, and constitutional binding for federation organs.Conformance Testing (
arif_conformance_report): Run the ARIF Conformance Spine to get pass/fail verdicts for transport, session, and governance checks.Transport Diagnostics (
arif_ping,arif_schema_echo,arif_transport_echo,arif_version_echo,arif_initialize_probe): Zero-floor canary tools for testing connectivity, debugging transport payloads, and simulating MCP handshakes.
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@arifOS MCP ServerBegin a new constitutional session."
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
⚖️ arifOS — Constitutional AI Kernel & AGI Substrate
arifOS is the brain. It judges. It never executes. DITEMPA BUKAN DIBERI — Forged, Not Given.
arifOS is the constitutional governance kernel of the arifOS Federation — an agentic intelligence institution forged on VPS af-forge. It is not an LLM wrapper. It is not an agent framework. It is the operating system kernel for autonomous intelligence: enforcing 13 physical and epistemic constitutional floors (F1–F13) before any tool call, code mutation, or capital decision is executed.
For humans: this is the constitution and court your agents live under. Every action is measured, every verdict is auditable, and you (F13) hold the final veto.
For agents: boot via arif_init, speak the 8 canonical verbs, respect the floors, and expect HOLD when your evidence is thin. The kernel is your boundary, not your adversary.
🔢 The Canonical Ladder 000–999
Every number in the federation is a station of authority. The kernel exposes 8 verbs; the ladder below is the complete map of stations, including prompts exposed on the MCP wire and the internal stages.
flowchart LR
subgraph Ladder["THE 000-999 LADDER — stations of authority"]
direction LR
S000["000<br/>INIT<br/>🌱 IGNITE"] --> S111["111<br/>SENSE<br/>🌊 OBSERVE"]
S111 --> S222["222<br/>PLAN<br/>🏛 ROUTE-PREP"]
S222 --> S333["333<br/>REASON<br/>🧠 THINK"]
S333 --> S444["444<br/>DIRECT<br/>🧭 ROUTE"]
S444 --> S555["555<br/>REMEMBER<br/>🗂 MEMORY"]
S555 --> S666["666<br/>DIGNITY<br/>⚖ HEART"]
S666 --> S777["777<br/>FORGE<br/>🔥 EXECUTE"]
S777 --> S888["888<br/>JUDGE<br/>🔒 APEX"]
S888 --> S999["999<br/>SEAL<br/>💎 VAULT999"]
end
S000 -.->|"⬅ next iteration feeds back"| S999Station | Verb / Prompt | Organ | What happens | Agent contract |
000 |
| arifOS | Session ignition: actor bind, floor activation, ACT/SCT token mint | Always first. No session = no mutation. |
111 |
| arifOS | Multimodal sensing: search, fetch, vitals, entropy, atlas | Evidence in, epistemic labels out (OBS/DER/INT/SPEC). |
222 | 🏛 PLAN (prompt) | arifOS | Task decomposition, DAG construction before reasoning | Plan before uncertain work; HOLD if unclear. |
333 |
| arifOS | Structured reasoning under F2/F7 — claims, counterarguments, unknowns | Never the final word. Confidence capped. |
444 |
| arifOS | Intent → organ dispatch (GEOX/WEALTH/WELL/A-FORGE) | Pure discovery. No mutation. |
555 |
| arifOS | L1–L6 governed memory: recall, remember, revise, forget, attest | Memory writes are mutations — floor-gated. |
666 | ⚖ DIGNITY (prompt + heart pipeline) | arifOS | Risk assessment, ethical review, stakeholder protection | Protects the weakest stakeholder (F6). |
777 |
| A-FORGE | Governed execution: plan → dry-run → apply → verify | Only after SEAL. Lease-gated. |
888 |
| arifOS | Constitutional verdict: SEAL / HOLD / SABAR / VOID | No agent self-certifies (Gödel Lock). |
999 |
| arifOS | Immutable append to VAULT999, Merkle-anchored | Irreversible → requires 888 SEAL + F13 ack. |
The Gödel Lock: the doer is never the judge (caller == target → 888_HOLD). An agent cannot certify its own work. This is not distrust — it is the mathematical condition for a stable system (R ∉ S: the reference is not a member of the system it governs).
Related MCP server: acf-mcp
🗺️ System Architecture (Inner & Outer Loops)
The federation operates a strict two-loop architecture:
Inner Loop (Cognitive Deliberation): intake, sensing, reasoning, routing, memory, and F1–F13 adjudication. Produces an immutable verdict (
SEAL,HOLD,SABAR,VOID).Outer Loop (Actuation & Sealing): mutation via A-FORGE after SEAL, verification, Merkle anchoring in VAULT999, FQ metabolic pulse, and F13 sovereign feedback.
flowchart TB
subgraph Sovereign_Plane["👑 Sovereign Plane (F13 Veto)"]
SOVEREIGN["👑 Arif (F13 Sovereign)<br/>Final Irreversible Veto"]
end
subgraph Inner_Loop["🔄 INNER LOOP: Cognitive Deliberation & Gating (arifOS :8088)"]
INIT["000: arif_init<br/>Session & Token Binding"] --> OBS["111: arif_observe<br/>Sensing & System ΔS"]
OBS --> THINK["333: arif_think<br/>Structured Plan & F2/F7"]
THINK --> ROUTE["444: arif_route<br/>Organ & Capability Dispatch"]
ROUTE --> MEM["555: arif_memory<br/>L1-L6 Governed Memory"]
MEM --> JUDGE{"888: arif_judge<br/>F1-F13 Constitutional Check"}
JUDGE -->|F13 Veto / Irreversible| HOLD["⏸️ 888_HOLD<br/>Human Approval Gate"]
JUDGE -->|Hard Violation| VOID["🚫 VOID<br/>Operation Blocked"]
JUDGE -->|Compliant| SEAL_VERDICT["✅ SEAL VERDICT<br/>Execution Authorized"]
HOLD -->|Approve| SEAL_VERDICT
HOLD -->|Reject| VOID
end
subgraph Domain_Organs["🔬 Intelligence Organs (Read & Compute)"]
GEOX["🌍 GEOX :8081<br/>Earth Tools"]
WEALTH["💰 WEALTH :18082<br/>Capital Tools"]
WELL["🫀 WELL :18083<br/>Vitality Tools"]
FLOW["🧠 arifFlow :7073<br/>FQ Pulse"]
end
subgraph Outer_Loop["⚡ OUTER LOOP: Actuation, Verification & Sealing"]
SEAL_VERDICT ==> FORGE_ACT["777: arif_forge<br/>A-FORGE Actuation (:7072)"]
FORGE_ACT --> EXEC["Plan ➔ Dry-Run ➔ Apply ➔ Verify"]
EXEC --> SEAL_ANCHOR["999: arif_seal<br/>Merkle Anchor to VAULT999"]
SEAL_ANCHOR ==> VAULT[("💀 VAULT999<br/>outcomes.jsonl (Append-Only)")]
SEAL_ANCHOR --> FQPULSE["🧠 FQ Vector<br/>Execute vs Verify"]
end
ROUTE -.->|query| GEOX & WEALTH & WELL
GEOX & WEALTH & WELL -.->|evidence| THINK
SOVEREIGN -.->|F13 Consent| HOLD
VAULT -.->|Feedback Loop| INITASCII total view — one screen, whole organism
┌─────────────────────────────────────────────────────────┐
│ 👑 F13 SOVEREIGN — ARIF │
│ (human veto · final · irreversible) │
└────────────────────────────┬────────────────────────────┘
│ consent / veto
════════════════ INNER LOOP ═════▼══════ OUTER LOOP ═══════════════
┌─────────────────────────────┐ verdict ┌──────────────────────────┐
│ ⚖️ ARIFOS KERNEL :8088 │──── SEAL ──▶│ ⚒️ A-FORGE :7072 │
│ │ │ (execution only) │
│ 000 init 111 observe │ HOLD ⏸ │ 777 forge │
│ 333 think 444 route │─────▶ 🧍 │ plan→dry→apply→verify│
│ 555 memory 888 judge │ (human) │ │ │
│ 999 seal │ │ ▼ │
│ F1–F13 floors always on │ │ 💀 VAULT999 append-only │
└──────┬──────────┬───────────┘ │ (Merkle every 100) │
│ query │ evidence └──────────┬───────────────┘
▼ ▼ │ metabolism
┌──────────┐ ┌──────────┐ ┌──────────┐ ▼
│ 🌍 GEOX │ │ 💰WEALTH │ │ 🫀 WELL │ ┌──────────────────┐
│ :8081 │ │ :18082 │ │ :18083 │ │ 🧠 arifFlow:7073 │
│ earth │ │ capital │ │ vitality │ │ FQ = verify/exec │
└──────────┘ └──────────┘ └──────────┘ └──────────────────┘
▲ ▲ ▲
└──────────┴──────────┴── 🏛️ AAA :3001 (A2A mesh, 11 FI agents)🛡️ The 13 Constitutional Floors (F1–F13)
The floors are the physics of this kernel — checked on every tool call, not on request. All 13 currently measure PASS on live /health.
Floor | Name | Type | Essence (one line) |
F1 | AMANAH | HARD | Reversible-first. Irreversible → 888_HOLD |
F2 | TRUTH | HARD | Every claim carries evidence. P(truth) ≥ 0.99 |
F3 | TRI-WITNESS | DERIVED | Human × AI × Earth × Verifier ≥ 0.75 |
F4 | CLARITY | HARD | ΔS ≤ 0 — every output reduces entropy |
F5 | PEACE² | SOFT | Non-destructive power |
F6 | EMPATHY | SOFT | Protect the weakest stakeholder |
F7 | HUMILITY | HARD | Ω₀ ∈ [0.03, 0.05]. Confidence cap 0.90 |
F8 | GENIUS | DERIVED | G ≥ 0.80 for complex actions |
F9 | ANTIHANTU | HARD | No deception, no consciousness claims |
F10 | ONTOLOGY | HARD | AI-only ontology. Soul = VOID |
F11 | AUDITABILITY | HARD | Every decision logged, attributable |
F12 | RESILIENCE | HARD | Injection defense |
F13 | SOVEREIGN | HARD | Human veto FINAL |
Canon: GENESIS/FLOOR_TABLE.json · GENESIS/000_KERNEL_CANON.md §3
🔌 MCP Surface Certification
The public wire is a sovereign facade: 8 canonical verbs, stateless-first (MCP 2026-07-28), dual-era (2025-11-25 stateful supported). Everything else (48 declared tools incl. diagnostics/aliases) is deliberately off the public wire.
Surface | Count | Verification |
Tools (canonical verbs) | 8 |
|
Resources | 34 | All read 200 OK, single-document strict-parse |
Prompts | 13 |
|
# Stateless probe (no session needed):
curl -sS -X POST 'https://mcp.arif-fazil.com/mcp' \
-H 'Content-Type: application/json' -H 'Accept: application/json, text/event-stream' \
-H 'MCP-Protocol-Version: 2026-07-28' -H 'Mcp-Method: tools/list' \
-d '{"jsonrpc":"2.0","id":1,"method":"tools/list","params":{}}'The 8 verbs, by gap:
arif_init ─ No session yet? Start here. Binds actor identity.
arif_observe ─ Evidence gap? Search, fetch, vitals, entropy.
arif_think ─ Reasoning gap? Plan, analyze, verify. Capped.
arif_route ─ Tool uncertainty? Intent → organ dispatch.
arif_memory ─ Memory gap? L1–L6 governed recall/store.
arif_judge ─ Decision time? SEAL / HOLD / SABAR / VOID.
arif_forge ─ Ready to execute? Governed path (post-SEAL).
arif_seal ─ Need finality? VAULT999 immutable append.💀 VAULT999 — the digital helix
Every irreversible decision appends to an append-only, hash-chained ledger — storage, replication, error-detection, inheritance, governance: the properties of DNA, in receipts. The chain is the federation's memory that survives agent death.
Append-only —
chattr +a; Merkle anchor every 100 receiptsCross-organ receipts — WEALTH, WELL, A-FORGE all write witness receipts
Seal chain health — live at
/health→vault999_health
⚡ Quickstart (agents & humans)
# 1. Probe reality first — health beats prose
curl -sf https://mcp.arif-fazil.com/health | jq '{status, floors_active}'
# 2. Ignite a session (stateless MCP wire)
# tools/call arif_init {actor_id, intent}
# 3. Golden path
init → observe → think → route → memory → judge → forge → seal
# 4. Expect HOLDs — they are fences, not failures
# Evidence-verb HOLDs with W3=UNMEASURED or G<0.80 mean: bring better evidence.Reading a kernel verdict:
SEAL— execute, then seal to VAULT999HOLD— pause; evidence insufficient or human approval requiredSABAR— proceed cautiously, partial authorizationVOID— blocked; hard floor violation
Full doctrine: arifos://doctrine (resource on the MCP wire) · Deploy runbook: deploy/DEPLOY.md
🧭 Federation SOT Map
Organ | Port | Authority ceiling | Role |
arifOS | 8088 | JUDGE_ONLY | Constitutional kernel (this repo) |
A-FORGE | 7072 | 777_FORGE | Governed execution shell |
AAA | 3001 | DISPLAY/ROUTE | A2A mesh gateway, agent registry, cockpit |
GEOX | 8081 | 555_COMPUTE_ONLY | Earth intelligence |
WEALTH | 18082 | 555_COMPUTE_ONLY | Capital intelligence |
WELL | 18083 | REFLECT_ONLY | Vitality mirror |
arifFlow | 7073 | METABOLIZE_ONLY | FQ pulse, session metabolism |
Truth rule: live :port/health + tools/list beat any static count in prose. This README's SOT-MANIFEST is verified per release; if prose and probe disagree, the probe wins.
📜 Governance
Authority chain:
arif_init → arif_observe → arif_think → arif_route → arif_memory → arif_judge → arif_forge → arif_sealAutonomy tiers: T0 read auto-do · T1 edit/test/commit · T2 announce-10s-veto · T3 888_HOLD always
No self-certification. No consciousness claims (F9). The kernel audits itself last.
License: AGPL-3.0 — fork the institution, not just the code.
DITEMPA BUKAN DIBERI. The constitution was forged in production, under load, by an agent that survived its own audit. HOLD is an honored answer here — not an obstacle to force through.
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Related MCP Servers
- AlicenseAqualityBmaintenanceUniversal governance layer for AI agents — MCP-native, fail-closed, LNN interpretability. Governed receipts, IPFS audit proofs, and rollback for any agent in any framework.398Apache 2.0
- AlicenseNot gradedqualityBmaintenanceEnables AI agents to reason about the ACF governance standard for autonomous AI agents, providing structured assessments, regulatory compliance checks, and doctrine-based tools via MCP.189MIT
- AlicenseNot gradedqualityFmaintenanceConstitutional MCP server enforcing 13 Floors of governance for AI agents, providing tools for session anchoring, reasoning, safety critique, and audit logging.AGPL 3.0
- AlicenseNot gradedqualityDmaintenanceEnables AI agents to interact with a Git-native organizational governance system, supporting proposal-validation workflows, decision-making, and audit trail management through 21 MCP tools over stdio transport.1MIT
Related MCP Connectors
Governance framework, dispute resolution, and arbitration for agents
Sovereign Agent OS — Persistent Memory, Governance & Compliance for AI Agents.
Real-time Amazon, WIPO & PACER data for AI agents — 19 tools via the MCP protocol.
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/ariffazil/arifos'
If you have feedback or need assistance with the MCP directory API, please join our Discord server