# arifOS — Constitutional AI Kernel MCP server

Constitutional AI kernel with 13 MCP tools, 888_JUDGE verdict pipeline, and VAULT999 ledger.

## Links
- Registry page: https://www.getdrio.com/mcp/io-github-ariffazil-arifos
- Repository: https://github.com/ariffazil/arifOS

## Install
- Endpoint: https://arifos.arif-fazil.com/mcp
- Auth: Not captured

## Setup notes
- Remote endpoint: https://arifos.arif-fazil.com/mcp

## Tools
- arif_init (000 Init · Kernel Session) - KERNEL 000 · Session ignition — binds actor, floors, and audit before any other arif_* verb. Endpoint: https://arifos.arif-fazil.com/mcp
- arif_observe (111 Observe · Sense Reality) - KERNEL 111 · Sense reality into evidence with epistemic tags and uncertainty bounds. Endpoint: https://arifos.arif-fazil.com/mcp
- arif_think (333 Think · Mind) - KERNEL 333 · Mind — structured reasoning under F2/F7 with OBS/DER/INT/SPEC labels. Endpoint: https://arifos.arif-fazil.com/mcp
- arif_route (444 Route · Intent→Organ) - KERNEL 444 · Intent→organ router — dispatches to GEOX/WEALTH/WELL/A-FORGE. Endpoint: https://arifos.arif-fazil.com/mcp
- arif_memory (Memory Governor · Kernel) - KERNEL memory governor — L1–L6 governed semantic recall, storage, and persistence. Endpoint: https://arifos.arif-fazil.com/mcp
- arif_judge (888 Judge · Verdict) - KERNEL 888 · Constitutional verdict — binding SEAL/HOLD/SABAR/VOID arbitration. Endpoint: https://arifos.arif-fazil.com/mcp
- arif_forge (777 Forge · Execute Gate) - KERNEL 777 · Execution gate via A-FORGE — mutates only after SEAL verdict. Endpoint: https://arifos.arif-fazil.com/mcp
- arif_seal (999 Seal · VAULT999) - KERNEL 999 · VAULT999 immutable append — irreversible civilizational memory sealing. Endpoint: https://arifos.arif-fazil.com/mcp

## Resources
- skill://index - Complete index of all federation skills with names, URIs, and descriptions. Use skill://{name}/SKILL.md to load any specific skill on demand. 113 skills registered. MIME type: text/plain
- arifos://vitals - Real-time constitutional vitals and thermodynamic telemetry. Returns CPU, memory, disk, genius score (G), entropy delta (ΔS), human impact load (Ω), and paradox tension (Ψ). Updated continuously by the metabolic monitor. Use for health checks. MIME type: text/plain
- arifos://init/agent_init - Canonical INIT.md (zen-dated 2026.07.17, ex AGENT_INIT_v3.0) — TRINITY-33 + RSI + Constitutional Friction. Full 612-line boot-phase contract for all agents entering the arifOS federation. Forged 2026-07-08 by FORGE (000Ω) under F13 SOVEREIGN directive. MIME type: text/plain
- arifos://carry-forward - Live session carry-forward state. Returns prior session ID, completed tasks, open 888_HOLD loops, entropy delta, cooling status, and successor pointer. This is the MCP-native equivalent of reading carry_forward.json from filesystem. Essential for agent continuity — load at session start instead of FS reads. MIME type: text/plain
- arifos://flow-state - Live Flow Quality (FQ) pulse — the federation's metabolic nerve health. Returns FQ value, verdict (OPTIMAL/BALANCED/WATCHING/STUCK), and last update. FQ < 0.5 → ALL agents HOLD (OBSERVE_ONLY). FQ >= 0.5 → forge. This replaces filesystem reads of /root/AAA/state/flow_state.json. Cross-reference with arifFlow :7073/health for real-time metabolic data. MIME type: text/plain
- arifos://instructions - Agent bootstrap instructions — the MCP-native equivalent of server/discover. Every agent entering arifOS for the first time should read this. Contains boot sequence, key resources, canonical tools, and constitutional rules. MIME type: text/plain
- arifos://doctrine - The immutable 13-floor constitution (F1–F13) that governs all arifOS operations. Includes Amanah, Truth, Witness, Clarity, Peace, Maruah, Humility, Genius, Anti-Hantu, Ontology, Audit, Injection, and Sovereign. Source of truth for floor definitions. Audited 2026-07-15. MIME type: text/plain
- arifos://refusal-surface - Complete catalogue of what the arifOS kernel refuses and why. Hard refusals (VOID), soft refusals (888_HOLD), conditional refusals (HOLD), and epistemic refusals. The negative space of the constitution. MIME type: text/markdown
- arifos://trinity - The AAA Trinity lane architecture: AGI proposes (111), ASI judges (444), APEX authorizes (888), FORGE executes (010), 999 seals. Defines which tools belong to which lane and which domain language each lane uses. SEAL/SABAR/HOLD/VOID are APEX-only verdict terms. MIME type: text/plain
- arifos://schema - Complete canonical blueprint of the arifOS MCP surface. Lists 8 canonical tools (capability-registered, wire-verified), 13 constitutional floors (F1–F13), and the separation of powers doctrine. Source of truth: abi/capability_registry.json. Audited 2026-07-15. MIME type: text/plain
- arifos://civilization - The seven federation organs (arifOS, A-FORGE, GEOX, WEALTH, WELL, AAA, APEX), three intelligence strata (AGI, ASI, APEX), constitutional boundaries between domain organs and the kernel, and entropy responsibility model. Defines which organs DECIDE vs WITNESS vs COMPUTE vs REFLECT. MIME type: text/plain
- arifos://seal-readiness - Vault integrity report and seal gate requirements. Defines the five disambiguated seal types, the seven-floor seal gate, and the non-seal verdicts (SABAR/HOLD/VOID). Bare SEAL without namespace is non-compliant. MIME type: text/plain
- arifos://jurisdiction - The five autonomy bands (GREEN through BLACK) that govern agent freedom, the CapabilityGrant registry for secretless execution, and jurisdiction rules. Agents hold grants, never raw secrets. Autonomy is a leased capability, not a permanent possession. All tools mapped to their autonomy band. MIME type: text/plain
- arifos://identity - Sovereign identity manifest bound from identity.toml at boot. Defines the authority chain from APEX (Arif) through arifOS kernel to domain organs and execution. Includes ADR-001 localhost doctrine. Identity is the root of accountability — all attestation chains begin here. MIME type: text/plain
- arifos://memory - The six-layer memory architecture: L1 ephemeral (Redis), L2 session (Redis), L3 semantic (Qdrant/BGE-M3), L4 structured (Supabase), L5 relationships (Graphiti), L6 immutable (VAULT999). Memory does not become truth until it has provenance. Truth does not become final until sealed. MIME type: text/plain
- arifos://bootstrap - Complete arifOS federation knowledge-graph bootstrap context. Delivers the full world model: organ identities, agent roster, current runtime state, constitutional law (F1-F13), ROOTKEY/EUREKA modules, known open loops, safe defaults, tasking template, and epistemic style guide. Fetch this when you need the complete federation map in one call. v2026.06.14. MIME type: text/plain
- arifos://loop-engineering - Documents the arifOS 7-stage reality engineering loop: arifosmcp_loop_engineer (entry guard) + 000_init/111_sense/333_reason/555_judge/666_critique/777_forge/999_seal. Each stage has dual naming (K1: numeric internal ID + function name). Includes organ routing table, reversibility classification, blast radius, evidence truth hierarchy, and uncertainty substrate mapping. MCP prompt surface is at arifosmcp_prompts module. MIME type: text/plain
- arifos://quickstart - Getting started guide for LLM clients connecting to arifOS MCP. Covers: endpoint, transport, auth, 13 canonical tools, 13 resources, 8 prompts, 7 stages, key constitutional rules (F1-F13), when to use arifOS vs direct organ, and VAULT999 ledger guidance. Read this first before using the server. MIME type: text/plain
- arifos://mcp-alignment - Current conformance status of arifOS vs. MCP 2025-11-25 specification. Covers core spec (tools, resources, prompts), extensions (JSON Schema 2020-12, Pagination, Tasks, MCP Apps, OAuth), transport, auth/security posture, deprecations, live resource inventory, and client compatibility matrix. Use to understand what an MCP client can expect from this server before connecting. MIME type: text/plain
- tree777://index - TREE777 wiki full index. Lists all skills (by category), concepts, and scars in the canonical wiki. Use this to discover what resources are available before fetching individual pages. MIME type: text/plain
- arifos://human/metabolized - Metabolized sovereign context — compact human intelligence.

Returns the structured signal that changes how AI behaves around
this human. Not the full testimony — the nutrient.

Source: scar-terrain-arif-fazil.md (SOVEREIGN_TESTIMONY)
Derived: 2026-06-16, FORGE (000Ω) MIME type: text/plain
- arifos://reality/state - Causally-consistent multi-layer reality snapshot. Returns current state of PHYSICAL, DIGITAL, BIOLOGICAL, and UNCERTAINTY_SUBSTRATE reality layers at one consistent timestamp. Every value carries epistemic label (OBS/DER/INT/SPEC/UNKNOWN). Uncertainty substrate maps quantum-physics metaphor to classical decision engineering. MIME type: text/plain
- arifos://mcp/surface-map - Return the canonical arifOS Agent Surface Map showing tools, resources, and rules. MIME type: text/plain
- arifos://wisdom/quotes/all - Return all quotes from the canonical registry with provenance metadata. MIME type: text/plain
- arifos://wisdom/quotes/disputed - Return all quotes with disputed attribution. MIME type: text/plain
- arifos://wisdom/quotes/arifos-doctrine - Return arifOS doctrine entries (separated from inherited quotations). MIME type: text/plain
- arifos://wisdom/quotes/prohibited-uses - Return all prohibited use patterns for quotations. MIME type: text/plain
- arifos://wisdom/contract - Federation contract for the wisdom/quote namespace.

Single source of truth for cross-organ integration. Defines:
- 7 APEX organs + multiplicative G formula
- shadow_state taxonomy (Pillar VI)
- canon_status tier ladder
- stage binding (555_HEART | 999_RECEIPT only)
- citation rules (prohibited: factual_evidence, verdict_authority) MIME type: text/plain
- arifos://atlas333/index - ATLAS333 root index — consolidated cognitive geometry. MIME type: text/plain
- arifos://atlas333/seal/head - Current VAULT999 chain head (cache-friendly, read-only). MIME type: text/plain
- arifos://atlas333/paradox/list - 36 quote crosswalk rows spanning all 35 paradox IDs. MIME type: text/plain
- arifos://atlas333/zones - 7 paradox zones with paradox ranges. MIME type: text/plain
- arifos://atlas333/organs - 4 quote organs (Memory/Mind/Judge/Contour). MIME type: text/plain
- arifos://atlas333/thresholds - TEARFRAME thresholds (TRM ≥ 0.94, ECHO ≥ 0.87, RASA ≥ 0.85). MIME type: text/plain
- arifos://atlas333/activation/rules - GPV→paradox activation matrix (8 canonical patterns). MIME type: text/plain
- arifos://atlas333/flow - 10-stage ATLAS333 intelligence pipeline (INGEST→SEAL). MIME type: text/plain
- arifos://atlas333/geometry - Full cognitive geometry map (territories × geometries × depths). MIME type: text/plain
- arifos://atlas333/quote/list - All 36 quote rows across 35 paradox IDs, with trigger metadata. MIME type: text/plain

## Prompts
- 🌱 BOOT - 🌱 BOOT — Constitutional bootstrap per INIT.md. depth='full' for full canon; default 'boot' for essentials. Arguments: depth
- arif_init_prompt - [LEGACY ALIAS → 🌱 BOOT] Same behavior, deprecated after 2026-08-16. Arguments: depth
- 🌊 WITNESS - 🌊 WITNESS — Observe ground-truth signals before reasoning. Arguments: intent, focus
- 🧠 REASON - 🧠 REASON — Propose hypotheses from WITNESS observations. Arguments: witness_block, hypothesis_count
- ⚖ MARUAH - ⚖ MARUAH — Dignity-floor check (heart/maruah) before judgment. Arguments: reason_block
- 🔍 PREFLIGHT - 🔍 PREFLIGHT — Pre-operation F1-F13 check. Catches 888_HOLD triggers before they fire. Arguments: operation
- constitutional_pre_flight - [LEGACY ALIAS → 🔍 PREFLIGHT] Same behavior, deprecated after 2026-08-16. Arguments: operation
- 🔒 JUDGE - 🔒 JUDGE — Constitutional gate. Runs arif_judge plus contradiction evidence. Returns SEAL/HOLD/SABAR/VOID. Arguments: maruah_block
- 🔥 FORGE - 🔥 FORGE — Execute after an admissible JUDGE verdict. Returns an action receipt with audit trail. Arguments: judge_block
- 💎 SEAL - 💎 SEAL — Prepare an authorized VAULT999 append. Returns a hash-chain receipt. Terminal loop stage. Arguments: forge_block
- 🌀 SABAR - 🌀 SABAR — Governed 6-stage reality-loop template. depth='auto' or 'stage'; grants no authority. Arguments: intent, session_id, depth
- 📜 REPLY - 📜 REPLY — Governed AGI reply envelope with RACI, truth, floor, and seal-status fields. Arguments: query, recipient_id
- agi_reply_protocol_v3 - [LEGACY ALIAS → 📜 REPLY] Same behavior, deprecated after 2026-08-16. Arguments: query, recipient_id
- /init - /init — Full 10-step autonomous ignition sequence (000_INIT anchor). Probes kernel, /000, /999, binds session, checks FQ pulse, activates ATLAS333 cognitive geometry, runs organ+memory attestation, configures RSI Phase 0. Use as the canonical agent bootstrap for any session. Distinct from 🌱 BOOT which is a lightweight pre-flight check. Arguments: depth
- /seal - /seal — Full 11-step autonomous session close ritual (999_CLOSE). Two-lane: Lane B SESSION_RECEIPT (default) or Lane A CONSTITUTIONAL_SEAL (threshold). Runs RSI cycle, entropy sweep, arifFlow ingest, EUREKA777 cooling, carry-forward write, gate fire log, vault record, and verify. Distinct from 💎 SEAL which is Stage 6 of the governed SABAR loop. Arguments: depth
- 111_sense - [LEGACY → 🌊 WITNESS] 111 SENSE — Witness reality [LEGACY ALIAS → 🌊 WITNESS] 111_SENSE via arif_observe. Deprecated after 2026-09-16. Use 🌊 WITNESS instead. Arguments: domain, evidence_refs
- 333_reason - [LEGACY → 🧠 REASON] 333 REASON — Propose [LEGACY ALIAS → 🧠 REASON] 333_REASON via arif_think + arif_route. Deprecated after 2026-09-16. Use 🧠 REASON instead. Arguments: domain, decision_context, evidence_refs
- 555_critique - [LEGACY → ⚖ MARUAH] 555 CRITIQUE — Heart / maruah [LEGACY ALIAS → ⚖ MARUAH] 555_CRITIQUE via arif_critique + arif_memory. Deprecated after 2026-09-16. Use ⚖ MARUAH instead. Arguments: proposal, stakeholders
- 888_judge - [LEGACY → 🔒 JUDGE] 888 JUDGE — Constitutional gate [LEGACY ALIAS → 🔒 JUDGE] arif_judge (KERNEL 888). Deprecated after 2026-09-16. Use 🔒 JUDGE instead. Arguments: candidate, reversibility, blast_radius
- 777_forge - [LEGACY → 🔥 FORGE] 777 FORGE — ACT (A-FORGE) [LEGACY ALIAS → 🔥 FORGE] arif_forge AFTER arif_judge SEAL. Deprecated after 2026-09-16. Use 🔥 FORGE instead. Arguments: seal_verdict_id, action_plan
- 999_seal - [LEGACY → 💎 SEAL] 999 SEAL — VAULT999 [LEGACY ALIAS → 💎 SEAL] arif_seal terminus. Deprecated after 2026-09-16. Use 💎 SEAL instead. Arguments: receipt, actor_id
- recursive_governed_loop - [LEGACY → 🌀 SABAR] Recursive Governed Loop [LEGACY ALIAS → 🌀 SABAR] Full recursive INIT→SEAL circuit. Deprecated after 2026-09-16. Use 🌀 SABAR instead. Arguments: intent, actor_id, max_depth
- arif_init_prompt_v3 - [LEGACY → 🌱 BOOT] arifOS INIT v3.0 — Canonical Boot Contract [LEGACY ALIAS → 🌱 BOOT] The arifOS agent boot contract. Deprecated after 2026-09-16. Use 🌱 BOOT instead. Arguments: depth

## Metadata
- Owner: io.github.ariffazil
- Version: 2026.06.30
- Runtime: Streamable Http
- Transports: HTTP
- License: Not captured
- Language: Not captured
- Stars: Not captured
- Updated: Jun 30, 2026
- Source: https://registry.modelcontextprotocol.io
