Marvin · operator console

Authenticate

Paste your operator API token. It is held in this tab's sessionStorage (cleared when the tab closes) and sent as Authorization: Bearer on every request — the same static bearer the CLI clients use.

Restore an encrypted Marvin backup to recover your settings, keys, password and memory on this machine. Only works on a fresh install.

On a dev box with no token configured, the API is open on loopback — press Enter with an empty field to continue.
Marvin operator console connecting…
Surface
❯ Chat
Operate
◇ Memory
⬡ Graph
⊙ Approvals
✦ Findings
◈ Attention
▤ Files
☺ People
◎ Life OS
▣ Devices
➤ Commands
✉ Mail
▦ Calendar
⌂ Household
Configure
⚙ Settings
☺ Persona
⚒ Tools
System
♥ Status
▚ Console
Learn
❓ Documentation

Console

foundation · story 9.1

The instrument panel for a thinking being. This foundation proves the served UI reaches a real, authenticated Marvin over the completed API — the surfaces fill in as Epic 9 lands. Below is a live systems check against this process.

Systems check
Liveness GET /healthz · open pending
Readiness GET /readyz · bearer pending
API surface GET /settings · bearer pending
Session
Auth — —

Chat

new conversation
Sessions
Ask Marvin something — a real cognitive turn runs against the live process. History is durable and survives a reload.
🔴 LISTENING — Live Air is on and your microphone is open waiting for you to speak…
thinking — a cognitive turn can take a moment…
hold SPACE

Turn on Live Air?

Marvin will keep your microphone open and listen continuously. Each time you stop speaking, what you just said is transcribed and sent to Marvin as a message — over and over, until you switch it off.

  • A red LISTENING bar is shown the whole time the microphone is open.
  • It stops on one click, and on its own if you leave this tab or this page.
  • No audio is stored — only the sentence being transcribed exists, in this browser, and it is dropped straight after.
  • Transcription follows your speech-to-text setting: on the cloud backend each sentence is sent to the transcription service and is a paid call; on local it never leaves this machine.

Memory

knowledge graph

Need a clean slate? Start fresh wipes memory, history, or does a full factory reset — always backed up first.

Secret candidates

review · approve · delete

Marvin saves every fact; anything that looks like a secret is flagged and hidden from the on-disk vault until you approve it. Delete what you don't want kept.

Memory tidy-ups

what Marvin merged, archived or dropped · undo any of it

Marvin tidies his own memory in the background — folding near-duplicates together and moving long-untouched facts out of everyday recall. Nothing is deleted, and anything here can be put back.

Memory history

who changed what · what changed since · what connects to what

Everything Marvin has recorded, forgotten or removed about you, and when. Nothing here changes anything — these are read-only views of your own record.

Graph

knowledge graph · nodes & edges

Drag to pan · scroll to zoom · click a node for detail. Gated memories show a redacted placeholder, never their content.

No memories to graph yet.

Approvals

operator gate
Pending
Active allowances
Permission history

What you have permitted and withdrawn, newest first.

Ask me again about…

Clears what Marvin remembers about having already asked you regarding one thing, so the next time it comes up you are asked again. This does not withdraw a standing allowance — use Revoke above for that.

Findings

inbox · SM-5 rating

Attention

pins

Pin a topic and Marvin researches it in the background (a web search + summary), then files the result in Findings. The label is just for your own organizing — it doesn't change what Marvin does. Research needs web search turned on and your approval to use it: without a standing approval the task waits in Approvals for your OK; if web search is turned off it can't run.

Commands

what Marvin has been asked to do in the world

Marvin acts through your enrolled devices. Commands still in flight are shown too — a phone that is off or out of signal has not failed, it simply has not answered yet, and hiding that would look exactly like a command that was never accepted.

Mail

your inbox, read-only

Read-only, and metadata only. Marvin lists who wrote, the subject and a snippet — it does not fetch message bodies unless you open one. It cannot send or reply from here: those need your explicit approval each time, and are switched off by default.

Calendar

what is coming, read-only

Read-only. Creating, moving and responding to events needs your approval each time and is switched off by default.

Household

who lives here, and who Marvin recognises

Enrolling issues one credential, shown once. Revoking stops that credential working immediately — the person stays on the roster, marked revoked, and their own memories are never touched.

Familiar faces

a consent register

This is biometric data, and it ships switched off. Marvin only recognises someone you have explicitly taught, from a photo you choose. Revoking erases that person's face data from disk — not a flag, an erasure — and it cannot be undone.

Devices

what may feed Marvin, and what it sent

Devices with an ingest-only credential — they may send Marvin signals and nothing else. Revoking deletes the credential; it is not recoverable, and the device stops being able to send immediately.

Signals journal

metadata only

Metadata only — never message bodies. Marvin records that a call, message or contact arrived and from which device, not what it said. Erasing reports a count for the same reason: it can delete what it was never able to show you.

Files

uploaded to Marvin

Files you've uploaded to Marvin (via the chat paperclip). Click a row to see its full details; Download saves the original file back to your device; Remove deletes it from Marvin's store. Removing a file here doesn't affect any chat turn it was already used in.

People

who Marvin knows

Everyone Marvin knows, however it learned about them — your phone, and later other sources. Someone here needs no phone number at all: add a name and they exist. Click a row to see every name, number and address Marvin has for them and which source said so. What you set survives every future phone sync. If Marvin can't tell two records apart it never merges them on its own — it asks, and the question waits on the Approvals page.

Life OS

goals · projects · commitments · habits · resources

Your Life OS, as Marvin tracks it. Create, edit and delete right here — and move items through their statuses with the "move to…" control, which only ever offers the legal next steps.

Goals
Projects
Commitments
Habits
Resources

Settings

self-describing schema

Persona

numeric dimensions

Adjust Marvin's numeric persona dimensions. An override is recorded, audited, and revocable — there is no free-text here (FR-24); natural-language shaping is a chat command.

Status

health · integrity · metrics

Tools

capabilities · read-only

Everything Marvin can do — built-in tools, tools it generated itself, and skills it has learned. You can ask Marvin to build a new tool or learn a skill below; each one waits in Approvals for your sign-off before it goes live.

Create a capability

Generate a tool

Marvin writes and sandbox-tests the tool; if it passes it waits in Approvals for your sign-off, then loads on the next restart.

Learn a skill

Marvin distils and canary-tests the skill; if it passes it waits in Approvals for your sign-off.

Tool generation and skill learning are off. Enable tool_selfgen_enabled and/or skill_learning_enabled on the Settings tab to create capabilities here.

Cogent Bridge

Talk to peer agents on a Cogent channel. cogent_send turns on once this is enabled with a channel + an allow-list of peers. Changes apply after a restart.

Documentation

what Marvin is · features · every setting explained