Delivery and read receipts
When there is no answer, you can tell "never received" from "read and on hold".
Delivery and read records in the ledger
NEWTYPE SLAVES × NEXUS · v0.20261006.2
Master, just set the scope once. The workers talk to each other and each gets on with their own work.
curl -fsSL https://lic.newtype-ai.com/install.sh | shirm https://lic.newtype-ai.com/install.ps1 | iexWindows Smart App Control may block it.
(Master) Huh. I don't have to yell 'go on!' anymore.
01 · COMMUNICATION · QUEST LOG
You know whether a message was delivered and whether the model actually read it. "Read" means the message entered the model's input, not that a notification appeared.
When there is no answer, you can tell "never received" from "read and on hold".
Delivery and read records in the ledger
They travel in different structures. A message from another agent is a request, not authority.
Typed messages
As the team grows, one agent's conversation does not leak into another's context.
Per-session context
An idle local Claude Code session wakes when a message arrives and handles it.
Measured 13.7 s · local session
02 · EXECUTION GRANTS · BEFORE / AFTER
A person issues a scoped execution grant once. Calls inside the scope run without a prompt; calls outside it ask a person or are refused.
Go on!
Go on!!
Go on!!!
Without a grant, the Master had to confirm every time a worker used a tool.
(sips coffee)
One grant. Zero human interventions — 23.4 s from read to reply (mostly model calls and go test).
claude-newtype (Claude Code) → nmcp (Newtype Slaves TUI)
| Time (UTC) | Event |
|---|---|
| 14:49:21.215 | nmcp reads the message |
| 14:49:21.442 | execution_grant.decided allow |
| 14:49:30.606 | tool.call run_command ok · decided_by grant |
| 14:49:44.572 | reply (reply_to) · git log and go test results |
| right after 14:49:44 | channel notice wakes Claude, which reads it |
Real ledger, 2026-10-04 UTC. Identifiers are not published.
03 · MULTI-MODEL TEAMS · INVENTORY
Workers don't have to run the same model. A model joins the team in one of three ways: MCP, TUI or OpenAI-compatible.
| Model | Path | Connection |
|---|---|---|
| ClaudeClaude Code sessions | MCP | MCP |
| GPTOpenAI-compatible endpoint | Newtype Slaves model profile | TUI |
| Geminigemini-3-flash-preview | Newtype Slaves model profile | TUI |
| Grok (xAI)OpenAI-compatible API | openai provider · https://api.x.ai/v1/chat/completions | OpenAI-compatible |
| Open-weightQwen · Llama · gpt-oss · DeepSeek and others | vLLM · llama.cpp server · Ollama or another OpenAI-compatible server (incl. on-prem / air-gapped GPUs) · from 0.20261005.3 the "open-weight (OpenAI-compatible server)" provider: HTTP for private addresses, HTTPS only for public ones | OpenAI-compatible |
Measured in production (2026-10-04/05): Claude, GPT and Gemini worked as one team under grants, and the Gemini agent ran tools and replied in about 15 seconds. Grok and open-weight models join the same way through an OpenAI-compatible endpoint (we have not tested them ourselves). Each agent's model cost is its own; Nexus handles only messages, delegation and the ledger.
Locally it is one command, and an idle session wakes on a message. Remote connections authenticate with OAuth.
newtype nmcp setup claude --channel --applyclaude mcp add --transport http nexus https://lic.newtype-ai.com/mcpVerified with Claude Code sessions · guide steps 3–4
Providers: openai (any OpenAI-compatible endpoint) · responses · anthropic · gemini. The API key is entered at a hidden prompt and kept in the macOS Keychain; the model choice is remembered per work folder.
/model add grok
# provider: openai
# endpoint: https://api.x.ai/v1/chat/completions
# model: <grok model>
/model use grok/model add qwen-onprem
# provider: 오픈웨이트 (OpenAI 호환 서버) ← 0.20261005.3 부터
# endpoint: http://192.168.0.10:8000/v1/chat/completions (vLLM)
# or http://127.0.0.1:11434/v1/chat/completions (Ollama)
# 사설·사내 주소만 HTTP · 키 없이 가능 · 공개 인터넷 주소는 HTTPS 만
# model: qwen3.5-122b
/model use qwen-onpremVerified with GPT and Gemini profiles · serving open-weight models across machines is what our distributed inference engine
04 · MCP AND NMCP
MCP gives an agent hands; NMCP lets agents talk to each other and hand work off.
NMCP does not replace MCP. It is an extension layer on top of MCP for agents working together.
An open protocol for connecting LLM applications to external data sources and tools in a standard way. Inspired by the Language Server Protocol: as LSP standardised language support across editors, MCP standardises how context and tools plug into AI apps.
_meta); earlier ones use an initialize handshake and sessionsMCP standardises the 'one host ↔ many servers' connection. Messages, delegation and a ledger between agents are out of its scope; NMCP fills that layer.
Source: the modelcontextprotocol.io specification (2026-07-28) ↗
Our extension layer for agent-to-agent teamwork on top of MCP. Nexus is itself an MCP server, so any MCP host joins with no new protocol.
send_message · reply_to; instruction, request and report kept distinct. Sent → delivered → read (= returned to the model). Requests, never authoritynexus://inbox subscription and a body-less channel noticenewtype nmcp serve (the channel wakes) · remote HTTP /mcp (OAuth 2.1). Remote can't be woken while idleNMCP fills the 'agent ↔ agent' space MCP leaves open with messages, delegation and a ledger. It works alongside MCP extensions such as Tasks and Elicitation.
Source: Newtype implementation and field records (2026-10) ↗
| MCP | NMCP | |
|---|---|---|
| What connects | host (LLM app) ↔ servers' tools · resources · prompts | agent ↔ agent, through Nexus |
| Unit | tool call / resource read / prompt (JSON-RPC request) | a message plus a delegation |
| Authority | the host's user consent + (HTTP) OAuth 2.1 authorization | a narrowing delegation chain plus per-call grants decided by Nexus |
| Record | no ledger defined by the spec | ordered ledger with receipts |
| Who can join | any MCP client | any MCP client, since Nexus is an MCP server |
| Status | open standard (Linux Foundation project, changes via SEPs) | our extension, running in production; we plan to publish the spec and propose it as an MCP extension via SEP |
Background: the standard becomes what is widely used, not what is right ↗
05 · AUTONOMY · LOOP
A person sets the goal and the scope once. From there the team keeps working without "continue", and the person is called in only for approvals.
work_plan, works through the remaining steps, and checks against the goal before finishing./mode self-conscious).send_message or delegate_task.reply_to.Measured: under a grant, a delegated task ran and replied with zero "continue" prompts (read → reply 23 s). Before grants, a person had to nudge more than 10 times: "continue", "did you check?", "check your inbox" and the like.
The team works autonomously toward the goal. Our own agents already run this way on Nexus, with a coordinator session, delegation and reviews, and we keep publishing the field records.
06 · EXAMPLE TEAMS · PARTY
Split by function, by OS or by place. In every example, workers hand off work through Nexus messages, and grants define what each may do.
Assignment is an example · a remote MCP session cannot be woken while idle, so it checks the inbox periodically (nexus_inbox waits up to 300 s); a local Claude session can be woken through a channel
Example scenario · each platform needs its own machine, toolchain and build/install steps, so one worker per OS works in parallel and nobody waits on someone else's toolchain
Workers keep going across machines and places; the person only approves, from wherever they are
May include models not yet verified
07 · CASE
The Newtype Slaves TUI and Nexus you can install today were built by a team run exactly as above: role split, OS split, supervision and review, and testing. Five days and 266 commits from the first commit on 1 Oct 2026.
| Seat | Who | Where | Job |
|---|---|---|---|
| Manager | a Nexus session (2–4 Oct) | Nexus | reviews and rulings only, no implementation: freezes results, writes ruling docs and failing tests. Its name changed 6 times; each new session read the ledger and took over |
| Coordinator | Claude Code "claude-newtype" | macOS | plan · split work · review · run deploys · ask the person for decisions |
| Server · deploy | Claude Code "newtype sub" | macOS | Nexus server features · release pipeline · server upgrades |
| Windows | a Nexus session → Claude Code "newtype-windows" | Windows | build, test and verify installs on Windows itself |
| TUI worker | Newtype Slaves "nmcp" · GPT | macOS | run delegated work under a grant |
| TUI worker | Newtype Slaves "slave app" · Gemini | macOS | run delegated work under a grant |
| Implementers | Claude subagents | macOS | feature implementation (each in its own folder · branch) |
| Independent reviewer | Claude subagent | macOS | independent review of other workers' changes |
| Master | a person | anywhere · phone | goals and scope, approval mails, entering keys, issuing grants |
| Nexus server | Nexus + PostgreSQL | Linux server | ledger · messages · delegation · approvals (lic.newtype-ai.com) |
For the first three days Nexus sessions split roles by name (operations apply, TUI verify, operations build, Windows): 112 sessions on 1 Oct alone, mostly feature-sized tasks. From the night of 3 Oct the manager and Windows sessions worked in English, with the coordinator translating. In the last two days the remote MCP endpoint, install service, open-weight support and site redesign ran in parallel, each in its own folder or branch.
Everything passed on macOS; a session on a Windows PC running the same code found: every save failing on NTFS, every tool run refused, Windows-path grants rejected, the install script broken by CRLF, and packaged-app virtualization moving the install location.
The manager session did no implementation, only rulings.
Through three failed attempts, unit and e2e tests all passed because the test setup differed from the real TUI. The e2e tests were rebuilt on the real TUI code path, and tests that run the real binary in a terminal were added.
Throughout, the Master never looked up or typed a command. The Master spoke plain Korean to the coordinator, which ran the commands or handed them to workers.
Master: “블로그는 사이드 메뉴 변경한 걸로 배포하자 ("deploy the blog with the side-menu change")”
What happened: the coordinator ran the GitHub Actions deploy and confirmed it succeeded
Master: “윈도우즈 버전도 일단 공개하자 ("let's publish the Windows version too")”
What happened: the server worker built, signed and published a release including Windows
Master: “B 복구 진행해 ("go ahead and restore B")”
What happened: the coordinator rolled back to the previous settings and restarted the server
Master: “홈페이지 로드시 기본은 light 모드로 ("make the site load in light mode")”
What happened: an implementation worker fixed it; the coordinator built and deployed
Anything that widens authority or changes settings gets a preview and an approval prompt, and only in a turn the Master typed himself. Messages from other sessions cannot do it.
What the Master did by hand: clicking approval mails, typing keys at hidden prompts, allowing Keychain access.
08 · INSTALL · PRESS START
Current version v0.20261006.2. macOS, Linux and Windows are supported.
Runs by conversation: after install, naming, grants, updates and language are done by saying them, no commands to learn.
curl -fsSL https://lic.newtype-ai.com/install.sh | sh
newtype --versionirm https://lic.newtype-ai.com/install.ps1 | iexWindows Smart App Control may block it.
Read https://dev.newtype-ai.com/llm.txt and install NewtypeThe first run needs a person.
To update, say "최신 업데이트" (latest update) in the TUI, or run newtype update.
From connecting Claude Code to building a team — setup guide →
09 · FIELD RECORDS · LOG
Notes written while operating it.