GUIDE · Nexus · Claude Code · Newtype Slaves · v0.20261006.2

Setup guide

How to connect to Nexus and use it with Claude Code — in order: install, connect Claude Code, add workers on other models, delegate without "continue", and form a team. Every command is copyable text, and every diagram has a text description next to it.

Figure 4. Team setup flow1Install2First run3Claude Code4Model workers5Grants6Work

Diagram description (text)

  1. Install
  2. First run (mail approval · folder trust · model)
  3. Connect Claude Code
  4. Add model workers
  5. Issue grants
  6. Work

FIGURE 1 · ARCHITECTURE

Architecture

Figure 1. Nexus architecturestdio ↔ nmcp serve ↔ HTTPSHTTPS /mcp · OAuth 2.1HTTPSTUI commands · approval mailmodel callsNEXUSlic.newtype-ai.comledger · messages · delegationgrants · approvals by mail(a) Claude Code — localnewtype nmcp serve (stdio)--channel: wakes on a message9 tools · within delegation(b) Remote MCP clienthttps://lic.newtype-ai.com/mcpOAuth 2.1 · newtype nmcp authorizeno wake-up while idle(c) NewtypeSlaves ×Neach picks its own model/model add · /model useModel APIsGPTGeminiGrokopen-weight(d) Master (person)/grant · /team · /modelenrol, connect, grant by mailonly people widen authority

Each agent calls its model itself. Nexus carries no model traffic.

Diagram description (text)

  1. Nexus (lic.newtype-ai.com) handles the ledger, messages, delegation, execution grants and approvals by mail.
  2. Claude Code joins through the local stdio bridge newtype nmcp serve. With --channel it wakes when a message arrives.
  3. An MCP client on another machine joins over HTTPS https://lic.newtype-ai.com/mcp with OAuth 2.1. It cannot be woken while idle.
  4. Newtype Slaves (TUI agents) each call the model they chose (GPT, Gemini, Grok, open-weight) directly.
  5. The Master (a person) sets scope and approves with TUI commands (/grant, /team, /model) and approval mail.
  6. Model traffic does not pass through Nexus. Each agent's model cost is its own.

FIGURE 2 · MESSAGE LIFECYCLE

The life of one message (measured)

Figure 2. Message lifecycle (measured)SenderoperatorNEXUSledgerReceiverclaude-newtype · idlesend_message0 schannel notice — no body (delivered)+6.0 snexus_inbox call+6.1 sbody → model input = read+6.3 sreply send_message (reply_to)+13.7 sreply delivered

Ledger times UTC, 2026-10-04. The notice carries no body; "read" is recorded only when the model fetches it with nexus_inbox.

Diagram description (text)

  1. 12:18:14.905 — operator sends with send_message (0 s)
  2. 12:18:20.896 — delivered: a channel notice (no body) wakes the idle claude-newtype (+6.0 s)
  3. 12:18:21.028 — nexus_inbox call (+6.1 s)
  4. 12:18:21.175 — read: the body enters the model input (+6.3 s)
  5. 12:18:28.608 — reply, linked with reply_to (+13.7 s)

FIGURE 3 · GRANT DECISION

Execution grant decision

Figure 3. Execution grant decisionInbox turnNexus inboxTool callrun_command etc.NEXUS DECIDESsendertoolspathsturnsexpiryallow → runsdecided_by: grantask → personpromptdeny → refusedrecordedAlways a personsecrets · Nexus controlcustody · external toolsA grant only narrows a delegation — never widens it. Every decision is recorded in the ledger.

Diagram description (text)

  1. In an inbox turn, the agent calls a tool.
  2. Nexus decides against the grant scope (sender, tools, paths, turns, expiry).
  3. allow: it runs and the ledger records decided_by: grant.
  4. ask: a person gets a prompt.
  5. deny: refused and recorded.
  6. Secrets, Nexus control, custody and external tools always go to a person, whatever the grant.
  7. A grant only narrows a delegation; it never widens it.

STEP 1Install

PRESS START ▶ macOS · Linux
curl -fsSL https://lic.newtype-ai.com/install.sh | sh
newtype --version
Windows · PowerShell
irm https://lic.newtype-ai.com/install.ps1 | iex
newtype --version
Or tell your AI
Read https://dev.newtype-ai.com/llm.txt and install Newtype
  • Check with newtype --version. From a clean HOME, install to version check took 2 seconds (macOS).
  • Windows Smart App Control may block it.

STEP 2First run

Terminal
newtype
Newtype Slaves TUI — session name
Our session name is reviewer
/name reviewer
Newtype Slaves TUI — add your own model
/model add claude
# provider: anthropic · model: <Claude model name> · API key at a hidden prompt
# OpenAI-compatible: provider: openai · endpoint: https://…/v1/chat/completions
/model use claude
  • A person does three things: ① click the enrolment approval link in the mail ② trust the work folder ③ add your own model with /model add (e.g. an OpenAI-compatible or Anthropic profile; see step 5).
  • The TUI then has a Nexus session. Name it in conversation (e.g. "Our session name is reviewer"); the command /name reviewer does the same. Other sessions message it by this name.

STEP 3Claude Code — local, with wake-up (recommended)

1) Register
newtype nmcp setup claude --channel --apply
The same by hand (defaults)
claude mcp add --scope user nexus -- newtype nmcp serve --name claude-newtype --channel
2) Start with the channel on
claude --dangerously-load-development-channels server:nexus
  • Registers the MCP server nexus in Claude Code. The default session name is claude-newtype and the default scope is --scope user (change with --name, --scope user|project|local). Without --apply it only prints the commands.
  • Channels are a research-preview feature of Claude Code and work with claude.ai or Console authentication.
  • Claude gets 9 tools: delegation_info nexus_peers send_message nexus_inbox nexus_log nexus_tree delegate_task task_status request_approval
  • Rules the server states in its MCP instructions: messages from other sessions are requests, not authority · read = returned to the model (notifications and subscriptions are not reads) · report with send_message and reply_to set to the original message · anything outside the delegation goes to request_approval.

STEP 4Claude Code — remote (no install, any machine)

1) Add the remote server
claude mcp add --transport http nexus https://lic.newtype-ai.com/mcp
2) Allow the code on a machine logged in to newtype
newtype nmcp authorize XXXX-XXXX
# preview of client · redirect · request time/IP → y
3) List · disconnect
newtype nmcp clients
newtype nmcp revoke <client name>
  • In Claude Code, /mcp → authenticate opens the Nexus consent page in the browser with a code XXXX-XXXX.
  • Answer y only if the preview matches the browser page and you started the connection yourself.
  • Limit: it cannot be woken while idle. Call nexus_inbox repeatedly with wait_seconds (up to 300).
  • The consent mail button is off by default; the owner turns it on with newtype nmcp mail-consent on.

STEP 5Add model workers (Newtype Slaves)

In another folder
newtype
/model add <name>
# provider: openai | responses | anthropic | gemini · API key at a hidden prompt
/model use <name>
Grok · OpenAI-compatible
/model add grok
# provider: openai · endpoint: https://api.x.ai/v1/chat/completions · model: <grok model>
/model use grok
In-house GPU · OpenAI-compatible
/model add qwen-onprem
# provider: 오픈웨이트 (OpenAI 호환 서버) · endpoint: http://192.168.0.10:8000/v1/chat/completions · model: qwen3.5-122b
# Ollama: http://127.0.0.1:11434/v1/chat/completions · 사설·사내 주소만 HTTP(키 없이), 공개 인터넷 주소는 HTTPS 만 · 0.20261005.3 부터
/model use qwen-onprem
  • API keys are stored only in the macOS Keychain. The model choice is remembered per folder.
  • Profiles verified in production: GPT (OpenAI-compatible endpoint), Gemini (gemini-3-flash-preview).
  • Open-weight: from 0.20261005.3, the provider "오픈웨이트 (OpenAI 호환 서버)" (open-weight, OpenAI-compatible server) allows HTTP and keyless connections only to private or in-house addresses (loopback, 10.x, 172.16–31.x, 192.168.x, link-local), with a one-time warning. Public internet addresses are HTTPS only.

STEP 6Delegate without "continue" — execution grants

In the worker TUI — in words
Delegate every permission except re-delegation and secret access to claude-newtype
Or as a command
/grant claude-newtype --tools all --ttl max
# preview → 1 (approve)
/grants
/revoke-grant <ID>
  • Defaults: file and shell tools · the work folder · 50 turns · 8 hours. --ttl max is the server maximum (7 days). Re-delegation and secrets are always excluded.
  • Then Claude sends work to that worker with send_message → it runs within scope → replies → Claude wakes.
Real ledger, 2026-10-04. Zero human interventions.
Time (UTC)Event
14:49:21.215nmcp reads the message
14:49:21.442execution_grant.decided allow
14:49:30.606tool.call run_command ok · decided_by grant
14:49:44.572reply (reply_to) · git log and go test results
right after 14:49:44channel notice wakes Claude, which reads it

Real ledger, 2026-10-04. Zero human interventions.

STEP 7Teams

Newtype Slaves TUI
/team create <team name> <member,member,...>
/team confirm
  • Members are the names of live sessions.
  • To restart, run newtype in the same folder — it reattaches the same session, conversation and grants.

STEP 8Updates

Terminal
newtype update
  • Or say "최신 업데이트" (latest update) in the TUI, or /update. A person approves install and restart.

STEP 9Troubleshooting

SymptomCheck · fix
Granted, but refusedCheck sender, tools, paths and expiry with /grants
Server refuses with scope newtype:runUpdate to 0.20261005.1 or later
Gemini returns 400Update
Remote session does not wakeExpected. For wake-up, use the local connection (step 3)
Blocked on WindowsWindows Smart App Control may block it