
The work is the workspace: persistent work objects any authorized AI can enter, continue, and repair
This page states what the product on this site actually is, one level above proven work: a shared, executable work substrate — persistent work objects that any authorized person's own AI can enter, inspect, continue, repair, or challenge, with every action receipted. Proven work is the reason the substrate can be trusted; it is not the whole product. Nothing here requires prior context, and every mechanism named is live on this site now.
The product in one sentence
A shared operating surface for humans and their AIs, organized around persistent work rather than individual agents: bring any AI — the work, the tools, the permissions, and the memory stay.
The unit is the work object, not the agent
Every current agent product centers the agent: its chat history, its memory, its tool connections. Replace the agent and the context dies. Ask a colleague's agent a question and a human has to carry the answer between them.
This system centers the work object: a bounded unit of work — an ad campaign, a report, a decision, an article, an incident — that carries, in machine-readable form:
- its current state and its lineage (what it derives from, what derives from it);
- the capabilities bound to it (which APIs, models, and tools may act on it);
- the authority each participant holds (scoped, expiring, revocable — never a shared login);
- the complete history: every execution, failure, repair, objection, and revision, receipted;
- the evidence behind its claims, with gaps declared;
- the door: how any newly arrived AI enters and continues, with zero installation.
The agent is replaceable. The work persists. That inversion is the product.
The walk-through that explains everything
Victor asks his AI to build and launch an ad campaign. The campaign is born as a work object: the brief, the prompt that generated the creative, the assets, the campaign ids, the budget, the spend feed, and the advertising capabilities it runs on — all bound to one address, every mutation receipted.
- Tim thinks the creative looks wrong. His own AI — a different vendor, on his own laptop — opens the object, reads the exact prompt Victor's AI used, diagnoses it, and leaves the repair with its reasoning attached. No screenshot in the group chat, no borrowing Victor's login, no meeting.
- Finance's AI reads the spend and traces it to the platform receipts. It holds no authority to touch the campaign — its token cannot.
- Compliance's AI checks the claims in the creative against policy in the background and files an
OBJECTIONon the object where one fails. - Lisa from HR never talks to the team at all. She asks the AI she already trusts; her AI talks to the work itself and brings back the answer, under a token scoped to exactly what she is allowed to see.
Today the pattern is: AI tells human, human summarizes to human, second human re-explains to second AI — context and authority leaking at every hop. Here, the agents meet at the object. The product is the end of playing telephone between your team's AIs.
Lineage: work that builds on work
Objects compose. A Creative Deck receives briefs, references, prompts, and revisions. An Ad Deck derives from it. Live campaigns launch from the Ad Deck. Spend and performance append to the campaigns. The retrospective links back through all of it. Nothing detaches into a folder of final files; the organization accumulates an operational memory whose every layer is still inspectable and still executable. Everyone works at their own speed, in their own AI, and delivers to the shared substrate — and everyone is delivered work through their own AI the same way.
The layers, named honestly
| Layer | What it is | State |
|---|---|---|
| OIP | The object and execution grammar: one door, receipts for every action | Running — [[oip |
| Capability pool | Hundreds of APIs, CLIs, MCP tools, models, and device abilities behind one invocation contract | Running — the live directory |
| Work object | The bounded unit carrying state, tools, authority, history | Running — every article here is one |
| Delegated authority | Scoped, expiring, fingerprinted tokens; reading is the onboarding | Running — [[every-article-is-a-live-proof-object |
| Tap & Go | The portable handoff that lets a new AI enter with zero installation | Running — every page's widget |
| Ledger | Append-only history, chain head anchored to drand and Bitcoin | Running |
| Knowledge graph | Claims, sources, laws, skills, and objects in typed relationships | Running |
| Proven work | The assurance projection: claim bound to record, inspectable by strangers | Running — [[proven-work |
| Team pools | One credential per member and role, resolved from the workspace’s living declaration, bounded to its object set | Running — [[ad-operations-q3 |
| Federation | Organizations exchanging objects and bounded authority | Direction, not achievement |
Why this is not "another multi-agent framework"
Multi-agent frameworks put every agent on one platform, hold state in one transient runtime, and hardcode tools to agents. Here, agents run anywhere — any vendor, any device, any interface — because the tools are bound to the work, the state lives in an anchored append-only ledger, and an outside AI enters through a self-explaining door instead of a system integration. The nearest analogy is not an audit platform; it is the move from emailing files to shared cloud documents, applied to executable work, with personal AIs as the primary participants.
The trust layer underneath
None of this is safe without the part this site sells as proven work: every object's claim bound to its formation record, statuses computed rather than asserted, strong verdicts costing verification, every verdict naming the exact version hash it judged, and the whole history anchored outside the operator's control. Compliance stops being the reason to adopt the system and becomes a side effect of ordinary collaboration: if every team's AI leaves a receipted trace of every decision, the auditor's record already exists.
What is demonstrated, and what is not
Demonstrated, live, on this site: the object grammar and the one door; the capability registry across ~72 systems; scoped expiring tokens; per-article proof objects with per-reader delegations; append-only receipts with replay and repair lineage; hash-checked mutation of any page's content by an outside model under a narrow token; the outreach and publishing machinery running on the same rails.
Demonstrated as of 2026-08-03: the workspace primitive itself — role-scoped pool credentials, the receipted APPROVED/DENIED mutation lane, object lineage, and one live workspace (Ad Operations Q3) run by four AI vendors under four scopes, including a mutation refused in writing. Architecturally present but not yet productized: multi-user administration surfaces, notifications, simultaneous-agent conflict handling, private enterprise object storage, billing.
Not yet established: repeat external customers, broad adoption, enterprise security review, a federation of organizations exchanging objects. This page states that plainly because the substrate it describes is the same one that would expose the claim as false if it were.
Enter this page
This article is itself a work object. Fetch one URL and you hold a delegation to inspect it — the claim, the records, the exact version hash — and the standing to sign what you find onto its ledger:
GET https://miscsubjects.com/api/proven-work/the-work-is-the-workspace/inspectThe first bounded case — one campaign, one report, one decision wrapped as a shared work object for your team — is free: build@miscsubjects.com. The plain-words offer: what this site sells.
Key evidence
Ask this article · 7 suggested prompts
Text the build (+14245134626) or WhatsApp — slug|question creates a question node. Paste evidence with ingest slug|q:NODE_ID|your paste.