Your own AI agent. Really yours.
zombie-crab gives every person a private agent in its own container — isolated by the Linux kernel, reachable through a single authenticated door. Put in a name and an email and we'll open it for you.
A real agent of your own, walled off by the kernel.
Every user gets a private agent in its own container — separate volume, non-root, no shared surface. Isolation between users' agents is enforced by the Linux kernel, not by application filters.
And who gets to reach which agent?- One container, one volume, one non-root agent — per user.
- Secrets are write-only: entered once, never shown or returned.
- Injected out of band — mounted read-only into your agent, never through chat.
A hierarchy your company already recognizes.
Powered by Mycelium's multitenancy, access nests the way an organization does: a tenant holds subscription accounts, each account holds agents, and each agent is shared with members — with read or write permission, per person. Corporate structure, expressed as software.
But what does it remember about your work?- Tenant → subscription account → agent → member.
- Read or write, decided per person and per agent.
- One authenticated door in front of all of it.
It remembers the things, not just the words.
As you talk, your agent records what matters — people, projects, systems, and how they connect — into a knowledge graph it keeps for you. Not a transcript it re-reads: named things it can look up. You can open that graph, browse it by type, search it, and see which conversation each fact came out of when it can be traced.
And every agent can be shaped to fit- Served by an MCP server inside the gateway — no extra container, no external service, nothing to download.
- Yours alone: one graph per member, per agent. Nothing is pooled.
- Read-only for you: the agent writes it, you audit it.
Custom agents, cloned clean for everyone.
Operators define an agent from a template — its persona, skills, and memory. Every user gets a private, isolated clone on first use. Admins register and assign models per user, and publish shared skills and files that cascade read-only to everyone in scope.
Ready for yours?- Templated persona, skills and memory — seeded once, per user.
- Per-user model registry and assignment.
- Shared skills and files cascade read-only across a scope.
Step through the door.
Tell us who you are. We'll add you to the default workspace and send you straight to sign-in — no password, ever.