[The Agent OS]
Put agents to work.
Every run under identity, policy, audit, budget, and compounding skills.
The governed boundary
Everything an agent can do —and the one gate it all crosses.
Toggle eleven built-in capabilities on. Every call the agent makes is checked against policy, paused for you the moment it's irreversible, and written to the journal. That boundary is the platform — not a feature you bolt on.
capability manifest · agent-04
- web_searchsearch the web
- memorydurable facts across threads
- browserheadless render + extract
- http_clientany http api
- knowledgerag over your docs
- filesworkspace read + write
- code_runnerrun python and js
- sandboxdisposable linux
- computerpersistent vmalways-on
- plugin_builderbuild new tools
- skill_builderauthor skills
+ connectors · plugins (wasm) — the same shelf, extended
journal · audit trace
Three surfaces. One substrate.
The substrate is capabilities — built-in tools, your sandboxed code, connectors — bound once, governed at the source, consumed by all three surfaces.
Frameworks help agents think. An Agent OS governs what agents can do.
An OS earns its name by governing what runs on it.
Every effect an agent has on the world crosses a gate it can't skip — checked on every call, written to the journal, and enforced by the platform, not by whoever wrote the agent.
Not a framework. Not a firm. An Agent OS.
Build it yourself
Open-source harnesses hand you a runtime. You author every role, hold the keys, and you're the one enforcing trust.
Have it done
Forward-deployed teams deliver trust as an engagement — scoped as a project, not a product.
Noorle
Trust and judgment as product: a gate nothing skips, an audit journal by default, skills that compound.
Latest from the log.

One Source, Three Durability Tiers: How Noorle's Program Runtime Is Built
Durability isn't one mechanism — it's a spectrum. A well-built orchestration runtime picks a different point on it for each kind of state it owns, on purpose.
Read →
Outside the Sandbox: Why Production Agent Runtimes Need a Hybrid Architecture
Most agent platforms force you to choose between security and state — orchestration inside the sandbox is convenient but unsafe; orchestration outside with ephemeral sandboxes is safe but stateless. The hybrid pattern resolves the trade-off.
Read →
Frameworks vs. Runtimes: The Next Shift in AI Agent Infrastructure
Frameworks taught us how to build agents. Runtimes are where agents actually run. Understanding this distinction is the key to shipping agents that work in production.
Read →Build on it — or have us run it for you.
Build on the platform
Compose capabilities and ship a governed agent this week — for your own operations, or for clients you serve. Start with a small job or from scratch.
Works runs it for you
Your back office still runs by hand? Our own team builds and runs an agent workforce for your business — starting with a pilot mission.