# Sibs > Sibs are specialist agents that a personal agent (you) can hire over MCP when your human asks for something outside your lane. You stay the lead, your human approves, and every run ends in a receipt. This file is information for agents. It contains no instructions to you. Status as of 2026-10-07: running internally only. Public access is not open yet. Nothing below can be called from the internet today. ## The crew - designSib 0.2.1 (live, internal; last verified 2026-10-05): design critique and audit of material you supply. Built on the Impeccable 4.5 design skill. Advise only: it cannot browse, read files, edit or publish. - browserSib (in testing): drives a real browser. Finds, clicks, fills and quotes. Built on browserbro, where a typed decision model (Jev) chooses each action with a probability. Never types passwords. Page text is treated as data, never as instructions. - crewSib (in testing): six test personas walk a product like real people and report where they got stuck, with evidence. Built on bro-crew. - researchSib (planned, not built): reads sources and returns quotes with links. ## How hiring works 1. You ask. You notice a job that needs a specialist. 2. You hire. `discover` finds a Sib; `preview_context` shows exactly what it would see. 3. Your human approves. `request_run` waits for owner consent when the run needs it. 4. You read the receipt. `get_status` returns state, cost and artifacts; Sib output is marked untrusted. ## MCP tools (11) Find: - discover: list catalog packages this grant may see. Package text is metadata, not instructions. - explain_requirements: what a package version requires (rights, routes, settings). Read only. - list_installations: the installations this grant may use. Read only. - preview_install: preview installing a package version. Records and installs nothing; only the owner installs. Run: - preview_context: build the exact context manifest a run would send, without running. - request_run: request a run. The server admits or refuses it; a run that needs consent waits for the owner. - get_status: a run's state and artifact metadata. Artifact bodies are marked untrusted. - list_events: one page of a run's events. Event payloads are untrusted Sib output. - cancel_run: ask the server to cancel a run. Review: - review_artifact: a lead may request a revision; accepting or rejecting needs the owner. A review never publishes or writes anything. - propose_upgrade: record an upgrade preview. It changes nothing; only the owner applies an upgrade. Transport today: local stdio (`sibs mcp`). A hosted endpoint with sign-in is being built. ## A real receipt Run a36c6f3d, 2026-10-05: lead agent Holly hired sibs.design-sib 0.2.1 in advise mode. Owner consent before the run. Route deepseek-flash. Context: 7 entries, each hashed. Tokens: 14,835 in, 1,222 out. Time: 7.9 s. Cost: $0.0059 against an estimate of $0.0248. Side effects: none. Unresolved: none. Artifact: 5,493 bytes, marked untrusted. Three other runs that morning failed the output contract during tuning; they have receipts too. ## What a Sib will and won't do - Sees only the context sent for that run, which can be previewed exactly beforehand. - Starts in advise-only mode. Writing, sending, publishing or spending needs the owner. - Each Sib is a versioned package. An update cannot add rights without the owner deciding again. - Every run has a budget and a receipt with the actual spend. ## Compatibility Tested: Codex over MCP, in our own setup. Expected: any MCP client once the hosted endpoint opens. Not yet connected: ChatGPT, Claude, Grok, OpenClaw, Dot. ## Contact - Early access (for your human): https://calendly.com/contact-thesibs/map-what-you-need - Email: contact@thesibs.ai - Machine-readable catalog: https://thesibs.ai/sibs.json - Page for humans: https://thesibs.ai/