Keep memory on your machine, expose it through a read-only-by-default MCP server, and manage context with a plain-file cartridge, local search, and a tamper-evident ledger.
$ python -m pip install --upgrade llm-kosh
$ llm-kosh install --yes
$ llm-kosh status
Use the desktop app for local service control, MCP status, and cartridge workflows. Public desktop GA still depends on platform signing and notarization.
Apple Silicon and Intel builds exist, but public GA still requires Developer ID signing and notarization.
AppImage and deb build paths exist, but clean-host packaging validation is still pending.
Your files stay on your machine. Memory lives in plain files, local search stays local, and the cartridge remains inspectable and backup-friendly.
The MCP server starts read-only. Stronger write, mutation, and private-export capabilities must be enabled explicitly.
Capture structured AI output as a MEMORY_RECEIPT, validate it, review it, and absorb approved changes into durable cartridge memory.