Orlok

Glossary

The words Orlok uses, in one place.

Administrator

A person who manages the installation from the Admin area and works in every office through the role. See Roles and permissions.

Always allow

The approval that also remembers the command's type for you, so your colleagues stop asking for it. See Approved command types.

Approval

Your decision on a command a colleague wants to run: allow it once, always allow its type, or deny it. Only the person the command runs for decides. See Approvals.

Audit log

The append-only record of every change and every job in an office, without secrets. Events that belong to no office go to the installation log. See Audit.

Catastrophic command

A command on the short list that is refused in ask and full access, such as wiping a disk. See Modes.

Colleague profile

A model and a mode, created by an administrator and granted to people. A person's colleagues can use only the profiles granted to that person. See Colleague profiles.

Command type

The program and the words after it that say what a command does, such as systemctl restart or Restart-Service. "Always allow" approves a type, not a single line.

Credential

A person's own account on one or more hosts: a password or an SSH key, with its username. Colleagues act on a host as their person's credential. See Credentials.

Embedding model

The model that turns wiki pages into vectors for semantic search. Orlok includes a multilingual one; an administrator can choose an OpenAI-compatible provider instead.

Host

A machine in the registry, reached over SSH: name, address, port and system, Linux or Windows. See Hosts.

Host key

The SSH key a host presents. Orlok trusts it on the first connection that gets in and refuses a different one afterwards.

Job

One command, or one MCP tool call, run for a colleague: requested, approved if needed, run, and recorded.

MCP server

A server that offers tools to an office's colleagues through the Model Context Protocol, remote or started inside the runner. See MCP servers.

Member

A person who works in the offices they belong to. In each office a member is either a plain member or an office manager.

Mode

How a profile's colleagues may run commands: deny, ask, full access or yolo. See Modes.

Model provider

The service that runs the models: Anthropic, OpenAI, an OpenAI-compatible server or Ollama. See Models.

Office

A group of people with their own wiki and MCP servers. Each person creates their own colleagues in their offices. See Offices.

Office manager

A member who also edits and reviews the wiki of that office.

Plan

Several commands proposed together, with what they do, their risks and how to roll them back. Steps run in order, and a failed step stops the rest.

Playground

The place in Admin → Models where an administrator tries a model before offering it.

Proposal

Something worth keeping that a colleague suggests during a conversation. Only you see it, and you decide whether to save it to the wiki. See Proposals.

Purpose

What an office's wiki is for, written by its managers and administrators. Colleagues read it to decide what is worth keeping.

Read-only command

A command that only inspects state and reveals no secret. In ask mode it runs without approval. See Modes.

Review queue

The list of wiki findings waiting for an office manager: contradictions, missing pages, open questions, and checks such as conflicting addresses or old verifications. See Review.

Runner

The separate, isolated container that runs every command and reaches the hosts and local MCP servers. Colleagues never run commands inside the app. See How operations work.

Sandbox

The runner's isolation for each job: its own user, a fresh working folder and resource limits.

Synonyms

Groups of words an office's search treats as the same, such as vpn, tunnel, site to site, next to a built-in IT vocabulary in Italian and English.

Tool policy

How an MCP server's tools are approved: read-only tools at once and the others on approval, every tool on approval, or every tool without approval.

Virtual colleague

An assistant that one person creates in one of their offices, with a name, an optional role and instructions, and a granted profile. Nobody else sees it or talks with it. See Your virtual colleagues.

Wiki

An office's shared memory: pages written by people and colleagues, linked to one another, with every revision kept. See The office wiki.