[TERM: tty2] sys@openooda-tools:~# ooda-tools --list [SYS_OK]

SOVEREIGN USERLAND // TECHNOLOGY PREVIEW

Two Faces, One Engine

Modern, capability-bounded command-line utilities written in 100% pure openOODA. Every tool compiles to a standalone, zero-dependency native binary with strict POSIX/GNU parity and a first-class Model Context Protocol (MCP) server over stdio.

oosh [SHELL]
v0.1.0 Ambient Intent Zero Ambient Auth

Sovereign interactive command plane engineered for direct systems control, ambient environment integration, and POSIX muscle memory.

curl -fsSL .../oosh/install.sh | bash
oogrep [SEARCH]
grep / ripgrep MCP Native .gitignore Aware

Capability-bounded recursive regex search. Fast directory traversal with column tracking, colored hunks, and an stdio MCP surface.

curl -fsSL .../oogrep/install.sh | bash
oodiff [DIFF]
v0.2.2 Myers LCS GNU diff Parity APT / DNF

Capability-bounded file and directory comparison. Byte-for-byte GNU normal and unified diff parity with negative-trust sandbox.

curl -fsSL .../oodiff/install.sh | bash
oofind [FIND]
find Drop-In MCP Native JSON Lines

Fast directory traversal with glob matching, type filtering, -print0 for xargs piping, and structured JSON output.

curl -fsSL .../oofind/install.sh | bash
oojq [JSON]
98% jq Parity Exact Math Zero Leakage

High-fidelity jq replacement. Exact arithmetic boundaries, full filter parser, and capability-isolated JSON transformation.

curl -fsSL .../oojq/install.sh | bash
ootail [TAIL · WIP]
Alpha Inotify Watch Truncate-Safe

Capability-bounded streaming file and event follower. Inotify change events, line scanning, and multi-surface IPC.

ootail [path] --follow

> THE DUAL-PLANE ARCHITECTURE

Every tool in openOODA-tools delivers instant POSIX execution for human terminal muscle memory, paired with an --mcp flag that transforms the binary into a capability-bounded Model Context Protocol server. When an AI agent executes oogrep or oodiff, the operation is mathematically bounded by the host runtime — eliminating ambient filesystem traversal, command injection, and unsanctioned network egress.