Before
Useful output with nowhere durable to live.
calculator-final-v3-really-final.html sits in Downloads. The source is buried in a chat, ownership is unclear, and the next edit replaces the last copy.
Versioned artifact vault · public alpha
ArtifactFlow is a self-hosted, versioned artifact vault for tools and documents created with AI. Keep their authoritative source, find them later, preview them, run generated HTML away from the authenticated app, and preserve every revision.
Built first for executable HTMLKeep generated single-file HTML tools searchable and versioned, then run their untrusted code on a separate origin away from the app that holds your login.
Current alpha: single-file HTML, Markdown, and Mermaid · AGPL-3.0-or-later · built for internal teams.
The gap after generation
Chat is temporary. A new repository, deployment, and release process are too much for every calculator, one-pager, runbook, diagram, or prototype. ArtifactFlow gives useful output a durable place in between.Built for technical teams that regularly create small internal tools, operational documents, diagrams, and prototypes with AI.
Before
calculator-final-v3-really-final.html sits in Downloads. The source is buried in a chat, ownership is unclear, and the next edit replaces the last copy.
After
The same calculator has a stable identity, authoritative source, retained versions, ownership, permissions, search, safe preview, and a path for the next human or agent update.
The artifact lifecycle
People can bring work in through the browser. Approved AI clients can preserve it through MCP. Both routes reach the same versions, permissions, search, and audit trail.
Save a self-contained HTML tool or portable Markdown document with its title, owner, workspace, tags, and category.
Find artifacts by metadata or content. Read documents in place and let interactive HTML run inside its isolated preview boundary.
A person or agent updates the source without erasing history. Inspect source diffs, restore an earlier version, and preserve which provider/model produced the content when that identity is known.
Terminology: An artifact is the managed record. Each version retains its authoritative source or original; previews and runtimes are derived ways to use it.
One vault, two interfaces
ArtifactFlow is not an AI generator. It is the system of record that remains after the model moves on.
For approved agents
MCP clients can search, read, create, update, and revert within explicit token and workspace scopes, while declaring exact version-level provider/model provenance when known.
For people
The web interface is the human control and consumption layer, including editing, workspace organization, permissions, ownership, and account security.
query: "Q3 capacity"
1 result · Q3 Capacity Plan
page_uid: 01ky7atfyh…0hef0f
source + current_version_uid
base_version_uid: 01KY7ATFYM…53H9NN
new immutable version preserved
Captured from real MCP calls against an isolated test database. Identifiers are shortened for display; the full session is on the MCP page.
The product today
The screenshots show the product as it exists today, not concepts, mockups, or a future roadmap.
Executable when useful
Interactive calculators, dashboards, diagrams, and runbooks remain usable, while untrusted code executes away from the authenticated application that holds the team's login and data.
Authenticated app
Search, source, versions, workspaces, permissions, and audit stay on the application origin. Artifact HTML never executes there.
Isolated artifact runtime
HTML runs in an opaque sandbox on a separate cookieless origin. Ordinary network requests are blocked, with documented self-navigation and browser-dependent WebRTC residuals.
Understand the boundaries
Detailed mechanics, operational requirements, product direction, and engineering provenance are documented separately.
Public alpha · July 2026
Pin a revision. Expect breaking changes. Read the threat model before trusting it with work that matters.
After the chat ends
Evaluate the artifact workflow and security boundaries against your own use case.