← Lumen overview
04 / Vision

Thin clients win the AI era.

The app model we live with was designed for a world where software was expensive to make and slow to change. Both assumptions just died. Lumen is a working bet on what replaces it.

The argument

1. When AI writes software, apps stop being products and become answers. An app store makes sense when an app costs a team-year. When a working tool costs one model response, the unit of software is a request — and requests want to be served, not shipped, reviewed, and installed.

2. Answers need to appear where you are, instantly. The only architecture that can deliver software at conversation speed is one where the device renders and the server thinks. A thin shell never updates; the hub behind it changes constantly. Lumen's phone APK has been reinstalled a handful of times in a year while the software it "runs" changed hundreds of times.

3. AI mediates everything, so state must be central. An assistant that files your appointments, reads your receipts, and answers from your memory is only possible when calendar, ledger, and memory live in one governed place — not scattered across forty vendors' silos. Centralized personal state isn't a compromise; it's the prerequisite for AI that actually knows you. Sovereignty is the corollary: if everything about you lives in one place, you'd better own that place.

4. Therefore interfaces become ephemeral. When generation is free and delivery is instant, the interface stops being a fixed artifact you learn and becomes a fluid one that adapts — per task, per context, per moment. The apps below are what that unlocks.

Status labels: everything on the Apps page is running today. Everything below is a design — concepts the platform's architecture makes straightforward, presented as the roadmap it is.

Concept: disposable apps

🧳 Trip Cockpit

Say "we're driving to Montreal Friday" and a tile appears: route, weather window, packing checklist generated from the forecast, booking confirmations pulled from mail, a shared playlist. Sunday night it archives itself. An app that exists for one weekend.

Concept

🤒 Sick-Day Mode

One phrase — "Emma has a fever" — reshapes the hub: dosage timer with per-child weight math, symptom log the pediatrician can read, pharmacy hours, quiet-hours automation. Gone when she's better; the log stays in memory.

Concept

🛠 Reno Tracker

Photograph the leak under the sink; get a tile tracking the repair: parts identified from the photo, local stock and prices, a step-by-step matched to your actual plumbing, and a record of what was done for the next owner.

Concept

🎂 Event Ops

A birthday-party app that exists for three weeks: guest RSVPs by text, dietary flags, a countdown task list that reschedules itself when you fall behind, and a photo drop that compiles the album afterward.

Concept

Concept: interfaces that reshape themselves

🌅 The Morning Pane

The first screen of the day is composed at 6 a.m. for that day: the meeting that moved, the kid's spirit-day reminder, the transit delay, the one email that actually matters. Not an app you open — a surface that arranged itself.

Concept

🧭 Context Follows You

Walk into the garage and the hub's front page becomes project plans and part lists; sit in the car and it becomes navigation and calls; open the laptop at work and the same account shows none of it. Location and posture as the app switcher.

Concept

👵 The Simplifier

The same hub, rendered for a grandparent: four giant tiles, one-tap video call, medication confirmations that quietly notify family. Accessibility not as a settings page but as a per-person build target the AI maintains.

Concept

📉 Progressive Disclosure

Interfaces that start minimal and grow controls only as you use them — the inverse of feature bloat, maintained automatically per user by watching what's actually touched.

Concept

Concept: the phone as pure sensor / actuator

🩺 Passive Wellness

Gait from the accelerometer, voice-energy trends from calls you already make, sleep regularity from charge patterns — analyzed on your own GPU, surfaced as gentle weekly notes, shared with no one by architecture.

Concept

🏠 Ambient Home Brain

Every phone in the family is a roaming microphone-and-camera node the home server can borrow (with per-room, per-person consent): "who left the garage open" answered from your own devices, never a vendor cloud.

Concept

🧾 Life Ledger

Receipts, statements, warranties, prescriptions — every paper the camera ever sees, parsed and cross-linked into one queryable household ledger: "what did we spend on the car last year, including that roadside thing in June?"

Concept

🎓 Everything Tutor

Code Coach generalized: point the capture at any screen or workbook and get one-step-at-a-time coaching grounded in what's actually there — piano, chess, calculus, CAD.

Concept

The managed future: LumenBook fleets

The same pattern scales past one person. The LumenBook control plane — outbound-only agents, per-device keys, capability-scoped one-time grants, signed updates, local kill switches — is the enterprise shape of this idea: hand someone a cheap, stateless laptop that is a fingerprint away from their entire environment, centrally governed, remotely healable, and worthless if stolen.

  • Schools: a class set of Books where each student's world follows them to any device, and "wipe and reissue" is a thirty-second operation.
  • Field work: clinics, inspectors, and crews get task-shaped interfaces generated per job, on hardware that holds nothing.
  • Small business: the point-of-sale, the schedule board, and the bookkeeping ledger are hub apps the owner asks for in plain language — not a SaaS subscription per function.

What has to be true first

The honest engineering gap between the personal-scale system that runs today and this future is governance, and it's why the boring parts of Lumen are the load-bearing ones:

  • Provenance: every AI-written file is versioned and attributable today; multi-user systems need review gates and capability sandboxes per app, not just rollback.
  • Action discipline: the Nova gate pattern — auditable accept/reject on every consequential action — has to become the default plugin API, not an assistant feature.
  • Identity: passkeys and per-device keys exist in Lumen now; per-person data boundaries inside one shared hub are the next hard problem.
Portfolio takeaway: this page is speculation, but it is speculation with a running reference implementation. The claim isn't "someone should build this" — it's "I built the smallest true version, use it daily, and can name exactly what separates it from the scaled one."