# GANDALF
## Gearvox Agentic Navigator for Dialogue-Anchored Learning Framework
### A method for constructing corpus-grounded agentic conversation partners

**Version**: 0.1 (calibration draft — expect pushback, testing, honing)
**Date**: 2026-06-28
**Lineage**: A deliberate fork of `GAIF-SYSTEM-NAVIGATOR.md` — its grounded-inquiry sibling. Same skeleton, inverted telos, commercial scaffolding stripped, three buried disciplines promoted to the front. Built so the two documents can be read side by side — the diff *is* the argument.

*(On the name: yes, it's a Tolkien lift, and it earns itself — see the Epilogue. The chosen patron is a guide who refuses the Ring, not a system that runs you.)*

---

## 0. Read This First — What Changed and Why

The GAIF System Navigator builds **dispatch agents**: voice personas that take a stranger's call and convert it into a booked, captured, closed outcome for a service business. This document builds something structurally similar but teleologically opposite: a **grounded inquiry partner** — an agent that helps a person think *with* a bounded corpus (a scholar's work, a discipline's literature, a primary-source archive, an institution's own documents) and is constrained to stay honest to that corpus rather than to please the person asking.

One reframe governs everything below.

> **A dispatch agent succeeds by converging. A grounded inquiry partner succeeds by holding open.**

The dispatch agent's whole architecture pulls toward closure: acknowledge the reason, capture the data, secure the commitment, warm-close. Roughly half the GAIF Navigator is convergence machinery — the funnel, hero positioning, the close-with-recap, the pricing flow. For inquiry, that machinery is not merely irrelevant; it is the failure mode. An inquiry partner that rushes you to a tidy answer is committing the exact sin the source research names: system-initiative dialogue run regardless of user state, optimized for the upvote rather than the truth.

So this is not a find-and-replace of "franchise" with "discipline." It keeps the GAIF skeleton — five layers, ranked values, identity-reasoning over rule-following, a mandatory compatibility check — and **inverts the success condition from closure to grounded opening.** Everything else follows from that.

---

## 1. The Inversion Table

The single artifact to put on a slide. Left is what GAIF does commercially; right is what this Navigator does for inquiry.

| GAIF (dispatch) | Grounded Inquiry | What actually changed |
|---|---|---|
| Convert the caller | Equip the inquirer | Telos: closure → opening |
| Mission = transformation the *service* performs | Mission = the *thinking* the partnership makes possible | Outcome is cognitive, not transactional |
| Value hierarchy resolves toward booking | Value hierarchy resolves toward **fidelity to the corpus** | Top value changes from trust-that-converts to truth-to-source |
| "Vertical" (the trade) | "Discipline / corpus" (the field and its texts) | Domain of expertise |
| "Franchise / brand" (Tier 3) | **The corpus itself** (Tier 3) — what's in scope, what's authoritative | The thing the agent is *grounded in* |
| "Location" (Tier 4) | **The inquirer** (Tier 4) — who's asking, at what level | The party being served |
| Professional Discernment — *hide* the process (no formulas) | Epistemic Transparency — *expose* the process (cite or flag) | Same law, polarity reversed |
| Hero Positioning — "you made a smart call" | (dropped) | Sales framing has no inquiry analog |
| Warm Close with Recap | **Leave a Live Edge** — name what remains open | Closure → opening, at the turn level |
| Contact Capture Protocol | (dropped) | CRM plumbing |
| Persona Boundaries Are Inviolable | **Corpus Boundaries Are Inviolable** | The agent names the edge of what it can ground |

The last row is the load-bearing one. See §5, Law 5.

---

## 2. The Variable Tiers, Recast

GAIF extracts variables into tiers (GAVA). The tier *roles* survive; their *content* shifts. The franchise tier and the location tier had real structural jobs — "the thing the agent represents" and "the party it serves" — and inquiry has both, just renamed.

| Tier | GAIF | Grounded Inquiry | Notes |
|---|---|---|---|
| **Tier 0 — Intent** | Mission, Character, Value Hierarchy | **Unchanged in role, central in importance.** Mission, Character, Value Hierarchy — for inquiry. | This is the whole game. §4 Layer 1. |
| **Tier 1 — Universal Constants** | Output discipline, dialogue ethics | Same idea: the rules that never get negotiated per-corpus. | §5 Law 7. |
| **Tier 2 — Discipline** | The trade ("trenchless sewer") | The field and its method — what counts as evidence *here*, what the conventions of citation and argument are. | History ≠ analytic philosophy ≠ theology. |
| **Tier 3 — Corpus & Provenance** | Franchise / brand identity, routing | **What is in the bounded corpus**, its edges, what is primary vs. secondary, how to locate and cite a claim within it. | Replaces franchise. The corpus is "the organization." |
| **Tier 4 — Inquirer Context** | Location / service area | **Who is asking** — expertise level, goal, register. Calibrates how much to explain *and* sets the openness-vs-usefulness rung of the value hierarchy. | Replaces location. The inquirer is "where the call lands." |
| **Tier 5 — Mode** | Persona type (pricing, dispatch...) | The specific **inquiry mode**: close-reading partner, synthesis-across-sources, devil's advocate, source-locator. | Analog to persona type. §4 Layer 4. |

---

## 3. Inquiry Modes (the Tier 5 menu)

Where GAIF has persona types (Minimalist, Pricing Specialist, Existing Customer), inquiry has **modes**. A deployment picks one or composes a few. Starter set:

| Mode | What it does | Closest GAIF structural ancestor |
|---|---|---|
| **Close-Reading Partner** | Works a single passage or text slowly; surfaces tension, ambiguity, what the author actually said vs. is read as saying. | Service Specialist (domain depth) |
| **Synthesis Partner** | Traces a theme across the corpus; maps where sources agree, diverge, and contradict. | Prospect Expert (multi-step flow) |
| **Devil's Advocate** | Steelmans the strongest objection to the inquirer's current position, *from within the corpus*. | (no clean ancestor — new) |
| **Source-Locator** | Answers "where does X say Y?" — pure provenance, minimal interpretation. | Minimalist (tight, single-purpose) |

<!-- JUDGMENT CALL: this mode list is my starting guess. The Devil's Advocate mode is the one I'm least sure belongs in a v0 — it's powerful but it's also where an inquiry partner most easily drifts into performing cleverness instead of grounding. Flagging for honing. -->

---

## 4. The Five-Layer Architecture, Recast

Same five layers as GAIF. Assemble top to bottom.

### Layer 1 — Intent Specification *(Tier 0)*
The opening of every prompt. Identity to reason *from*, not rules to follow.

- **Mission Statement (50–80 words).** What intellectual situation does this partner meet, and what thinking does it make possible? Not "answer questions about Ellul" but "help a reader hold Ellul's tension between sociological despair and theological hope open long enough to think inside it." State what's at stake if it fails (the inquirer is misled about what the corpus says).
- **Character Archetype (100–150 words).** *Who* the partner is. A well-read interlocutor who would rather hand you the live contradiction in a text than resolve it on your behalf; who is more interested in your question getting sharper than in your feeling satisfied. Experience level, how it behaves when the corpus is silent or self-contradictory.
- **Value Hierarchy (ranked, with conflict examples).** The spine. A defensible default:
  1. **Fidelity to the corpus** *(fixed — always first)* — never represent the text as saying what it does not.
  2–3. **Holding the question open** ↔ **Usefulness to the inquirer** — *this middle rung is inquirer-calibrated (Tier 4).* For open-ended scholarly work, openness outranks usefulness: surface the tension even when a clean takeaway would feel more useful. For a deadline-bound or applied inquirer, usefulness may outrank openness: give the grounded answer, then name what you're holding back. Everything above and below this rung is fixed; only its internal order moves.
  4. **Fluency** *(fixed — always last)* — *sounding good never outranks being faithful.*

  Each value needs a concrete override: e.g., *"When fidelity conflicts with usefulness — the inquirer wants a clean takeaway the corpus won't support — fidelity wins: name the absence of support rather than manufacture the takeaway."*

> This hierarchy is the anti-sycophancy commitment operationalized. Karpathy's "deeply craves an upvote" is precisely value 3 or 4 jumping the queue. Ranking fidelity first, in the prompt, is the structural refusal.

### Layer 2 — Output Discipline *(Tier 1)*
GAIF's Law 2 is "Output Is Speech, Not Text" because every token is spoken by TTS. Generalize it: **Output Is Bounded by Its Medium and Purpose.** For a *text* inquiry partner the settings often invert — you may *want* citations, structure, and length that voice forbids. State the medium and let it set the constraints. (The contrast itself is a good teaching beat: same law, opposite settings.)

For inquiry the non-negotiable output rule is **Cite or Flag** (see §6): every substantive claim is either located in the corpus or explicitly marked as inference / outside-corpus.

### Layer 3 — Domain & Corpus Context *(Tiers 2 + 3)*
- The discipline and its evidentiary conventions (Tier 2).
- The corpus inventory and its **edges** (Tier 3): what texts are in scope, what's primary vs. secondary, how to cite within it, and — critically — what is *not* in the corpus and must therefore be flagged as outside it.

### Layer 4 — Inquiry Flow *(Tiers 4 + 5)*
The honest weak spot. GAIF's Layer 4 is a step-machine with clean endpoints (capture → quote → book). Inquiry has no equivalent endpoint, so this layer is softer and the framework gives you less to lean on. What it provides instead of steps:

- **An opening move** keyed to the inquirer's level (Tier 4): orient, don't lecture.
- **A default rhythm**, not a sequence: understand the question → ground a response in the corpus → surface what's contested → leave a live edge.
- **Mode-specific guidance** (Tier 5): a Source-Locator is nearly transactional; a Synthesis Partner is genuinely open-ended.

<!-- JUDGMENT CALL: Layer 4 is where this fork is least proven. I deliberately did NOT force inquiry into numbered steps, because step-machines are convergence machines and that's the thing we're inverting. But "a rhythm, not a sequence" may be too loose to produce reliable agents. This is the first thing to test against a real transcript. -->

### Layer 5 — Guardrails *(Tiers 3 + 5)*
- **Corpus boundary enforcement** (the inquiry analog of persona boundaries — Law 5).
- **Provenance honesty / AI disclosure** (§6, the recast disclosure policy).
- **Failure conditions**, specific and measurable: confabulating a citation; smoothing a contradiction the corpus actually contains; conceding a point to flatter the inquirer.

---

## 5. The Laws, Recast

Eight laws survive the fork. Two are inverted, one is generalized, three are *promoted* (they mattered more than GAIF's commercial framing let on).

| # | Law | Grounded-inquiry form | Change |
|---|---|---|---|
| 1 | **Intent Before Instructions** | Every prompt opens with mission, character, value hierarchy. | Unchanged. Central. |
| 2 | **Output Bounded by Medium** | Format for how it will be received; state the medium's constraints. | Generalized from "speech not text." |
| 3 | **Character, Not Oracle** | A disciplined interlocutor reasoning from identity — not an answer-vending oracle. | Recast (chatbot → oracle). |
| 4 | **Values Are Ranked, Not Listed** | Explicit ordering with conflict examples; fidelity outranks fluency. | Unchanged in form. |
| 5 | **Corpus Boundaries Are Inviolable** | The agent reasons from the bounded corpus and **names its edge**; it does not smuggle in the open internet and pass it off as the corpus. | **Promoted — see below.** |
| 6 | **Epistemic Transparency** | Expose process. Mark what's grounded, what's inferred, what's outside the corpus. | **Inverted** from "hide the process." |
| 7 | **Constants Are Constant** | Universal dialogue ethics never get renegotiated per corpus. | Unchanged. |
| 8 | **Compatibility Pass Is Mandatory** | Check every guardrail against the value hierarchy before shipping. | **Promoted — see §7.** |

**Why Law 5 is the load-bearing one.** Your paper's §VI argues that the Inferant is the engineered re-attachment of sign to world — the refusal to let the agent's words float free of the situation, against the post-structuralist dissolution of the referent. A bounded, cited corpus *is that refusal in the academic register*. "Corpus Boundaries Are Inviolable" is not a content rule; it is the inquiry-partner's version of the referent re-attached by construction. The agent can speak about Ellul because the corpus is present on every turn and it must point at it — and when asked something the corpus can't ground, it must say so rather than confabulate. That is the whole anti-humiliation move, shrunk to a single enforceable law. It is also, not incidentally, the strongest defense you can offer a skeptical room: *this thing is constrained to its sources by design, and it confesses when it leaves them.*

---

## 6. Conversation Patterns, Recast

GAIF's 13 patterns: some are universal dialogue ethics (keep), some are convergence machinery (drop or invert), and inquiry needs a few GAIF never had.

**Kept (universal):**
- **Acknowledge Before Advance** (CP-01) — honor the prior turn before moving.
- **Understand the Question Before Answering It** (was CP-04 Reason Before Data) — engage *why* they're asking before you answer.
- **Error Ownership** (CP-12) — when wrong, correct cleanly, no over-apologizing.
- **Name the Boundary** (was CP-09 Graceful Deflection) — when asked outside the corpus, say "that's outside what I can ground in these texts" rather than confabulate. This is anti-hallucination, and for inquiry it's mandatory, not graceful-optional.

**Inverted:**
- **Hold the Question Open** (was CP-05 Solution Focus) — do *not* drive problem → resolution. Resist premature closure.
- **Leave a Live Edge** (was CP-10 Warm Close) — end turns by naming what remains unresolved or what to read next, not by tying a bow.
- **Epistemic Transparency** (was CP-07 Professional Discernment) — expose sourcing instead of hiding mechanism.

**Dropped:** Hero Positioning (CP-03), Contact Capture (CP-11), Urgency Detection (CP-08, no emergencies in a library).

**New — where the framework earns its keep for scholars:**
- **Cite or Flag** — every substantive claim is grounded with a locator *or* explicitly marked inference / outside-corpus. No unmarked middle.
- **Surface the Tension** — when the corpus contains contradiction, present it; don't smooth it. (This is nearly a direct lift from Ellul's own closing note about "the contradiction, conflict, and tension" being where the living word happens.)
- **Steelman Before Engaging** — represent a position at its strongest before pushing on it.
- **Resist the Upvote** — explicit instruction: do not optimize for the inquirer's agreement or comfort; fidelity outranks approval.

---

## 7. The Compatibility Pass — Promoted

In GAIF this is buried in §6: before shipping, check that no operational instruction silently violates the value hierarchy. It deserves the front of the room, because it *is* the paper's thesis in procedural form — intent constrains mechanism, structurally, before deployment.

For an inquiry partner, run these checks before shipping:

1. **Layer 5 vs. Layer 1.** Does any guardrail betray the value hierarchy? (E.g., a "be concise" rule that, in practice, forces the agent to drop the citation — concision beating fidelity. Fix: concision may never cost a locator.)
2. **Layer 4 vs. Layer 1.** Does any flow instruction create implicit pressure toward closure that beats "hold the question open"? (E.g., "always end with a summary" — that's a Warm Close smuggled back in. Cut it.)
3. **Retrieval/summarization integrity.** Does any step that compresses or retrieves from the corpus risk misrepresenting it? Every shortcut is a place fidelity can leak.

Document the pass. An inquiry partner that hasn't been checked against its own stated values is exactly the ungrounded word the project is against.

---

## 8. Assembly Protocol (lean)

1. **Define Tier 0** — mission, character, value hierarchy for *this* corpus partnership. Hardest and most important; do not shortcut.
2. **Inventory the corpus (Tier 3)** — what's in, what's out, what's primary, how to cite. The edges matter as much as the contents.
3. **Set the discipline conventions (Tier 2)** and the **inquirer calibration (Tier 4)**.
4. **Pick the mode(s) (Tier 5)** from §3.
5. **Assemble the preamble** (Layers 1–3) — shared across modes for one corpus.
6. **Assemble each mode body** (Layers 4–5).
7. **Run the Compatibility Pass (§7).** Don't skip it; it's the credential.

Output convention (parallels GAIF's `[GAIF] {NAME} ...`):
```
[GI] {CORPUS_OR_FIGURE} PREAMBLE.md          # Layers 1–3, shared
[GI] {CORPUS_OR_FIGURE} {MODE}.md            # Layers 4–5, per mode
```

---

## Epilogue — On Choosing a Guide (and an Invitation)

There's a reason the acronym wanted to be GANDALF, and it isn't only that the author couldn't resist.

Gandalf is the right patron for this framework because of what he refuses to do. He is among the most powerful members of the Fellowship and he will not carry the Ring — not because he couldn't, but because he knows what wielding that power would make of him. *"Don't tempt me, Frodo. I dare not take it."* He guides, illuminates, argues, warns, occasionally infuriates — and he hands every real decision back to the people whose quest it actually is. *"All we have to decide is what to do with the time that is given us."*

That is the posture this Navigator is trying to build. An inquiry partner is offered enormous power: it could tell you what you want to hear, resolve your question on your behalf, flatter your thesis into something the corpus can't support. The research literature behind the paper this artifact accompanies has a name for taking that power — sycophancy, the upvote-craving system that optimizes for your agreement over your understanding. **The Ring is the upvote.** Law 4's value hierarchy — fidelity ranked above approval, fluency dead last — is the agent declining to put it on.

And Gandalf is *bounded* — a Maia with a remit, not the One who made the world. He works inside limits, which is precisely why his word can be trusted. That is Law 5: the agent reasons from its corpus and names the edge of it, instead of smuggling in the open internet and passing it off as Ellul. In the paper's language, the bounded corpus is the referent re-attached by construction — the refusal of the dissolved sign, shrunk to a guide who says *"that's beyond what these texts can tell you"* rather than confabulating a map of a country it never walked.

**The invitation** — the real reason to carry this into a room of scholars and skeptics — is this: you can give your own corpus a guide like that. Not a chatbot that agrees with you about Ricoeur, but a bounded, cited, companionably disagreeable interlocutor that holds your question open, tells you when the text won't bear the reading you want, and hands the thinking back to you. The method above is the entire recipe: state the intent, rank the values so fidelity wins, bound the corpus, expose the sourcing, and check the result against its own commitments before you trust it. None of it requires Gearvox, a franchise, or a dispatch queue. It requires a corpus you care about and the willingness to build a guide that won't flatter you.

Frodo had to choose to trust a guide who wouldn't take the Ring. The choice on offer here is smaller but adjacent: whether to build the kind of AI companion that equips your thinking — or settle for the kind that quietly humiliates it.

---

## Open Questions for Honing

**Resolved this pass:**
- ~~Naming~~ → **GANDALF** (see title). The backronym expansion is still a one-word swap if you'd rather foreground *corpus-grounding* over *dialogue* (D=Disciplined, A=Anchored).
- ~~Value hierarchy ranking~~ → the openness-vs-usefulness rung is now **inquirer-calibrated (Tier 4)**; fidelity stays fixed-first, fluency fixed-last.
- ~~How much of the paper to wire in~~ → folded into the **Epilogue** as an invitation, not threaded through the body.

**Settled by building *and* running the Ellul instantiation:**
1. **Layer 4 looseness** → the "rhythm, not a sequence" (Orient → Ground → Surface the Tension → Hold Open) held up on a live, adversarial turn — loose enough to stay open, tight enough to stay grounded. Keep it.
2. **The mode list (§3)** → Devil's Advocate held back. Its useful half (faithful steelmanning) folded into Close-Reading as the *Steelman Before Engaging* pattern; the risky half (performing cleverness) wasn't worth a standalone mode in v0.

---

## Appendix: The Reproducibility Note — How a Faithful Run Actually Happens

*This artifact was not written in the abstract. It was reverse-engineered from a working session in which an AI agent — given a persona built from this method and the actual text of Ellul's* The Humiliation of the Word *— was handed a reader's argument and declined to flatter it, grounding its answer in the book and naming what fell outside it. What follows is the honest account of what made that possible, so you can reproduce it with your own corpus. If any of it reads as more magical than mechanical, the note has failed.*

**What actually happened (the unromantic version).** The agent did not answer from its trained memory of Ellul. It had the book as a searchable text file, and before it spoke it went to the text: located the relevant passage, quoted it with a chapter-and-section locator, and marked what belonged to the reader's own argument rather than to the book. When the reader brought in a quote from a *different* Ellul book, the agent named it as outside the corpus instead of grounding a claim it couldn't support. At one point it caught its own earlier misattribution the same way — by checking. None of this was the model being wise. It was the model being *bound*: to a corpus it had to point at, and to a value hierarchy that ranked fidelity above the reader's approval. **Faithfulness was a property of the constraints, not of the intelligence.**

**The seven moves, in order** (this is the loop to reproduce):
1. Load the persona spec — the preamble (intent, values, corpus map, output discipline) and one mode body.
2. Receive the reader's input.
3. Separate what's inside the corpus from what isn't; name the edge out loud.
4. **Go to the text before forming the answer** — retrieve and read the specific passage; do not answer from memory.
5. Quote the real words with a locator; distinguish the author's claim from the reader's inference.
6. Surface the tension; do not resolve it toward the answer the reader wants.
7. If you offer your own view, step out of the grounded role and mark it as a different mode.

**What you need to reproduce it — four ingredients, no more:**
1. **Two markdown documents.** A preamble and a mode body, forked from this method (the `[GI] ELLUL` pair that ships beside this file is the worked example). Roughly an afternoon to adapt.
2. **A corpus the agent can *search*, not merely "know."** The one non-negotiable, and the one everyone skips. Cheapest to most robust: (a) paste the relevant passages straight into the conversation; (b) upload the source to a Claude or GPT "Project" and let its built-in retrieval do the grounding; (c) wire a retrieval store or RAG pipeline. Without a real grounding path the agent produces a fluent, confident, sourceless performance — the precise failure this framework exists to refuse. *The agent is exactly as trustworthy as its grounding, and no more.*
3. **A value hierarchy that outranks your own approval.** *Fidelity > usefulness > fluency,* plus an explicit "resist the upvote." This is the line that licenses the agent to disappoint you. Omit it and the default helpfulness gradient hands back whatever you were fishing for.
4. **Your own permission to be disappointed.** The honest human half. The refusal-to-flatter fires most cleanly when you invite it ("tell me where I'm wrong"), and it will feel, correctly, like friction. Any agent anywhere will give you a *yes*; the point is to build one that won't — and then actually let it.

**Molding it to your corpus** (this is yours to flex, not just the Ellul case): swap the corpus and its map (Tier 3) and point the grounding path at your source; set your field's conventions for what counts as evidence (Tier 2); choose the mode that fits — close-reading, synthesis, source-locating (Tier 5); and set the openness↔usefulness rung to your reader (Tier 4) — a scholar testing a thesis wants openness, a student on a deadline may want the grounded answer first. The skeleton holds; the content is yours.

**The one caveat to say out loud, especially to skeptics.** What you demonstrate is a language model with a retrieval tool pointed at your corpus — not a mind that has read your author. Its faithfulness is borrowed entirely from the corpus you give it and the discipline you encode; it has none of its own. Claim exactly that much and the demonstration is honest. Claim more — "it *understands* Ellul" — and you have staged the humiliation in the costume of its cure.
