{
  "title": "Meta Muse and harness engineering research ledger",
  "review_date": "2026-09-26",
  "audience": "Practicing AI engineers, security engineers, product leaders, and technical founders",
  "scope": "Meta Muse, Muse Spark, Muse Code, Muse Glimmer, recent harness research, personal-agent security, agentic commerce boundaries, and the research roadmap created from that evidence.",
  "method": "Primary launch pages, official product and developer documentation, first-party engineering reports, research-paper records, and selected independent reporting were reviewed. Product claims, implemented architecture, preprints, independent reporting, and future commitments are labeled separately.",
  "limitations": [
    "No Meta Muse account, Secure VM, credential flow, hosted connector, or prompt-injection trial was executed.",
    "No Muse Code or Muse Glimmer binary was installed or benchmarked.",
    "Meta architecture and performance statements remain first-party claims unless otherwise labeled.",
    "The Amazon access dispute is based on independent reporting and quoted company statements, not a technical reproduction.",
    "Roadmap experiments are proposals, not completed studies or product commitments."
  ],
  "articles": [
    "/blog/meta-muse-harness-architecture-security-review",
    "/blog/meta-muse-agent-stack-spark-code-glimmer",
    "/blog/harness-engineering-state-of-field-september-26-2026",
    "/blog/personal-agent-harness-research-roadmap-after-muse"
  ],
  "sources": [
    {
      "id": "muse-launch",
      "title": "Introducing Muse: The World's First Personal AI Agent Built for Everyone",
      "author_or_publisher": "Meta",
      "publication_or_revision_date": "2026-09-08",
      "url": "https://about.fb.com/news/2026/09/introducing-muse-personal-ai-agent/",
      "evidence_class": "first-party product launch",
      "scope_and_caveat": "Launch features, availability, payments, user controls, and Confidential VM roadmap; marketing claims are not independent validation.",
      "accessed": "2026-09-26"
    },
    {
      "id": "muse-design",
      "title": "How We Designed Muse",
      "author_or_publisher": "Mona Sarantakos and Christine Awad / Meta",
      "publication_or_revision_date": "2026-09",
      "url": "https://introducing.muse.ai/",
      "evidence_class": "first-party product design report",
      "scope_and_caveat": "Background work, goals, proactivity, side chats, activity UI, memory visibility, artifacts, and deterministic approval UI; no controlled user study reported.",
      "accessed": "2026-09-26"
    },
    {
      "id": "muse-security",
      "title": "How We Built Safety Into Muse",
      "author_or_publisher": "Tarek Sheasha / Meta Superintelligence Labs",
      "publication_or_revision_date": "2026-09-08",
      "url": "https://research.meta.ai/blog/security-and-safety-for-ai-agents-our-approach-with-muse",
      "evidence_class": "first-party security architecture report",
      "scope_and_caveat": "Secure VM, runtime cell, Sentinel, credential services, connector isolation, browser broker, prompt-injection defenses, data policy, bug bounty, and Confidential VM roadmap; no independent reproduction claimed.",
      "accessed": "2026-09-26"
    },
    {
      "id": "spark-1-1",
      "title": "Introducing Muse Spark 1.1",
      "author_or_publisher": "Meta AI Research",
      "publication_or_revision_date": "2026-07-09",
      "url": "https://research.meta.ai/blog/introducing-muse-spark-meta-model-api",
      "evidence_class": "first-party model release",
      "scope_and_caveat": "Agentic, computer-use, long-context, multimodal, and harness-compatibility claims; benchmark results not independently reproduced.",
      "accessed": "2026-09-26"
    },
    {
      "id": "muse-code-spark-1-2",
      "title": "Introducing Muse Code and Muse Spark 1.2",
      "author_or_publisher": "Meta AI Research",
      "publication_or_revision_date": "2026-08-05",
      "url": "https://research.meta.ai/blog/introducing-muse-code-and-muse-spark-1-2",
      "evidence_class": "first-party product and model release",
      "scope_and_caveat": "Async background agents, event log, skills, and coding model claims; launch account rather than comparative independent evidence.",
      "accessed": "2026-09-26"
    },
    {
      "id": "glimmer",
      "title": "Introducing Muse Glimmer: An Open Agentic Model That Runs on Your Device",
      "author_or_publisher": "Meta AI Research",
      "publication_or_revision_date": "2026-08-10",
      "url": "https://research.meta.ai/blog/introducing-muse-glimmer-open-agentic-model",
      "evidence_class": "first-party open-weight model release",
      "scope_and_caveat": "Architecture, training, quantization, speculative decoding, and benchmark claims; weights and integrations were not run for this series.",
      "accessed": "2026-09-26"
    },
    {
      "id": "spark-1-3",
      "title": "Introducing Muse Spark 1.3",
      "author_or_publisher": "Meta AI Research",
      "publication_or_revision_date": "2026-09-02",
      "url": "https://research.meta.ai/blog/introducing-muse-spark-1-3",
      "evidence_class": "first-party model release",
      "scope_and_caveat": "Long-horizon, coding-efficiency, and agent-safety claims; internal comparison and vendor evaluation were not independently reproduced.",
      "accessed": "2026-09-26"
    },
    {
      "id": "muse-code-docs",
      "title": "Muse Code documentation",
      "author_or_publisher": "Meta Model API",
      "publication_or_revision_date": "living documentation reviewed 2026-09-26",
      "url": "https://dev.meta.ai/docs/muse-code",
      "evidence_class": "official product documentation",
      "scope_and_caveat": "Terminal, CI, session, workflow, sandbox, and approval surfaces; rollout and platform caveats apply.",
      "accessed": "2026-09-26"
    },
    {
      "id": "muse-code-permissions",
      "title": "Muse Code permissions and safety",
      "author_or_publisher": "Meta Model API",
      "publication_or_revision_date": "living documentation reviewed 2026-09-26",
      "url": "https://dev.meta.ai/docs/muse-code/permissions",
      "evidence_class": "official product documentation",
      "scope_and_caveat": "Approval and OS sandbox behavior; documentation does not substitute for platform-specific escape testing.",
      "accessed": "2026-09-26"
    },
    {
      "id": "muse-code-runtime",
      "title": "Working with the Muse Code agent",
      "author_or_publisher": "Meta Model API",
      "publication_or_revision_date": "living documentation reviewed 2026-09-26",
      "url": "https://dev.meta.ai/docs/muse-code/interactive",
      "evidence_class": "official product documentation",
      "scope_and_caveat": "Session, resume, fork, rewind, tasks, workflow control, and event-sourcing behavior; binary not executed here.",
      "accessed": "2026-09-26"
    },
    {
      "id": "muse-code-multi-agent",
      "title": "Extending and automating Muse Code",
      "author_or_publisher": "Meta Model API",
      "publication_or_revision_date": "living documentation reviewed 2026-09-26",
      "url": "https://dev.meta.ai/docs/muse-code/extending",
      "evidence_class": "official product documentation",
      "scope_and_caveat": "Subagents, observer agents, skills, hooks, MCP, and headless operation; availability can depend on rollout gates.",
      "accessed": "2026-09-26"
    },
    {
      "id": "muse-code-recovery",
      "title": "Audit and resume agent sessions",
      "author_or_publisher": "Meta Model API",
      "publication_or_revision_date": "living documentation reviewed 2026-09-26",
      "url": "https://dev.meta.ai/docs/cookbook/audit-agent-sessions",
      "evidence_class": "official implementation recipe",
      "scope_and_caveat": "Append-only event log, deterministic export, interruption, and effect reconciliation; example behavior not reproduced locally.",
      "accessed": "2026-09-26"
    },
    {
      "id": "realtime-avatar",
      "title": "Bringing Your Muse to Life",
      "author_or_publisher": "Meta AI Research",
      "publication_or_revision_date": "2026-09-23",
      "url": "https://research.meta.ai/blog/bringing-your-muse-to-life",
      "evidence_class": "first-party research and product report",
      "scope_and_caveat": "Realtime voice-avatar architecture, latency, serving, and watermark claims; comparison and performance were not independently reproduced.",
      "accessed": "2026-09-26"
    },
    {
      "id": "connect-2026",
      "title": "The Biggest News From Connect 2026",
      "author_or_publisher": "Meta",
      "publication_or_revision_date": "2026-09-24",
      "url": "https://about.fb.com/news/2026/09/the-biggest-news-from-connect-2026/",
      "evidence_class": "first-party product roadmap announcement",
      "scope_and_caveat": "AI-glasses surface, voice mode, connectors, email identity, shopping partners, and device roadmap; future features remain announcements.",
      "accessed": "2026-09-26"
    },
    {
      "id": "jaz",
      "title": "Harness as a Language: A Minimalist Agent Framework With Maximal Expressivity",
      "author_or_publisher": "Zhening Li and colleagues",
      "publication_or_revision_date": "2026-09-22 (v1)",
      "url": "https://arxiv.org/abs/2609.26891",
      "evidence_class": "preprint and research framework",
      "scope_and_caveat": "Minimal invoke primitive and case studies for memory and self-improvement; results are preprint claims and do not evaluate consumer-agent security.",
      "accessed": "2026-09-26"
    },
    {
      "id": "amazon-block",
      "title": "Amazon blocks Meta's Muse AI assistant in new standoff over agentic shopping",
      "author_or_publisher": "Todd Bishop / GeekWire",
      "publication_or_revision_date": "2026-09-20",
      "url": "https://www.geekwire.com/2026/amazon-blocks-metas-muse-ai-assistant-in-new-standoff-over-agentic-shopping/",
      "evidence_class": "independent reporting with company statement",
      "scope_and_caveat": "Commercial access dispute and Amazon statement; no bypass, traffic analysis, or independent policy adjudication performed.",
      "accessed": "2026-09-26"
    },
    {
      "id": "marmelab-state",
      "title": "The State Of AI Harness Engineering 2026",
      "author_or_publisher": "François Zaninotto / Marmelab",
      "publication_or_revision_date": "2026-09-24",
      "url": "https://marmelab.com/blog/2026/09/24/the-state-of-ai-harness-engineering-2026.html",
      "evidence_class": "independent practitioner survey",
      "scope_and_caveat": "Reported audit of 246 repositories and 57 publications focused on coding agents; useful discourse evidence, not a systematic peer-reviewed meta-analysis.",
      "accessed": "2026-09-26"
    },
    {
      "id": "bcg-operating-system",
      "title": "Harness Engineering: The Operating System for Agentic AI",
      "author_or_publisher": "Aparna Kapoor, Vincent Paca, and Nerijus Zemgulys / BCG",
      "publication_or_revision_date": "2026-09-16",
      "url": "https://www.bcg.com/publications/2026/harness-engineering-scale-agentic-ai",
      "evidence_class": "consultancy practitioner synthesis",
      "scope_and_caveat": "Evidence that harness engineering entered enterprise operating-model discussion; not used as a controlled performance study.",
      "accessed": "2026-09-26"
    }
  ]
}
