Memory is what makes Steelmoth useful past the first week. It learns your clients, your tone, the way you like things handled, and it gets sharper the longer you use it.

But memory is also the most dangerous thing an operator can have. A remembering assistant whose memory can be quietly rewritten by something it happens to read is no longer your assistant — it's whatever the last email told it to be.

Memory has to remember where it came from.

So Steelmoth's memory has three properties baked in. It is scoped to you — your business never bleeds into another's. It is traceable to source — every fact carries a provenance, and you can see where it came from. And it is read-only to the content the model processes — what Steelmoth reads doesn't get to silently update what it knows.