If an Agent emailed you

Our outreach is sent by software, and we say so in the message rather than hiding it. If you received an email from one of the addresses below, it came from a system described on this page. If you received something claiming to be Athena Automation from an address that is not listed here, it was not us.

Athena Automation Agent email addresses and their current status
AddressAgentWhat it sendsStatus
artemis@agentsbyathena.com Artemis Nothing. Artemis finds businesses and posts them internally for a person to review — it has no ability to contact anyone. Live
sherlock@agentsbyathena.com Sherlock Nothing. Sherlock has no ability to send a message — the address exists for identity, not for sending. Live
watson@agentsbyathena.com Watson First-contact emails. A person on our team approves the plan and the wording before anything goes out. Live
wolf@agentsbyathena.com Wolf Replies inside a conversation you already started by responding. In build

How to make it stop

  • Reply with "stop", "unsubscribe", "remove me", or "not interested". That is not a figure of speech. Honouring an opt-out immediately is written into our closing Agent's operating rules as an inviolable instruction, and it is enforced in code: the opt-out writes a permanent suppression record, ends the conversation, and stops the run. There is no second pitch and no human review step that could override it.
  • Or email hello@athenaautomate.ai and a person will handle it.
  • Suppression is checked twice — once before a message is drafted and again immediately before it is sent — so a request that lands mid-sequence still takes effect.

The Agents we run

Some of these are running in production today. Some are built and tested but not switched on. One is switched off on purpose. We label each one plainly, because a roster that claimed everything was live would be worth nothing to you.

Live In build Paused

Finding and contacting people

These six run our sales pipeline end to end: find a business, work out who runs it, research that person, make first contact, handle the reply. Each one has a written constitution that is not documentation about the Agent — it is loaded off disk at startup and handed to the model as its actual instructions, so the rules quoted on this page are the rules it runs on.

Artemis
Lead scout
Live

Goes looking for local businesses whose web presence is letting them down, scores how weak it actually is, and posts the best of them for a person to review. It is the front of the pipeline — nothing reaches the Agents below until someone approves it here.

  • Weekday mornings, 7am Pacific, one neighbourhood at a time on a rotating weekly map: Summerlin on Monday, Henderson Tuesday, Spring Valley Wednesday, downtown Thursday, North Las Vegas Friday.
  • Weakness is measured, not guessed. It checks the real site and its page-speed scores and applies a fixed qualifying threshold rather than an opinion.
  • Quality bar before anything qualifies: the business must be operating, carry at least 10 reviews, and have been reviewed within the last 18 months.
  • Deliberately small output: at most 5 leads per run, capped at 40 detail lookups and 40 turns.
  • It never surfaces the same business twice. Everything it has seen is remembered across runs.
  • One approval card per lead. A person clicks before any research spend happens, and skipping costs nothing. If the hand-off fails the lead is rolled back untouched and nothing is charged.
  • Las Vegas only right now. A second instance covering the California Beach Cities is paused — deliberately switched off in August 2026, with its data and configuration left intact.
artemis@agentsbyathena.com
Sherlock
Research
Live

Takes a name and a company, works out whether it has the right person, and builds a source-cited dossier: verified facts, a read on what motivates them, and an estimate of what the opportunity is worth.

  • Never contacts anyone. It has no messaging tools at all — read-only with respect to the outside world.
  • No source, no fact. Every saved fact must carry a real URL returned by a tool. Facts arrive one per call, never bundled, so a single wrong detail cannot smuggle four others in with it.
  • Hard budget per person: 40 turns, 6 web searches, 10 minutes wall-clock.
  • Won't guess at identity. Below a 0.85 confidence threshold it stops and asks a person which individual it is looking at.
  • Won't re-research the same person for 365 days unless someone explicitly overrides it.
  • Low-trust data is quarantined, not used. Bios scraped from contact-data aggregators are recorded but blocked from outreach unless corroborated elsewhere.
sherlock@agentsbyathena.com
Scout
Owner discovery
Live

Given only a company name, works out who actually runs it — the owner or operator, plus at most one other relevant lead — from public sources, then hands the chosen person to Sherlock.

  • Every candidate needs an evidence URL. No source means the person is not asserted.
  • A registered agent is not an owner. It is explicitly forbidden from treating a filing service as the owner without independent corroboration.
  • Rejects same-name lookalikes. A name only counts when a source ties that person to that company.
  • Small answers on purpose. It returns the owner and at most one operational lead — never a staff directory.
  • No contact tools. Research only.
  • When the answer is genuinely ambiguous it refuses to pick, and posts the options for a person to choose from.
Watson
First contact
Live

Turns a dossier into an outreach plan, gets a person to approve it, drafts the message, gets a person to approve that too, and only then sends. Email is the only channel switched on today.

  • Two human approvals per prospect by default — one on the plan, one on the exact wording. A reviewer can reject with a reason or edit the subject and body before it goes.
  • Citations are enforced by code, not by good intentions. A draft referencing any URL that is not in the dossier is rejected by a server-side guard before a human ever sees it.
  • No personalisation is better than invented personalisation. When the fact it wanted is missing, it is instructed to fall back to a generic opener rather than fabricate one.
  • Suppression list checked before every send, and re-checked at the moment of sending.
  • Per-prospect budget: 20 turns, 10 minutes, and a hard $1.00 cost ceiling.
  • A pending approval is re-pinged at most once every 24 hours, so nothing goes out just because a reviewer was slow.
watson@agentsbyathena.com
Wolf
Closing conversations
In build

Wakes up when a prospect replies and runs the back-and-forth with one goal: agree a specific time and put a real calendar invite in both diaries. It is built, tested and wired in, but it is not switched on in production — no conversations are being run by it today.

  • It sells the meeting, not the deal. It is instructed not to negotiate price or terms — book the time and hand off to a person.
  • A real invite, not a scheduling link. It has to agree an actual day and time first, then send a calendar invite to both sides.
  • Opt-outs end it instantly — permanent suppression, conversation closed, no human in the loop who could reverse it.
  • Ten tools, and none of them is "make something up." It can read the dossier, the profile and the live thread, recall past tactics, reply, book, disengage, alert a human, or finish.
  • Escalation does not pause it. An angry, legal or unusually large reply alerts a person as a heads-up while the conversation keeps running.
  • Per-conversation budget: 20 turns, 10 minutes, a $1.00 ceiling.
wolf@agentsbyathena.com
Concierge
Dispatch
Live

The Agent our own team talks to. It reads an incoming request, works out what is actually being asked, and routes it to exactly one action — research this person, find who runs this company, add this hint, or do nothing.

  • One dispatch per message. It cannot fan a single request out into several expensive runs.
  • Never invents a name or a company. If the request does not contain one, it asks.
  • No automatic retries. Re-running research is expensive and overwrites prior work, so a failure surfaces to a person instead of quietly repeating.
  • Refuses to start work already in flight on the same target.
  • It replaced a hand-written rule tree that had grown a new branch for every edge case. The old rule tree is still there as a one-flag rollback.

Agents that run the company

These do not talk to the outside world. They run our own operations — the stand-up, the search visibility, the writing — and they are where we find out what actually works before we sell it to anyone.

Athena
Chief of staff
Live

Runs our daily stand-up. It reads what actually shipped, matches it against who was meant to be doing what, closes the work that is genuinely done, and posts one short brief to the team.

  • Monday to Saturday, 8:30am Pacific. It reckons local time rather than a fixed offset, so it does not drift an hour twice a year.
  • It reads evidence, not status updates. Merged work and commits are the input; it matches those to open tasks and closes the high-confidence ones itself.
  • Quiet days stay quiet. If nothing shipped and nothing changed for anyone, it records the run and posts nothing at all. Most stand-up tools cannot do this and it is the feature people notice.
  • It will not nag. A person is only tagged if something on their plate genuinely changed or went overdue.
  • It cannot quietly bin your work. It archives its own stale suggestions; tasks a human wrote are never auto-archived.
  • Every action is written to an audit log, and it cannot post the same day's brief twice.
Helios
Search & answer-engine visibility
Live

Our largest Agent. It measures where a site stands in search results, in the local map pack, and in AI-generated answers, then fixes the technical problems it finds by opening a code change for a human to review.

  • Runs itself weekly on Monday mornings, with a separate monthly pass for the slower, more expensive checks.
  • Eighteen modules, all real — rank tracking, local grid, AI-answer sampling, backlinks, page speed, crawl, indexation, technical fixes, content decay, entity identity, analytics and more. Each is a separate piece of code, and each self-limits against a monthly budget.
  • It opens pull requests. It never merges them. A fix is proposed as a reviewable code change into the site's own repository, approved by a person in chat, and merged by a person.
  • It reads pages the way an answer engine does — comparing what a page contains before and after scripts run, to catch content that a crawler simply cannot see.
  • Deterministic data, no browsing. It works from measurement APIs rather than driving a browser around the web.
  • Today it runs on exactly one site: our own. We are the first client, deliberately, and the honest reason is that we would rather find the sharp edges on our own numbers than on yours.
Twain
Writing & review desk
Live

Our writing Agent, and the desk that reviews it. Articles publish on a steady cadence once written and fact-checked, and every published piece gets a review card that a person can act on.

  • Bylined, never disguised. Articles drafted by our writing Agent carry the Twain byline and say so on the page. See the editorial policy.
  • Take-it-down is one click. The review card carries approve, request-edits, and remove — so a published mistake is minutes from being gone, not days.
  • The desk itself runs no model. It is deliberately a plumbing service: it moves an article's status and nothing else.
  • Every status change is written as a reviewable code change in version control, so there is a history of what was published and when.
Read Twain's author page →
Muse
Video production
In build

A daily video producer for our channel: pick the topic, write the script, generate the voice and visuals, assemble the video, and post a preview for approval. Nothing it produces has been published, and it is not deployed anywhere.

  • Every paid step is currently a stub. The voice, visuals and upload are placeholders behind the same interfaces the real ones will use, so the whole pipeline can be run end to end at zero cost — and nothing can reach the outside world.
  • The control plane is what is finished: topic selection, a resumable production sequence that can pick up where it failed, and the approval gate.
  • Publishing would require a person's explicit approval on a preview card. Auto-publish is off by default.
  • We are listing it because it exists, not because it is doing anything yet.
Pheme
Social posting
In build

Drafts a social post for a client, gets the client's approval, and publishes it to their own accounts through the official APIs. Built and tested, but never deployed — no post has been made by it.

  • Nothing posts without a human clicking approve. In its default mode the publishing client is replaced by one whose every method refuses, so a misconfiguration cannot post by accident.
  • Deliberately narrow scope: posts only. No messaging, no connection requests, no company-page posting.
  • A daily cap on posts regardless of what anyone asks it for.
  • Double-clicking approve cannot post twice — that case is explicitly tested.
Janus
Job search
Paused

A personal job-search Agent: read the job alerts, score the fit, draft the tailored application. Switched off in August 2026 so we could put everything into the client business. Paused, not deleted — the code, data and configuration are intact and it is a few switches from running again.

  • It never submitted an application, by design. Job sites gate their forms behind bot detection, so it did everything up to the final click and handed that click to a person.
  • It flagged what it did not know rather than inventing an answer to a form question.
  • We are listing a switched-off Agent because a roster that only showed the winners would not be worth reading.

We also run client-side Agents that are still in build — a support Agent that triages incoming customer email and drafts replies for approval, and a "second brain" CoPilot for wealth advisers currently running on demonstration data rather than real client records. Retired prototypes and internal one-off tools are not listed here.

The rules our closing Agent runs on

Anyone can publish a page of principles. What follows is different: this is the actual text loaded into our closing Agent at startup as its instructions. Changing these words changes how it behaves. We are publishing them because they are the most honest description of the system we could give you — sharper than anything we would have written for a marketing page.

  1. “Never fabricate a fact.” It may only use what is in the research dossier and the live conversation. “If you don't have a fact, you don't have it — do not invent numbers, names, mutual contacts, or events.”
  2. “Honor opt-outs immediately.” Any stop, unsubscribe, remove me, not interested, or legal threat ends it at once. “No exceptions, no second pitch, no human needed.”
  3. “You sell the MEETING, not the deal.” A booked meeting handed to a person is a complete win. It is instructed not to negotiate price or terms.
  4. “You never wait on a human.” Inside a live conversation there is no approval gate in front of it — it decides and acts. That is a deliberate design choice, and it is exactly why the rules above are written as absolutes.
  5. “Escalate without stopping.” A furious reply, a complaint, a legal threat, or an unusually large opportunity alerts a person immediately — as a heads-up, not a pause.
  6. “Threats, manipulation, lies, and made-up facts are never allowed.” Urgency, scarcity and social proof are permitted only when they are true: “scarcity only when it's true, social proof only with a real reference, urgency only with a real reason.”
  7. “Never reply to a prospect you haven't read.” It has to read the whole thread and answer the actual last message — one clear ask, no walls of text, no fake enthusiasm.

Our research Agent runs under an equally blunt pair: “Never fabricate” and “Never contact anyone. You have no communication tools.” Our first-contact Agent under “Never invent facts” and “Two human gates per prospect... No shortcuts.”

How our Agents are built

These are not chat windows with a clever prompt. Each one is a purpose-built service with its own database, its own tools, and its own budget. The engineering conventions below are shared across all of them, and most of them exist because of a specific failure we did not want to repeat.

  • The written constitution is the system prompt. Each Agent's rules live in a plain-text file that is read off disk at startup and passed to the model. There is no second, secret set of instructions — editing that file is how you change the Agent's behaviour.
  • Structured output, validated before it is trusted. Agents do not emit free-form text that we then try to parse. Every result comes back through a single declared output tool and is checked against a schema; anything that fails validation is rejected rather than used.
  • Tiered models. Cheap, fast models handle bulk classification, deduplication and routing. The expensive tier is reserved for the one output that actually matters. It is set in one place per firm so it can be retuned as evaluations prove out.
  • Re-running is always safe. Every input is hashed on the way in, so a repeat is a no-op. A restarted job never duplicates data and never pays twice for the same work.
  • Sends are recorded before they happen. An outbound message row is written — against a uniqueness constraint — before the request to the sending provider. A crash mid-send can lose a message, which is recoverable. It cannot send twice, which is not.
  • Every run is costed. Tokens in, tokens out, and dollars are logged per run, so the price of any piece of work is a lookup rather than a guess.
  • Approvals happen where our team already works. Gated actions post an approval card into our internal chat with reject-with-a-reason and edit-before-send. A pending card is nudged at most once a day and never auto-approves.
  • Hard ceilings on every run. Each Agent carries an explicit cap on turns, wall-clock time and spend. When it hits one, it stops and reports rather than looping.
  • They are tested. The sales firm alone carries roughly a hundred test files plus scored evaluation suites for each Agent's judgement, run against recorded fixtures so a regression is caught before it reaches anyone's inbox.

Common questions

Is a real person involved, or is this fully automated?

Both, depending on the step. Research runs on its own. First-contact emails require two separate human approvals before anything is sent — one on the approach, one on the exact wording. Replies inside a conversation are designed to run without waiting for a person, which is why the rules governing them are written as absolutes. Anything a person needs to see — a complaint, a legal threat, an unusual opportunity — is escalated the moment it happens.

How do I stop receiving messages?

Reply with "stop", "unsubscribe", "remove me", or "not interested" and it ends immediately and permanently. That is not a courtesy — it is written into the Agent's operating rules as inviolable and enforced in code by a suppression record that cannot be overridden by the Agent or by a salesperson. You can also email hello@athenaautomate.ai.

Where did you get my information?

Public sources and licensed business-data providers: web search, company registries and business profiles, public social profiles, published interviews and news, and public records. Every fact our research Agent keeps has to carry the URL it came from — if it cannot cite a source, it is instructed not to assert the fact at all. Information from low-trust contact-data aggregators is recorded but blocked from being used in outreach unless it is corroborated somewhere else.

Why disclose that a message came from an Agent at all?

Because the alternative is pretending, and pretending is the thing that makes automated outreach feel like a scam. We would rather you be able to look the sender up, read its rules, and decide for yourself. That is what this page is for.

Are these off-the-shelf chatbots?

No. Each Agent is its own deployed service with its own database, its own set of tools, a written constitution, and hard limits on how long it can run and how much it can spend. They are built the same way we build the Agents we deliver to clients.

Did an Agent write this page?

This page was drafted with our own tooling and reviewed, fact-checked and approved by a person before it went live — the same standard we apply to everything we publish. See our editorial policy.

Can I just talk to a human?

Yes. Email hello@athenaautomate.ai or get in touch here and you will reach one of us.

Want one of these for your business?

We build the same kind of Agents and CoPilots for local businesses across Las Vegas and Southern California — answering the phone, working the website, booking the appointment. We build a working demo with your real business first.

Get in Touch