The main branch is the current prototype. There are no versioned releases
yet.
Do not file public issues for vulnerabilities involving pairing, encryption, audio capture scope, automation scope, device revocation, or sensitive data.
Use GitHub's Report a vulnerability flow for this repository. Do not disclose vulnerabilities in public issues.
Do not include live credentials, pairing descriptors, raw audio, transcripts, or project content in any report.
The core security properties are:
- Android is an enrolled media client, never a trusted executor.
- The host accepts only explicitly paired devices and supports immediate local revocation.
- Media and signaling use authenticated encryption.
- Captured output is restricted to the verified Codex process.
- Audio and Codex content are never persisted by the bridge.
- Host automation is limited to fixed Voice-session controls.