riffpad

Your AI coding agents,
in your pocket.

Riffpad bridges Claude Code, Codex and other CLI agents to your phone — watch progress, approve actions and steer sessions without staying chained to the desk.

local daemon · end-to-end encrypted · zero-knowledge relay

riffpad — zsh — 80×24synced
~/projects/api % codex exec --json
reading task: refactor auth middleware
edit_file src/auth/middleware.ts
run_tests go test ./...
waiting for approval · delete src/old.ts
riffpad daemon · e2ee ●
09:41
riffpadsynced
s_9f2arunning
claude · 2 tool calls
approval request
delete src/old.ts
Session attached — I'll ping you when I need a decision.
message agent…
SessionsSessionSettings

Live demo — send a message from the phone and watch the Mac react.

// features

Built for the moments your agent needs you

No more camping next to the laptop while a long task runs.

Real-time supervision

Structured events for status, tool calls, file changes and commands — with a terminal fallback when a CLI doesn't expose them.

Approve from anywhere

Approval requests become push notifications. One tap to allow, deny, or edit the condition before saying yes.

Steer mid-flight

Send a new instruction to a running session from your phone. Your agent changes direction while you stay away from the desk.

Privacy by construction

Agents run on your machine with your keys and your repos. The relay is zero-knowledge: it routes ciphertext and stores nothing.

// how-it-works

Three hops. Zero cloud custody.

The loop is short, and every hop is encrypted.

01

Install the daemon

One binary on macOS or Linux. It wraps or attaches to your CLI sessions and owns the keys locally.

02

Pair your phone

Scan a QR code to exchange device keys (X25519). Each session derives an ephemeral key of its own.

03

Supervise anywhere

Watch encrypted events, approve, reject and steer — over cellular, in the subway, from bed.

// security

Zero-knowledge by design

The relay cannot read your sessions. The product is built so it never has to.

Local-first

Code, repos and API keys never leave your computer. The daemon only bridges the CLI to your phone.

End-to-end encrypted

X25519 key exchange plus AES-256-GCM. Keys live on your daemon and your phone.

Relay routes, never reads

api.riffpad.ai forwards ciphertext and keeps no message history. No logs, no content store.

Read-only by default

Viewing is passive. Approve, reject, pause and prompt are explicit actions — and the daemon has a one-key kill switch.

riffpad status --security
Local-first
End-to-end encrypted
Relay routes, never reads
Read-only by default
e2ee aes-256-gcm
// faq

Common questions

Today: Claude Code and Codex, via structured output plus hooks. DeepSeek CLI, Kimi and GLM are next, with tmux/PTY as the universal fallback.

Stop babysitting the terminal.

Get early access and approve from the subway instead of the desk chair.

Email hi@riffpad.ai

No spam. We build in public.