AdaShield ← adadoai.com
Early phase, in the open

Proof we aren't snooping on you — not just a promise.

Every AI assistant's privacy policy says some version of "trust us." AdaShield exists to replace that sentence with something you can actually check yourself — built into the same CLI infrastructure, OS kernel boundary, and mail pipeline AdaDo already runs on, instead of bolted on as a separate product.

Four real pillars

01 — THE TRUST ANCHOR

Verifiable, not just promised

AdaDo already separates what's PII from what isn't at an architectural level (AIRLOCK/AIRGAP). AdaShield's job is making that boundary independently checkable by you — or a third-party auditor — instead of something you just have to believe we honour internally.

02 — CLI-INTEGRATED

Security at the session level

AdaDo's agents already run through real CLI infrastructure (Claude Code, Codex). That gives us a real enforcement point most assistants don't have: per-session audit trails, credential-scope limits, and anomaly detection on exactly what a session touched.

03 — ADAOS KERNEL BOUNDARY

Enforcement where the OS actually decides

AdaOS's research architecture mediates syscalls at the init boundary rather than replacing the kernel. That boundary is a natural place to enforce security decisions at the device level, not just inside one app.

04 — MAIL SECURITY

Where most real attacks land first

Spam, phishing, and malware filtering built into AdaDo Mail's pipeline directly — not a bolted-on scanner running after the fact.

Honest dependency note: pillar 3 needs AdaOS's kernel research to mature past its current early phase first, and pillar 4 needs AdaDo Mail to reach real phase 1 (there's nothing to secure in an inbox that doesn't exist yet). Pillars 1 and 2 are the realistic starting point — the infrastructure they build on (AIRLOCK/AIRGAP, real CLI sessions) already exists today.

Where it's at

Phase 1

Publish the verification method

Define and publish exactly how a user or auditor can independently check the AIRLOCK/AIRGAP boundary is being honoured — the trust anchor, built first because it depends on nothing else being finished.

Phase 2

CLI session audit trail

Real per-session logs of credential scope and data touched, surfaced somewhere a user can actually see them — not buried in an internal log only Ada reads.

Phase 3

Mail security, once Mail exists

Filtering built into AdaDo Mail's real pipeline as soon as it reaches phase 1.

Phase 4

AdaOS kernel-boundary enforcement

Device-level security decisions at the syscall/init boundary, once the underlying AdaOS research is far enough along to build on.