COMPANY PULSE
SUGGESTED MOVES
PERSONAL CONTEXT
MARKETING COMMAND CENTERCHECKING
JARVIS idle.
Privacy: self-hosted openWakeWord mode sends ambient PCM only to authenticated JARVIS wake detector on your own VPS; never Deepgram. Deepgram receives command audio only after “Jarvis” detection or push-to-talk. Grok requests leave VPS through xAI. Route always shown.
OPERATIONS CONNECTORSLEAST PRIVILEGE
MESSAGING ASSISTANTSETUP NEEDED
Official WhatsApp/Instagram Business connector required for sending. Local disclosed drafts work now.
JARVIS never presents as Anmol or human. Sensitive messages always require per-message approval. No browser automation, password entry, initial outreach, or external sending exists in current setup.
API MANAGEMENTENCRYPTED VAULT
Official Codex CLI runs under dedicated VPS identity using ChatGPT device authorization—no API key. Current release accepts no Codex credential in browser. Approved jobs stay queued while dispatch policy is locked.
WAKE DETECTOR · JARVISOFF
Official openWakeWord runtime is Python/server-side. Browser-native ONNX/WASM chain was not shipped because full preprocessing + embedding + classifier path lacks validated official browser integration. This opt-in adapter sends audio only over same-origin WSS to your self-hosted detector—not Deepgram or another vendor. Exact “Jarvis” requires user-supplied trained model; bundled upstream model detects “Hey Jarvis,” so it is not substituted.
VOICE STUDIOCHECKING
Male-presenting Deepgram Aura-2 profiles only. Generic original labels; no character or celebrity imitation. Previews are short and explicit.
TRUSTED BROWSER DEVICESCHECKING
Passkey login replaces repeated access-code entry. Face ID, Touch ID, or device PIN remains required. Server stores public key only.
MAC COMPANIONNO DEVICE
Pair signed macOS app. Remote unlock, password replay, shell, remote desktop, keylogging, and credential access remain impossible.
Pairing and permission steps
- Install and open JARVIS Companion DMG on Mac.
- Generate pairing code in app.
- Enter code here while authenticated.
- Enable remote lock on Mac only after macOS owner authentication.
- Keep “require password immediately” enabled in System Settings.
MACOS KEYCHAIN REFERENCESSECRETS DEVICE-BOUND
JARVIS stores opaque IDs, labels, device, and exact HTTPS origin only. Models, VPS, browser UI, Codex, logs, and memory never receive passwords.
Each request requires recent passkey/code re-auth, exact-origin match, signed expiring Mac command, and local macOS owner approval. Companion opens origin only; you use macOS Passwords AutoFill manually. Reveal, copy, export, password generation, credential capture, and browser automation are blocked.