Private preview · Billing not yet open

Route the work. Not the noise.

Connect Codex to a governed local Claude Code worker backed by managed DeepSeek access—AUTO by default, review-only when needed, and one task-bound delivery when explicitly enabled.

MANAGED APIUse the service without a provider key.
NO OVERAGESHard limits, never surprise charges.
FAIL CLOSEDNo permit means no dispatch.
AUDIT FIRSTEvery decision leaves a receipt.

The handoff

A safer handoff, end to end.

The repository stays on your machine. The Cloud issues a short-lived, budgeted model grant, records usage, and reconciles the result without exposing the provider key.

01

Observe

Read one target state without polling or waking it.

02

Decide

Apply authorization, duplicate, availability, and budget rules.

03

Permit

Issue one short-lived, idempotent delivery permit.

04

Reconcile

Record delivery, failure, or an unresolved handoff for review.

Deterministic gate

Four outcomes. No ambiguous retry loop.

Every request ends in a named decision that operators and software can audit.

RECORD_ONLY

Keep evidence. Do not send.

QUEUE_UNTIL_IDLE

Hold one request until the target becomes available.

DELIVER_ONCE

Permit one idempotent handoff.

SUPPRESS_DUPLICATE

Reject equivalent work already recorded.

Business boundary

Free local core. Paid operational control.

The Apache-2.0 core stays useful on one machine. The commercial cloud adds team governance and managed operations.

Apache-2.0

Community core

  • Deterministic delivery decisions
  • Local SQLite outbox
  • CLI and Codex callback adapter
  • Self-managed deployment
View open-source repository →
Commercial preview

Managed execution cloud

  • Codex MCP with AUTO, REVIEW_ONLY, and DELIVERY_ONCE
  • Short-lived DeepSeek gateway grants—no customer provider key
  • Local source execution with budgets, credits, and receipts
  • Managed reconciliation and audit retention
Review launch plans →