Steer your coding agents from your phone

remotxai puts the Claude Code, Codex and Pi (experimental) sessions running on your computer in your pocket. Watch the stream, approve a command, redirect a wrong turn, over a link the relay can't read.

Early access. The hosted relay is invite-only for now.

Leer en español

The remotxai app on a desktop: a sidebar with six sessions, and an open session where an agent has edited a handler and a migration and is now running the refund tests, with a Stop button and a box to queue the next message.
The same session on a phone, mid-turn, with its collapsed tool steps and a box to queue the next message.

One session mid-turn. The tool steps are collapsed, and the one running is named.

sessions

Every session in one list

Sessions from Claude Code, Codex and Pi (experimental) sit in one sidebar, each with when it last moved and its project. Start a new one from your phone: pick a workspace and a harness, then send the first message.

A list of six sessions across three harnesses, each with a name, when it last moved, and a project folder. One is marked as the session being driven.
Six sessions on one computer. The glyph shows the harness, and each row shows when it last moved and its project.
profiles

Switch a session to another account

Keep a work login and a personal login of Claude Code on one computer. From the session menu, switch a running session to the other profile. The transcript comes with it, queued messages stay queued, and if the agent doesn't start under the new account the session goes back.

A sheet titled Switch to Harbor team?, saying the session and transcript stay the same and queued messages stay queued, that the agent restarts under Harbor team and the session goes back to Personal if it can't start, with the buttons Cancel and Switch.
Switch profile, from the session menu.
live stream

Watch the work, then steer it

Replies, edits and tool calls stream in as the agent works. See a wrong turn, send a corrective prompt, and it lands at the next safe turn boundary exactly as if you had typed it.

The step list of one turn: a read, a search, a new migration file and an edit to the refund handler, each with a one-line description. The edit is open and shows its diff, with removed lines in red and added lines in green.
Tap a step to read what the agent did, down to the diff.
approvals

Approve from anywhere

When an agent stops to ask, approve it, deny it, or tweak the command and then approve. A push tells you a session needs you, and carries the session name and the reason, nothing the agent wrote.

An approval card: the agent wants to run pnpm db:migrate --env staging, with a note saying it applies the refund migration to staging, and the buttons Approve, Deny, Approve similar and Tweak.
The agent waits. You read the exact command, then decide.
sub-agents

Sub-agents stay under their parent

A session can start other agents, on the same harness or another, and keep working. They show as a tree under their parent, and you can open one, read its transcript, prompt it or stop it with its children.

A tree of sub-agents: a manager at the top, four builders under it and one builder nested a level deeper, each with its harness glyph and a state of running, waiting for approval or done.
One manager and five builders on three harnesses. One is waiting for you.
sub-agent policy

You decide which agents can start others

Allow harnesses, models and efforts one by one, and set the limits. The allowlist starts empty, so nothing starts until you say so.

The Agents page of the settings: a list of harnesses that can start sub-agents, each with a toggle and its allowed models, and a Limits list with sub-agents per agent, depth and token budgets.
Settings, Agents. The same limits exist on the command line.
artifacts

Files the agent shares land on your phone

An agent can share a file from its workspace and it appears as a card in the turn. Images, SVG, HTML, PDF, text, Markdown, JSON and YAML preview in the app.

A preview of an SVG diagram the agent shared, with the title, a one-line description, the size and a Download button. The diagram shows a webhook retry reaching a handler, which inserts once or returns the stored refund.
A diagram the agent drew, opened from the card.
background work

Long-running processes, live

A dev server or a test watcher the agent leaves running shows up in a drawer. Tap one to tail its output as it arrives, or stop it from the phone.

A drawer listing two background processes, a test watcher and a dev server, each with its command, its last line of output and how long it has run.
Two processes from one session. The last output line is on the row.
secrets

Hand over a secret without putting it in the chat

Type the value into a masked field on your phone. It goes to a private file on your computer, and the chat shows only its name.

A sheet titled Send a secret to this session, with a name field holding STAGING_DB_URL, a masked value field, and Cancel and Send secret buttons.
The value never enters the composer draft.

From install to first session

  1. Install on your computer

    Run it on the computer where your agents run. It supports macOS and Linux. Windows isn't supported.

    Terminal
    curl -fsSL https://app.remotxai.com/install.sh | sh

    Coming soonJoin the waitlist

  2. Pair your phone

    Run remotxai pair to open the pairing window, and remotxai pair setup to print a QR and a pairing link. Scan the QR from the app at app.remotxai.com, or paste the link. Your phone shows a short code. Type it into the terminal and choose what the device may do.

    The hosted relay is invite-only for now. Request a token at app.remotxai.com/invite. On the same Wi-Fi you can pair without the relay.

    1. Pair a new computer, with a button to scan the pairing QR and a link to paste the pairing link.
    2. A camera view scanning the computer's pairing QR.
    3. Computer verified, with the computer's key shown.
    4. Approve this device, with a verification code and a countdown.
    The QR carries the computer's key, so scanning it verifies the computer. You approve the device from the terminal.
  3. Steer your agents

    Pick a workspace and a harness, send the first message, and follow it from your phone. Approvals reach you wherever you are.

Works with the agents you already run

The harnesses remotxai drives, the command each needs, and its status
HarnessCommand it needs on the computerStatus
Claude CodeclaudeSupported
CodexcodexSupported
PipiExperimental

The relay carries your sessions. It can't read them.

remotxai encrypts the link between your phone and your computer end to end. The server in the middle forwards ciphertext. Here is what that covers, and what it doesn't.

What remotxai does for each part of security and privacy
TopicWhat remotxai does
EncryptionNoise_XX between your phone and your computer. The relay can't read prompts, output, approvals or the queue.
What the relay seesConnection times, message sizes and routing identifiers. It stores no session content. It logs the IP address of a denied route and a host-link entry with a token ledger ID and a code count.
Open portsNone. Your computer dials out to the relay.
PairingThe QR carries the computer's public key out of band, and you confirm a short code at the computer. The pairing window closes after 10 minutes at most.
Device accessEach device gets its own grant: one session, one workspace or all of them, and a role of viewer, approver, driver or admin. Revoke a lost phone from the computer.
ApprovalsAn approval is bound to its session and its scope, so it can't be replayed against another. A deny rule in the host policy file holds even in yolo mode for Claude Code sessions the daemon owns.
Panic stopOne tap interrupts every turn, cancels every sub-agent and suspends standing approvals until you resume. It needs a device with the all scope.
SecretsThe value goes into a masked field, then a file on your computer readable only by you. Later session output has the exact value replaced with [secret:NAME]. The file is removed when the session ends.
PushThe push names the session and the reason, and is encrypted to your device's own keys. The push service sees timing and size.

What remotxai doesn't protect against

  • A compromised computer. The daemon runs as you, and local access wins.
  • A malicious phone that is already paired. It is trusted within its grant until you revoke it.
  • Flaws in Claude Code, Codex or Pi (experimental). remotxai supervises them and doesn't sandbox them. Shell rules in the policy file are defence in depth, and an interpreter or a script file can get past them.
  • What the relay can observe: connection timing, message sizes and which computer is online.

Files and browser storage aren't encrypted by remotxai at rest. Secrets, drafts and the phone's operator key are readable by whoever owns that account or browser profile. remotxai data export and remotxai data purge give you the export and the removal.

Priced per seat, plus relay usage

remotxai is priced per seat plus relay usage. Prices aren't set yet, so there is no number on this page.

Works with trackxai

remotxai pairs with trackxai, the tracker for agent work. trackxai holds the tasks, and remotxai lets you steer the sessions that work on them.

Questions

Which agents does it work with?

Claude Code, Codex and Pi (experimental). Each one has to be installed and signed in on your computer first. Pi (experimental) has only passed its smoke test against a fake provider.

Can the relay read my sessions?

No. The link is Noise_XX end to end, and the relay forwards ciphertext. It does see connection timing, message sizes and routing identifiers.

Do I need to open a port?

No. Your computer dials out to the relay.

What happens if I lose my phone?

Revoke its pairing from the computer. A device only gets what its grant allows until you do.

Does remotxai sandbox my agents?

No. It supervises them. The host policy file can deny or ask for specific commands, paths and URLs, and you approve what the agent asks for from the phone.

What does a push notification contain?

The session name and the reason, encrypted to your device. Nothing the agent wrote.

Can I use it without the hosted relay?

Yes, on the same Wi-Fi. The computer serves the app itself and the phone pairs on your local network.

Can I try it today?

It's early access. The hosted relay is invite-only, and the source is private. Request a token at app.remotxai.com/invite.

What does Panic stop do?

It interrupts every in-flight turn, cancels every live sub-agent and suspends standing approvals until you resume. A device needs the all scope to use it.

Step away from the desk

Install remotxai on your computer, pair your phone, and keep your agents in sight.