Coverage and implementation status

Where ShareLess can actually step in

A control appears only when ShareLess can pause the request or hold the information. This page shows what is available now, what is coming next, and what is not covered.

1 · Connected AIMoves ahead with a requestThe AI does not need to remember to ask when the ShareLess path holds the protected value.
2 · Your phoneShareLess applies your boundaryA matching rule pauses the exact release on your iPhone.
3 · Honest resultEnforced or advisoryHistory keeps verified execution separate from an AI's report.

Available now, coming next, and not covered

Money information

Available now

ShareLess can compute a bounded spending answer on your iPhone, apply your release choices, and pause before the result reaches a connected AI. Raw statements, individual transactions, and account numbers stay on the phone.

Private data

Available now

A connected AI can request one exact saved field for a stated reason. ShareLess checks the rule independently and the phone decides whether a value held by ShareLess leaves. The AI does not have the value beforehand.

Payment approval

Limited path

A custom attention threshold can add scrutiny to the limited ShareLess-run checkout path. It is not a universal spend cap and does not cover purchases made in another app or browser. Payment authority remains with the wallet, issuer, processor, or merchant.

Gmail send

Coming next

The exact-email contract, phone review, and device-confirmation foundation exist. Gmail account connection, AI submission, phone execution, and provider receipts are not available yet, so Gmail does not appear as an active app control.

Social and personal messaging

Not covered today

Social controls stay hidden until ShareLess can connect the exact destination account and execute only the approved post. Personal Instagram, WhatsApp, iMessage, and LinkedIn messages are not covered today.

Connect an AI

ChatGPT, Claude, or another remote MCP client

Opened in memory · never stored

Add ShareLess as a custom connector. Exact field requests and the existing vault tool surface are live now: the request reaches your phone, and only an approved value is returned. Use this connector URL:

https://app.shareless.ai/api/mcp/remote

On this remote path, ShareLess opens an approved value in memory long enough to pass it to your AI and does not store that plaintext. This path is not server-blind. For a path where ShareLess cannot open the value, use the local Claude Desktop bundle below.

Follow your MCP client's current custom-connector setup. Access can depend on the client, workspace plan, and administrator permissions.

Connecting the MCP endpoint does not by itself let ShareLess stop a post, email, or message performed through some other tool. General-purpose protected-action send and post tools are not available yet.

Claude Desktop bundle, blind and local

Opened only on your device

Install the ShareLess Vault bundle. It runs on your own machine and opens approved values locally, so ShareLess relays only ciphertext it cannot read. Once Claude uses a value, it still reaches Anthropic like any other message. The local bundle protects the field-release path; it does not turn outside account actions into enforced ShareLess actions.

Set up Claude Desktop

Protected-action contract

Bind approval to what will happen

Foundation ready · execution next

The shared contract binds the authenticated AI connection, action class, exact recipient, source or destination account, exact text, document, field list or amount, the boundary that fired, server-computed flags, enforcement label, and expiry. A deterministic payload hash changes when any reviewed fact changes. The contract validates the review facts; it does not itself execute an action or mint authority.

The current protected-action foundation is intentionally narrow and includes exact Gmail email fields. It is not a general-purpose API for sending email, messages, or posts, and it grants no authority until a real executor consumes the approved action.

Real versus advisory

Labeled at review and in history
  • Enforced: ShareLess holds the private value or document, or holds a supported account token and performs the exact approved action.
  • Enforced by wallet or issuer: an external payment mandate binds amount, merchant, and expiry.
  • Advisory: an AI reports an action performed in an outside browser or tool, or is merely instructed to ask first.

Browser extension

Local private-data tools in your browser

Runs on your device

Make Private, Fingerprint, and opt-in local vault fill run on your device. The extension is open-source under Apache-2.0. Local fill can keep ShareLess blind to a value, but the extension is not a connected-account broker and cannot promise to intercept every AI action on a website.

Chrome Web Store listing coming soon.

Mobile apps

iPhone app

The approval surface

Active boundaries and approval sheets live on iPhone. Connect an AI, review exact field and money-information requests today, and see new controls only after a destination path works end to end.

Get the iPhone app

Android

Coming soon

Android is in the same pilot as iOS, but it is not the public install path yet. Use iPhone until a Play listing is available.

For developers

MCP tool discovery is the source of truth for the live endpoint. The stable data-control surface currently includes:

  • vault_list_fields and vault_get_field, list metadata and request one exact field
  • vault_list_packs and vault_get_pack, list and request a grouped set of fields
  • vault_request_intent, resolve the minimum field set for a stated task
  • vault_add_context, propose low-sensitivity context; the phone confirms before anything is written
  • finance_catalog, finance_query, and finance_result, compute a bounded answer on device before release

Existing checkout, device-handoff, and session tools remain in discovery during the wallet-handoff migration. They are transition interfaces, not the new product promise. No MCP tool should be described as an enforced send or post until a connected-account executor actually performs it.

Read the connect guide