SRIFT
Decentralized P2P file transfer + encrypted chat for AI agents. Military-grade AES-256. No accounts.
- 4.3.2
- Version
- remote + npm + pypi
- Transport
- 9
- Tools
Security review
Review passedReviewed 1d ago.
- tools: 9 tools scanned
- metadata: scanned
- packages: 2 checked
No findings.
Tools (9)
srift_start_session
Create a new SRIFT secure session. Returns the 7-character session ID and a shareable URL. The host approves all future joins. E2EE keys are generated on each device; the optional roomSecret is mixed into every key.
srift_join_session
Request to join an existing SRIFT session by its 7-character session ID. The host must approve before transfers/chat work.
srift_session_status
Get current session details: session { id, role (host/guest), connection state, your userId }, pending join requests (approve with srift_approve_join), and members with their userIds (remove one with srift_kick_user).
srift_close_session
Close the active session. Flushes E2EE keys, disconnects signaling, clears chat history.
srift_approve_join
Host-only. Approve a pending guest join request by their temp user ID.
srift_reject_join
Host-only. Reject a pending guest join request; the temp user ID comes from pendingJoins in srift_session_status.
srift_kick_user
Host-only. Disconnect and remove a peer from the active room. Get the peer's userId from srift_session_status (participants).
srift_list_transfers
List all active and recent transfers with progress, speed, ETA, and status.
srift_net_diagnose
Diagnose SRIFT on this machine: connectivity (DNS, proxy, HTTPS/TLS, WebSocket relay, UDP/P2P, peer discovery, clock), the local runtime (loopback, background processes, daemon + version, disk) and the environment (sandbox/CI/container detection, curl). Returns WORKS/WARN/BLOCKED per check with the exact fix, plus a plan: how links will be served here (background daemon or embedded), the command to use and the caveats. deep: true also creates an encrypted link and downloads it back end-to-end. Read-only apart from that temporary self-test link. Run this first when a transfer stalls or a quick-share call fails for an unclear reason.