KAMEL LABS · OASIS.AI

Invisible protection. Audit-ready elegance.

A zero-footprint desktop daemon for law firms, accounting practices, and consulting agencies. Real-time phishing protection with automatic SOC 2 Type II compliance evidence — no security team required.

Privacy by architecture
Zero server-side data
Local encrypted vault
SOC 2 Type II mapped

PRODUCT

Three layers. One silent daemon.

01 SENTINEL

Real-time clipboard protection

A zero-footprint daemon watches clipboard activity continuously. Raw text, passwords, and confidential copy never leave the machine. Only explicit URL and email header structures trigger the secure proxy — by architecture, not policy.

02 ADVISORY

Honest threat intelligence

When a medium or high-risk threat is confirmed, a clean overlay presents the risk and two explicit actions: Acknowledge & Proceed or Safely Close. No false alarms. No hard blocks. Clear liability shift by design.

03 GRC VAULT

Continuous compliance evidence

Every confirmed threat is automatically mapped to SOC 2 Type II controls and stored in a local encrypted SQLite vault. Client questionnaires and security audits become one-click exports — not a scramble.

HOW IT WORKS

From install to audit-ready in minutes.

01

Install the daemon

Download the macOS .app or Windows .exe. It settles quietly into your Menu Bar or System Tray with zero desktop footprint.

02

Protection activates immediately

Local Regex pre-filtering runs entirely on-device. Only URL or email header patterns trigger the secure AI proxy — raw client data never leaves the machine.

03

Threats surface, you decide

On confirmed risk, a clean advisory overlay presents the threat. You choose to proceed or close — Oasis.ai logs the event and generates the compliance record.

04

Audit evidence, always ready

Premium users get the Continuous GRC Vault: persistent encrypted logs mapped to SOC 2 Type II controls, exportable on demand.

THREAT ADVISORY

Real risks, surfaced clearly.

When a confirmed threat is detected, Oasis.ai presents a clean advisory — not an alarm. The risk level, domain, and recommended action are visible at a glance. The user stays in control. The compliance record is written automatically.

No false positives. Honest threat intelligence is a brand value. →

THREAT DETECTED — MEDIUM RISK

domain: secure-login-verify.net
risk: medium
pattern: credential-harvest redirect
timestamp: 2026-06-03T14:32:11Z

This URL matches a known credential-harvesting pattern. Proceeding may expose login credentials to an unauthorized third party.

PRICING

Simple. Flat rate. No per-seat friction.

Free tier activates on install. Premium converts at the moment you need to produce audit evidence — $29/month covers the entire firm.

Free

$0

Immediate protection for any firm, zero configuration.

  • Real-time clipboard sentinel
  • Local deterministic URL/header pre-filter
  • Basic threat block history
  • macOS & Windows
Download free
RECOMMENDED

Premium

$29/month per firm

Everything in Free, plus continuous compliance evidence.

  • Continuous GRC Vault (encrypted local SQLite)
  • SOC 2 Type II control mapping
  • Audit-ready export on demand
  • Escalation email drafts
  • Flat rate — no per-seat friction
Start Premium

EARLY ACCESS

Join the beta — five firms only.

We are onboarding five beta firms. 30-minute feedback session + free Premium access during beta. Law firms, accounting practices, and consulting agencies preferred.