Building safe infrastructure for the agentic era.
I design and ship privacy-first, agent-ready systems — from on-device iOS applications to remote Model Context Protocol (MCP) servers. My work sits at the intersection of zero-knowledge encryption, immutable audit trails, and developer-facing AI tooling.
📍 Nassau Bay, Texas · 🌐 25x.codes · 🔧 mcp.undisk.app
- Spec-Driven Development (SDD) — Every feature begins as a machine-readable spec before a single line of code is written. Specifications are the source of truth; code is a derived artifact.
- Privacy-First Architecture — Data stays on-device or under user control. Zero-knowledge encryption and scoped access are defaults, not afterthoughts.
- Undo-First Infrastructure — AI agents need the power to act and the safety net to reverse. Every mutation is versioned, auditable, and reversible in under 50 ms.
🔐 Undisk MCP — The Undo-First File Workspace for AI Agents
The safest way to let AI agents work with files. Undisk MCP is a remote MCP server that gives Claude, Cursor, Copilot, and any MCP-compatible agent scoped, reversible access to a versioned file workspace — so they can read, write, and search without ever becoming a dangerous "delete everything" bot.
| Capability | Detail |
|---|---|
| 20+ MCP tools | File CRUD, versioning, undo, diff, search, policy engine, secret vault, tamper-evident audit trail, E2B compute sandbox |
| Per-file undo | Restore any file to any prior version without rolling back the entire workspace |
| WebSocket transport | 4 ms reads, 19 ms writes — persistent connection with zero idle billing via Cloudflare Durable Objects + Hibernation API |
| Zero-knowledge secret vault | Encrypted at rest, agent-scoped, never in file listings or search results |
| Policy engine | Path-based ACLs, file-size limits, rate caps, anomaly alerts — configurable per workspace |
| Secret detection | 20+ patterns (AWS keys, GitHub PATs, private keys) scanned and blocked on every write |
| Tamper-evident audit trail | Every operation logged with agent identity, content hash, and hash-chain integrity verification |
| EU AI Act readiness | Immutable versioning + audit trail enables deployer compliance with Articles 12, 14, and 26 |
Architecture: Cloudflare Workers (Smart Placement) → Durable Objects (one per workspace, SQLite + R2) → content-addressable storage with SHA-256 deduplication. Dual-provider with Fastly edge compute for read-heavy workloads.
Integrations: Claude Desktop · Cursor · VS Code · GitHub Copilot · Google ADK · LlamaIndex · LangChain · Docker MCP Hub
→ mcp.undisk.app | Get started | Live demo
📖 Bayan — Bilingual Persian Poetry Analysis (iOS)
The only app providing bilingual Farsi-English literary analysis of classical Persian poetry. Bayan decodes Sufi symbolism, historical allusions, and archaic vocabulary — fully offline with verse text sourced from a verified canonical corpus, not AI-generated.
| Metric | Value |
|---|---|
| Poems | 13,828 |
| Dictionary entries | 33,640 |
| Searchable verses | 106,037 |
| Test functions | 128+ |
Stack: Swift · SwiftUI · CoreData · on-device NLP · privacy-first (no server, no telemetry)
💰 FIML — Financial Intelligence Meta-Layer
An AI-native MCP server for financial data aggregation with intelligent multi-provider orchestration and multilingual compliance guardrails. Open-source project demonstrating enterprise-grade AI architecture.
32K+ lines of code · 1,403 automated tests · 100% pass rate
Stack: Python · MCP Server · AI Orchestration · CI/CD
→ Documentation | GitHub
🎤 Aligna — Conversational AI Recruiter
Schedules and conducts voice interviews via LiveKit, transcribes with Azure OpenAI, and performs automated candidate-job matching with full observability.
Stack: Next.js · LiveKit · Azure OpenAI · PostgreSQL · Docker
Languages TypeScript · Swift · Python · SQL
Infra Cloudflare Workers · Durable Objects · R2 · D1 · KV · Queues
Fastly Compute · E2B Sandboxes
Protocols MCP (Model Context Protocol) · JSON-RPC 2.0 · WebSocket · OAuth 2.1
AI/ML On-device NLP · LLM orchestration · AI safety (Llama Guard)
Content moderation · Agent tooling
Frameworks React · Next.js · Astro · Hono · SwiftUI · Vite
Security Zero-knowledge encryption · Ed25519 signing · HMAC-SHA256
SAML 2.0 · OIDC · Secret scanning · Path traversal protection
Dev Practice Spec-Driven Development (SDD) · TDD · Immutable infrastructure
Tamper-evident audit trails · Content-addressable storage
- 🚀 Scaling Undisk MCP — SSO (SAML 2.0 + OIDC), Organizations, real-time audit webhook streaming for enterprise SIEM integration
- 🤝 E2B partnership — $20K compute grant establishing Undisk MCP + E2B as the de facto "Storage + Compute" architecture for AI agents
- 📱 Growing Bayan — expanding the canonical corpus and refining on-device NLP for classical Persian poetry
- 📐 Evolving Spec-Driven Development tooling — building the workflow where specifications are the source of truth and code is a derived artifact
| 🌐 Portfolio | 25x.codes |
| 🔧 Undisk MCP | mcp.undisk.app |
| 📖 Bayan | trybayan.com |
| linkedin.com/in/kiarashadl | |
| 🤖 Ask my portfolio AI | curl https://25x.codes/.well-known/mcp.llmfeed.json |
This profile is MCP-enabled. Point your AI agent at https://25x.codes/.well-known/mcp.llmfeed.json to query my projects, skills, and experience programmatically.




