Here the Email field recognize two commands: noko and sage. It could be much more. A whole sandboxed scheme interpreter in a Command field, but I digress.
What I really like is the idea of a pure AI moderation: you just cannot trust humans. Only the machine is fair. I think we agree on the essential: access log must go to /dev/null.
I don't know what is your position about forced anonymity. I am not sure myself if it's the best option. I dislike the use of names, they cause a lot of flaming, and I am not a big fan of tripcodes, (although they are very simple to use). I think that if a poster must be identified, we should offer the option to attach PGP keys.