Private access to every machine you run
Connect your servers, laptops and sites over an encrypted mesh network, and reach them by SSH from the browser — with no exposed ports, no jump boxes and no shared credentials.


Two products, one control plane
Connect your machines privately, then reach them securely — managed from a single dashboard, with one account and one device inventory.
Mesh. One private network for everything you run.
Devices join an encrypted overlay network and reach each other directly, wherever they are. Connections are outbound-only, so nothing has to be exposed to the internet.
Machines dial out to the coordination service, so there is no port forwarding and no public bastion to defend.
Data centre, office, home or cloud — devices keep a stable identity as they move between networks.
Install on Windows and Linux, or enrol headless servers from the command line.
Shell. SSH from the browser, without handing out keys.
Open a terminal on any connected host straight from the dashboard. Access follows the person, not a shared key file, and every session is recorded.
People sign in as themselves, so access can be granted and revoked per person instead of rotating a shared key.
Every connection is written to an audit trail, so you can answer who reached which host and when.
A browser is the client. There is no agent to roll out to the people who need access.
Suite. Both products, one subscription.
Run the private network and browser SSH together under a single organisation, a single sign-in and a single invoice — for 20% less than buying them separately.
The same account and the same permissions apply across every product in the suite.
Machines are named and grouped once, then shown consistently everywhere they appear.
A single per-seat subscription covers the whole suite, billed monthly or yearly.
Preise
Wähle das passende Paket für dich aus.
Free
- Vollständige Konsole und Geräteinventar
- Eine Organisation
- Mesh und Shell sind nicht enthalten
Mesh
- 10 Knoten pro Platz enthalten
- 0,50 $ pro zusätzlichem Knoten
- Clients für Windows, Linux und CLI
- Gerätebenennung und Inventar
Shell
- 5 Hosts pro Platz enthalten
- 1 $ pro zusätzlichem Host
- Sitzungsverlauf und Audit-Protokoll
- Privilegierte Zugriffsverwaltung nur in Enterprise
Suite
- Alles aus Mesh und Shell
- 10 Knoten und 5 Hosts pro Platz enthalten
- Eine Anmeldung für alle Produkte
- Ein Abonnement, eine Rechnung
Enterprise
- Privilegierte Zugriffsverwaltung für SSH
- Eigener Identitätsanbieter (SSO)
- Eigene oder selbst gehostete Instanz
- Individuell vereinbarte Knoten-, Host- und Platzkontingente
- Priorisierter Support und Onboarding
Häufig gestellte Fragen
Hast du irgendwelche Fragen? Wir sind für dich da.
What is the difference between Mesh and Shell?
Mesh is the private network: it connects your servers, laptops and sites to each other over an encrypted overlay. Shell is browser-based SSH access to those machines, with a full session history. The Suite is both.
Do I have to open ports on my firewall?
No. Devices make outbound connections only, so nothing needs to be exposed to the internet — no port forwarding, no public bastion host.
Do you offer a free trial?
Yes — every paid plan starts with a 7-day free trial. The Free plan lets you explore the console indefinitely, but does not include Mesh or Shell.
How much do I save by paying yearly?
Annual plans are billed at ten months' price, so you get two months free — about 17% off — on every plan.
What happens if I go over my included nodes or hosts?
Nothing breaks. Additional nodes and hosts are billed at the per-unit rate shown on your plan, so you are never blocked from connecting a machine.
Can I use my own identity provider?
Yes. Enterprise plans support single sign-on against your own OIDC identity provider, so accounts and access follow your existing directory.
Can I change or cancel my plan?
Yes. You can switch plans or cancel at any time from the billing page in your dashboard; changes are prorated to your current cycle.
Can I run this on my own infrastructure?
Yes. Enterprise customers can run a dedicated or fully self-hosted deployment, keeping the control plane and all traffic inside their own environment.
Auf dem Laufenden bleiben
Produkt-Updates, Sicherheitshinweise und Release Notes — gelegentlich und jederzeit abbestellbar.