Local tunnel
The client initiates the connection and the agent exposes no public port.
Minimal exposureSet boundaries before adding capability
Connections remain direct end to end; the cloud accepts only classified, explicitly allowed data.
Important changes stay visible and unfamiliar resources are never modified automatically.
The client initiates the connection and the agent exposes no public port.
Minimal exposureA changed host key requires explicit confirmation.
Visible failureRemote SSH, tmux, and user processes are never ended without authorization.
Keep contextUnknown fields are rejected and sensitive material does not enter the cloud in plaintext.
Secrets upload only as opaque ciphertext encrypted by a trusted client.
User confirmedThe server stores versioned opaque ciphertext and required non-secret metadata only.
Zero knowledgePasswords, tokens, cookies, ciphertext bodies, and SSH details stay out of logs.
Minimum record