TUNNEL EDGE
Overview
QUICKSTART
Publish your first local app
Install the signed CLI, create a single-agent credential, and connect a local service. TUNNEL marks each step complete from actual control-plane state.
STEP 1
Install the CLI
The secure updater verifies release checksums and requires the Sigstore-signed checksum bundle through cosign unless you explicitly opt out.
STEP 2
Configure your first agent
ONE-TIME SECRET
Run this on your workstation
The raw credential is shown separately so it does not need to appear in shell history. Copy it once, set TUNNEL_TOKEN using a prompt, then run the setup command.
read -rsp 'Agent token: ' TUNNEL_TOKEN; export TUNNEL_TOKEN; echo$env:TUNNEL_TOKEN = Read-Host 'Agent token'tunnel startthen openhttp://127.0.0.1:4040/VERIFY
Connection status
LIVE
Recent endpoints
RECENT
Agent sessions
ENTITLEMENTS
Current plan limits
THIS MONTH
Usage
AVAILABLE
Plan tiers
BILLING
Subscription
LAST 60 MINUTES
HTTP request volume
LAST 60 MINUTES
Bandwidth
LIVE TELEMETRY
Endpoint health
SECURITY TRAIL
Operational audit & Authentication Events
ORGANIZATIONS
Registered Tenants
TOPOLOGY
Edge Relays & Clusters
AI ASSISTANT
Policy Copilot
Describe your security policy in plain English (e.g. "Allow only 198.51.100.24, rate-limit to 30 req/min, and enable security headers").
PROJECTS
Active Projects
ENVIRONMENTS
Project Environments
AGENT CARDS
Registered Agents
FEDERATION
Delegation Grants
REPOSITORIES
Active Git Bindings
GOVERNANCE
Staged Deployment Plans
CATALOG
Verified Extensions & Plugins
LEDGER
Autonomous Economics & Tuning
IDENTITY
User Profile
——PREFERENCES
Console & CLI Settings
AI AGENT ENGINE & PROVISIONING