Free forever desktop · Cloud Portal with Pro $19/mo

Remote access with
no open ports

AidaIDE Cloud Portal opens a secure reverse tunnel from your desktop to a hosted gateway — no port forwarding, no VPN, no static IP. Access your full IDE from any browser.

Get AidaIDE Open Portal
No port forwarding RBAC access control Guest passes mTLS encrypted Idle-kick protection

No open ports on your network

Old remote-access setups punch holes in the firewall. Cloud Portal never listens inbound — your PC dials out once and keeps an encrypted reverse tunnel.

Old way — open ports

Router forwards 22 / 8080 from the public internet into your LAN.

Internet scanners & bots Router :22 :8080 OPEN Your PC exposed on the LAN edge Inbound attack surface stays open 24/7
Inbound ports Port-forward rules

Cloud Portal — reverse tunnel

Your PC opens one outbound WebSocket. Nothing listens on your router.

Browser any device AidaIDE hosted gateway outbound Your PC no inbound ports open Firewall stays closed — tunnel dials out only
Encrypted tunnel Outbound-only

Bottom line: you do not open SSH, RDP, or HTTP on the router. Collaborators hit the AidaIDE gateway; your machine keeps the session alive from the inside.

AidaIDE Cloud Portal — Settings
$_ cloud-portal enable
↳ Generating device certificate (ECDSA P-256)...
↳ Enrolling with portal API...
✓ Device enrolled — fingerprint: a3f8:c21b:9d04
↳ Opening WebSocket tunnel to gateway...
✓ Tunnel active — no inbound ports
$_ cloud-portal status
Portal URL: https://api.aidaide.app/webportal/d/<your-device>/
Status: ● connected
Inbound: none (outbound tunnel only)
Guests: 1 / 1 slot active

Three steps to remote access

No infrastructure to manage. Enable the tunnel in Settings, share the link, done.

1

Enable in Settings

Open AidaIDE → Settings → Cloud Portal. One click starts the enrollment and opens the reverse tunnel from your machine to the hosted gateway.

2

Invite collaborators

From your portal dashboard at aidaide.app/dashboard, add collaborators by email and assign them a permission group. They need an AidaIDE account — nothing else.

3

Work from anywhere

Collaborators open the portal in their browser. All traffic flows through the encrypted tunnel. You stay in control — approve or deny sensitive actions in real time.

Everything you need, nothing you don't

Cloud Portal ships with enterprise-grade access control baked in — no plugins, no config files.

RBAC Access Control

Four built-in permission groups — Owner, Trusted, Collaborator, Read-Only. Every action (file reads, writes, shell, terminal) maps to Allow, Deny, or Prompt-host. Fully customisable.

Guest Passes

Give external collaborators temporary access without a paid seat. Pro includes 1 concurrent slot; Teams Pro includes 5. Add more at $12/yr each.

Prompt-Host Approval

Sensitive operations — file writes, terminal interaction, project changes — can be set to require your live approval before execution. You see the request; you decide.

Audit Log

Every action taken through the portal is logged with timestamp, actor, and outcome. Stored on your device, retained for 365 days by default.

Idle-Kick Protection

Guests who go idle are warned at 4 minutes and automatically disconnected after 30 more seconds. No lingering open sessions when nobody's actively working.

mTLS + Zero Trust

Your device is issued a unique ECDSA P-256 certificate on enrollment. Every tunnel connection is mutually authenticated — no shared secrets, no static credentials.

A web terminal that behaves like the desktop one

The browser workspace is where most remote sessions actually happen, so it gets the things you stop noticing until they're missing.

Command history recall

Arrow-key back through what you've run, in the browser, the same way you do in a local shell. This was the biggest remaining gap between the web terminal and the desktop app — it's closed.

Terminal fits the window

The PTY resizes with the browser instead of being pinned to 120 columns. htop, vim, and anything else that draws to the full width render correctly on a wide monitor.

Scroll lock and follow mode

Pin the view to read something in a stream that's still moving, then jump back to following the tail. When scrollback is trimmed, the terminal says so rather than silently dropping lines.

Zoom the terminal, not the page

Font size is adjustable in the web terminal itself, from 6 to 40 point, with a reset. Browser page zoom scaled the whole app and fought the layout; this scales the text you're reading and reflows the PTY to match.

The local server tells you what it's doing

Settings → Cloud Portal shows live status for the local web server with Start and Restart beside it. When it fails to come up you get the real reason rather than a portal that silently never answers.

Enrollment works on a fresh PC

Corporate antivirus that scans HTTPS re-signs certificates on the way through, which used to break enrollment on a clean machine. AidaIDE now trusts the Windows certificate store, so a new PC enrolls without a workaround.

Device status you can trust

The dashboard verifies that a device is reachable instead of repeating a stale "online" claim, and the Fleet sidebar shows a real error with a Retry when the server fails — not an empty list that reads like you own nothing.

Honest camera liveness

The Grid Viewer labels every feed Live, Stale, Connecting, or No signal. A frozen frame from four minutes ago no longer looks like a working camera.

Remote Desktop, driveable

Mouse input works in desktop browsers, keys the browser doesn't map no longer break the session, and you can pan around a screen larger than your window or paste an image straight in.

You control exactly what each collaborator can do

Every device gets four built-in groups. Assign collaborators to a group and the permissions enforce themselves — no scripting required.

  • Owner — full access, all capabilities allowed. Cannot be edited or removed.
  • Trusted — full non-admin access. Cannot change groups or settings.
  • Collaborator — reads free; writes and terminal require your live approval.
  • Read-Only — view files, terminal output, project config. No writes, no shell.
  • Create custom groups with per-capability overrides.
Owner Built-in
All allow
Trusted
file.read file.write shell
Collaborator
file.read file.write shell
Read-Only
file.read file.write shell
Custom group — configure any capability

Included with every Pro plan.
Guest passes from $12/yr.

Cloud Portal is not an add-on. Every Pro and Teams Pro license includes it. Pay only if you need extra concurrent guest slots.

Need more guest slots?
Guest Pass Add-on
$12 / yr per additional slot
Get AidaIDE Open My Portal

Your IDE. Anywhere. No open ports.

Desktop is Free forever. Cloud Portal ships with AidaIDE Pro — from $19/mo (Teams Pro $70/mo). Turn on the tunnel and it’s on.

Get Pro — from $19/mo