Privacy-first remote access without port forwarding, VPNs, or router configs. Pluggie creates an encrypted tunnel to your local devices in minutes. Your data never touches our servers unencrypted. Works behind NAT and CGNAT.
Free forever · 1GB included · No email or credit card required
You've got devices on your local network — Home Assistant, NAS, cameras, 3D printers — and you need to reach them remotely. But that means:
Pluggie creates an encrypted tunnel from your local device directly to your browser. Privacy-first by design — no middleman ever sees your data.
Security-first remote access with the flexibility to run on any Linux system.
Your traffic is fully encrypted between your device and your browser. Pluggie's relay servers forward encrypted data but never decrypt, inspect, or store it. SSL certificates are generated and stored on your device — not ours.
Control access by continent, country, specific IP ranges, or Basic Auth credentials. Your devices, your rules.
Let's Encrypt certificates issued and renewed automatically, handled directly on your device. Always HTTPS, zero effort.
Use your own domain — no transfer required. Or grab a free pluggie.net subdomain. Your choice.
Run as a dedicated Home Assistant app with one-click install, or deploy the Docker container on any Linux system — NAS, Raspberry Pi, VPS, or bare metal. If Docker runs there, Pluggie runs there.
Create account, paste access key, start the app or container. Home Assistant needs one extra trusted-proxy line — your dashboard guides you through it.
Sign up instantly — no email address or credit card required. You'll receive your unique access key right away.
Pick Docker or Home Assistant. Your dashboard walks you through the rest.
Paste your access key into the app settings or Docker container environment variable. Some apps — like Home Assistant — also need a one-time trusted-proxy entry, which your dashboard and docs walk you through.
Start the app or container. The encrypted tunnel is established automatically — no router configuration whatsoever.
Set up geographic filtering, IP allowlists, and Basic Auth to control exactly who can reach your devices.
How the connection works
Traffic is end-to-end encrypted from your browser all the way to the device where Pluggie runs. The relay server never decrypts your data.
If it has a web interface on your local network, Pluggie can make it securely accessible from anywhere.
Control your smart home, check dashboards, and manage automations from work, travel, or anywhere.
Access router admin, Pi-hole, Proxmox, or any management interface from anywhere. No VPN client needed.
Reach your Synology, TrueNAS, or any file server without VPN hassle.
Receive webhooks from GitHub, Stripe, or any external service directly on your local machine — no ngrok needed.
Access Nextcloud, Gitea, Jellyfin, Pi-hole admin, or any web-based tool remotely.
Monitor Grafana, Node-RED, sensor feeds, or expose local dev environments for testing.
Start free with no strings attached. Upgrade when you need more.
Prices are fixed per currency, not converted — you are charged exactly the amount shown.
Tunnels never stop working — once the full-speed allowance is used (1GB for free tunnels, 5GB per paid tunnel), the connection is slowed to 128Kbps until the next 30-day reset. Each paid tunnel on your account unlocks 2 extra free tunnels, each with their own independent 1GB full-speed allowance (e.g. 2 paid → 2 paid (5GB each) + 4 free (1GB each)). Paid tunnels reset 30 days from payment date; free tunnels use a rolling 30-day window. All plans include end-to-end encryption and automatic SSL certificates.
We built Pluggie because existing solutions weren't good enough. Here's why.
| Pluggie | ngrok | Nabu Casa | Cloudflare Tunnel | Tailscale | |
|---|---|---|---|---|---|
| Price | Free / $6 mo | Free / $10 mo | $6.50 /mo | Free | Free / $8 user mo |
| Free tier | ✓ Data-limited | ✓ $5 credit, then stops | 31-day trial only | ✓ | ✓ (6 users) |
| No email signup | ✓ (free tier) * | × | × | × | × (SSO required) |
| End-to-end encryption | ✓ ** | × (TLS at edge) | ✓ ** | × (TLS at edge) | ✓ (WireGuard) |
| Encryption integrity check | ✓ Active status in UI | × (no E2E) | Manual fingerprint only | × (no E2E) | ✓ (built into VPN) |
| Built-in geo/IP filtering | ✓ | Via Traffic Policy (paid) | × | Via WAF rules | × (ACL only) |
| Custom domain | ✓ (paid plans) | × ($20 plan + hourly) | ✓ (via CNAME) | ✓ (requires CF DNS) | × (MagicDNS only) |
| Free subdomain | ✓ pluggie.net | ✓ ngrok-free.app | ✓ nabu.casa | × (temporary only) | ✓ tailnet domain |
| Docker & Home Assistant | ✓ Both | Agent binary, no HA add-on | Home Assistant only | ✓ | ✓ |
| Setup complexity | ~5 min | ~2 min | ~5 min | ~15 min | ~10 min |
* Free tier needs no email or credit card. Paid plans use Stripe, which requires an email at checkout.
** How each service handles encryption:
Start free in about 5 minutes. No email, no credit card, no router config.