Start Free
Works behind NAT & CGNAT · Home Assistant app or Docker

Remote Access to Your Home Network — Without Port Forwarding

Reach Home Assistant, your NAS, cameras or any self-hosted service from anywhere. No open ports, no VPN client, no router configuration. Pluggie builds an encrypted tunnel outbound from your device — so it works even when your ISP puts you behind CGNAT.

Free forever tier · 1 GB included · No email or credit card required

The usual options

  • × Port forwarding exposes your network to the whole internet
  • × Behind CGNAT, port forwarding is not even possible
  • × A VPN needs client software on every device you use
  • × Dynamic DNS breaks whenever your IP changes
  • × Certificates and renewals become your problem

With Pluggie

  • No inbound ports — the tunnel dials out from your device
  • Works behind NAT, double NAT and CGNAT
  • Open it in any browser — nothing to install on your phone
  • A stable URL that does not change with your IP
  • SSL certificates issued and renewed automatically

Built for networks you don't control

Most remote access problems come down to one thing: you cannot accept inbound connections. Pluggie sidesteps that entirely.

No router configuration

Nothing to forward, nothing to open, nothing to break. If your device can reach the internet, it can be reached through Pluggie — even on a locked-down or ISP-managed router.

Encrypted end to end

SSL certificates are generated and stored on your device. Traffic stays encrypted between your browser and your hardware, and Pluggie continuously verifies the integrity of that connection.

Locked down by geography and IP

Restrict who can reach your tunnel by country or IP range, and add HTTP Basic Auth on top. Useful when the thing behind the tunnel was never meant to face the internet.

Runs where you already run things

Install it as a Home Assistant app or as a Docker container on any Linux box. Pluggie proxies whatever sits behind it — it is a tunnel, not an app manager.

Three steps, about five minutes

1

Create a free account

Sign up and get your access key. No email address and no credit card are required for the free tier.

2

Install and paste the key

Add the Home Assistant app or run the Docker container, paste the access key, and point it at the local service you want to reach.

3

Open it from anywhere

Your service is live on a secure URL — a free pluggie.net subdomain, or your own custom domain on a paid plan.

Anything with a web interface

If it serves HTTP or HTTPS on your local network, Pluggie can put it behind a secure URL.

Home Assistant Synology & TrueNAS Security cameras OctoPrint & Klipper Nextcloud Jellyfin Gitea Grafana Proxmox Router admin panels

Before you sign up

No. The tunnel is initiated outbound from your device, so no inbound ports need to be open. You never touch your router configuration, and your network is not exposed to inbound scans.
SSL certificates are generated and stored on your own device, and our relay servers forward encrypted traffic without decrypting or storing it. Pluggie continuously verifies the integrity of that encrypted connection and shows the status in the web dashboard, the Home Assistant app sidebar and the Docker local UI. To be straight with you: with any relay-based service the provider theoretically controls the domain and could issue alternative certificates. That is exactly why the integrity indicator exists — so you can see if anything ever looks wrong.
Yes. Pluggie works behind NAT, double NAT and CGNAT, including mobile and satellite connections where you never get a public IP address. Solving CGNAT cleanly is one of the primary reasons Pluggie exists.
Safer than port forwarding, because nothing inbound is ever opened on your router. On top of that you can restrict who reaches the tunnel by country or IP range, and add HTTP Basic Auth in front of the service. That matters when the thing behind the tunnel — a camera, a NAS panel — was never designed to face the public internet.
Any device with an HTTP or HTTPS web interface on your local network: Home Assistant, NAS units such as Synology or TrueNAS, security cameras, 3D printer interfaces like OctoPrint or Klipper, and self-hosted apps such as Nextcloud, Gitea or Jellyfin. Pluggie proxies whatever sits behind it — it is not an app manager.
Nothing breaks. The tunnel keeps working, throttled to 128 Kbps, until your 30-day allowance resets — still enough to check a dashboard or a camera snapshot. If you need full speed continuously, a paid tunnel raises the allowance to 5 GB and adds two extra free tunnels alongside it.
The tunnel simply becomes unreachable while your device is offline, and reconnects on its own once connectivity returns. There is nothing to re-register and no new URL to hand out, because your address stays the same.
Yes. The free tier includes one tunnel with 1 GB at full speed per 30 days and a free pluggie.net subdomain, with no email address and no credit card required. Paid plans start at £5/month and add custom domains and more bandwidth.

Stop fighting your router

Set up an encrypted tunnel in the next five minutes. Free tier, no credit card.

Start Free