Loading Relay…

Your applications, connected

Workspace / Applications

One app. Every environment.

Manage domains, upstreams, and subroutes in one place.

ApplicationEnvironments / DomainsRoutesCertificateManage

Workspace / People

Access, kept simple.

Permissions cover every environment of an application.

UsernameEmailRoleAccessManage

Workspace / Invitations

Make room for your team.

Create an invitation and share its link.

Invite someone

An email is optional. If supplied, only that address can accept.

Application access
UsernameRoleExpiresStatusInvitation

No invitations yet

Invite someone to share access to your applications.

Workspace / DNS credentials

One token per domain.

Save a Cloudflare token once. Every matching app and environment uses it.

Portal SSL

Use the Cloudflare zone, such as example.com. It covers app.example.com, app.beta.example.com, and app.dev.example.com. The token needs Zone · DNS · Edit permission for this zone.

Domain credentials

Tokens are stored privately on the server and never returned to the browser. Leave the token blank to keep the saved value.

Domain / ZoneCertificate emailTokenManage

Connect your first domain

Then request SSL from the Applications page. Certificates renew automatically.

Portal and wildcard ingress

Imported NPM rules that hand domains to Relay. Exact application routes take precedence.

DomainEnabledForce HTTPSManage

Imported certificates

Existing certificate lineages are preserved and renewed by Certbot.

Certificate domainLineage