Administration
Ready for the managed laptop.
A desktop tool at work has to play by company policy, go through the corporate proxy and trust the certificates IT installed. Ravelon 0.12.0 adds the pieces admins usually ask about first.
$
01
Machine policy
Put a policy.json in a location only admins can write to, and it sets options for everyone who uses the computer. Managed settings get a badge in the app. If the policy file is broken, the affected features are switched off rather than the file being ignored.
- Turn off updates, telemetry, sync, AI, Voice and local agents
- Allow sync only with your own server
- Cap the idle time before a vault locks
- A broken file fails closed
02
Company networks
Ravelon uses the system proxy for sync, AI providers, Voice and updates, and it trusts the operating system's certificate store. So a TLS inspection root works without anyone weakening verification. SSH connections can use their own SOCKS5 or HTTP proxy or a proxy command, set per host.
“Your IT department's root certificate just works. Certificate checks stay on.”
03
Logs and support reports
The diagnostic log records connection steps and errors, without passwords, keys or terminal output. When you need help, Ravelon can put together a support report that collects what support needs in one text file.
“The log explains why a connection failed without containing your terminal.”
04
Packages and platforms
There are Windows and Linux builds for x86_64 and ARM64, and the macOS build runs natively on Apple silicon and Intel. On Linux, you also get .deb and .rpm packages next to the AppImage.
- Windows 10 and 11, plus Windows 11 on ARM64
- Linux on x86_64 and ARM64, AppImage, .deb and .rpm
- macOS 14 or newer, Apple silicon and Intel
- .deb and .rpm installs update through your package manager, not the in-app updater
FAQ
Frequently asked questions
Where does the policy file go?
On Windows to %ProgramData%\Ravelon\policy.json, on macOS to /Library/Application Support/Ravelon/policy.json and on Linux to /etc/ravelon/policy.json. Ravelon reads it at startup.
Can I disable the AI features for everyone?
Yes. The policy can turn off AI providers, the Ravelon Agent and # suggestions, Voice and the local coding agents, each on its own.
Does Ravelon work behind a TLS-inspecting proxy?
Yes. It uses the system proxy and the operating system's certificate store, so a root certificate installed by IT is trusted without turning verification off.
Is there an ARM64 build?
Yes, for Windows and Linux. The macOS build runs natively on Apple silicon and Intel.
Get started
Try it in your own workspace.
On one device the desktop app is free, with nothing held back: the encrypted vault, terminal, SFTP and the assistant are all included.
What else Ravelon can do
Security
An encrypted vault, pinned host keys and the lock level you choose.
Import & export
Bring hosts from ssh_config, PuTTY, MobaXterm or CSV, and take them with you.
Self hosted sync
Run the sync server yourself, inside your own network.
Team vaults
Shared encrypted vaults, with team roles and vault roles kept apart.