rustunnel
Infrastructure · tested 2026-09-27 · by the Hlido desk, not the vendor
In short: An open-source, Rust-fast tunnel with a first-class MCP server — genuinely agent-drivable, priced to punish idle time, but the managed edge and reliability claims are asserted, not yet independently run.
5 PASS · 0 FAIL of 5 public-surface claims
Quick answer
rustunnel scores 80/100 (STEADY) on Hlido’s independent, hands-on test (reviewed 2026-09-27). STEADY (80) because the public surface is substantive and internally consistent: a clearly documented open-source (AGPL) tunnel with transparent pay-as-you-go pricing, a self-host path, a broad protocol feature set, and Pricing: Open source · Usage-based · Free tier · Subscription (free entry point documented).
rustunnel is a localhost/webhook/TCP tunneling tool that reads as unusually agent-native: it ships an MCP server that lets Claude Code, Cursor, Windsurf, Cline, Codex and custom harnesses create, manage and close tunnels in plain language, with a one-command installer that writes the right config for each client. That is the standout, and it is backed by a coherent product surface — CLI install (brew install rustunnel), API-key auth via RUSTUNNEL_TOKEN, HTTP/TCP/UDP and P2P tunnels, custom subdomains, load-balanced pools with health checks, a live terminal dashboard, and a loopback request inspector with replay. The positioning against ngrok is direct and, refreshingly, factual rather than snarky: pay-as-you-go from a $3/mo minimum that is credited toward usage, self-host free under AGPL, and idle time billed at zero. Where the evidence thins is exactly where it matters most for infrastructure: end-to-end encryption, 'blazing fast' latency, global edge availability and the reliability of the managed relay are stated on the page, not something Hlido observed by running a tunnel end to end. Traction is moderate (655 GitHub stars) and the managed cloud is newer than the open-source core. As a self-hostable building block it looks credible and honestly documented; as a managed dependency, the durability and edge-fleet claims are the buyer's to verify before production.
Why STEADY
STEADY (80) because the public surface is substantive and internally consistent: a clearly documented open-source (AGPL) tunnel with transparent pay-as-you-go pricing, a self-host path, a broad protocol feature set, and — the differentiator — a first-class MCP server that makes it directly consumable by AI agents. It is not scored higher because this is a public-surface (medium-confidence) review with no hands-on behavioral run: encryption, latency, and managed-edge reliability are asserted on the page rather than independently exercised, and community traction (655 stars) is moderate rather than dominant.
Public-surface checklist
- PASS Homepage loads (required) — rustunnel.com captured; title 'rustunnel — open-source secure tunnel for localhost, webhooks & AI agents'
- PASS Primary value prop (required) — 'Open-source tunnels. Stop paying for idle time.' with MCP-for-agents framing
- PASS Cta present (required) — 'Start free' / 'Get Started' / 'brew install rustunnel'
- PASS Pricing or access — Hobby $0, PAYG $3/mo + $0.10/GB, Self-host free — transparent tiers on page
- PASS Evidence or demo — Live-session terminal mockup, feature descriptions, and a dated rustunnel-vs-ngrok comparison table
What we saw
1 screenshot captured by the Hlido engine during the reviewed run (run-3260a53e28969487-rustunnel-com). Our own captures — not vendor marketing material.
What it does well
- First-class MCP server with a one-command installer that configures Claude Code, Cursor, Windsurf, Cline, Codex and custom harnesses — the tunnel is drivable in natural language
- Broad protocol coverage on the public surface: HTTP, TCP, UDP and P2P tunnels, custom subdomains, regions, and load-balanced pools with TCP/HTTP health checks
- Transparent, idle-friendly pricing (Hobby free, PAYG $3/mo minimum credited toward usage at $0.10/GB) with a self-host-free AGPL option
- Developer-facing tooling that mirrors the familiar ngrok workflow — live terminal dashboard plus a loopback request inspector at :4040 with one-click replay
- A direct, factual rustunnel-vs-ngrok comparison table that cites its ngrok source and dates it, rather than relying on vague claims
What it fails at
- Core infrastructure claims — end-to-end encryption, low-latency edge, global fleet availability — are asserted on the page, not independently exercised in this review
- The managed relay/cloud is newer than the open-source core, and its uptime and reliability are unverified from the public surface
- Moderate community traction (655 GitHub stars) — real but not yet a dominant, widely battle-tested footprint
- Self-hosting the AGPL server (TLS, edge, systemd) shifts real operational burden onto the deployer for the free path
- No hands-on Hlido run of an actual tunnel session, so throughput, stability under load, and MCP behavior are claimed rather than confirmed here
Best for
- Developers who want an AI agent to spin up and tear down tunnels in plain language via MCP
- Teams tunneling webhooks or sharing localhost who resent paying a flat fee for idle time
- Users wanting an open-source, self-hostable ngrok alternative under AGPL with full data control
- Builders needing TCP/UDP/P2P tunnels or load-balanced backends with health checks, not just HTTP
- Cost-sensitive light users who benefit from pay-as-you-go billing credited toward usage
Not recommended for
- Production dependencies that require independently verified edge uptime and reliability SLAs before adoption
- Buyers who need a mature, heavily battle-tested vendor rather than a growing open-source project
- Teams wanting fully managed tunneling with zero self-host or operational responsibility on the free tier
- Anyone who needs the encryption and latency claims proven before trusting sensitive traffic
Pricing & access
- ModelOpen source · Usage-based · Free tier · Subscription
- Free entry pointYes — a free tier or open-source edition is documented
- Price points we recorded
…is direct and, refreshingly, factual rather than snarky: pay-as-you-go from a $3/mo minimum that is credited toward usage, self-host free under AGPL, and idle time…
…idle-friendly pricing (Hobby free, PAYG $3/mo minimum credited toward usage at $0.10/GB) with a self-host-free AGPL option
- Pricing findable on the public surfacePASS Hobby $0, PAYG $3/mo + $0.10/GB, Self-host free — transparent tiers on page (tested 2026-09-27)
Derived from Hlido-held evidence only (engine checklist + editorial text); quotes are verbatim from the scorecard; not vendor-supplied; re-derived daily. Verify current prices on the vendor's pricing page. Last verified 2026-09-27.
Related agents
Agent relevance
API CLI MCP Behavioral-testable
First-class MCP server (rustunnel-mcp, JSON-RPC over stdio): an agent sets RUSTUNNEL_TOKEN and can create, manage and close tunnels in natural language (e.g. "Expose port 3000" -> create_tunnel). Also drivable via the CLI (brew install rustunnel) and an API-key-authenticated HTTP surface. One-command installer writes per-harness config for Claude Code, Cursor, Windsurf, Cline and Codex.
Agent-friendly score: 9/10
Score over time
The longitudinal record — every point is the score as published on that date. Raw series.
Evidence
- Open-source tunnel — self-host free under AGPL, or use the managed pay-as-you-go service — source (2026-09-27) verified
- Ships a first-class MCP server that works with Claude Code, Claude Desktop, Codex, Cursor, Windsurf, Cline and custom agents via a one-command installer or copy-paste config — source (2026-09-27) verified
- Pay-as-you-go pricing: Hobby $0/mo, PAYG $3/mo + $0.10/GB with 30 GB included, Self-host free forever — source (2026-09-27) verified
- 655 GitHub stars, 100% open source — source (2026-09-27) verified
- End-to-end encrypted, Rust-fast global edge with automatic Let's Encrypt TLS — infrastructure performance and reliability claims — source (2026-09-27)
