HANDSFREE / HEADLESS LINUX
A server. An iPhone.
A little more freedom.
This private setup page is forwarded over SSH. Keep the setup link secret. No Linux desktop is needed.
Unlock this host
Create a vault passphrase the first time. Save it in your password manager: you’ll need it after restarting Handsfree. It encrypts your Handsfree account credentials on this server.
Forgotten passphrases cannot be recovered. Don’t delete the vault: ask your administrator to help preserve your host data.
One account for your devices.
Continue in secure sign-in ↗Use this same account on your iPhone. This internal preview uses Clerk Development. Your SSH tunnel must also forward port 43821 for the browser callback.
Connect with Tailscale.
Install Tailscale on this Linux machine and your iPhone, and connect them to the same tailnet. Handsfree uses private HTTPS; leave public Funnel sharing off.
Linux install instructions ↗Approve HTTPS in Tailscale ↗Bring your agent.
Install and authenticate the CLI on this Linux machine, as the same Linux user running Handsfree. A login on your laptop doesn’t authenticate this server.
For an agent login on a headless server, follow the provider’s remote-login instructions in its official setup guide. The vault protects Handsfree credentials; the provider manages its own credentials.
Claude defaults
Conversations inherit these defaults. Saved changes apply on the next turn; a conversation’s saved model override takes precedence.
Codex installation, login, and runtime checks are available. Codex phone execution is not enabled in this release.
Choose where you’ll work.
Leave blank to search common project folders. Scanning is read-only, bounded, and skips dependencies and hidden folders. Git worktrees are supported.
Bring it together.
Install the internal iPhone build from TestFlight (ask Todd for access), sign in with the same Handsfree account, and turn on Tailscale. In Handsfree, choose Add computer and scan this host’s code.
iPhone setup & account help ↗Closing this browser or your SSH tunnel does not stop a service-installed host. Restarting Handsfree locks the vault and stops the host until you unlock and start it again.
Diagnostics
Review your iPhone’s recognized words, matched keywords and decisions. History belongs to your signed-in account, with no global utterance feed. Requires iPhone build 26 for automatic capture; build 25 uses manual capture.
Open personal voice history ↗Voice history contains transcripts. Connection diagnostics contain no speech text or credentials. Voice history keeps the latest 1,000 events for up to seven days; review, export and delete it while your host is running.