Understand a project
Ask ChatGPT to find files, read code and explain how the pieces fit together.
“Where is sign-in configured?”
Your local projects. Your ChatGPT.
Work in chat with the files on your computer: explore, review and edit the projects you choose. Connect your local MCP servers too, and use their tools without hosting them in the cloud.
You choose the project and permissions. Read-only to start.
For chatgpt.com · Requires custom connector access Guided setup
Independent software, not affiliated with OpenAI
From chat to your files
Choose a folder in TunnelGPT, connect its tunnel to ChatGPT and start working in the conversation. Each project has its own connection.
On chatgpt.com, select your project connector and make a request. Your OpenAI account’s Secure MCP Tunnel carries it to TunnelGPT on your computer. TunnelGPT checks permissions and returns the permitted result. Your computer must be awake, online and running the tunnel. Requested results are sent to OpenAI so ChatGPT can respond.
Do more in the conversation
Read the original file when you need it and keep working with its context, without copying and pasting every snippet.
Ask ChatGPT to find files, read code and explain how the pieces fit together.
“Where is sign-in configured?”
Read notes and text, compare versions and prepare your next draft with information from the project.
“Summarize these notes and pull out the next steps.”
Enable editing when you need it and request the change. ChatGPT handles any required approval. You can ask for a preview first.
“Prepare an update to the README.”
Project by project
Create an independent connection for each project. ChatGPT works with the folder you selected: it does not have to search across all your clients, repositories and subfolders. Switch connectors when you switch projects, with separate permissions and containers.
Your tasks keep their context
Give ChatGPT a clear task. TunnelGPT keeps its saved goal and automatically records file changes and project jobs. Return to that task in another conversation to continue with its context.
As you work
Keep this task’s goal and next step up to date.
In another conversation
Resume this task and verify its latest results before continuing.
The app checks available operation receipts and job states when you resume. Your agent verifies the current files before making another change.
Task memory stays in private app storage, separated by project and task, with automatic cleanup and storage limits. It does not record the entire conversation.
How task memory worksYour tools can stay local
Connect an MCP running on your computer and use its tools from ChatGPT through TunnelGPT. No VPS to rent, no server to move to the cloud. Your computer stays in control of the connection.
Add the address of a local MCP or choose an installed command. Browser tools, local apps and other integrations depend on the MCP you connect.
Discover the available tools and approve exactly which ones ChatGPT can use. Each MCP gets its own connection, which you can stop at any time.
Add the tunnel as a custom connector in ChatGPT. Ask it to use your local tools while your computer is awake, online and connected.
For macOS on Apple Silicon (M1 or later). Local MCPs keep their own permissions, including access to signed-in accounts or changes outside a project folder. Connect trusted servers and review their tools. ChatGPT connector access depends on your account.
How to connect a local MCPKeep going wherever you are
Open ChatGPT on another computer or your phone and use your project’s connector when it is available in that interface. Your computer is still where the files live: it must stay awake, online and connected through TunnelGPT.
By voice, too. Ask ChatGPT to consult your project and keep talking in sessions that can invoke the MCP. Capability depends on the model and your account: check it during the trial.
Check compatibilityYou can keep working on your projects in Chat if your account still has chat usage and connector access available. TunnelGPT connects your files; your OpenAI account determines the model and its limits.
Check it with the 3-day trial. Availability can change; TunnelGPT does not include or guarantee unlimited ChatGPT usage.Guided setup
You need your own OpenAI account with access to custom apps and Secure MCP Tunnels, a restricted credential, the exact tunnel ID, and Docker 24+ as the container runtime.
Security you can control
For your folders, TunnelGPT limits access to the project, starts in read-only mode and does not expose an unrestricted terminal. You decide when to connect and when to allow changes.
Each connection can access a single folder. Paths outside the project and excluded files are refused. Connecting one project does not connect the others.
In the default mode, ChatGPT can read your files. Write tools are unavailable and the folder is mounted read-only.
Enable editing for the project you choose. ChatGPT manages any required confirmation; TunnelGPT verifies that the file has not changed. A preview is optional.
The file MCP exposes no shell or arbitrary commands. Supported jobs run approved commands in an isolated offline environment, when that capability is available.
The process that reads your files runs in a container without network access. The connector talking to OpenAI cannot mount or explore your project: it relays authorized responses.
Start or stop each connection in the app and check its status. Stopping it prevents the tunnel from serving new requests to that project.
Each connection separates the project reader and connector into two Docker containers. The reader uses --network none, a read-only root, --cap-drop ALL and no-new-privileges. It mounts only the chosen folder (one bind mount). They communicate through a private Unix socket with mode 0600. These controls reduce access; they do not make the computer invulnerable.
Files stay on your computer. Content requested through the connector is sent to OpenAI to answer in ChatGPT; it does not pass through TunnelGPT’s commercial servers.
Privacy on your computer
How it works
Open technology. A focused desktop app.
The MCP core is available under the MIT License. Inspect the code, build your own integration and contribute improvements. TunnelGPT uses this same core in its commercial desktop application.
Project-scoped file access, confirmed writes, MCP messages and bounded local transport. Published under MIT with runnable examples and tests.
The desktop interface, guided setup, native integration, account and licenses are commercial. Future features may have a different scope; their availability in the public core is not guaranteed.
One product. One payment.
Try the connection, your projects and the way you want to work during your 3-day free trial, with no TunnelGPT usage quota. If it works for you and fits your needs, buy version 1. No subscription.
Evaluation
$0no card required
See how TunnelGPT fits the way you work, using a project of your own.
One trial per account. Ends 72 hours after your first successful connection.
Perpetual License
$27 USDone-time payment
Keep working with your projects in ChatGPT with a version 1 Perpetual License.
Not a subscription. Your TunnelGPT payment does not renew. Future major versions are not included.
Desktop app
Start with Mac Apple Silicon. Reserve the $27 USD launch price for Windows for free.
Available for Mac Apple Silicon
Version 0.1.6 · Apple Silicon (M1 or later) · DMG. Signed with Developer ID and notarized by Apple.
Binary file transfers, account switching fixes and improvements to automatic task memory.
Download for Mac · Apple Silicone9e28ed129a1e5234d00817d9720a9d1e39990d4ff92f8b0dc92d26b9ad6ac56In development. Reserve the $27 USD launch price for free.
Download not available yetReserve Windows for free · $27 USD at launchPlanned after the initial launch.
Download not available yetQuestions
Work on chatgpt.com with the files in a folder on your computer: find information, read code, review text and request changes. You start in read-only mode; editing requires enabling it and confirming changes. You can also connect a local MCP server and approve the tools you want to use from ChatGPT.
The whole folder is not synced. The MCP returns the results of requested tools, which do travel to OpenAI so ChatGPT can respond. Your original files stay on your computer. The connector cannot mount or explore your project.
The local app needs access to your selected project and uses your key to connect. Project content does not pass through our commercial servers, and your key is kept in your operating system’s secure storage.
You need a ChatGPT account with access to custom connectors, Secure MCP Tunnel permissions and Docker 24+. TunnelGPT does not include a ChatGPT subscription or third-party services. Docker Desktop is free for uses covered by its licence; other organizations need a Docker subscription.
No. TunnelGPT is an independent product. It connects to OpenAI services using your account and permissions, but is not affiliated with, sponsored by or endorsed by OpenAI.
The file MCP exposes no shell, terminal or arbitrary commands. Editing requires enabling it and confirmation; supported jobs use predefined actions. Local MCP servers you connect separately may have broader permissions: review and approve their tools before exposing them to ChatGPT.
Yes. Each folder has its own profile and an independent tunnel. In ChatGPT, choose the connector for the project you want to work on. Connecting one folder does not grant access to the others.
Yes. It must stay awake, online and running Docker and the TunnelGPT connection. You can access it from another compatible ChatGPT session; the tunnel does not wake your computer or keep it connected when it shuts down.
No. The price is $27 USD, paid once for a version 1 Perpetual License. Future major versions are not included. Check current availability before buying.
The trial gives you 3 free days of unlimited TunnelGPT use: 72 consecutive hours from your first successful connection, including disconnected time. ChatGPT limits depend on your account. After purchasing, you have 14 calendar days to request a refund at support@tunnelgpt.com.
You can work by voice in sessions that support your MCP; we have tested continuous voice. Mobile and voice availability, and the complexity of what the model can do, vary by account and interface. OpenAI’s public documentation may differ from features being rolled out. Use the 3-day trial to check your use case before buying.
If your account still has Chat usage and connector access available, yes: you can continue working with local files in the conversation. This does not transfer tokens or extend your plan. OpenAI determines limits, models and permissions, which may change. Verify your account and workflow during the free trial.
The tunnel can connect to an MCP on a remote machine. To use TunnelGPT, that machine must run a compatible version of the app and Docker, have access to the folder and stay awake and online. The current distribution is a desktop app; it does not include hosting or a Linux server edition.
Connect your first project and decide what ChatGPT can do with it. Your conversation, your computer and your permissions.