Every machine, one place
Connect all your agentic boxes. Each one's links land in its own history — searchable, never lost, stored on your device.
For headless, remote & agentic machines
An OAuth login, a “click to authorize,” a localhost callback — triggered on a box you can't see, opened on the Mac, iPhone, or iPad in your hand.
One purchase for Mac, iPhone & iPad. The sender is free.
Agentic boxes and remote dev servers constantly try to open URLs in a browser nobody's
looking at — and worse, OAuth flows redirect to localhost on that box, so the login hangs forever. Handback fixes both.
codex login on your agent box wants a browser — and waits for the sign-in to call back to localhost:1455.
Or on your Mac or iPad: the sender hands it to the app on your devices, and it's logged in that machine's history.
The sign-in page opens right there, on the device in your hand.
The app catches the localhost redirect and tunnels it back to the box. The terminal carries on.
Peer to peer
The sender on the box catches the link and hands it to the app on your device. When a CLI's
sign-in redirects to localhost on the box, the
app binds that port on your device and tunnels the callback back — so headless logins
actually complete.
A private, local-first dashboard of every link your machines hand back.
Connect all your agentic boxes. Each one's links land in its own history — searchable, never lost, stored on your device.
Capture and notify by default; flip on auto-open per machine. Every link is logged whether or not a browser ever opens.
OAuth CLIs redirect to localhost on the box — unreachable from your laptop. Handback tunnels the callback back, so headless logins actually complete.
The sender on your agentic box is free and open. Install it with Homebrew, pair once, done.
A tiny free daemon on your agentic machine (macOS or Linux) catches every browser link.
Run handback pair — scan the QR or paste the URI into the app. One time.
Links open on the Mac in front of you. OAuth callbacks tunnel home automatically.
Full guide in the docs.
# install the free sender
brew install jereco/tap/handback
# capture browser links + pair with your devices
handback install --default-browser
handback pair --host your-box:8765 --qr
# keep it running
brew services start handback Mac, iPhone & iPad on one purchase. Glance from the menu bar, or pick up where you left off on your phone.
On the box
The sender
Free
Open source · macOS & Linux · Homebrew
On your devices
The Handback app
One-time
A single purchase, not a subscription — price announced at launch.
Launching soon — early-access seats are free until 1.0.
No. The app dials out to each box, so your laptop can roam. Put both on a Tailscale tailnet (recommended), point the app at a TLS reverse proxy in front of the box, or stay on your LAN.
CLI logins redirect the browser to localhost on the box (RFC 8252). If the browser is on your laptop, that localhost is the wrong machine — the code never arrives. Handback binds the port on your device and tunnels the callback back to the box, so the login just finishes.
On your devices. There's no Handback server and no account — links (which can carry auth codes) never touch infrastructure you don't own.
The sender prints the URL right back into the terminal on the box, so it's never lost. Auto-opening locally is an opt-in for non-headless machines.
A free, open single-binary daemon for macOS and Linux. It captures links via $BROWSER, xdg-open on Linux, or a default-browser helper on macOS — so tools like gh, gcloud, and agents that call open are all caught.
Because there's nothing for us to keep running. Your machines talk peer-to-peer; no relay, no sync service, no monthly bill to pass on.