Pocketty 发布 iPhone 版 SSH 终端,代理阻塞或完成时推送加密通知
Show HN: Pocketty – iPhone SSH terminal that pings you when an agent is blocked
Pocketty 发布 iPhone 与 iPad 版 SSH 终端,当 Claude Code、Cursor 等编码代理被阻塞或完成时推送 HPKE 加密通知。
原文通过 26 项功能逐条对照 Moshi,并给出 HPKE 封装和中继不存量的隐私设计,方便读者评估同类 iOS SSH 终端的差异。
SSH for iPhone and iPad, made for herdr
Your agents,
in your pocket.
Know the moment an agent is blocked or done.Answer it in a real terminal, right from your phone.Only your phone can read the alert.
get pockettyFree for 14 days. Then $129 $99 once, launch price.
-
herdr sees the agent block. Your computer seals the alert for this phone only.
- herdr
- w1:p1 working → blocked
- seal
- HPKE · X25519 · ChaCha20
- relay
- forwards sealed bytes
- apns
- delivers to this phone
-
pocketty opens that exact Pane, straight over SSH. No server in between.
- link
- pane w1:p1 on studio
- ssh
- studio, over Tailscale
- key
- Secure Enclave, Face ID
- herdr
- control w1:p1 --takeover
-
Return, Esc, Ctrl and the arrows. The agent gets real keystrokes.
- key
- Return
- herdr
- pane.send_keys ["enter"]
- agent
- claude blocked → working
- frames
- diffs of the screen
-
Swipe in from the edge for the turn's diff. Only what the agent changed since it started.
- daemon
- snapshots the worktree
- turn
- since claude went working
- diff
- 2 files +4 −3
- swipe
- back to the Pane
-
Text mode sends a whole message at once. Dictation and images work too.
- mode
- Text
- herdr
- pane.send_input (paste)
- herdr
- pane.send_keys ["enter"]
- agent
- claude idle → working
-
Go back for every Pane on the host. Each agent shows its state, live.
- relay
- claude working
- docs
- codex working
- ios
- claude working → done
- review
- opencode idle
-
When a Pane opens a port, pocketty offers a preview. When you close it, you are in that Pane.
- port
- 4321 opens in docs
- ssh
- forwards localhost:4321
- page
- sees localhost
- close
- back in the docs Pane
-
Lock the phone. When the agent finishes, pocketty tells you.
- herdr
- w1:p1 working → done
- daemon
- waits 2 s, then seals
- relay
- stores nothing
- phone
- opens it locally
The real thing.
Straight from the iOS simulator, not a mockup.
herdr, native
Every agent, every Pane, at a glance.
pocketty speaks herdr's own API.
Your workspaces and tabs show up as a native list.
Each agent shows its state: working, needs you, or done.
Panes, not screenshots
Open any Pane full screen, at phone size. Lock the phone, and your desk gets it back.
Run herdr from the couch
Start a tab or a workspace. Rename a tab, or swipe a Pane away.
No hooks in your agents
pocketty reads agent state from herdr. It never edits an agent's config files.
Plain SSH, too
No herdr? You get a normal login shell. Or tmux and zellij, with a startup command.
Works with every agent herdr knows, including
- Claude Code
- Codex
- OpenCode
- Gemini CLI
- Cursor
- GitHub Copilot
- Grok
- Qwen Code
- Kimi Code
- Devin
- Hermes
- Antigravity
Review the work
See what your agents did.
Check a diff, read a file, or open the dev server.
All from the Pane where the agent works.
Diffs by agent turn
The daemon snapshots the worktree each time an agent starts work.
So you see what this turn changed, not everything at once.
- Last turnOnly what the agent changed since it last started work.
- SessionEvery change in the agent's session, turn after turn.
- UncommittedEverything since the last commit, like git diff.
Turn and session diffs need the daemon on the host.


A file browser
Browse and search the worktree of any Pane. Code shows in color, in 20 color schemes.

Previews of localhost
When a Pane opens a port, pocketty offers a preview. The page loads through your SSH connection. No tunnel to set up.

Security
Your work stays between your phone and your computers.
Your terminal never touches our servers.
We only pass along agent notifications, if you turn them on.
And we can't read those.
01
The terminal
Every keystroke and every line of output.
always direct
The App connects straight to your computer.
We are not on this path, so there is nothing for us to see.
02
Agent notifications
The short alert when an agent is blocked or done.
optional
- Your computerpocketty daemonSeals
Writes the alert. Never Pane text. Seals it with your phone's key.
- Our relayCloudflare WorkerForwards
Passes the sealed bytes to Apple. Can't open them. Keeps nothing.
- ApplePush Notification serviceForwards
Delivers them to your phone. Sees only “Agent update”.
- Your iPhonenotification extensionOpens
Opens the seal on the phone. Checks which computer sent it.
Notifications off? Then the App only ever talks to your own computers.
Keys that can't leave
Your SSH key is made in the Secure Enclave. Face ID can guard the App, too.
Pinned host keys
A changed host key stops the connection. pocketty asks before it trusts the new one.
Two-sided proof
Seals use HPKE in auth mode. An alert from anyone else won't open.
No account, no tracking
The App has no sign-up, no email and no analytics. There is nothing to sign in to.
The terminal
A real terminal that feels at home on a phone.
pocketty runs Ghostty's terminal engine, drawn with Metal.
Agents, editors and TUIs look the way they do on your desk.
CtrlEscTabAlt|~
The keys you need
Ctrl, Alt, Esc, Tab, arrows, and the symbols phones hide.
Hold a key to repeat it.
fix the flaky test, then match this layout
Write, don't poke
Text mode sends a whole message at once.
Dictate it, paste screenshots, send.
Photo LibraryTake PhotoChoose File
~ $ ~/.cache/pocketty/uploads/paste-3f2a.png
Send files and photos
Pick from Photos, the camera or Files.
pocketty uploads it and types the path.
15ptcargo nextest run -p pocketty-relay
Touch that makes sense
Hold to select, then drag the handles.
Swipe to scroll. Pinch to resize.
=> != -> |> <= ::JetBrains Mono · Fira Code · Iosevka
Nerd Fonts, with ligatures
Every Nerd Font. JetBrains Mono is built in.
Prompt icons draw. Ligatures switch off.
⌘⇧K
Desk habits work
Hardware keyboards and the kitty keyboard protocol.
OSC 52: copy on the computer, paste on the phone.
Setup
Add a computer in a minute.
No keys to copy around.
You approve your phone on the computer itself, with a code.
- 1
Install the daemon
One small binary, running as you. It writes only to its own folder.
$ curl -fsSL https://pocketty.app/install.sh | sh - 2
Tap it under Nearby
On the same Wi-Fi, your computers show up by themselves. After that, Tailscale reaches them from anywhere.
- 3
Type the code on your computer
Your phone shows six digits. Your Mac asks for them. Your key goes in, and the host key is pinned.
Any SSH server works without the daemon, too.
pocketty gives you a one-line setup command.
A connection that picks itself up.
pocketty checks the link every five seconds.
If it drops, pocketty reconnects by itself.
Plain SSH means no version mismatches.
Compare
Fewer features. None of them leak.
Moshi does more: Mosh, Apple Watch, Live Activities, a chat view.
pocketty does less, on purpose.
Your agents' words stay off other people's servers.
| Feature | pocketty | Moshi |
|---|---|---|
| Price | Yes: Free for 14 days. Then $99 once, with every update. | Free tier. Pro is $9.99 a month, $89.99 a year, or $199 lifetime ($249 in the App Store). |
| What a notification carries | Yes: Agent, state, computer, workspace and tab, sealed on your computer with HPKE. Never Pane text. | No: moshi-hook sends titles, messages, the prompt (up to 200 characters) and the command to approve (up to 256) to Moshi's server. |
| Who can read it | Yes: Only your phone. Our relay and Apple see ciphertext. | No: Moshi's server, which caches inbox events for up to 24 hours. Banners go through Expo Push. |
| herdr | Yes: Native Pane view over herdr's own API, with live agent state. Included. | Partly: Session picker and attach are Pro. Chat View needs moshi-hook. |
| How it learns agent state | Yes: From herdr. Nothing is installed into your agents. | Partly: moshi-hook writes hooks into each supported agent's config files. |
| Diffs | Yes: The last agent turn, the whole session, or since the last commit | Partly: Uncommitted changes only, side by side. Pro, with moshi-hook. |
| Matching versions | Yes: Never needed. App and daemon update in any order. | Partly: The App flags an out-of-date moshi-hook. Desktop needs hook 0.3.1 or later. |
See all 26 rows, with sources Moshi facts checked on October 2, 2026.
Pricing
$129
$99once
Free for 14 days, with everything. Then the launch price. It goes up to $129 later.
- iPhone and iPad
- Every future update
- Native herdr Panes and agent state
- Sealed agent notifications
- Secure Enclave keys and Face ID lock
- The daemon for macOS and Linux
No subscription. No account. No ads.
Questions
How does the free trial work?
Everything works for 14 days, from your first connection. Then $99 once keeps it. Nothing is charged when the trial ends.
Do I need herdr?
No. pocketty works with any computer you reach over SSH. herdr adds the native Pane view and agent notifications.
Do I need Tailscale?
It is the path we recommend. It gives each computer an address that works anywhere, and code setup needs it. Any SSH server you can reach works too.
What do I install on my computer?
Nothing, for a plain shell. Install the pocketty daemon for agent notifications and code setup.
Can you read my notifications?
No. Your computer seals each one so only your phone can open it. Our relay passes the sealed bytes to Apple, and keeps nothing.
Why no Mosh?
SSH is already on every computer. Over Tailscale the address never changes, and pocketty reconnects in a moment. One protocol also means no version mismatches.
Is there an Android version?
Not yet. pocketty is for iPhone and iPad today.
Leave the desk. Keep the agents.
pocketty for iPhone and iPad.
Free for 14 days, then $99 once.
来源:Hacker News · pocketty.app