Tokens stay in the Keychain
Each token is stored in your macOS Keychain and passed to cloudflared through the environment instead of the command line, so it never shows up in ps.
TunnelFlares is a free macOS menu-bar app and GUI for cloudflared. It runs cloudflared tunnel run
for every tunnel you set up: click to bring one online, click again to take it down. No terminal tabs to babysit,
no tokens in your shell history.
cloudflared:
Get it with brew install cloudflared. TunnelFlares finds it on its own, or you can point it at a custom path.
Paste the bare token or the whole cloudflared tunnel run --token … command from the Cloudflare dashboard. The token is pulled out for you. New to tunnels? Start with the
Cloudflare Tunnel setup guide.
Pick a tunnel from the menu bar. The icon turns green once Cloudflare reports the connections as registered.
Each token is stored in your macOS Keychain and passed to cloudflared through the environment instead of the command line, so it never shows up in ps.
Connected means connected: the state comes from cloudflared's own output, connection by connection. Green, orange or red at a glance, with the error spelled out when something breaks.
Every tunnel keeps its own log window. Copy it or clear it with one click.
Open at login, and choose which tunnels come up on their own when the app launches.
Menu bar full? Keep TunnelFlares in the Dock and right-click it to start or stop tunnels.
Quitting closes connections gracefully, and leftover cloudflared processes from a crash are cleaned up on the next launch.
Signed with a Developer ID and notarized by Apple, so it opens without Gatekeeper warnings. Native Swift, universal binary.
Open the DMG, drag TunnelFlares into Applications, and add your first tunnel.
TunnelFlares is free and made by one developer. If it saves you a terminal tab or two:
Buy me a coffee