How do I install TofuPilot behind a corporate proxy or firewall?
Updated September 7, 2026
Allowlist *.tofupilot.app on your proxy. The API, the install script (tofupilot.app/install), the CLI version endpoint (get.tofupilot.app) and the binaries and Python runtime mirror (dl.tofupilot.app) all live on that domain, so one entry covers a station. Stations only need outbound HTTPS to TofuPilot; no inbound ports are required. A self-hosted server additionally needs www.tofupilot.com (deploy script and license) and ghcr.io (container images). If the proxy enforces per-user session limits, use per-user proxy credentials rather than shared ones so the install and upload traffic is not throttled.
Related questions
- Can instrument connections stay open across an entire unit or station session?Yes. Plugs have a lifecycle scope: phase, slot, run, or station. With scope: station, the plug class is constructed once in a long-lived Python process, its…
- What is TofuPilot's relationship with OpenHTF?We've used TofuPilot for years on drone manufacturing floors and maintain openhtf.org, the open-source OpenHTF documentation site. We're also close to the…
- Can I sync TofuPilot test failures to Linear?Yes. The Linear integration lets failing runs and phases open or update tickets from the dashboard. It offers two actions: Create issue (with optional…
