Sign in

Find your organisation

Every organisation has its own Inlinea address. Type the first word of yours, or the whole address, and we will take you there.

Take the tourBook a demo

Trust Center

Every outbound connection

Every connection the shipped software makes that is not your own deployment: your control plane, signal, relay, identity provider and resources are yours and are not listed. For each: purpose, default and how to switch it off.

Control plane

The Inlinea server

ConnectionPurposeDefaultDisable
Anonymous usage metricsAggregate, anonymous statistics: version, uptime, counts of objects. No names, addresses or identitiesOffStays off unless you opt in
Update checkLearn that a newer release exists; feeds the About rowOnBlocked egress is harmless: the version fields are omitted and the check retries later
Geolocation databasesCountry and city for devices and Trust ChecksFetched at start-up when enabledDisable geolocation, or place the databases locally and disable updates

Gateway

The ZERA gateway

ConnectionPurposeDefaultDisable
Geolocation databaseCountry-based access restrictions and access-log enrichmentFetched at start-up when missingDisable geolocation; country restrictions then deny until a database is present
Certificate authorityCertificates for the Workspace and for Protected Services on your domainsOn when automatic certificates are configuredSupply your own certificates
Session engineRenders Secure SessionsLoopback inside the gateway onlyNot egress: never reachable from outside

Agent

The Inlinea Agent

ConnectionPurposeDefaultDisable
Traffic Logs streamReport aggregated connection records to your own control planeOff until an administrator switches collection onSwitch collection off; no payloads are ever sent
Agent Profile reportsReport the applied policy and protection events to your own control planeOn with Agent ProfilesPart of the managed policy; no passcodes, codes or keys are sent
Update checkOffer a newer agent releaseOnNo switch; a blocked host only produces a log line
Update downloadFetch and verify an installerOnly on a control-plane update directive or a person's choiceDo not enable auto-update; packages are verified against Inlinea's signing keys
Connection metricsFleet health: connection type, latency, relay useOffStays off unless enabled by the environment or by your control plane
Debug bundle uploadDiagnostics for supportOnly on explicit action by a person or your administratorNever automatic; bundles can be anonymised

Everything else

Third parties and the extension

  • Browser extensionTalks only to the deployment it is connected to, over the same API origin the Workspace uses. No request to Inlinea-operated hosts and no third-party request.
  • CertificatesThe edge and the gateway talk to the configured certificate authority only when automatic issuance is configured.
  • Standing reviewBefore every release we list every host the software can reach. Any host that is not the deployment's own or on this page is a release blocker.

Questions for our security team?