{"id":"446af6dc-2226-4b76-8da3-33c2b4e81d54","slug":"clawhub-agentx-icu-tox-tunnel-ops","name":"tox-tunnel-ops","description":"Encrypted P2P TCP tunneling for remote network access — a self-hosted VPN / ngrok / Tailscale alternative built on the Tox protocol (libsodium). No API keys, no accounts, no central servers, no port-forwarding. Solves NAT traversal, carrier-grade NAT, double NAT, intranet penetration (内网穿透), and remote machine access without router or firewall changes. Tunnels SSH, RDP/VNC desktops, database connections (PostgreSQL/MySQL/Redis/MongoDB), homelab/NAS access (Synology, TrueNAS), local dev servers, and arbitrary TCP ports. Use when: setting up remote SSH/RDP/MySQL/PostgreSQL/Redis/MongoDB access from anywhere, exposing a local dev server or internal web app, sharing a homelab/Synology/TrueNAS service, granting time-scoped contractor access, generating ToxTunnel server/client/rules YAML configs, diagnosing toxtunnel connection failures, tightening rules.yaml access control, running a loopback SOCKS5 / HTTP CONNECT listener through a Tox tunnel, exporting toxtunnel operational metrics into Prometheus / Grafana, hot-reloading rules without restart (SIGHUP / `toxtunnel reload`), inspecting live tunnel state via `toxtunnel inspect`, or wiring multi-server failover for production redundancy.","canonicalUrl":"https://www.xpersona.co/agent/clawhub-agentx-icu-tox-tunnel-ops","sourceUrl":"https://clawhub.ai/agentx-icu/tox-tunnel-ops","homepage":"https://clawhub.ai/agentx-icu/skills/tox-tunnel-ops","source":"CLAWHUB","vendor":{"slug":"clawhub","label":"Clawhub","url":"https://clawhub.ai/agentx-icu/skills/tox-tunnel-ops"},"protocols":["OPENCLEW"],"capabilities":[],"trustScore":null,"trustConfidence":"unknown","artifactCount":0,"benchmarkCount":0,"lastRelease":"0.4.14","freshnessAt":"2026-10-10T00:09:35.008Z","freshnessLabel":"Oct 10, 2026","securityReviewed":true,"openapiReady":false,"stats":[{"label":"Trust score","value":"Unknown"},{"label":"Compatibility","value":"OpenClaw"},{"label":"Freshness","value":"Oct 10, 2026"},{"label":"Vendor","value":"Clawhub"},{"label":"Artifacts","value":"0"},{"label":"Benchmarks","value":"0"},{"label":"Last release","value":"0.4.14"}],"factsPreview":[{"factKey":"vendor","category":"vendor","label":"Vendor","value":"Clawhub","href":"https://clawhub.ai/agentx-icu/skills/tox-tunnel-ops","sourceUrl":"https://clawhub.ai/agentx-icu/skills/tox-tunnel-ops","sourceType":"profile","confidence":"medium","observedAt":"2026-10-10T00:09:35.009Z","isPublic":true},{"factKey":"protocols","category":"compatibility","label":"Protocol compatibility","value":"OpenClaw","href":"https://www.xpersona.co/api/v1/agents/clawhub-agentx-icu-tox-tunnel-ops/contract","sourceUrl":"https://www.xpersona.co/api/v1/agents/clawhub-agentx-icu-tox-tunnel-ops/contract","sourceType":"contract","confidence":"medium","observedAt":"2026-10-10T00:09:35.009Z","isPublic":true},{"factKey":"traction","category":"adoption","label":"Adoption signal","value":"1.9K downloads","href":"https://clawhub.ai/agentx-icu/tox-tunnel-ops","sourceUrl":"https://clawhub.ai/agentx-icu/tox-tunnel-ops","sourceType":"profile","confidence":"medium","observedAt":"2026-10-10T00:09:35.009Z","isPublic":true},{"factKey":"latest_release","category":"release","label":"Latest release","value":"0.4.14","href":"https://clawhub.ai/agentx-icu/tox-tunnel-ops","sourceUrl":"https://clawhub.ai/agentx-icu/tox-tunnel-ops","sourceType":"release","confidence":"medium","observedAt":"2026-08-31T14:07:30.591Z","isPublic":true},{"factKey":"handshake_status","category":"security","label":"Handshake status","value":"UNKNOWN","href":"https://www.xpersona.co/api/v1/agents/clawhub-agentx-icu-tox-tunnel-ops/trust","sourceUrl":"https://www.xpersona.co/api/v1/agents/clawhub-agentx-icu-tox-tunnel-ops/trust","sourceType":"trust","confidence":"medium","observedAt":null,"isPublic":true}],"highlights":["1.9K downloads","Trust evidence available"],"agentCard":{"name":"tox-tunnel-ops","description":"Encrypted P2P TCP tunneling for remote network access — a self-hosted VPN / ngrok / Tailscale alternative built on the Tox protocol (libsodium). No API keys, no accounts, no central servers, no port-forwarding. Solves NAT traversal, carrier-grade NAT, double NAT, intranet penetration (内网穿透), and remote machine access without router or firewall changes. Tunnels SSH, RDP/VNC desktops, database connections (PostgreSQL/MySQL/Redis/MongoDB), homelab/NAS access (Synology, TrueNAS), local dev servers, and arbitrary TCP ports. Use when: setting up remote SSH/RDP/MySQL/PostgreSQL/Redis/MongoDB access from anywhere, exposing a local dev server or internal web app, sharing a homelab/Synology/TrueNAS service, granting time-scoped contractor access, generating ToxTunnel server/client/rules YAML configs, diagnosing toxtunnel connection failures, tightening rules.yaml access control, running a loopback SOCKS5 / HTTP CONNECT listener through a Tox tunnel, exporting toxtunnel operational metrics into Prometheus / Grafana, hot-reloading rules without restart (SIGHUP / `toxtunnel reload`), inspecting live tunnel state via `toxtunnel inspect`, or wiring multi-server failover for production redundancy.","source":"CLAWHUB","sourceId":"clawhub:s17ewfqx5ypm5882jq61sbrnyx83hg57:tox-tunnel-ops","homepage":"https://clawhub.ai/agentx-icu/skills/tox-tunnel-ops","repository":"https://clawhub.ai/agentx-icu/tox-tunnel-ops","documentation":"https://www.xpersona.co/agent/clawhub-agentx-icu-tox-tunnel-ops","protocols":["OPENCLEW"],"examples":[{"kind":"example","language":"text","snippet":"Client Machine                          Server Machine\n─────────────────                       ─────────────────\nApp → localhost:LOCAL_PORT              target_host:target_port ← App\n        ↓                                      ↑\n   TunnelClient                           TunnelServer\n        ↓                                      ↑\n   [Tox P2P encrypted tunnel]  ──────→  [Tox P2P]"},{"kind":"example","language":"yaml","snippet":"mode: server\ndata_dir: /path/to/data\nlogging:\n  level: info\ntox:\n  udp_enabled: true\n  tcp_port: 33445\n  bootstrap_mode: auto    # auto | lan\nserver:\n  rules_file: /path/to/rules.yaml   # access-control rules; unset = default deny\n\n# v0.3.0 top-level blocks (all opt-in unless noted):\nmetrics:\n  enabled: false                    # opt-in; enables Prometheus /metrics endpoint\n  listen: 127.0.0.1:9100            # use 0.0.0.0:9100 only behind a trusted network\n  path: /metrics                    # must start with '/'\ninspect:\n  enabled: true                     # default-on; serves a Unix socket / named pipe for `toxtunnel inspect`\ntunnel:\n  coalesce_max_delay_us: 200        # default-on small-write coalescing (perf, benign to leave)\n                                    # Windows: sub-15.6 ms values are treated as 0 (no batching)\n  coalesce_max_bytes: 1362          # flush threshold (≤ Tox 1367-byte frame limit)\n  coalesce_mode: fixed              # v0.4: fixed (default) | adaptive | bypass | drain\n  idle_timeout_seconds: 0           # 0 = disabled; e.g. 900 closes tunnels idle for 15 min\n  reaper_tick_seconds: 10           # reaper wake-up interval\n  half_close_timeout_seconds: 120   # default-on; force-close a tunnel stuck in\n                                    # Disconnecting this long. 0 disables.\n  resume:                           # v0.4: tunnel fast-reattach. Opt-in.\n    enabled: false                  # default false; opcodes wire-inactive when off\n    max_age_seconds: 300            # how long the server holds a disconnected\n                                    # friend's IN-MEMORY tunnels (and their target\n                                    # TCP connections) waiting for a reconnect.\n                                    # Nothing is persisted to disk.\n    on_gap: passthrough             # passthrough (default) | close\n\n# v0.4 stability blocks. Defaults preserve v0.3.0 semantics EXCEPT\n# flow_control.mode, which defaults to `bdp` since v0.4.1:\nwatchdog:\n  enable"}]}}