MAX_UPLOAD_SIZE: Maximum file size (supports formats):
"50M" - 50 megabytes
"100M" - 100 megabytes
"1G" - 1 gigabyte
"500K" - 500 kilobytes
WEBSSH_USERS: Users in format username:password,username2:password2
JWT_SECRET: Secret key for JWT tokens (auto-generated if not set)
RECORDING_ENABLED: Enable/disable session recording (true or false)
RECORDING_RETENTION_DAYS: Number of days to keep recordings (default: 30)
📡 Installation Telemetry
Starting with version 0.5.0, WebSSH collects limited installation telemetry to understand active installations and deployed versions.
The telemetry contains only a randomly generated installation ID, WebSSH version, operating system, operating system version, CPU architecture, and Python runtime information.
Telemetry is enabled by default. To disable it, set the following environment variable:
STRIX_TELEMETRY_ENABLED=false
WebSSH does not send hostnames, usernames, IP addresses, SSH credentials, private keys, commands, terminal contents, or filesystem data.
🔒 Auto-Lock & Auto-Disconnect
WebSSH can automatically lock sessions after a period of inactivity and require your WebSSH password to unlock. Sessions can also be automatically disconnected after a longer period.
- Lock after: Period of inactivity before locking (5, 15, 30, 60 minutes)
- Disconnect after: Period of inactivity before disconnecting (30, 60 minutes, or never)
- Configuration: Set per connection in the connection settings
- Security: Lock requires WebSSH password only (not SSH password)