Tenelk for Windows

One account. A separate desktop boundary.

The Windows client is in private testing. Account sign-in is implemented, but a signed public package and Tenelk-managed device routes have not passed release acceptance yet.

Public download unavailable Release questions

We do not publish unsigned installers, static VPN keys, or a package whose device-wide connection has not been accepted on Windows.

Product boundary

Chrome access does not silently become a desktop credential.

Your Tenelk account can identify the same customer across products. Chrome currently uses a browser-only proxy lease. Windows device access will open only after a separate, revocable device credential and the signed client pass the full release gate.

01

Sign in safely

Windows opens the Tenelk account page in your browser and uses PKCE. Your password is never entered into the VPN client.

02

Keep local control

Signing out does not delete local profiles or block the standalone VPN features already on your computer.

03

Verify the package

A future download appears only after the exact installer, SHA-256, verified signer, and published version agree.

04

Prove device coverage

Release acceptance must cover install, login, tunnel, DNS, route switching, restart recovery, disconnect, and direct restoration.