Your databases.
One click away.
Give your team instant, secure access to AWS databases — and to the VNC, RDP and SSH hosts behind your bastions — without installing plugins, writing scripts, or managing credentials. ConnectionApp handles everything behind the scenes.
🚀 Connecting to Acme SaaS platform via profile acme-production...
🔑 Checking credentials...
🔍 Finding bastion instance...
📡 Getting RDS endpoint...
📦 Getting database credentials...
🛠️ Starting SSM session...
✅ Connected!
┌────────────────────────────────┐
│ Host: localhost │
│ Port: 5432 │
│ Username: app_admin │
│ Password: •••••••••• │
│ Database: app_production │
└────────────────────────────────┘
📋 Password copied to clipboard
Commands: [p] show password [c] copy password [Ctrl+C] disconnect
The difference is obvious
Connecting to a private database shouldn't require a toolkit. It should take 10 seconds.
- Install and maintain additional AWS plugins
- Write custom scripts for each environment
- Manually look up database credentials
- Track down the right server to tunnel through
- Debug mysterious connection failures
- Start over every time a session drops
- Nothing to install beyond the app itself
- Select your project and environment. Done
- Credentials are retrieved and filled in automatically
- The right server is discovered and connected
- Connection issues are resolved automatically
- Reconnects instantly — your work isn't interrupted
Instant access
Select a project, choose an environment, and connect. Database credentials are retrieved and applied automatically.
Saved connections
Bookmark the databases your team uses most. Reconnect in one click. Organize and reorder as needed.
Desktop & terminal
A full graphical application for daily use, plus a command-line tool for automation and scripting.
Automatic recovery
If a connection drops, the app reconnects transparently. Your database tools stay connected — no disruption.
Parallel connections
Connect to multiple databases at the same time. Each one is managed independently with no conflicts.
Beyond databases
Tunnel to VNC, RDP, SSH — or any TCP port — on EC2 instances and ECS tasks, directly or through a bastion. One tool for every private endpoint.
Enterprise-grade security
Built from the ground up with a zero-trust approach. No compromises, no shortcuts.
Built natively
Not a wrapper around another tool. A complete, independent implementation of the AWS connection protocol.
Nothing stored
Database passwords are retrieved fresh every time — from Secrets Manager or as short-lived IAM tokens. Credentials never touch your hard drive.
Your company's login
Sign in with your company's AWS SSO. Sessions are checked before every connection and renewed automatically when they expire — no extra accounts, passwords, or API keys.
Verified & signed
macOS builds are signed with an Apple Developer ID and notarized by Apple — they open without Gatekeeper warnings. In-app updates are signed and verified before they install.
Ready when you are
Free, open source, and ready to use in under a minute. No account required.
Installs the app together with connection-app-cli. On Linux: brew install yarka-guru/tap/connection-app · CLI only: brew install yarka-guru/tap/connection-app-cli. All builds and checksums: GitHub Releases.