Skip to content

Desktops where data must not leave.

Run desktops in your OCI, Google Cloud, Azure or AWS account, or on Neverinstall Private Cloud at a fully disconnected site. Applications and data stay on the desktop. Only display, sound, input and the transfers you allow cross the network.

Data spreads to every endpoint.

When applications run on laptops, client data sits on each device. Every endpoint needs its own controls, and every review covers them all.

Choose how far the deployment is cut off.

On Neverinstall Private Cloud, a fully disconnected site runs its own local Management Console, deployed separately. Nothing phones home, and updates arrive signed and offline.

Your cloud account

Hosted Management Console
Manages

Supported clouds

  • OCI
  • Google Cloud
  • Azure
  • AWS
Managed desktops

Air-gapped sites

Neverinstall Private CloudNothing phones home

Local Management ConsoleDeployed separately
Manages
Managed desktops
UpdatesArrive signed and offline
In your cloud account on OCI, Google Cloud, Azure or AWS, the hosted Management Console manages the desktops. On an air-gapped Neverinstall Private Cloud site, a local Management Console does; nothing phones home and updates arrive signed and offline.
Your cloud account

OCI, Google Cloud, Azure or AWS, with the hosted Management Console

Air-gapped sites

Neverinstall Private Cloud with a local Management Console and no phone-home

Connection

Browser or any RDP client, over WebTransport with WebSocket fallback

Attestations

SOC 2 Type II attested, ISO 27001 certified, HIPAA in progress

What reviewers can check.

  • Sign-in

    Each member’s role, groups, multi-factor status and sign-in method, on one profile.

  • Workspace overrides

    Each workspace shows which transfer settings follow the organization default and which it overrides.

  • Blocked downloads

    With downloads turned off, files stay in the desktop, and the workspace’s file browser shows why.

  • Event Log

    Workspace, user and settings changes, each with the person or system that made it and the time.

Assign record and support responsibilities.

Identity and records

Locate the identity provider, access events and recordings. Name the people and systems allowed to read them.

Changes and support

Agree on maintenance approvals and support access. For disconnected sites, include local management, identity and signed update procedures.

Test each control with one user group.

Run every test on the browsers and RDP clients the group will use.

  1. Connect identity

    Connect single sign-on over SAML or OIDC, including Entra ID, Okta and Google. Assign the pilot group, then test access removal.

  2. Set transfer rules

    Allow or block clipboard, file upload, file download and printing for the group. Groups inherit organization defaults, so set the strict default first and add exceptions per group.

  3. Record sessions

    Turn on Session Recording for the groups in scope. Set retention and name the reviewers allowed to watch recordings.

  4. Forward the Audit Trail

    Forward Audit Trail records to your SIEM. Check that access and session events arrive where your security team reads them.

Related

Questions from security teams.

Can desktops run without an internet connection?

Yes, on Neverinstall Private Cloud. A fully disconnected site runs a separately deployed local Management Console. Nothing phones home, and updates arrive as signed offline bundles.

Can users copy data out of a desktop?

Only where you allow it. Clipboard, file upload, file download and printing are set per group, and groups inherit organization defaults. Test each rule on the browsers and RDP clients in scope.

Which clients can connect?

A browser or any RDP client. The browser client uses WebTransport and falls back to WebSocket where a firewall or proxy blocks it. Test through your own network configuration.

Can we use our own identity provider?

Yes. Connect single sign-on over SAML or OIDC, including Entra ID, Okta and Google. Assign desktop access by user and role.

Where do recordings and Audit Trail records go?

You choose the recorded groups, retention period and reviewers. Audit Trail records forward to your SIEM. Storage depends on the deployment, so the deployment review confirms where each record sits.

Which attestations are available?

Neverinstall is SOC 2 Type II attested and ISO 27001 certified. HIPAA is in progress. Request the SOC 2 report under NDA.

Review your desktop requirements.

Tell us the user groups, record locations and transfer controls in scope. We will map the deployment and plan the controls review.