From installation to a coordinated run. Signed installers publish at general availability; the download page shows each platform's status.
Conduit runs in your environment and coordinates the coding agents you already installed. The desktop app and CLI are clients of one engine that owns workspaces, runs, approvals, clarification, review evidence and the shared repository map.
Prompts, source, transcripts and worktrees stay in your environment. The hosted licensing service receives account, billing, organization, device and release-download metadata; it does not receive repository or run content.
You can keep orchestration off and still use the workspace map and paired host tools. Turning orchestration off stops new team work and drains active work; it does not delete runs or workspace knowledge.
conduit client enroll (the desktop app does this itself).conduit workspace register <repository path>.run start, attach and the approval verbs.A customer-managed Linux cloud host is supported for interactive CLI use. Conduit uses Secret Service when it is available. If the host has no Secret Service session, the engine starts with persistent-secret features disabled and offers a manual terminal session for one mutation at a time.
conduit serve from the same operating-system user that will run the CLI.--terminal-session to a supported mutation, for example conduit workspace register --terminal-session <repository path>.Terminal sessions require an interactive TTY. They cannot be used with JSON output, plugin pairing or MCP. Hosted sign-in and connector credentials also stay disabled without the operating-system credential store. Unattended service operation requires a supported credential backend.
Run conduit license signin or use the desktop sign-in action. Email links and Google sign-in complete through a one-time server transaction; the app stores the session in your operating-system credential store.
Personal Pro checkout is annual. Team is $60 per human seat per year with a five-seat minimum. Checkout shows renewal terms and requires acceptance of the current Terms of Service, EULA and Refund and Cancellation Policy. Enterprise is sales-led: [email protected].
The first confirmed Team payment creates the Team organization and makes the buyer its owner. To add a member:
A verified account belongs to one organization. The owner can raise or lower purchased capacity on the account page; a reduction below the number of assigned members is refused. Each seated member has Team access while the owner's paid Team state is active, with two devices per human seat.
An organization policy bundle can carry role constraints, per-role discipline packs and an adapter allowlist. Policy updates apply to later runs, never an active run. An absent or empty adapter allowlist means unrestricted; to restrict adapters, list every admitted one. A custom adapter entry pins the executable digest, so a changed binary is refused even when its name matches.
Agents ask the supervisor when a material assumption is not verified; the question parks the task until the answer arrives, and open questions block completion. A review task must submit an explicit verdict. Approved work merges back only when the worktree is clean and Git can merge without conflict; Conduit retains dirty or conflicted worktrees and shows the recovery action instead of claiming the work landed.
Custom adapters use the versioned local protocol. Installation requires an explicit executable digest; Conduit verifies the manifest, binary path, digest and permissions at startup and refuses names that collide with built-in adapters. A custom process receives the same per-turn confinement and engine-owned environment as a built-in adapter.
Billing or account help: [email protected]. Enterprise, SSO, DPA or AION Bridge: [email protected].