Install xsenv-net.
For people already invited: your administrator gives you a token, the agent joins your private network with it, and you sign in once with your passkey.
On Linux, macOS, Windows or Android.
Linux and macOS in a terminal
curl -fsSL https://xsenv.com/install.sh | sudo sh
sudo xsnet agent install --token-file ./token
sudo xsnet agent login
Windows in PowerShell, run as Administrator
[Net.ServicePointManager]::SecurityProtocol = 'Tls12'
irm https://xsenv.com/install.ps1 | iex
xsnet agent install --token-file .\token
xsnet agent login
Android 8 or later
Install the app, then scan the token's QR code (xsnet admin token --qr).
The installers check each release against the signing key they carry before they install anything. Builds are reproducible. For amd64 and arm64. Signing keys: SSH, P-256, current version.