🔒 Security

Built to be un-abusable.

Remote support is the single most common vector for tech-support scams — because most tools let a session start quietly. UltraDesk is designed the opposite way: the person at the machine always sees who is connected and must explicitly allow control. That's not a setting — it's the design.

The safeguards, in depth

End-to-end encrypted media

Screen, control and voice ride a DTLS-secured WebRTC path between the two endpoints. The connection is encrypted end to end.

The relay sees only ciphertext

Even when a session relays through our infrastructure to cross a firewall, the relay moves opaque encrypted bytes — never your screen, keystrokes or credentials.

Explicit consent-to-control

Before a technician can see or control your machine, an unmissable prompt names who is connecting. Choose Deny and nothing is shared — proven to block control, not just hide it.

Always-on session indicator

A banner that can't be hidden, moved or closed by the technician stays on screen the entire session, naming the connected account. You always know.

Full audit trail

Every unattended connection, file browse and transfer is recorded on the server under the connecting account — a defensible record for compliance and disputes.

Account-bound access

Unattended access is per-account and per-permission — sensitive actions like blank-screen are gated to explicitly-authorised accounts and audited.

Anti-scam by design — why it's different

Foreign tools have consent prompts too, yet are the tools scammers reach for, because the safeguards can be sidestepped or aren't visible enough. UltraDesk makes visible consent and an un-hideable indicator non-optional. The physical person at the keyboard always retains an un-blockable way to see and stop what's happening.

Operational security of the platform