One GPU. Many sandboxes.

A GPU serves one person at a time. Nestri runs isolated virtual desktops on that one card, so everyone gets a machine of their own, in a way you can control.

One command. That's it. Point Nestri at the Linux box under your desk. It finds the GPU, installs the drivers and brings it online. You write no config.

Nothing to port forward. Nestri punches through both ends of the connection for you. Frames take the direct route to the client. Your router stays shut.

Share the card, not the desktop.

Your session and theirs run on the same GPU, each inside its own microVM. Only encoded frames leave the box, and QUIC carries them to the client.

One graphics card shared across five isolated machinesA single graphics card sits at the base of a host boundary. Five virtual machines above it each take their own share of that card. Each machine renders and encodes inside the boundary, and only compressed frames leave over QUIC to five clients outside it.vm-01vm-02vm-03vm-04vm-05anywherequic · irohhostrenders · encodesone gpu · DRM NATIVE CTX· virtio-nvgpu05/05 shares in use

Manage your fleet from anywhere. Watch sessions start, stop and hand off between machines. Your terminal prints each change as it happens.

Zero input lag. Video, audio, cursor and keys each ride their own QUIC stream. Nothing waits behind anything else.

Learn how limits work

Let people in without keys. Give someone a session on your box. They get the compute. You keep the network and the credentials.

your boxes

ssh nestri.io new --tier=lg
create a box
ssh nestri.io ls --json
list yours, machine-readable
ssh nestri.io rm <box>
destroy one
ssh <box>.nestri.link
a real shell on it

access

ssh nestri.io share <box>
let someone else in
ssh nestri.io key add
authorise a public key
ssh nestri.io key token
mint a scoped token

No agents to install and update. Your SSH key is your login. One command buys a cloud box. The CLI and the API are the same tree.

Many people, one card.


None of them can reach another.

Its own kernel

Every session boots its own kernel, so a guest has no host filesystem to read. The device model behind it runs under a seccomp filter that enforces by default.

Its own device

Every session addresses the card through a native context of its own. Nobody is watching a capture of somebody else's desktop.

Its own credentials

Steam authentication happens on the machine you host from. Your keys never reach our servers.

Games that run on Nestri today.

Start sharing your GPU in 5 minutes or less. Nestri is free on your own hardware. Rent a card from us when yours is busy, full or asleep.

Size it for a team. Skip the sales pitch. Tell the founders what you're building, and they'll size the hardware with you.