Catalogue › Networking & VPN › VPN-Poppy
VPN-Poppy
A personal WireGuard VPN on the fly, in your own AWS.
Download AgentsPoppy to get VPN-Poppy
The AgentsPoppy app is free, and runs on macOS, Windows and Linux. VPN-Poppy installs from inside it — the app asks your permission, shows exactly what will be created in your cloud, and can remove all of it later.
Screenshots
What you'd be asked to approve
Before VPN-Poppy can touch your AWS account, AgentsPoppy shows this exact grant and waits for your yes. This preview is computed from the poppy's reviewed package by the same assessor code the app runs — it is the approval screen, shown early.
- ec2Broad
Can read any EC2 resource in your account. AWS offers no way to narrow this: these actions accept no resource limit at all, so this is the tightest form the grant can take.
5 actions
DescribeInstances · DescribeImages · DescribeVpcs · DescribeSubnets · DescribeSecurityGroups - ec2Its own
Can create, change and delete only EC2 resources tagged as its own — it cannot change or delete any EC2 resource with a different tag. It can also use existing EC2 resources it did not create — such as a network or image — when creating its own, but cannot change or delete them.
3 actions
RunInstances · CreateSecurityGroup · CreateTags - ec2Its own
Can create, change and delete only EC2 resources tagged as its own — it cannot change or delete any EC2 resource with a different tag.
4 actions
AuthorizeSecurityGroupIngress · TerminateInstances · DeleteSecurityGroup · GetConsoleOutput
Nothing can be approved from a web page. The real Approve lives in the AgentsPoppy app on your machine, where this grant meets your actual AWS account — and where you can reject it, or tear down everything it created, at any time.
Evaluating VPN-Poppy for a company? Its vendor security package is audit-ready documentation for your SOC 2 or vendor-risk process — generated from the same reviewed package, with a machine-readable copy for procurement tooling.
About VPN-Poppy
VPN-Poppy launches a WireGuard VPN endpoint in your own AWS account in about a minute — pick a region, scan a QR on your phone or download a .conf for your laptop, and tunnel through a server only you control. No SSH, no key pair, one silent UDP port; every key is generated on your machine. Websites see the endpoint's IP (fresh on every launch), your network sees only an encrypted tunnel, and no VPN company sits in the path — because there isn't one. Pay cents while it runs and tear it down to $0 the moment you're done. Optional Shielded DNS blocks ads, trackers and malware on every connected device.
What you get
Included, free
- ✓A private endpoint in about a minutePick a region, scan a QR code with your phone or download a .conf for your laptop.
- ✓Unlimited devicesIt's your server — connect as many phones and laptops as you like.
- ✓No SSH, no loginNobody can enter the server, including you. Every key is generated on your own machine.
- ✓No VPN company in the middleWebsites see the endpoint's IP, fresh on every launch; there is no provider to log your traffic.
- ✓Cents, not a subscriptionNo monthly fee to anyone. AWS bills you directly for the hours it runs, and a live meter in the app shows what it is actually costing.
- ✓Tears itself downIt shuts off after the hours you choose, or the moment you say so.
Paid features
- ★Shielded DNSBlocks ads, trackers and malware on every connected device, in every app — no browser extension, nothing to install.
Pricing
Prices are read live from the developer's own listing. Whatever this poppy costs, the cloud resources it creates are billed by AWS directly to you — AgentsPoppy never marks them up. Paid features are bought inside the app; the developer is the merchant of record.
Data & privacy
Nothing leaves your cloud. The developer declared that no data this poppy handles is ever sent outside the AWS account it runs in. You can verify that claim yourself — the source is public.
Developer & support
| Developer | OllyDigital |
|---|---|
| Source code | https://github.com/leonct74/VPN-PoppyPublic by requirement — you or your AI can audit exactly what it does before installing. |
| Support | support@agentspoppy.com https://github.com/leonct74/VPN-Poppy/issues |
| Age rating | Everyone |
| Runs on | macOS, Windows and LinuxNeeds AgentsPoppy 0.3.10 or newer. |
| Where it runs | Your own AWS account.AgentsPoppy holds no copy of your data and cannot read it. Cloud usage is billed to you by AWS at their prices. |
Support for the poppy itself comes from its developer. For the AgentsPoppy app, see Security or our terms.
Ready to run VPN-Poppy in your own cloud?
Download the free AgentsPoppy app for macOS, Windows or Linux, connect your AWS account once, and install VPN-Poppy from the catalogue inside it.