Connect your agents
to private services.
Connic Bridge establishes an outbound connection from your private network to Connic. Your agents can reach internal databases, S3 storage, and HTTP APIs without exposing those services publicly or opening inbound ports.
Read the bridge docsBridges
docker run -d --name connic-bridge \
-e BRIDGE_TOKEN=••••••••••••••••
-e ALLOWED_HOSTS=postgres:5432,kafka:9092 \
connicorg/bridge:latestConnect your network to Connic from the inside
The Bridge Agent runs in your private network and establishes an encrypted connection to Connic. You don’t need to expose internal services publicly or open inbound ports.
Make private services accessible to your agents
Connect your network to Connic in three steps. A bridge in project settings and the Bridge Agent running as a Docker container enable access through connections, custom model providers, tools, and middleware.
Dashboard: Project Settings › Bridge, then Add Bridge. The bridge receives a name, and its token is shown once for copying.
Bridge agent running inside the private network
terminaldocker run -d --name connic-bridge \ -e BRIDGE_TOKEN=cbr_your_token_here \ -e ALLOWED_HOSTS=kafka:9092,postgres:5432 \ connicorg/bridge:latestPrivate service address for a custom tool:
<target>.cnc-bridge-<bridge_id>tools/lookup_order.pyimport psycopg BRIDGE_ID = "abc123" # copy from Project Settings > Bridge def lookup_order(order_id: str): with psycopg.connect( host=f"postgres-primary.cnc-bridge-{BRIDGE_ID}", port=5432, dbname="orders", user="reader", password="...", ) as conn: return conn.execute( "SELECT data FROM orders WHERE id = %s", (order_id,) ).fetchone()For protocols that discover new endpoints at runtime, such as Redis Sentinel returning its current master, exact or safe regex destination routes are available under Project Settings › Bridge. If ALLOWED_HOSTS is configured, it must include every possible host:port; unset or empty leaves destinations unrestricted.
Security controls at a glance
How Connic Bridge handles connection setup, authentication, allowed destinations, and encryption.
The bridge initiates the connection. Connic never connects in. No inbound ports need to be opened on the private network.
Each bridge has its own token tied to a single Connic project. Tokens can be rotated from the dashboard at any time, and multiple bridges can run in different networks for the same project.
ALLOWED_HOSTS restricts the bridge to exact host:port values. Unset or empty leaves targets unrestricted. Automatic routes never bypass a configured allowlist.
All traffic between the bridge and the Connic relay is encrypted via WSS (WebSocket over TLS).