지원
궁금한 점이 있거나 문제가 생겼나요? 가장 빠르게 도움받는 방법입니다.
문의하기
사용 환경
- iPhone과 iPad용 viewer 앱 Reach Viewer(App Store 등록명 Reach Remote): iOS 또는 iPadOS 17.0 이상이면 기종 제한 없이 동작합니다. 기준이 되는 경험은 iPad이고, iPhone은 좁은 화면 레이아웃과 입력을 다듬는 동안 실험적 지원(Experimental)입니다. 해상도 상한은 Native, 1440p, 1080p, 720p 중에서 고르고, 실제로 나오는 해상도와 프레임레이트는 선택한 Mac 디스플레이와 viewer 기기, 네트워크에 따라 달라집니다. App Store에서 받기.
- Reach Host(Mac): macOS 14(Sonoma) 이상. Intel과 Apple Silicon을 함께 지원하는 유니버설 빌드이고, Developer ID 서명과 공증을 마쳤습니다. 이 사이트에서 무료로 받을 수 있습니다. 내장 업데이터가 새 버전을 자동으로 확인하고, 업데이트가 있으면 메뉴에서 설치할 수 있습니다.
- 네트워크: 로그인하지 않은 상태에서 Reach는 같은 네트워크의 Nearby(같은 네트워크)나 직접 입력한 수동 Direct IP 주소로 연결합니다. 선택 사항인 Reach 계정에 로그인하면 Internet Direct와 Relay(중계)가 더해집니다. 자동 연결은 지금 로그인 상태에서 허용되는 경로만 제안하고, Reach는 Mac마다 마지막으로 고른 경로를 기억합니다.
자주 묻는 질문
Reach Viewer가 같은 네트워크의 Mac을 찾지 못합니다.
Nearby는 Bonjour 탐색을 쓰기 때문에, 이를 허용하는 네트워크에서 광고가 실제로 살아 있어야 합니다. 순서대로 확인해 주세요. (1) 두 기기가 같은 Wi-Fi 네트워크에 있고, Bonjour/mDNS를 막는 게스트망이나 회사망이 아닌지. (2) Reach Host가 실행 중이고 메뉴바 아이콘이 보이는지. (3) Mac과 iPhone·iPad 양쪽 모두에서 로컬 네트워크 접근이 허용돼 있는지 — 탐색이 기대는 권한이 바로 이것입니다. macOS는 이 권한을 한 번만 묻는 경우가 많으니, 프롬프트를 닫아 버렸다면 System Settings → Privacy & Security → Local Network에서 다시 켜 주세요. Mac의 화면 기록과 손쉬운 사용은 연결된 뒤 세션을 쓸 수 있게 해 주는 권한이지, Mac이 목록에 보이게 하는 권한은 아닙니다.
Reach는 Bonjour 광고가 실제로 살아 있는 동안에만 Nearby를 연결 가능한 상태로 봅니다. 전에 저장해 둔 Mac은 마지막으로 보였던 이름으로 목록에 남지만, 저장된 이름만으로 연결이 되지는 않습니다. 광고가 다시 올라와야 Nearby가 그 Mac에 연결을 겁니다. 그 Mac이 같은 네트워크에 없을 때 닿으려면, 저장해 둔 Direct IP 주소를 쓰거나 로그인해서 Internet Direct 또는 Relay(중계)를 사용하세요.
집에서는 연결되는데 밖에서는 실패합니다.
상황에 맞는 경로를 고르세요. 로그인하지 않은 상태에서는 첫 번째 경로만 쓸 수 있습니다.
- 수동 Direct IP — 계정이 필요 없습니다. 현재는 밖에서 닿는 공인 IPv4 엔드포인트가 필요합니다. Mac에 공인 IPv4가 직접 배정돼 있다면 주소와 포트만 입력하면 되고 포워딩은 필요 없습니다. Mac이 공유기나 NAT 뒤에 있다면 Reach Host → Connect → Connection → Direct over Internet에서 확인한 UDP 포트(기본 8443)를 Mac으로 포워딩하거나 매핑한 뒤, 밖에서 닿는 주소와 포트를 Reach Viewer에 입력하세요. 이 매핑은 CGNAT를 통과하지 못합니다. 그 경로를 만들 수 없다면 로그인해서 Internet Direct(공인 IPv6 후보를 쓸 수 있습니다)나 Relay(중계)를 사용하세요.
- Internet Direct — Reach 계정이 필요합니다. Mac과 iPhone·iPad 양쪽에서 로그인하고 Mac을 계정에 등록하면, 저장된 연결 프로필을 통해 Reach가 직접 연결 후보를 시도합니다. NAT 통과로 찾아낸 엔드포인트, 공인 IPv6 주소, 라우터가 매핑한 엔드포인트가 모두 여기에 들어갑니다. 공유기 설정도, 페어링 코드도 필요 없습니다.
- Relay(중계) — Reach 계정과 본인의 Cloudflare TURN 자격 증명이 함께 필요합니다. Reach Host → Connect → Connection → Cloudflare TURN relay에서 Key ID와 API 토큰을 넣고 키를 저장하세요. Relay(중계)는 직접 경로가 실패하는 엄격한 NAT, 대칭 NAT, CGNAT를 위한 대안입니다. 다만 유효한 TURN 자격 증명과 닿을 수 있는 TURN 서비스가 있어야 하고, 직접 경로보다 지연이 늘어납니다.
자동 연결은 지금 로그인 상태에서 자격이 되는 경로만 시도합니다. 그래서 로그아웃 상태라면 Internet Direct나 Relay(중계)를 조용히 시도하는 일은 없습니다. 경로를 직접 지정할 수도 있고, Reach는 그 선택을 Mac마다 기억합니다.
Reach 계정은 무엇이고, 없으면 어디까지 되나요?
Reach 계정은 선택 사항입니다. 로그인은 일회용 이메일 매직 링크나 코드로 하며, 비밀번호는 없습니다. 로그아웃 상태에서도 Nearby(같은 네트워크)와 수동 Direct IP는 그대로 쓸 수 있고, 영상·오디오·입력이 모두 갖춰진 세션이 열립니다. 세션 자체가 깎이는 부분은 없습니다. 로그인하면 Internet Direct와 Relay(중계)가 더해지고, 같은 계정의 기기끼리는 페어링 코드 없이 서로를 신뢰합니다. 다만 신뢰와 도달 가능성은 다른 이야기라서, 연결에는 여전히 연결을 걸 수 있는 직접 후보나 설정해 둔 중계 경로가 필요합니다.
계정에는 인증과 라우팅에 필요한 것만 저장합니다. 계정 식별자와 이메일 주소, 서버가 보관하는 계정 서명 키와 로그인 상태 관리용 메타데이터, 등록된 기기마다 하나씩 만들어지는 기기 항목(기기 식별자, 이름, 종류, 공개 키, 키 지문, TLS 인증서 지문, 직접 연결 후보, 등록·최근 확인·해지 시각), 만료·회전 정보가 붙은 해시 처리된 세션 토큰과 갱신 토큰, 매직 링크 토큰의 해시, 6자리 폴백 코드 자체, 그리고 그에 딸린 이메일·컨텍스트·만료·사용·시도 정보, 그리고 패스키를 쓰는 경우 WebAuthn 챌린지와 패스키 공개 자격 증명입니다. 로그인 표면을 보호하기 위한 IP·이메일 기반 단기 요청 카운터도 별도로 유지합니다. 백엔드는 Cloudflare에서 동작하며, 이 방침은 특정 처리 지역을 보장하지 않습니다. 앱에는 추적 SDK도 광고도 없고, 백엔드는 서비스 운영과 보호를 위한 운영 텔레메트리와 로그만 남깁니다. 자세한 내용은 개인정보 처리방침에 있습니다.
계정을 삭제하거나, 기기 하나만 빼려면 어떻게 하나요?
Reach Viewer에서 계정 시트를 여세요. Sign out은 이 기기를 로그아웃시키지만 등록은 남깁니다. Remove device and sign out은 계정에서 이 viewer만 해지합니다. Delete account는 계정 기록, 등록된 모든 기기, 모든 세션, 대기 중인 로그인 코드, 그리고 그 계정에 연결된 WebAuthn 챌린지와 패스키 자격 증명을 지웁니다. 계정이 만들어지기 전 생성돼 계정 식별자가 없는 WebAuthn 챌린지는 이 동작으로 삭제되지 않으며, 만료 뒤에는 인증에 쓰이지 않지만 현재 배포는 그 시점의 물리적 삭제를 보장하지 않습니다. 남용 방지 카운터와 운영 로그도 이 요청의 대상이 아닙니다. Mac에서도 Reach Host → Account에서 같은 동작을 할 수 있고, 그 Mac만 계정에서 빼는 것도 가능합니다.
화면을 한 번에 여러 개 열 수 있나요?
네. 작업 공간에는 서로 독립된 최대 4개 화면을 동시에 둘 수 있습니다. 신뢰한 같은 Mac의 여러 디스플레이도, 여러 대의 Mac도, 둘을 섞어서도 됩니다. 화면마다 디스플레이 피커에서 실제 디스플레이를 가져오거나, 이미 있는 viewer 크기 디스플레이를 다시 쓰거나, 가상 디스플레이를 새로 만들 수 있습니다. 가상 디스플레이 재사용은 주사율까지 함께 보기 때문에, 주사율이 맞지 않는 디스플레이를 건네주지 않습니다.
키보드와 포인터 입력은 어느 순간에도 정확히 한 화면만 가집니다. 나머지 화면은 계속 스트리밍되고, Request control을 누르면 지금 보고 있는 화면으로 입력이 옮겨 갑니다. 두 개 이상의 화면이 활성 상태로 참여하면 Reach는 작업 공간 전체 정책에 따라 각 화면의 프레임레이트와 비트레이트 상한을 낮춥니다. 화면마다 연결은 따로 열리며, 상한은 몇 개가 함께 참여하는지에 따라 정해집니다. 이 제한은 실시간 스트림에만 걸립니다. 저장해 둔 품질 설정은 그대로이고, 화면을 하나로 되돌리면 제한도 풀립니다.
영상은 잘 나오는데 소리가 나지 않습니다.
Reach Host → Connect → Permissions에서 Share system audio를 켜 주세요. 시스템 오디오는 ScreenCaptureKit으로 가져오며, Reach Host는 마이크 권한을 요청하지 않고 마이크 샘플도 처리하지 않습니다. 권한을 복구해야 한다면 Reach Host가 열어 주는 화면 기록/시스템 오디오 설정을 확인하세요. Reach는 선택한 디스플레이에 보이는 앱만이 아니라 Mac의 시스템 오디오 출력을 캡처합니다. 마이크 입력을 캡처하거나 녹음하지는 않습니다. 이 권한은 시스템 오디오를 통과시키는 관문으로만 쓰입니다.
viewer의 오디오는 화면에 표시되는 영상 타임라인을 따라갑니다. 오디오가 영상에서 너무 멀어지면 Reach는 늦게 재생하는 대신 밀린 큐를 버리거나 초기화합니다. 그래서 네트워크가 잠깐 나빠졌을 때 세션 전체가 어긋나는 대신 오디오 한 조각을 잃는 쪽으로 정리됩니다.
키보드가 동작하지 않습니다.
Magic Keyboard나 iPhone·iPad에 페어링한 Bluetooth 키보드를 붙이면, Reach가 자동으로 입력을 그쪽으로 넘깁니다. 작업 공간은 하드웨어 키보드 응답자를 하나만 두고 지금 포커스된 화면으로 연결하기 때문에, 그 화면이 입력 제어를 쥐고 있는 동안 키는 보고 있는 화면에 떨어집니다. 소프트웨어 키가 필요할 때를 위해 화면 키보드도 계속 쓸 수 있습니다. 아무것도 입력되지 않는다면 대개 Mac의 손쉬운 사용 권한이 빠진 경우입니다. System Settings → Privacy & Security → Accessibility에서 허용한 뒤 다시 연결해 주세요.
화면이 뿌옇거나 프레임이 끊깁니다.
같은 서브넷의 LAN에서는 직접 연결이 낮은 지연을 냅니다. 체감이 그렇지 않다면 (1) Mac은 이더넷을 우선 쓰고, (2) 2.4GHz 대신 5GHz나 6E Wi-Fi에 머물고, (3) 세션 설정에서 해상도나 프레임레이트를 낮추고, (4) 백그라운드 업로드가 회선을 먹고 있지는 않은지 확인해 보세요. Reach는 QUIC 위에서 하드웨어 가속 HEVC와 H.264를 적응형 비트레이트로 스트리밍합니다. 환경에 따라 HEVC가 불안정하면 H.264가 안전한 대안입니다. Relay(중계) 세션은 경로와 네트워크 상태에 따라 지연이 더 붙는 것이 정상이고, 앞에서 설명한 대로 여러 화면을 동시에 띄우면 각 화면의 스트림 상한이 낮아진다는 점도 함께 기억해 주세요.
기기 페어링을 해제하거나 신뢰를 초기화하려면 어떻게 하나요?
Reach Host → Devices & Trust → Devices에 신뢰한 viewer가 지문과 함께 모두 나열됩니다. 항목을 지우면 그 페어링이 해지되고, 그 기기가 물고 있던 세션도 닫힙니다. 이 제거는 Reach 계정이나 iCloud 자동 신뢰를 통한 재입장까지 함께 차단하므로, 다시 신뢰하려면 새 페어링 코드를 명시적으로 입력해야 합니다. 계정의 기기 등록 자체까지 취소하려는 경우에만 계정에서도 따로 제거하거나 로그아웃하세요.
Caps Lock이 대문자 고정 대신 한/영 전환을 합니다. 의도한 동작인가요?
네. iPhone·iPad 키보드에서 누른 하드웨어 Caps Lock은 Apple 키보드 동작에 맞춰 한/영 입력 소스 전환으로 Mac에 전달됩니다. iPadOS는 Caps Lock을 즉시 토글로 넘겨주기 때문에 길게 누르는 방식은 없습니다. 실제로 대문자를 고정하고 싶을 때는 화면 키보드의 Caps Lock 키를 사용하세요.
화면에 작고 동그란 핸들이 떠 있습니다. 이게 뭔가요?
커서 핸들입니다. Direct Touch 모드에서 나타나 Mac의 커서를 따라다니기 때문에, 탭으로 더듬는 대신 핸들을 끌어서 픽셀 단위로 포인터를 옮길 수 있습니다. 내 기기에서만 끄려면 세션 중 사이드 패널의 Touch input → Cursor handle에서 끄고, 모든 viewer에서 끄려면 Mac에서 Reach Host → Devices & Trust → Advanced → Cursor Telemetry → Share cursor position with viewer를 끄세요. Mac 쪽 설정은 세션이 바뀌어도 유지되고, viewer는 설정이 꺼지는 즉시 핸들을 지웁니다.
스크롤 방향을 반대로 바꾸려면 어떻게 하나요?
세션 중 사이드 패널을 열고 Scroll direction을 찾으세요. Invert touch scroll과 Invert trackpad scroll은 서로 다른 스위치라서, 트랙패드 스크롤은 그대로 두고 두 손가락 터치 스크롤만 뒤집거나 그 반대로도 할 수 있습니다.
앱은 어디서 받나요?
Reach Viewer는 App Store에 Reach Remote라는 이름으로 배포됩니다: apps.apple.com/app/id6762804458. Mac 쪽인 Reach Host는 이 사이트에서 받는 무료 공증 DMG이고, 설치한 뒤에는 업데이트를 자동으로 확인해 메뉴에서 설치할 수 있게 알려 줍니다.
버그 신고에 필요한 로그는 어디에 있나요?
Mac에서는 Reach Host → Devices & Trust → Advanced → Host activity log를 열고 Copy나 Export…로 활동 로그를 .txt 파일로 저장하세요. iPhone·iPad에서는 연결에 실패하면 실패 카드에 Copy Report가 나타납니다. 이 리포트에는 필요한 시도 내역(경로, 소요 시간, 오류)이 담기고, 신원을 알 수 있는 항목은 가려지며, 화면 내용은 들어가지 않습니다. 가지고 계신 쪽을 GitHub 이슈나 이메일에 첨부해 주세요.
보안과 프라이버시
모든 세션은 QUIC 위의 TLS 1.3으로 동작합니다. 신뢰의 근거는 페어링 시점에 기록된 인증서 지문이거나, Reach 계정의 기기 목록에 보관된 지문이거나, 명시적으로 허용한 첫 직접 연결에서 고정(TOFU)된 지문입니다. 이후 지문이 달라지면 연결은 거부되므로 세션이 조용히 다른 기기로 돌려질 수 없습니다. 화면, 오디오, 입력은 Reach 인프라를 거치지 않습니다. Relay(중계) 세션은 Cloudflare TURN을 지나가지만, Cloudflare가 읽을 수 없는 암호화된 패킷으로 지나갑니다. 앱에는 추적 SDK도 광고도 없으며, 백엔드는 서비스를 운영하고 보호하기 위한 운영 텔레메트리와 로그를 남깁니다. 자세한 내용은 개인정보 처리방침을 참고해 주세요.
알려진 제약
- Windows·Linux 호스트: 지원하지 않습니다. Reach Host는 macOS 전용입니다.
- iPhone: 실험적 지원(Experimental)입니다. 연결, 영상, 입력 모두 동작하지만 좁은 화면 레이아웃과 입력 처리를 아직 다듬는 중입니다. 기준이 되는 경험은 iPad입니다.
- 구형 iPad: 해상도나 프레임레이트를 낮추면 쓸 수 있습니다. 높은 해상도와 프레임레이트는 최신 기기일수록 여유가 있습니다.
- 동시 화면 수: 작업 공간도, Mac 한 대도 동시에 최대 4개 화면까지입니다. 키보드와 포인터 입력은 한 번에 한 화면만 가지고, 나머지는 Request control로 제어를 넘길 때까지 스트리밍만 합니다.
- Relay(중계) 지연: 중계 세션은 경로와 네트워크 상태에 따라 직접 경로보다 지연이 더 붙습니다. 그래서 매일 쓰는 경로라기보다, 직접 경로가 열리지 않는 네트워크를 위한 대안입니다.
Support
Have a question or hit a bug? These are the fastest ways to get help.
Get in touch
Requirements
- Reach Viewer (listed on the App Store as Reach Remote), the viewer app for iPhone and iPad: iOS or iPadOS 17.0 or later, with no model allowlist. iPad is the reference experience; iPhone is supported as Experimental while compact-screen and input polish continues. The Viewer offers Native, 1440p, 1080p, and 720p resolution caps; the resolution and frame rate you actually get depend on the selected Mac display, the viewer device, and the network. Get it on the App Store.
- Reach Host (Mac): macOS 14 (Sonoma) or later. A universal Intel and Apple Silicon build, Developer ID signed and notarized, downloaded free from this site. Its built-in updater checks for new versions automatically and offers an install action in the menu when one is available.
- Network: signed out, Reach connects over Nearby / LAN on the same network or a manual Direct IP address you enter yourself. Signing in to an optional Reach Account adds Internet Direct and Relay. Auto only offers the routes your current sign-in state allows, and Reach remembers the last route you chose for each Mac.
Frequently asked questions
Reach Viewer doesn't see my Mac on the local network.
Nearby uses Bonjour discovery, so it needs a live advertisement on a network that allows it. Check, in order: (1) both devices are on the same Wi-Fi network, and it isn't a guest or corporate network that blocks Bonjour/mDNS; (2) Reach Host is running, with its menu-bar icon visible; (3) Local Network access is allowed on both the Mac and the iPhone or iPad — that is the permission discovery depends on. macOS often asks for it only once, so if you dismissed the prompt, turn it back on in System Settings → Privacy & Security → Local Network. Screen Recording and Accessibility on the Mac are what make the session usable once it connects, not what makes the Mac visible.
Reach only treats Nearby as connectable while the Bonjour advertisement is actually live. A Mac you saved earlier still appears under its last-seen name, but that saved name on its own does not make it connectable — the advertisement has to be back before Nearby will dial it. To reach that Mac while it is off your network, use a saved Direct IP address, or sign in and use Internet Direct or Relay.
Connecting works at home but fails from outside.
Pick the route that matches your situation. Signed out, only the first one is available.
- Manual Direct IP — no account needed. It currently requires a routable public IPv4 endpoint. A Mac that already holds a public IPv4 address needs no forwarding — enter its address and port directly. If the Mac is behind a router or NAT, forward or map the UDP port shown in Reach Host → Connect → Connection → Direct over Internet (8443 by default), then enter the external address and port in Reach Viewer. That mapping cannot be created through CGNAT. If that path is unavailable, sign in and use Internet Direct — which can select a public-IPv6 candidate — or Relay.
- Internet Direct — requires a Reach Account. Sign in on both the Mac and the iPhone or iPad, register the Mac to the account, and Reach tries direct internet candidates through the saved connection profile — endpoints discovered through NAT traversal, public IPv6 addresses, and router-mapped endpoints. No router setup, no pairing code.
- Relay — requires a Reach Account plus your own Cloudflare TURN credentials. Add the Key ID and API token in Reach Host → Connect → Connection → Cloudflare TURN relay, then save the key. Relay is the fallback for strict or symmetric NAT and CGNAT when direct routes fail. It still requires valid TURN credentials and a reachable TURN service, and it adds latency compared with a direct path.
Auto only tries routes that are eligible for your current sign-in state, so if you are signed out it will never silently attempt Internet Direct or Relay. You can also select a route explicitly, and Reach remembers that choice per Mac.
What is a Reach Account, and what still works without one?
A Reach Account is optional. Signing in is done with a one-time email magic link or code — there are no passwords. Signed out you keep Nearby / LAN and manual Direct IP, with the full video, audio, and input session; nothing about the session itself is degraded. Signing in adds Internet Direct and Relay, and lets devices on the same account trust each other without a pairing code. Trust is not the same as reachability: a connection still needs a dialable direct candidate or a configured relay.
The account stores only what authentication and routing need: the account identifier and email address; a server-held account signing key and the metadata that manages sign-in state; a device registry entry per registered device (device identifier, name, type, public key, key fingerprint, TLS certificate fingerprint, direct connection candidates, and registration, last-seen, and revocation times); hashed session and refresh tokens with their expiry and rotation metadata; the hash of a magic-link token and the six-digit fallback code itself, each with its email, context, expiry, consumption, and attempt metadata; and, if you use a passkey, the WebAuthn challenge and public passkey credential. Short-lived IP- and email-keyed request counters are kept separately to protect the sign-in surface. The backend runs on Cloudflare; this policy does not promise a specific processing region. The apps carry no tracking SDKs and no advertising, and the backend keeps only the operational telemetry and logs needed to run and protect the service. The Privacy Policy has the full detail.
How do I delete my account, or remove just one device?
In Reach Viewer, open the account sheet. Sign out signs this device out but leaves it registered. Remove device and sign out revokes only this viewer on the account. Delete account removes the account record, every registered device, all sessions, pending login codes, and the WebAuthn challenges and passkey credentials tied to that account. WebAuthn challenges created before an account existed carry no account identifier and are not deleted by this operation; they stop being accepted at expiry, but the current deployment does not guarantee physical deletion at that moment. Abuse-prevention counters and operational logs are not targeted by the request. The same actions are available on the Mac in Reach Host → Account, including removing just that Mac from the account.
Can I open more than one screen at a time?
Yes. The workspace holds up to four independent Surfaces at once — several displays of the same trusted Mac, several Macs, or a mix. For each Surface the display picker lets you take a physical display, reuse an existing viewer-sized display, or create a virtual display; virtual-display reuse is refresh-rate aware, so it will not hand you a display running at the wrong refresh rate.
Exactly one Surface holds keyboard and pointer input at any moment. The others keep streaming, and Request control moves input to the Surface you are looking at. When two or more Surfaces are actively participating, Reach applies a workspace-wide frame-rate and bitrate ceiling to each participating stream. Each Surface opens its own connection; the ceiling comes from how many are taking part, not from sharing a link. That clamp affects the live stream only — your saved quality settings are untouched, and returning to a single Surface lifts it.
Audio is silent even though video streams fine.
Turn on Share system audio in Reach Host → Connect → Permissions, Reach captures system audio through ScreenCaptureKit; Reach Host does not request Microphone permission and ignores microphone samples. If permission needs repair, use the Screen Recording / system-audio settings Reach Host opens for you. It captures the Mac's system audio output, not just the audio of whatever is on the display you selected. No microphone input is captured or recorded — the permission is only the gate that lets system audio through.
Viewer audio follows the displayed video timeline. If audio drifts too far from the picture, Reach drops or resets the stale queue rather than playing it late, so a bad network moment can cost you a slice of audio instead of desynchronising the session.
The keyboard doesn't work.
Attach a Magic Keyboard, or any Bluetooth keyboard paired to the iPhone or iPad, and Reach hands typing off to it automatically. The workspace keeps a single hardware-keyboard responder and routes it to the Surface you are focused on, so keys land on the screen you are looking at while that Surface holds input control. The on-screen keyboard stays available for software keys. If nothing types at all, the Mac is usually missing Accessibility permission — grant it in System Settings → Privacy & Security → Accessibility and reconnect.
Video looks blurry, or frames drop.
On LAN, on the same subnet, a direct connection gives low latency. If that is not what you are seeing: (1) prefer Ethernet on the Mac, (2) stay on 5 GHz or 6E rather than 2.4 GHz Wi-Fi, (3) lower resolution or frame rate in the session settings, (4) check for background uploads eating the link. Reach streams hardware-accelerated HEVC and H.264 with adaptive bitrate over QUIC; if HEVC is unstable on your setup, H.264 is the safe fallback. Remember that a Relay session is expected to add path- and network-dependent latency, and that running several Surfaces at once lowers the stream ceiling for each of them, as described above.
How do I un-pair a device or reset trust?
Reach Host → Devices & Trust → Devices lists every trusted viewer with its fingerprint. Removing an entry revokes that pairing and closes any live session it owns. That removal also blocks automatic Reach Account and iCloud re-admission for the same fingerprint, so re-trusting the device requires an explicit pairing code. Remove it from the account as well, or sign out, only when you also intend to revoke its account-level registration.
Caps Lock switches Korean/English instead of locking capitals. Is that intentional?
Yes. A hardware Caps Lock press from the iPhone or iPad keyboard is sent to the Mac as the Korean/English input-source toggle, matching Apple keyboard behaviour. iPadOS delivers Caps Lock as an instant toggle, so there is no long-press variant. When you actually want locked capitals, use the Caps Lock key on the on-screen keyboard.
There's a small round handle floating on the screen. What is it?
That's the cursor handle. It appears in Direct Touch mode and follows the Mac's cursor, so you can drag it for pixel-precise pointer movement instead of hunting with taps. You can switch it off for yourself in the in-session side panel under Touch input → Cursor handle, and turn it off for every viewer from the Mac with Reach Host → Devices & Trust → Advanced → Cursor Telemetry → Share cursor position with viewer. The Mac-side setting persists across sessions, and viewers clear the handle as soon as it is switched off.
How do I invert scroll direction?
Open the in-session side panel and find Scroll direction. Invert touch scroll and Invert trackpad scroll are separate switches, so you can flip two-finger touch scrolling without changing trackpad scrolling, or the other way around.
Where do I get the apps?
Reach Viewer ships through the App Store as Reach Remote: apps.apple.com/app/id6762804458. Reach Host, the Mac side, is a free notarized DMG downloaded from this site; once installed it checks for updates automatically and offers an install action in its menu.
Where are the logs, if you need them for a bug report?
On the Mac, open Reach Host → Devices & Trust → Advanced → Host activity log and use Copy or Export… to save the activity log as a .txt file. On the iPhone or iPad, a failed connection shows a failure card with Copy Report — that report carries the attempt details you need (route, timings, error) with identifying details redacted, and no screen content. Attach whichever you have to the GitHub issue or the email.
Security & privacy
Every session runs over TLS 1.3 on QUIC. Trust comes from a certificate fingerprint recorded when you paired, held for that device in your Reach Account's device registry, or pinned on an explicitly authorized first direct connection (trust on first use). A later mismatch is rejected, so a session cannot be silently redirected to another machine. Your screen, audio, and input never pass through Reach infrastructure. A Relay session traverses Cloudflare TURN as encrypted packets that Cloudflare cannot read. The apps carry no tracking SDKs and no advertising, and the backend records the operational telemetry and logs needed to run and protect the service. See the Privacy Policy for the full detail.
Known limitations
- Windows and Linux hosts: not supported. Reach Host is macOS only.
- iPhone: supported as Experimental. Connection, video, and input all work, but compact-screen layout and input handling are still being refined. iPad is the reference experience.
- Older iPads: usable at lower resolutions or frame rates. Higher resolutions and frame rates have more headroom on newer devices.
- Concurrent Surfaces: the workspace and each Mac both top out at four Surfaces at once, and only one Surface holds keyboard and pointer input at a time — the rest stream until you hand control over with Request control.
- Relay latency: a relayed session adds path- and network-dependent latency compared with a direct path, so it is a fallback for networks where direct routes do not open rather than an everyday route.