Use the desktop version
IaC Code desktop is a native application that combines cloud resource planning, IaC generation and validation, cost estimation, stack management, and project and session management. Use the desktop version to manage cloud resources through a graphical interface without setting up a Python environment separately.
Prerequisites
An operating system and processor architecture that are supported by the desktop version.
Access to the official IaC Code download link and to the model service that you use.
An API key for the model service. To query or manage Alibaba Cloud resources, you also need an Alibaba Cloud identity with the required RAM permissions.
A project directory that is readable and writable by the current operating system user. IaC Code reads IaC files from and saves task artifacts to this directory.
The desktop version already includes the environment required to run IaC Code. You do not need to install Python or install iac-code through pip separately.
Download the desktop version
Download the latest stable version for your platform from the following fixed addresses:
Operating system | Architecture | Package | Update method |
macOS | Apple Silicon (arm64) | In-app update | |
Windows | x64 | In-app update | |
Linux | x64 | In-app update | |
Debian, Ubuntu | x64 | Install the new package |
The addresses always point to the latest stable version for each platform. You do not need to update the download links after each release. For earlier versions, checksums, or the software bill of materials (SBOM), visit GitHub Releases.
Install the desktop version
macOS
Open the downloaded DMG file.
Drag IaC Code to the Applications folder.
Start IaC Code from Applications.
Official release packages are signed with an Apple Developer ID and notarized by Apple. If the system still reports that the developer cannot be verified, confirm that the file comes from the official address and verify it against the checksums provided on GitHub Releases.
Windows
Run the downloaded EXE installer.
Follow the installation wizard to complete a per-user installation, and then start IaC Code from the Start menu or the desktop shortcut.
On first launch, wait for the environment check to finish. If Git Bash is not installed on Windows, the start page provides a quick installation entry. After Git Bash is installed, restart IaC Code.
Official Windows release packages carry an Authenticode publisher signature. If Microsoft Defender SmartScreen still shows a warning, verify the publisher and the checksum before you decide whether to continue.
Linux AppImage
Add execute permissions to the AppImage package and start it.
chmod +x iac-code-linux-x64.AppImage
./iac-code-linux-x64.AppImageAn AppImage runs directly and does not need to be installed into a system directory. Whether the desktop environment creates an application launcher depends on your distribution and desktop settings.
Debian or Ubuntu
Install the deb package with APT so that the system handles the required dependencies.
sudo apt install ./iac-code-linux-x64.debAfter the installation completes, start IaC Code from the application menu.
Complete the initial configuration
Start IaC Code and select a project directory. This directory serves as the workspace for file reads, IaC generation, tool execution, and sessions.
Open Settings > Model, select a model provider and a model, and enter the API key. If you use a compatible endpoint, enter the API base URL as needed.
Save the configuration and set the model as the current model. Configure parameters such as the reasoning effort and the maximum output tokens as needed.
To query or manage Alibaba Cloud resources, open Settings > Cloud Credentials, set the default region, and select an authentication method:
Authentication method
Scenario
AccessKey
Calls Alibaba Cloud APIs with a RAM user identity.
Security Token Service (STS) token
Uses a temporary identity with an expiration time.
RAM role
Uses a base identity to assume a target role.
ECS RAM Role
Uses an instance RAM role when IaC Code runs on an ECS instance.
OAuth browser logon
Completes user authorization through a browser.
Save the cloud credentials and confirm that both the model and the Alibaba Cloud entry show as available.
The desktop mode, REPL, Headless, and Web versions all share the configuration and sessions under ~/.iac-code/ by default. If you use a different configuration directory via IAC_CODE_CONFIG_DIR, you need to launch the desktop version from the same environment in order to read the corresponding configuration.
Create your first session
Click New chat and confirm the current project directory and model.
Select the normal mode or an applicable Pipeline, and set the permission mode based on your task.
Enter the following read-only request.
Query the ROS stacks under the current account in cn-hangzhou, group them by status, and explain the reasons for any exceptions. Query only. Do not perform write operations.View the execution progress and tool calls displayed by IaC Code. When a permission request appears, review the tool, parameters, region, and target resources before you approve or reject it.
Expected result: IaC Code queries the stacks and returns the grouped results with exception explanations. The tool calls and approval records remain in the current session. You can then ask IaC Code to perform the following tasks: plan a new environment, select cloud resources, generate and validate ROS or Terraform configurations, estimate costs, complete the deployment or change after confirmation.
Use the desktop workbench
Feature | Available operations |
Projects and sessions | Switch projects. Create, search, pin, rename, archive, or restore sessions. |
Session input | Switch the model, reasoning effort, and permission mode. Reference project files or upload images. |
Tools and approvals | View tool parameters, execution results, and errors. Approve or reject file, command, and cloud operations. |
Pipeline | View solution candidates, architectures, validation results, costs, deployment progress, and diagnostics. |
Settings | Manage models, cloud credentials, permissions, language, theme, memory, and other runtime options. |
Skill and MCP | View skills and enable or disable them. Add, inspect, authenticate, or delete MCP servers. |
The desktop version supports English, Simplified Chinese, Japanese, French, German, Spanish, and Portuguese. You can change the interface language and color theme in Settings > General.
Update and uninstall
The macOS, Windows, and AppImage versions support checking for and installing stable updates within the app. Update packages are signature-verified before installation. The deb version does not use in-app updates. Download and install the new deb package instead.
Uninstalling the desktop version does not automatically delete the model configuration, cloud credentials, sessions, and logs in ~/.iac-code/:
macOS — Quit the app and remove IaC Code from Applications.
Windows — Open Settings > Apps > Installed apps and uninstall IaC Code.
AppImage — Quit the app and delete the AppImage file and any launcher that you created.
Debian, Ubuntu — Uninstall IaC Code through the system package manager.
Manually clean up the configuration directory only after you confirm that the existing configuration and sessions are no longer needed.
FAQ
The app stays on the start page
Retry with the recovery actions provided on the start page, and open the diagnostics directory to view the logs. Common causes include incomplete application files, a port in use, and a failed runtime component startup. Keep the diagnostic logs before you reinstall so that the issue can be identified.
Windows reports that Bash cannot be found
Shell tools on Windows depend on Git Bash. Use the quick installation entry on the start page to complete the installation, and then quit and restart IaC Code. If Git Bash is still not detected, confirm that Git for Windows is installed correctly and that the current user can start Git Bash.
The model or cloud credentials show as unavailable
Open Settings and check the model name, API base URL, API key, Alibaba Cloud authentication method, and default region. If temporary credentials expire, refresh them or log in again. The RAM identity also needs the least privilege for the target operations.
Sessions from the REPL or web version are not visible in the desktop version
Confirm that all run modes are started by the same operating system user and use the same IAC_CODE_CONFIG_DIR. Sessions are also associated with the project directory, so confirm that the desktop version has the correct project selected.
AppImage fails to start on Linux
Confirm that the file has execute permissions, and run it from a terminal to view errors. Your distribution may also require the FUSE compatibility component that AppImage needs. On Debian or Ubuntu, you can use the deb package instead.