Put the app your team built behind company login.

Someone on your team built something useful with an AI coding tool. Right now it is either on their laptop or on a public URL with a password taped to it. OurTools gives it a real address that only the right people can open.

14 days free, no card. Pick the region each app runs in, anywhere we can reach.

Three steps, then it is just a link

The whole point is that nobody has to learn a deployment platform to share the thing they built.

Point it at your code

Drag in a folder or a zip, run one command, or let your coding agent deploy for you.

We build and run it

Static sites, Vite, Next.js and single-file Python. The app sleeps when nobody is using it and wakes on the next request.

Choose who gets in

Send the link to one colleague or the whole company. Change your mind later and it takes effect in seconds.

What you get

Everything here exists because a tool built in an afternoon still ends up holding real company data by Friday.

01

Login is not your problem

Google and Microsoft sign-in is enforced at the edge, before a request ever reaches the app. The code your team wrote does not contain a single line of auth.

02

Sharing that IT can approve

Private, whole workspace, or a named list of people. View or edit. Every open is written to an audit log your admin can export.

03

Your region, your rules

Choose where each app runs when you create it, from dozens of regions across North America, Europe, Asia, South America, Africa and Australia.

04

Any database, including yours

Already using Supabase, MongoDB Atlas, Firebase or the company database? Paste the connection string and you are done. Or ask us for Postgres, MySQL or SQLite and the app gets one, wired in for you.

05

Versions and a way back

Every deploy is a version. Roll back in one click. A build that fails never replaces the version that works.

06

One kill switch

An admin page listing every tool in the company, who can reach it, and a button that stops any of them in seconds.

Run it where the data has to live

Pick a region per app, not per account. A team in New York and a team in Frankfurt can each keep their tool close to home, under one workspace and one bill.

  • South CarolinaUnited Statesus-east1
  • OregonUnited Statesus-west1
  • LondonUnited Kingdomeurope-west2
  • NetherlandsNetherlandseurope-west4
  • TokyoJapanasia-northeast1
  • SingaporeSingaporeasia-southeast1
  • SydneyAustraliaaustralia-southeast1
  • Sao PauloBrazilsouthamerica-east1

43 regions in total. Change your mind and redeploy somewhere else.

Bring your database, or let us hand you one

Most teams already have somewhere their data lives. If yours does, set the connection string like any other environment variable and there is nothing else to do. It stays encrypted, and the dashboard shows what an app is connected to without ever showing the credential.

If you do not have one, ask and the app gets its own, with the connection string already in its environment. No console to visit, nothing to copy across.

  • Yours. Supabase, MongoDB Atlas, Firebase, Neon, PlanetScale, or the database your company already runs.
  • Postgres. Managed by us, in the same region as the app.
  • MySQL. Same deal, for the apps and agents that reach for it.
  • SQLite. For a single-instance tool. We keep a backup for you and tell you exactly how recent it is.

Built so your security review is short

The reason internal tools end up on public URLs is that doing it properly used to mean writing auth. Here it is a property of the platform, not of the app.

We publish what we do and what we have not built yet. Ask us for the threat model and we will send it.

  • Apps have no public address of their own. The only route in is the proxy that checks your identity first.
  • The proxy strips any header a caller tries to forge and passes the verified user to your app.
  • Environment variables are encrypted before they are stored and are never returned by the API after you write them.
  • Deploy, share, access, rollback and kill are all written to an append-only audit log.
  • Uploads are size capped and every archive entry is checked for path traversal before it is opened.
  • Admins can revoke a person, an app, or a whole workspace without touching the code.

Unlimited builders. Unlimited users. Pay for the apps people use.

An app only counts if somebody actually opened it this month. Everything else is archived, kept safe and costs nothing.

Start free for 14 days

14 days of Team, no card required. Unlimited builders and users, 10 active apps, sharing on from the first minute. Subscribe when you are ready, in the product.

Already have tools on Lovable, Bolt, Replit or Base44? Run the free scan.

Start free trial

Business

$199 per month

billed monthly

When IT needs single sign-on and an audit trail.

  • 30 active apps included, $5 per extra
  • Single sign-on and audit log with CSV export
  • Second managed engine included
  • 20 GB storage, 200 GB egress
  • 10 always-on apps
  • Priority support
Start free trial

Agency

$299 per month

billed monthly

For people building tools on behalf of clients.

  • 3 client workspaces, $79 each after that
  • 30 active apps pooled, $5 per extra
  • Team allowance in every workspace
  • Second managed engine included
  • Hand a workspace to the client at any time
  • Priority support
Start free trial

What counts as an active app

An app is active in a month if it received 10 or more requests from people signed in, or you deployed it. Health checks, uptime pingers, cron jobs, bots and anonymous traffic do not count. Your own use of your own tool does.

Everything else is archived. The code, the database and the settings are kept, the app stops running, and it costs nothing and does not count toward your allowance. Waking one takes a click and under a minute. The dashboard shows the request count for every app, so the bill is never a surprise.

Apps untouched for 90 days are flagged for deletion with 30 days notice, and you can always extend. Archived apps still use storage, so storage still counts.

Fair use, in plain terms

Apps are meant for your own staff and contractors. Public-facing apps are allowed and count against egress. Bundling unrelated tools into one app to stay under the allowance counts as several apps, and we will ask before billing it that way.

Always-on is for tools that need to answer instantly during business hours. An app with no traffic for 14 days goes back to sleeping when idle.

New workspaces pay no overage for the first two billing months. Usage is capped at twice the allowance during that time and shown in the dashboard.

Unit pricing

UnitTeamBusinessAgency
Base, per workspace$79$199$299 for 3
Builders and usersFree, unlimitedFree, unlimitedFree, unlimited
Active app beyond included$6$5$5
Always-on app beyond included$7$7$7
Storage beyond included$1 per GB$1 per GB$1 per GB
SQLite storage beyond included$0.50 per GB$0.50 per GB$0.50 per GB
Second managed engine$9 per monthIncludedIncluded
Egress beyond included$0.12 per GB$0.10 per GB$0.10 per GB
Additional region$49$49$49
Additional workspacen/an/a$79

A larger database instance is quoted in the dashboard. Annual billing covers the base price; apps, storage, egress, always-on and regions stay monthly.

Tell us what your team built.

We are letting in a small group at a time so we can fix the build failures people actually hit. Send us a line about the tool you want behind login and we will get you in.