Trusted by IT teams worldwide
One platform. All the tools. On your infrastructure.
Push apps, updates, and configurations to any Mac in your fleet via Munki — silently, reliably, at scale.
Real-time check-in telemetry, compliance scoring, and OS inventory across every enrolled device.
Self-hosted RustDesk relay for zero-configuration screen sharing — no third-party cloud required.
Serve multiple organisations from a single stack. Full data isolation, per-tenant branding and manifests.
Your infrastructure, your data. Docker Compose deployment. No vendor lock-in. No data leaves your server.
20+ features for complete Mac fleet management — all included.
Auto-group devices by OS, department, compliance status, or any custom criteria.
Trigger external actions on device events. Slack, Teams, or any HTTP endpoint.
Programmatic access with scoped permissions. Rotate, revoke, and audit in real time.
Ollama-powered fleet Q&A with a knowledge base. Ask anything about your devices.
Auto-detect and remediate issues. Push fixes without touching the device.
8 roles, 17 permission scopes, and optional department scoping for fine-grained access.
Auto-apply manifests when a device matches Smart Group criteria at check-in.
Time-based package rollouts. Schedule updates for off-hours to minimise disruption.
5 locales (EN/DE/FR/ES/IT) for the client-facing Managed Software Center UI.
PDF export, 0-100 compliance scoring per device, and aggregate fleet overviews.
Cache Munki content closer to remote offices. Reduces WAN traffic and speeds installs.
Offsite encrypted database backups to S3-compatible storage. 14-day retention by default.
Enterprise SSO integration. Azure AD, Okta, Google Workspace — all supported.
Per-tenant logos, brand colors, and fully themed Managed Software Center experiences.
Auto-sort devices into departments at enroll time via PKG or shell installer.
WebSocket activity stream shows check-ins, approvals, and installs as they happen.
Pin or unpin app versions per device or manifest. Auto-compatibility enforcement.
Integrated NetBird WireGuard mesh for secure remote access without a corporate VPN.
All plans are self-hosted. Your server, your data, your rules.
All plans are deployed on your own infrastructure. No data leaves your server. Need a custom deal? Get in touch.