Telegram · Slack · Discord · Web · Bring your own model

Give a bot the keys.
Keep the signature.

Bots that answer your customers from your own documents — and a developer bot that can read logs, query databases and run deploys, where nothing destructive happens until a named person approves the exact command.

Ask it to —
  • answer this from our help centre
  • tail the last 200 lines of the api log
  • how many signups yesterday?
  • restart the payments worker
  • open a Linear issue for this bug
  • run the staging deploy script
01
What it does

Three jobs your team already does by hand.

01

Answers from your own documents

Upload PDFs, Word files, Markdown, or point it at a page. Every bot gets its own isolated RAG knowledge base — retrieval-augmented generation, so answers are grounded in your documents and cited rather than guessed. One bot can never retrieve another’s passages. When nothing relevant is found it says so instead of inventing an answer, and you can read and delete the individual chunks it drew on.

02

A developer bot with real access

Read logs over SSH, query a database, check a repository, call a REST API you registered, run a deploy script you pre-approved. Tools are attached per bot in the execution layer, so a bot never granted one cannot use it however the conversation goes.

03

A human, the moment it matters

A customer can ask for a person, or the bot escalates itself when its confidence drops. The conversation appears in a live inbox, the bot pauses mid-thread, and your agent replies through the same channel the customer is already in. Close it and the bot picks up where it left off.

02
Tools & skills

What it can reach, and what it can be taught.

Tools are what a bot may touch. Skills are named workflows you write once and invoke with a slash. Both are attached per bot, so two bots in the same workspace can have completely different reach.

What it can reach
  • Your documentsThe files you uploaded — searched deliberately, mid-answer, not just once per question.
  • Your notesUpload an Obsidian vault and every note is indexed on its own, so an answer cites the note it came from.
  • Your serversRead logs and service state, run test suites, run the deploy scripts you pre-approved.
  • Your databasePostgreSQL and MySQL. Read-only unless you say otherwise, and anything that writes asks first.
  • Your codeRead a repository — files, commits, issues and pull requests.
  • Your other appsNotion, Jira, Linear, HubSpot, Stripe, n8n, and anything else with an API.
  • The webFetch a public page when the answer is not in your own documents.

Connecting a new app is configuration, not a release. You register the address, the login and which actions count as reading — the bot never sees a password or a key.

Skills it can be taught
  • /incident-triageWork out what is broken, in the order that finds it fastest.
  • /security-auditLook for the mistakes that actually get exploited, and rank them.
  • /deploy-checkRun the checks that should pass before anything is released.
  • /daily-briefOne short digest of what happened and what needs attention.
  • /answer-from-docsAnswer strictly from the knowledge base, and say so when it does not cover it.
  • + 9 more built inOr write your own. Portable SKILL.md in and out.

⚠ A skill is text and grants nothing. It cannot add a tool, widen a scope, reach a system the bot was not given, or skip an approval.

03
Nothing to install

The evening you were going to spend on this — keep it.

The open-source way to get here is a weekend: a machine, a database, a vector extension, a queue, a reverse proxy, certificates, and a model runtime you keep feeding. Then you own all of it forever.

  • Buy or rent a server
  • Install Postgres, pgvector, a queue and a proxy
  • Wire up TLS certificates and renew them
  • Keep a machine powered, online and patched
  • Configure webhooks, tokens and scopes by hand
  • Watch it at 2am when something stops answering
  • Upgrade it, back it up, and hope the restore works
Instead
Minutes

Subscribe, choose the address your team signs in at, paste one bot token. Everything above is already running, already backed up, already patched — and it is our pager, not yours.

04
Safety

Four things stand between a prompt and your production database.

The hard part of this product was never the bots. It is giving one write access to real systems without that being a bad idea — so the safety stack is a subsystem, not a paragraph in a system prompt.

01

A rule layer beneath the model

Deterministic, and not an LLM. It force-flags any non-SELECT statement, any write, delete or deploy pattern, and anything aimed at production. The model may add a flag. It can never remove one.

02

Tools are granted, never requested

The allowlist lives in the execution layer, outside the model, so an out-of-scope request has no tool to call even if the prompt is subverted. A workflow you write is text: it cannot add a tool, widen a scope, or skip a signature.

03

The signature names one person

The approval shows the literal command, never a paraphrase — approving a summary is approving something other than what runs. Only the person who asked can sign it, it expires in minutes, and silence is a refusal rather than a default.

04

Everything is written down

Every tool run — allowed, blocked, or never answered — lands in an append-only log with the exact command, the environment, and both verdicts. The table rejects UPDATE and DELETE at the database, so it is append-only in fact rather than by convention.

No card details

Payment happens on Stripe’s own page. Nothing card-shaped reaches our servers.

Isolated by the database

Row-level security and a database role per customer — not a WHERE clause we remembered.

Append-only record

Every tool run written down. The table refuses UPDATE and DELETE.

05
Channels

One bot. Four places your customers already are.

Same persona, same documents, same spending caps, same handover inbox. Connecting a second channel changes nothing about the first.

Telegram

Direct messages and groups. Answers a mention or a reply.

Runs tools

Slack

Replies in a thread under whatever it is answering, inside your own workspace.

Runs tools

Discord

Answers /ask in your server, under your own bot name and avatar.

Runs tools

Your website

A chat widget you add with one script tag. Origins are allow-listed per site.

Answers only
06
Pricing

Priced on tokens. Capped on purpose.

Every plan carries a ceiling the platform enforces itself. Reach it and the bots pause. There is no route to a surprise invoice, because there is no overage you did not deliberately switch on.

Starter

One bot, for a small support inbox.

$29 / month
  • 500,000 tokens a month — roughly 714 messages
  • 1 bot included
  • All four channels, knowledge base, tools and the handover inbox
Choose Starter
Most chosen

Growth

More bots and more room, billed if you go over.

$99 / month
  • 3,000,000 tokens a month — roughly 4,286 messages
  • 5 bots included
  • All four channels, knowledge base, tools and the handover inbox
Choose Growth

Scale

Unlimited usage for a busy team.

$399 / month
  • Unlimited messages
  • Unlimited bots
  • All four channels, knowledge base, tools and the handover inbox
Choose Scale
Use our models

Included in the plan

Nothing to sign up for elsewhere. Your plan’s monthly tokens cover every bot, every channel and every tool call, and the platform pauses at the ceiling rather than billing past it.

Best if you want one invoice and no accounts to manage.

or
Bring your own key
No token ceiling at all.

Connect your own provider key and those tokens are billed by them, directly, at their rates — so nothing you spend counts against a plan quota and nothing pauses at a ceiling. You still get the bots, the channels, the tools, the inbox and the audit log.

Set per bot, so a customer-facing bot can run on ours while the developer bot runs on yours.

  • OpenAI
  • Anthropic
  • Gemini
  • Deepseek
  • Ollama · self-hosted

Prices excluding tax. Your key is encrypted under your workspace’s own key and is never sent anywhere but the provider you registered it for.

07
Start

Your workspace is ready in about a minute.

Choose a plan and the address your team signs in at. The first bot can be answering before the end of the meeting you are supposed to be in.