Single-tenant AI agents,
managed end-to-end.
A dedicated agent VPS per business — hardened, backed up, updated, and monitored. You bring the use case; we run the box.
The choice today is shared SaaS or DIY ops. Both are wrong for serious work.
Shared AI tools mix your data with everyone else's and lock you into platform decisions. Self-hosting puts hardening, backups, updates, and on-call on a team that should be building product. There's a third option.
Read: Why single-tenant mattersOne VPS per tenant — hard isolation
Every business gets its own dedicated server. No shared runtime, no co-mingled data, no noisy-neighbour blast radius. Your agent, your box, your memory store — provisioned on Hetzner Cloud and yours alone.
Hardened by default
Tailscale mesh, fail2ban, key-only SSH, unattended security upgrades, locked-down sudo tiers.
Encrypted backups
Nightly borg snapshots to immutable storage. 7-day / 4-week / 6-month retention, point-in-time restore.
Snapshot-first updates
OS patches and agent upgrades run behind a snapshot + acceptance gate, with automatic rollback.
Monitored continuously
A watchdog checks gateway health, disk, and backup age every couple of minutes and self-heals.
Operated for you, with guardrails
Provisioning, updates, restores, health checks, and re-pairing are handled by us. The agent runs in manual-approval mode for dangerous actions, with file-edit checkpoints and rollback — so it stays useful without going off the rails.
Use cases
What people actually use these for
Customer support
Trained on your product, hands off to humans when it should.
Internal ops co-pilot
A second pair of hands that remembers who said what.
Research assistant
Long-running monitoring + briefings in your domain.
Technical PA
Shell + code, approval-gated. The agent proposes; you confirm.
From the blog
How we think about this
Why single-tenant AI agents matter for businesses
Shared SaaS AI tools mix your business data with everyone else's. Single-tenant deployments draw a hard line — and they don't have to be hard to operate.
6 min readSecurityHow we harden every AI agent deployment
An agent box is a privileged target: it talks to your messaging platforms, holds API keys, and can run commands. Here's what hardened means for us.
8 min readOperationsBackups for AI agents: what to actually protect
Backing up an agent isn't 'tar /home and call it done.' The interesting parts are which directories matter, which ones must stay out, and how you actually restore.
7 min readFrequently asked
The questions we get most
- Where does my data live?
- On a single-tenant VPS dedicated to your business. Nothing is co-mingled with any other customer's data.
- What if I want to leave?
- The agent runtime is open source. We hand you a complete export plus the runbook to self-host it.
- How are you priced?
- Per deployment, quoted on a scoping call. Reflects VPS class, support scope, and your model usage.
Want an agent of your own?
Access is invite-only during the preview. Tell us about your use case and we'll get you set up.
Request access