Skip to content

Move fast, break nothing.

Decide who can build, what they can reach, and what it costs. Every action is recorded. On our EU cloud, or entirely inside your own network.

  • Use the models you pay for

    Add your OpenAI, Anthropic or Bedrock key once, then choose the models each team uses.

  • Grant one action, not the app

    You pick the exact actions an agent can call, and lock the inputs it must not change.

  • Choose which steps need a yes

    Mark the steps that need sign-off. The agent runs everything else without pausing.

AnthropicOpenAIGoogle GeminiAWS BedrockAzure OpenAIMistral AIOpenRouterCloudflare AI Gateway
  • See what each team spends

    Every run is priced by the model used, so AI cost lands on the project that spent the money.

  • Read back what an agent did

    Every prompt, tool call and payload is saved, so an auditor reads what really happened.

  • The enterprise AI ecosystem, for all of your agents.

Alan
“We needed a solution that could integrate our ecosystem and our internal data, without hosting it in the US.”

Guillaume Durand

Product Marketing Lead, Alan

AI-powered health insurance, 700 employees

300+

Workflows deployed, from zero

$500k+

Saved annually

6,300+

Hours reclaimed

Start with one team. Roll out to the entire organization.

Adopt

Give one team a project of its own.

One team builds in its own project, on the integrations you approve. Only the people you add can open it, so the first automations reach production without touching anyone else's work.

  • Its own project
  • Approved integrations only
  • In production in days
EngineeringYour project
24
Flows
9
Connections
3
Tables
12 members
FinanceOut of reach
SupportOut of reach
Revenue opsOut of reach
Data platformOut of reach

Ship with confidence

Scoped tool access

An agent reaches only the individual actions you grant it, never the whole app behind them.

Approval gates

An agent stops on anything that writes and waits for a person to approve the exact call.

Centralized keys

Provider keys are held and rotated in one place. Builders pick a model, never a secret.

Execution tracing

Reasoning, tool calls and payloads are kept, so a review reads the run, not a summary.

Spend governance

Every run is metered and billed to the project that spent it, under a ceiling you set.

Operational alerts

Failures email the people you nominate, and webhooks push run events wherever you want.

SSO, SCIM, RBAC

Identity from the directory you already run, with roles and access scoped per project.

Data residency

Run on our EU cloud, or deploy the whole platform inside your own network.

Open and audited

Audited against SOC 2 Type II, with the source on GitHub and the core under MIT.

What your security team will ask

No. Connections are resolved inside the worker at run time. They are never returned by the API and never shown back in the interface, so a flow can use a credential without anyone reading it.

Keep those flows in their own project and give the wider organization viewer rights there, or none at all. A project is a boundary, not a label.

SCIM removes them in step with your directory. Deactivating a person revokes access and frees the seat without deleting their projects, so the work they built keeps running.

Yes, and it is how most rollouts start. Give one project a narrow role set, watch it in the audit log, then widen the roles rather than rebuilding anything.

Failure alerts go by email to the addresses you nominate. Beyond that, platform and project webhooks push execution and audit events, every finished run included, to any destination you own, including back into a flow of your own.

The source is on GitHub, with the core under MIT, so your team can read how permissions, connections and execution are implemented rather than take our description of them on trust.