Self-service app store
Employees pick approved software themselves — like a phone store, but internal and curated.
Server-side installation
The server installs with a rotating local admin password — the user needs no admin rights and sees no prompt.
No domain admin involved
One auto-rotated password per device — one cracked box doesn't open the whole network.
Traceable
Who installed what when — logged, auditable, part of the audit trail.
QR enrollment
Onboard a new device via QR code — ready in minutes.
Kiosk mode
A shop-floor tablet shows only the one app it should.
App distribution & policy
Roll out apps centrally, set restrictions, lock lost devices.
One login for everything
Single sign-on via open standard (OIDC/SAML) — one account, all tools.
Groups & roles
Who may do what comes from the directory — automatically, not by hand.
MFA & logging
Second factor and complete login logs as standard.
All on open building blocks, self-hosted. To the stack →