All lights burningGoverned by default · your tenant, your rules
Let them build. In marked water.
Your teams already build their own tools — usually on something nobody approved. Studio for business gives them somewhere proper to do it: your sign-in, your branding, your rules about who may do what, and a written record of all of it.
- Sign-in
- Your ownMicrosoft Entra or Google Cloud Identity — not another account
- Environment
- BrandedYour name on it, your tenant, separated from everyone else
- Shadow IT
- NoneA sanctioned place to build, so nothing has to hide
- Day-2 ops
- ManagedHosting, deployment, backups and updates handled for you
The fairway
They are going out either way. The only question is whether the water is marked.
This coast is sailed all winter, in the dark, by people who are not being brave. It is sailed because somebody surveyed it, lit it and published the chart. Locking the sea was never on the table.
Where the work goes today
- The spreadsheet that quietly runs a department
- A tool somebody’s nephew wrote, on their own account
- A subscription nobody can cancel, because a process depends on it
- Data in three places, and no list of which three
Where it goes instead
- One environment, with your company’s name on it
- Your own sign-in and the groups you already maintain
- Permissions enforced at the data, not on the screen
- A record of who built what, changed what and read what
- Hosting, deployment and backups run for you
- Everything exportable, the day you ask
The sector light
You decide who may do what. Before anybody has to ask.
Written against the groups you already maintain in Microsoft Entra or Google Cloud Identity — so there is no second list of people to keep in step with the first.
Light listSource · your identity provider
| Group | Build apps | Reach live data | Publish company-wide | Manage the tenant |
|---|---|---|---|---|
| Everyone | Not allowed | Not allowed | Not allowed | Not allowed |
| Builders | Allowed | Limited | Not allowed | Not allowed |
| Team leads | Allowed | Allowed | Limited | Not allowed |
| IT administrators | Allowed | Allowed | Allowed | Allowed |
Change somebody’s group in your directory and their access here changes with it — including on the day they leave. There is no separate list to remember, which is the list that always ends up wrong.
Separated by tenant
Each company gets its own environment, with its own data and its own branding. Nothing is shared with anybody else — by architecture, rather than by promise.
Enforced at the data
Permissions are applied where the records live, so an application cannot accidentally hand somebody a row they were never allowed to see.
Written down
Who built what, who changed it and who reached which data is recorded. The answer is ready before the audit gets round to asking the question.
On the record
A rule nobody can see is not a rule. It is a hope.
None of the shadow tooling in your company came from people being reckless. It came from people waiting. Give them a lit, marked, sanctioned place to build and the useful work comes back into the open, where it can be supported, audited and — when it turns out to matter — properly adopted.
Click anywhere in the dark to send a ping.waiting for a return…
Specification
What your teams get. What you keep.
01
From need to deployed app
A business need becomes a working internal application in minutes, with the screens and the backend delivered together rather than as two separate projects with two separate waits.
02
Your sign-in, your groups
Single sign-on with Microsoft Entra or Google Cloud Identity. The groups you already maintain decide who reaches which data, actions and applications — there is no second directory to keep in step.
03
A sanctioned place to build
Teams get room to solve their own problems without standing up unapproved tools on a company card. The useful things they build stop being invisible to you.
04
Managed day-2 operations
Deployment, hosting, authentication and backend management are handled for you, so the tool somebody built in March is still running, still patched, in November.
Usually built here first
- Internal HR portals
- Inventory and operations trackers
- Sales and pipeline dashboards
- Line-of-business workflows
- Field and site reporting
Nothing locked in
Everything visible. No door that locks behind you.
A governed platform is only worth having if you can also walk away from it. Your data, your database structure and the code of every application your teams build export in full, whenever you ask for them.
- Single sign-on with Microsoft Entra or Google Cloud IdentityGo
- A branded, separated environment for your company aloneGo
- An audit trail of who built, changed and reached whatGo
- Managed hosting, deployment and backupsGo
- Full export of data, structure and application codeGo
The rest of the fleet
Same water, two other vessels.
One platform underneath all three. Pick the depth you want to work at.
Describe what you need and get a working app — backend, logins and hosting included — as reviewable code your team stays in control of.
Read the briefRestAPI.com
Model your data, get documented REST APIs instantly, add security policies and server-side logic, then scale without running infrastructure yourself.
Read the briefCome alongside
Bring us the tool nobody will admit to running.
Half an hour with the people who built the platform: your identity provider, your rules, and an honest answer about what it would take to move that spreadsheet somewhere safe.