Our product for the mid-market

Kinster: your business departments build apps. Safely.

Kinster is the self-hosted app platform that lets business departments build internal web apps AI-assisted right in the browser and take them live through a defined review process. One protected entry point for all apps, single sign-on, database, deployments and monitoring included. needful-apps operates the platform on your server and reviews every app before go-live.

Kinster dashboard: app overview with live apps and apps in development, service status and a pending approval notification
The Kinster dashboard: every app at a glance, what is live, what is in development and what is waiting for approval.

From idea to app: describe instead of code

A new app starts with a form: a name, who may see it, and one sentence about what it should do. Kinster turns that into a ready-made project: backend, frontend, database wiring and the working instructions for the AI assistant. The department opens VS Code in the browser and keeps building with the integrated AI agent, inside the guardrails the platform sets.

“Create new app” dialog in Kinster: name, subdomain, groups and a description of what the app should do; the AI starts from it directly
Creating a new app: the description lands in the project as a task, and the AI assistant in the browser IDE picks it up directly.
App detail page in Kinster with automated checks, workflow steps and VS Code in the browser with the app template open
Developing in the browser: VS Code with an AI agent, automated checks and the path to approval above it, all on one page.

Vibe coding with guardrails: the review process

With Kinster, AI-generated code never goes live unchecked. Automated checks block broken versions at submission, then needful-apps reviews every app and every major update. Only after approval does it deploy: without interruption, with one-click rollback.

Approvals view in Kinster: a submitted app with the results of the automated checks and actions to approve or reject
Pending approvals: every submitted app carries the results of its automated checks. Approval is a deliberate act, not a side effect.

Automated checks

Secret scan, dependency audit (npm audit), CVE scan of the container images and database migrations with mandatory row-level access rules. What fails cannot even be submitted.

Review by needful-apps

Every new app and every major update is reviewed by us before go-live: architecture, security, data access. Business logic belongs in the backend, never in the browser. That is a platform rule, not a recommendation.

Zero downtime & rollback

Deployments run without interruption; the previous version stays ready. If something goes wrong, one click brings back the last working version, deployment history included.

Everything traceable

An immutable audit log of every action, comment threads with attachments on every app and an hours quota for reviews, all transparent in the dashboard.

What Kinster takes care of

One login for everything

Employees sign in via single sign-on with their company account, external partners with email, password and MFA. Groups control who sees which app: managed centrally, no per-app logins.

Database included

Every app automatically gets its tables in a Supabase database on your server, with row-level access rules and versioned migrations. No separate database project.

Development environment in the browser

VS Code runs on the server, reachable from any browser, with a pre-connected test database, Git and an AI assistant in the terminal. No setup on the workstations.

Monitoring & alerts

Every app is monitored from the outside, outages trigger email alerts. The dashboard shows status, response times, logs and container health of all services.

Security scans in operation

Running apps are continuously checked for known vulnerabilities (CVEs). Findings show up right on the app tile and detail page, with severity.

Backups that come back

Daily backups of databases, configuration and app code, stored tamper-proof in append-only mode and regularly restore-tested for recoverability.

One-click updates

The admin installs platform updates from the dashboard; daily housekeeping cleans up old containers and images automatically. Operations runbook included.

Bilingual from the start

The dashboard and every new app speak German and English. Internationalization is part of the app template, not an afterthought.

100% self-hosted

Your server, your German data center, your GitHub organization for the app code. Docker Compose instead of a cloud subscription. Production data never leaves your company.

Platform plus partnership

Kinster is not a tool we hand over and leave: needful-apps sets up the platform on your server, migrates existing tools, trains your departments (four half-days, online) and stays responsible afterwards: server maintenance, monitoring, backups and the code review of every new app, with agreed response times.

You keep control: your server, your data, your code. We make sure it turns into reliable software.

More background in our articles Ending shadow IT: from Excel sprawl to an internal app platform and Vibe coding in the enterprise: why AI-generated code needs a review.

Frequently asked questions about Kinster

What is Kinster?

Kinster is a self-hosted app platform for companies: one central, protected entry point through which employees and external partners access internal web apps. Business departments build new apps AI-assisted right in the browser and take them live through a defined review process. needful-apps operates the platform and reviews every app before go-live.

Do business departments need to know how to code?

Basic understanding is enough. Every new app starts from a template with a ready-made project structure, database wiring and working instructions for the AI assistant. Development happens in VS Code in the browser with an integrated AI agent: the department describes what the app should do, the AI implements it within the guardrails. Onboarding training is part of the offer.

How does Kinster keep AI-generated apps safe?

Guardrails instead of trust: automated checks (secret scan, dependency audit, CVE scan of the containers, database migrations with mandatory access rules) block submissions that fail. On top of that, needful-apps reviews every app and every major update before it goes to production. Business logic always lives in the backend, never in browser code.

How do users sign in?

Via single sign-on: employees use single sign-on with their existing company account, external partners register with email and password plus multi-factor authentication. Groups control who sees which app: managed centrally, no per-app logins.

Where does Kinster run and who owns the data?

On your own server in a German data center, operated with Docker Compose, without cloud dependency, no data sharing. App source code lives in your own GitHub organization, data in a Supabase database on your server. Daily backups are stored tamper-proof (append-only) and regularly tested for restorability.

What happens if an app goes down?

Deployments run without interruption (zero downtime); if something goes wrong, one click rolls back to the previous version. Monitoring checks every app from the outside, alerts go out by email, and the dashboard shows status, logs and deployment history for every app.

What does Kinster cost?

Kinster consists of setup, license and ongoing care (server maintenance, monitoring, code review, response times per agreement). Pricing depends on scope and number of users, and you get a transparent quote in a free initial consultation.

See Kinster live?

30 minutes on a video call: together we create an app, from idea to preview. Request a demo, no strings attached.