The internal app store for your team's AI-built tools.
Give every app a home on your own domain, behind your company login, hosted in the EU. Whether it was built in ChatGPT, Claude or Lovable.
- ✓ secrets — 0 found
- ✓ dependencies — 2 patched
- ! third-party calls — 1 to review
- ✓ home — eu-north-1 · owner maja.l
- Brief Bot
- Quote Tool
- Price Sandbox
- HR FAQ
Your team is building. The apps have nowhere to live.
Link chaos
The budget tool is on one link, the campaign calculator on another, the onboarding guide on someone's personal account.
No owner
Who built it? Who fixes it? Nobody's quite sure — until it breaks.
The day they leave
When the person who built half your tools moves on, the apps quietly go with them.
Public by accident
Thousands of AI-built apps with company data are open to the internet. Most never meant to be.
You shouldn't have to choose between one expensive tool for everyone and banning it all.
From "look what I made" to "it's live for everyone" in three steps.
Bring it in
Connect a GitHub repo, upload the code, or link an app that already runs somewhere. Built in ChatGPT, Claude or Lovable? Same thing.
Duck checks it
Every deploy is scanned for leaked keys, known vulnerabilities and accidental public access. Each finding comes with a fix.
It moves in
Your app goes live on your own domain, behind your company login, with a named owner. Colleagues press Open.
Whatever built it, it lives here
Apps come in from any tool. Duck checks them, they move in on your domain behind your login, and your people press Open.
They build it anywhere
ChatGPT, Claude, Lovable, Replit, a zip from someone's desktop. We don't care which tool built it.
Duck checks it
Secrets and personal data scanned, moved into the EU, login enforced, owner named. Minutes, start to finish.
Your people just open it
The app lands on your own shelf, behind the login they already use. IT keeps the list and the off switch.
Someone on your team built a tool on a Tuesday. Six months later nobody knows where it lives or who owns it. That's the part we fix.
Everything an internal app needs. Nothing it doesn't.
Your own app shelf
A branded catalog where colleagues find every internal tool. Your logo, your colours.
Your domain
No more random .app links. Every tool lives at an address people trust.
Your login
Sign in with Google Workspace or Microsoft. No new accounts, no seat licences for viewers.
EU-hosted
Apps and data stay on European servers. Always.
Duck checks every deploy
Leaked secrets and risky dependencies are caught before they go live.
An owner on every app
Every app has an owner and a backup. When someone leaves, ownership moves — the app stays.
Usage at a glance
See which apps people actually use, and which ones can retire.
Link what's already out there
An app on Lovable or ChatGPT can go on the shelf today, with an owner. Move the code in when you're ready.
The page your IT team will actually like
Yellow Duck doesn't ask IT to trust a vibe. It gives them a list: every app, who owns it, where it runs, what the last check found, and who opened it. And a switch to turn it off.
- Company login via Microsoft Entra ID or Google Workspace
- EU hosting, isolated per app
- A check report on every deploy
- Audit log: who built, deployed, changed and opened what
- One-click off switch per app
- Code stays yours — export anytime
| app | owner | status |
|---|---|---|
| campaign-brief-bot | maja.l | live |
| quote-tool | tobias.k | 2 to fix |
| pricing-sandbox | sofie.n | live |
| hr-faq-assistant | anders.p | switched off |
Simple pricing. No per-viewer licences.
Pay for the apps, not for every colleague who opens them.
- Up to 10 apps
- Company login
- EU hosting
- Checks on every deploy
- Up to 50 apps
- Your own domain
- Owner hand-over
- Usage per app
- Unlimited apps
- Audit log export
- Priority support
- DPA signed online
All plans: unlimited viewers, cancel anytime, no sales call required.
Questions people
ask first
Do we have to stop using our AI tools?
No. Keep building wherever you like. Yellow Duck is where the finished apps live.
Does everyone need an account?
No. Colleagues sign in with the company login they already have.
Where is our data?
On servers in the EU. The region is shown on every app. Every control is listed on the trust page.
What happens if we leave?
Your code is yours. Export it anytime.
Is this a replacement for IT approval?
It's what makes approval quick. IT sees everything and keeps the off switch.
Why a duck?
Ask a developer about rubber duck debugging: you explain your code to a little yellow duck before you ship, and saying it out loud catches the problems. Yellow Duck is that friendly check — and the place the app lives afterwards.
Every app needs a home.
Your team has already built the tools. Give them an address.