Build anywhere. Your apps live here.

The internal app store for your team's AI-built tools.

Give every app a home on your own domain, behind your company login, hosted in the EU. Whether it was built in ChatGPT, Claude or Lovable.

EU-hosted · sign in with Google or Microsoft · no per-viewer licences · set up in 5 minutes
Moving in · campaign-brief-bot
  • secrets — 0 found
  • dependencies — 2 patched
  • ! third-party calls — 1 to review
  • home — eu-north-1 · owner maja.l
live at brief-bot.apps.acme.com
Acme · internal apps 14 apps
  • Brief Bot built in Lovable · maja.l
  • Quote Tool built in ChatGPT · tobias.k
  • Price Sandbox Claude Code · sofie.n
  • HR FAQ built in Claude · anders.p
one shelf · your domain · your login
Apps built in ChatGPT, Claude, Lovable, Replit, Cursor, v0 — or anything in a GitHub repo
ChatGPT Claude Lovable Claude Code Replit bolt.new v0 Cursor a zip from your desktop
The mess

Your team is building. The apps have nowhere to live.

Link chaos

The budget tool is on one link, the campaign calculator on another, the onboarding guide on someone's personal account.

No owner

Who built it? Who fixes it? Nobody's quite sure — until it breaks.

The day they leave

When the person who built half your tools moves on, the apps quietly go with them.

Public by accident

Thousands of AI-built apps with company data are open to the internet. Most never meant to be.

You shouldn't have to choose between one expensive tool for everyone and banning it all.

How it works

From "look what I made" to "it's live for everyone" in three steps.

01

Bring it in

Connect a GitHub repo, upload the code, or link an app that already runs somewhere. Built in ChatGPT, Claude or Lovable? Same thing.

02

Duck checks it

Every deploy is scanned for leaked keys, known vulnerabilities and accidental public access. Each finding comes with a fix.

03

It moves in

Your app goes live on your own domain, behind your company login, with a named owner. Colleagues press Open.

In motion

Whatever built it, it lives here

Apps come in from any tool. Duck checks them, they move in on your domain behind your login, and your people press Open.

They build it anywhere

ChatGPT, Claude, Lovable, Replit, a zip from someone's desktop. We don't care which tool built it.

Duck checks it

Secrets and personal data scanned, moved into the EU, login enforced, owner named. Minutes, start to finish.

Your people just open it

The app lands on your own shelf, behind the login they already use. IT keeps the list and the off switch.

Every app needs a home

Someone on your team built a tool on a Tuesday. Six months later nobody knows where it lives or who owns it. That's the part we fix.

What you get

Everything an internal app needs. Nothing it doesn't.

Your own app shelf

A branded catalog where colleagues find every internal tool. Your logo, your colours.

Your domain

No more random .app links. Every tool lives at an address people trust.

Your login

Sign in with Google Workspace or Microsoft. No new accounts, no seat licences for viewers.

EU-hosted

Apps and data stay on European servers. Always.

Duck checks every deploy

Leaked secrets and risky dependencies are caught before they go live.

An owner on every app

Every app has an owner and a backup. When someone leaves, ownership moves — the app stays.

Usage at a glance

See which apps people actually use, and which ones can retire.

Link what's already out there

An app on Lovable or ChatGPT can go on the shelf today, with an owner. Move the code in when you're ready.

For IT

The page your IT team will actually like

Yellow Duck doesn't ask IT to trust a vibe. It gives them a list: every app, who owns it, where it runs, what the last check found, and who opened it. And a switch to turn it off.

  • Company login via Microsoft Entra ID or Google Workspace
  • EU hosting, isolated per app
  • A check report on every deploy
  • Audit log: who built, deployed, changed and opened what
  • One-click off switch per app
  • Code stays yours — export anytime
See every control on the trust page
appownerstatus
campaign-brief-botmaja.llive
quote-tooltobias.k2 to fix
pricing-sandboxsofie.nlive
hr-faq-assistantanders.pswitched off
Pricing

Simple pricing. No per-viewer licences.

Pay for the apps, not for every colleague who opens them.

Starter
€49/mo
Your first apps
Get started
  • Up to 10 apps
  • Company login
  • EU hosting
  • Checks on every deploy
Organisation
€399/mo
The whole company
Get started
  • Unlimited apps
  • Audit log export
  • Priority support
  • DPA signed online

All plans: unlimited viewers, cancel anytime, no sales call required.

Questions people
ask first

Do we have to stop using our AI tools?

No. Keep building wherever you like. Yellow Duck is where the finished apps live.

Does everyone need an account?

No. Colleagues sign in with the company login they already have.

Where is our data?

On servers in the EU. The region is shown on every app. Every control is listed on the trust page.

What happens if we leave?

Your code is yours. Export it anytime.

Is this a replacement for IT approval?

It's what makes approval quick. IT sees everything and keeps the off switch.

Why a duck?

Ask a developer about rubber duck debugging: you explain your code to a little yellow duck before you ship, and saying it out loud catches the problems. Yellow Duck is that friendly check — and the place the app lives afterwards.

Every app needs a home.

Your team has already built the tools. Give them an address.