For IT and security
Govern the software your employees build with AI.
Matterhall gives employee-built apps and files a secure, centrally managed home, with authenticated access, accountable ownership, and a complete inventory for IT.
Account · Admin
Inventory
| Name | Owner | Status |
|---|---|---|
| Pipeline review | Maya Rivera | Published |
| Renewal forecast | Dev Kapoor | Published |
| Vendor scorecard | Chris Obi · Former | Needs review |
| Onboarding checklist | Lena Stroud | Published |
| Churn model notes | Ari Chen | Private preview |
The challenge
AI-built applications already exist across your organization.
Blocking AI tools reduces productivity. Ignoring them leaves company data in unreviewed locations. Matterhall provides a governed alternative.
Personal hosting accounts
Publicly accessible by default, billed outside procurement, and lost at offboarding.
Files shared by email and chat
Uncontrolled copies with no version history and no way to revoke access.
Local machines
Unavailable to colleagues and invisible to IT.
Unmanaged cloud projects
Credentials, spend, and company data outside security review.
Remediation
Take action directly from the inventory.
Vendor scorecard
Owner needs reassignment- Owner
- Chris Obi · Former
- Access
- Ops workspace · 2 external
- Version
- v7 · Published Sep 12
- Last opened
- Yesterday
Administration
Every control you need, in one console.
Identity, visibility, and policy enforcement for all employee-built software, without changing how teams build.
Single sign-on and automated deprovisioning
SAML and OIDC with Okta, Microsoft Entra ID, and Google Workspace. Directory sync revokes access when employees leave the organization.
Complete application inventory
Every published app and file, with its owner, access list, and current version, in a single view.
Centralized access control
Revoke access, transfer ownership, or disable any app across the organization. Changes are enforced within 30 seconds.
Audit logging
Every publish, share, permission change, and administrative action is recorded and exportable to your SIEM.
Also included
- Organization-wide sharing policies
- Publishing approvals for sensitive content
- Approved data connections
- External sharing and ownership alerts
- Usage and cost reporting by app
- Per-app budgets and spending limits
Security
Security architecture
Trusted and untrusted content are separated by domain, and every request is authorized at the gateway. Every app and file inherits these controls at publication.
Authenticated access on every request
Published content is never publicly accessible. The gateway authorizes each request against current permissions rather than once per session.
Isolated content origin
Apps and files are served from matterhall.app, a domain separate from the Matterhall application. Published code cannot access Matterhall sessions or credentials.
Malware scanning before publication
All uploads are quarantined and scanned before they become accessible. Content that fails inspection is never published.
Database-enforced tenant isolation
Every record is bound to its workspace, and PostgreSQL row-level security enforces tenant boundaries independently of application logic.
US data residency
Customer data is stored and processed in Google Cloud’s us-east1 region, including application services, databases, and published content.
Encryption and secrets management
Data is encrypted in transit and at rest. Credentials are stored as protected references and never embedded in published code or logs.
FAQ
Frequently asked questions
What happens when an employee leaves?
Is our content used by AI models?
Do we need to standardize on a single AI tool?
How is pricing structured?
Can we evaluate Matterhall before a company-wide rollout?
Will you complete our security review?
Start with a pilot.
We will review the security architecture with your team and scope a pilot for a single department.