Deploy in an afternoon
BigBrotherBot is one Go service plus PostgreSQL, self-hosted on your own infrastructure. No SaaS account, no data leaving your environment. Here's the path from zero to your first audited access request.
Provision the essentials
You need a PostgreSQL database and somewhere to run one container — your Kubernetes cluster, a VPC VM, or anything that runs a Go binary. Point the service at your database and give it a base URL your Slack workspace can reach.
Connect your Slack workspace
Create a Slack app, install it to your workspace, and give BigBrotherBot the signing secret and bot token. Every inbound Slack webhook is signature-verified, so the connection stays trusted behind your load balancer.
Sign in and set policy
Authenticate to the admin console with Google OAuth or a local password, define your approval tiers and separation-of-duties rules, and choose which requests auto-approve. Five roles gate every admin action.
Add your integrations
Connect the systems where access lives — GitHub, GitLab, Google Workspace, Jira and the rest. BigBrotherBot syncs real access and flags anything that drifts from what was approved.
Activate your license
Community runs free forever up to 10 seats. For Team or Enterprise, drop in an offline signed license key — air-gap friendly, no phone-home. Start with a 30-day trial that unlocks every feature, no credit card.
Run your first request
Have someone run /request-access in Slack. It's scored, routed, decided, provisioned and audited — and you can read the audit row a year later.
Ready to deploy?
Start a free trial and stand it up on your own infrastructure today.