Quickstart

Deploy in an afternoon

BigBrotherBot is one Go service plus PostgreSQL, self-hosted on your own infrastructure. No SaaS account, no data leaving your environment. Here's the path from zero to your first audited access request.

1

Provision the essentials

You need a PostgreSQL database and somewhere to run one container — your Kubernetes cluster, a VPC VM, or anything that runs a Go binary. Point the service at your database and give it a base URL your Slack workspace can reach.

2

Connect your Slack workspace

Create a Slack app, install it to your workspace, and give BigBrotherBot the signing secret and bot token. Every inbound Slack webhook is signature-verified, so the connection stays trusted behind your load balancer.

3

Sign in and set policy

Authenticate to the admin console with Google OAuth or a local password, define your approval tiers and separation-of-duties rules, and choose which requests auto-approve. Five roles gate every admin action.

4

Add your integrations

Connect the systems where access lives — GitHub, GitLab, Google Workspace, Jira and the rest. BigBrotherBot syncs real access and flags anything that drifts from what was approved.

5

Activate your license

Community runs free forever up to 10 seats. For Team or Enterprise, drop in an offline signed license key — air-gap friendly, no phone-home. Start with a 30-day trial that unlocks every feature, no credit card.

6

Run your first request

Have someone run /request-access in Slack. It's scored, routed, decided, provisioned and audited — and you can read the audit row a year later.

Ready to deploy?

Start a free trial and stand it up on your own infrastructure today.