A development cockpit

Ship like you have an engineering team. Without the risk of one.

A crew of named AI agents plans, builds and reviews inside a sealed harbour with one opening. You stand in it, and you approve what ships.

Run missions and build your next idea with a full team of agents under your control: isolated, audited, and never able to merge on their own.

Join the waiting list Walk the demo
4
NAMED ROLES
8
AGENTS AT ONCE
1
OPENING, A PERSON IN IT
0
SILENT MERGES
CARTH ORCHESTRATES EVERY MISSION AT ONCE EACH MISSION GETS ITS OWN TEAM MANAGER TEAM MANAGER PLANNER BUILDER REVIEWER ANALYST CARTH THE GATE YOU SHIPPED WITH YOUR NAME ON IT ISOLATED WORKTREES, ONE WAY OUT
Agents work fast inside the wall, each in its own copy of your code. Nothing crosses the opening until a person with a name says yes, and the record of that yes stays attached to what shipped.
THE CREW REMEMBERS GRAPH AND MEMORY, KEPT BETWEEN MISSIONS payment logic db schema decision: keep the API mission 41: review notes owners map yesterday's fix BRAIN MEMORY KEPT WHERE DOES PAYMENT LIVE? RE-READING THE REPO, EVERY MISSION RETRIEVING FROM THE GRAPH RETRIEVE, DON'T RE-READ. TOKENS GO TO THE WORK.
The graph and the memory survive the mission. The crew retrieves what it already learned instead of re-reading the repository, so tokens are spent on the work, not the search.
CONNECT MORE THAN ONE PROVIDER A DIFFERENT ENGINE FOR EACH ROLE PLANNER ON CLAUDE BUILDER ON CODEX REVIEWER ON GEMINI ANALYST ON DEEPSEEK THE WORK ONE WORKTREE CROSS- CHECKED ONE BUILDS. THE OTHERS CHECK THE WORK.
You are not tied to one provider. Give each role its own engine: one model plans, another builds, a third reviews with different eyes. Building and shipping run on Claude or Codex; reviewing, advising and analysis run on any provider you connect.
PUT THE PLAN TO A COUNCIL SEVERAL ENGINES ON THE SAME QUESTION THE PLAN ONE MISSION REVIEWER ONE SEES ONLY THE PLAN REVIEWER TWO SEES ONLY THE PLAN REVIEWER THREE SEES ONLY THE PLAN NO CROSSTALK NO SHARED ANSWERS READOUT AGREED SPLIT THE REASONING AGREEMENT IS CHEAP. THE DISAGREEMENT IS THE POINT.
Council puts one mission plan in front of several agents or models at once. Each of them reviews it independently, without seeing the others, and you read where they agree, where they dissent and the reasoning behind each answer. One agent agreeing with itself is not a second opinion. On Enterprise.
01 / For startups without a CTO

The judgement of a senior engineer, on call.

Carth does not just write code. It scopes the work, prices it, argues with itself and brings you a decision instead of a diff.

Tells you what it will cost
Files, agents and an estimate arrive before a single line is written.
Says when the answer is no
A reviewer that pushes back is worth more than one that agrees.
Still knows why in six months
Every approval names its author: the person who said yes, the schedule that ran unattended, or no gate at all when the work was read only.
02 / The brain

Your codebase, graphified.

Every repository is read into a graph of files, calls and owners. The crew navigates that graph instead of guessing, so an agent that has never seen your code knows where the payment logic lives.

Persistent memory. The graph survives the mission and gets better every run.
Blast radius, before the edit. Touch one function and see everything downstream of it.
Token efficient. The crew retrieves what it already knows instead of re-reading the repository, so tokens are spent on the work, not the search.
CODE GRAPH1 284 NODES
AGENTS ON DEMAND
Missions run at the same time
Up to eight agents in parallel lanes, each in its own worktree. They queue when busy and never trip over each other.
LANE 1
LANE 2
LANE 3
QUEUED
DATA DRIVEN DECISIONS
Ask your database in plain words
Point Carth at a read-only copy and it builds the analysis itself: what sells, who stopped buying, what capital is frozen in stock.
READ ONLY COPY
SAFETY AND ENCRYPTION
One sealed container per company
Nothing of yours shares a process with anyone else. Your secrets are encrypted at rest under a key that belongs to your container alone.
Secrets at restAES-256
Agent toolsALLOWLIST
Licence checkOFFLINE
ApprovalsNAMED
03 / Secure by construction

The agents are fast because the walls are solid.

Every safeguard below is enforced by the software, not by a setting somebody has to remember. The trust page says exactly how, for the person who signs it off.

What an agent holds
Its own copy of your codeWORKTREE
Tools, fixed per kind of workALLOWLIST
Your credentials storeABSENT
Merge, deploy, publish, payNEVER
Another company's dataNO ROUTE
Read the trust page
One sealed container per company
Your own running copy of the cockpit, on its own private network. The wall between companies is the operating system, not a query filter.
ISOLATED
Built in a copy, never on your main branch
Each task works in its own git worktree. If that copy cannot be created, the task fails and says so rather than write anywhere else.
WORKTREE
Tools an agent was never offered
The tool list is fixed in the software by the kind of work. A file left in a repository or an instruction written into the task cannot widen it.
ALLOWLIST
Keys go in and do not come back out
Credentials are stored write only and encrypted under a key that belongs to your container. No screen and no role can read them back.
WRITE ONLY
Every approval has a name and a time
Approvals, deploys, budget changes and key rotations are written as they happen, and the record cannot be edited from the interface, by you or by us.
AUDITED
Your data trains nobody
We do not train on your content, and the model providers we send work to are contracted not to. Bring your own keys and the work goes to your provider on your own contract.
NO TRAINING
04 / Already at sea

Running in production, today.

Businesses run their tech stack through Carth in production, and newer teams are building their first digital presence on it. Every deploy crossed a security gate with a name on it.

0
ERRORS SHIPPED TO PROD
100%
SHIPS THROUGH A SECURITY GATE
24/7
THE CREW ON WATCH
A LIVE PROJECT GRAPHIN PRODUCTION
Drawn from the graph of a real project Carth manages in production. Names withheld, shape real.
05 / Every code mission, end to end

You write the first step and judge the last.

Everything in between belongs to the crew.

01
You write the brief
Plain sentences about the outcome you want.
YOURS
02
The plan comes back first
Files, agents and rough cost, before anything runs.
PLANNER
03
Built in its own worktree
An isolated branch. Your main stays untouched: if the copy cannot be created, the task fails rather than write there.
BUILDER
04
The crew reviews itself
Another agent checks the work and attaches the evidence.
REVIEWER
05
You approve, or send it back
One decision, recorded with your name and the time. A reviewer's concern holds it shut until a person reads it and says so.
THE GATE
06
It ships
Merged, deployed or published. The record stays attached.
SHIPPED
06 / What you get back

Not every mission is code.

Ask for a report, a deck or an analysis and the crew hands back a file, not a wall of chat. It lands on the mission, ready to open, and it is yours to download.

Read it where the work happened
A page renders at desktop and phone width, so you can judge it as your reader will see it. A PDF opens full window in its own tab.
Interactive work actually runs
A page the crew built runs its own scripts inside a sealed frame: no access to your cockpit, your session or the network. It can draw and compute; it cannot reach anything.
Nothing evaporates
Files the crew writes are collected onto the mission and kept with its record. Findings written as an answer become a file too, so work is never left inside a transcript.
07 / Your keys, write only
Your licences stay yours.
Claude Codex DeepSeek Gemini GLM Grok Kimi Qwen Billed by them, at their price. With your key every provider reviews, advises and analyses, and Claude and Codex also build and ship. Mix them on one mission: one model builds while another checks the work. Names and marks are the trademarks of their owners.

Half an hour, a real mission, your own repository.

Request a demo
Where it runs

Your own harbour, in the zone you choose.

Carth is not a shared application with your rows in somebody else's database. Every customer gets their own container, with its own memory, its own workspace and its own keys. Nothing of yours is in the same process as anything of anyone else's.

Single project

One product, one cockpit.

Your container runs on shared hardware, dedicated to you and to nothing else. One repository set, one brain, one crew. This is where almost everybody starts, and plenty of companies never need to leave it.

Team

Multi project

Several products, one set of gates.

Each project keeps its own repositories, brain and history. You switch between them in one cockpit, and the roles and approval gates you set carry across all of them, so governance is written once.

Business, and dedicated servers

Dedicated and enterprise

Your own machine, or your own walls.

A whole server reserved for you in the region you name, or Carth installed inside your own infrastructure against your own model provider. On this shape we hold nothing at all: your code and your files stay on your machines, and the only thing that leaves is what a mission sends to the model provider you chose, on your own contract with them.

Dedicated add on, and Enterprise

Choose your zone

Pick where your container and its backups live when you are set up. Your data stays in that region, and we tell you before it ever moves.

  • EU WestParis
  • EU CentralFrankfurt
  • UKLondon
  • North AmericaVirginia
  • Your own accountEnterprise, any region you already use

EU zones are the default, and the only ones offered on Carth Secured. A zone is chosen once at onboarding. Moving an existing cockpit to another region is a scheduled migration, quoted per case.

Pricing

Public prices, one application.

Start on the waiting list. We take on a small number of companies at a time so that onboarding is done properly, by a person.

Opening in batches
The waiting list, and a demo

Workspaces open a few at a time, because a person sets each one up with your repositories and your knowledge base. Tell us about your work, and we come back to you with a demo on your own code and a date.

Join the waiting list
Business
$799 per month

A leadership team in one cockpit.

  • 10 seats, unlimited projects
  • 8 agents working at once
  • 4 GB memory, 2 CPU cores
  • 60 GB workspace storage
  • Priority support
Join the waiting list
Enterprise
Talk to us

For code that cannot leave your own walls.

  • Self hosted in your infrastructure
  • Unlimited projects and seats
  • Agents at once: as many as your machine holds
  • Your own AI provider keys
  • Council: several agents review the same plan independently, and you read where they disagree
  • Onboarding included
Talk to us

Agents at once, and how to raise it

Your plan sets how many agents can be working at the same time. It does not cap how many missions you run, how many agents your crew has, or how much work you get through in a day. A fifth agent on Team does not fail, it queues, and it starts the moment a lane is free.

The limit exists because a working agent is a real process on a real machine, reading your repositories and running your tests. Each lane is about half a CPU core and a gigabyte of memory. We would rather sell you the hardware honestly than promise unlimited and give you a slow cockpit.

Three ways to raise it. Add lanes to the plan you are on, each with the CPU and memory it needs. Or move up a plan, which is usually better value once you need more than two extra lanes. Or take a dedicated server, where you set the number yourself and the only ceiling is the machine.

You can change the number yourself in the cockpit at any time, up to your plan's ceiling. There is no call to book and no wait.

Need more?

Every plan can grow when you do: more agent lanes, another project, extra storage, or a whole server reserved for you in your zone. Tell us what you need and it is added to your plan.

Model usage is never marked up: your provider bills you at their price, and we add nothing on top.

Write to us

Prices are per company, in US dollars, billed monthly. Seats are people, not agents, and a seat can be reassigned when somebody leaves. Add ons are billed monthly alongside the plan and can be removed at the end of any month. Model usage runs against your own budget caps.

What every plan includes

The full agent crew on every plan, and email support. Each plan runs in its own container, with its own memory, CPU and workspace storage: Team has 2 GB of memory, 1 CPU core and 20 GB, adds roles and per role gates, budget caps and the audit trail, and is where most startups land; Business has 4 GB, 2 CPU cores and 60 GB, raises the team to ten seats, and adds priority support. Enterprise is self hosted inside your own infrastructure against your own provider keys, with dedicated resources on its own host and seats and storage to fit, onboarding included and a named contact for support. On Enterprise, model usage runs against your own provider account.

Every plan is backed up nightly, and the plan sets how many nights are kept: one on Team, three on Business, seven on Enterprise. Older archives are removed the same night the new one is written, so a workspace never holds more than its plan allows.

Licensing

One signed token. Checked on your machine, never ours.

Buying Carth gets you a licence token. You paste it into your cockpit once, and your install verifies it by itself, offline. A self hosted install stops there and never calls us again.

The check happens on your machine

The token carries its own signature. Your install verifies it against a public key that shipped with the software, in under a millisecond, with no network and no clock agreement with us. Whether your licence is valid is never decided on our side, on any plan.

A hosted install renews outward

Run Carth hosted by us and it polls our licence authority on a schedule, presents the token it holds and receives a fresh short one. The call goes out; nothing of ours reaches in. Give an install no authority to call, which is how a self hosted one ships, and it makes no call at all: a perpetual token has nothing to renew, so it runs air gapped for as long as you keep it.

We hold no key to your work

Only the public half of the signing key is in the software. The private half never leaves the issuer, so nobody can mint a licence in your name, and the key we hold cannot open anything of yours.

What the token says, and what it does not

The token states your plan, your seats, your storage limits and the date it runs to. That is all it contains. It is signed as a whole, so a changed seat count or a moved date stops verifying rather than quietly passing.

A renewal call carries a usage report, and this is the whole of it: how many missions, runs and finished runs your install has recorded, what it spent in dollars over the last thirty days with the tokens in and out behind that figure, a line per model giving the model id, its runs, its tokens and its cost, how long the install has been up, which build it runs, whether the licence is active and when it ends, and which features are switched on. It cannot carry code, prompts, repository names, mission or task titles or file paths, and not even a count of your projects. Each field is named and built one at a time rather than filtered out of something larger, so anything Carth gains later is absent from the report until somebody puts it there on purpose. An install with no authority to call sends none of this, because it never calls.

Renewal is a new token, not a payment the software waits on. When a term ends, a grace window opens, five days unless we agree otherwise. Everyone keeps working exactly as before and the cockpit shows a dismissible banner counting the days. Only when that window closes without a renewal does it lock, and even then nothing is deleted: your data, missions and history are all still there, and a new token brings it all back as it was.

A self hosted licence can be perpetual. If your code cannot depend on a supplier staying in business, we issue a token with no expiry date. The software you have keeps working whatever happens to us, which is the only version of that promise worth anything.

If a token is ever missing or unreadable, the cockpit says so plainly and keeps running on its stored entitlement rather than locking you out over a configuration mistake.

Suggest a feature

Ask for something, and the crew builds it.

A suggestion becomes a mission in our own cockpit, through exactly the gates you use.

Every one is read by a person, and you do not have to be a customer to send one.

What happens to a suggestion

Carth is built by the same kind of crew you would be hiring it for. When a customer asks for something the product genuinely needs, our own crew plans it, builds it in a worktree and reviews it, and a person here approves it. The ones we accept land in the changelog with the release that carries them. The ones we turn down get an answer saying why, because a request that disappears is worse than a no.

Send a suggestion

Marks the one field we actually need.

Only so we can tell you what we decided.
One concrete thing beats a wishlist.

The button sends your suggestion straight from this page to suggest@carthagent.com. Nothing else is stored on this website.

Trust

Your code gets its own walls.

Not a shared database with your name in a column. A separate container, a separate encrypted volume, and access you can take back from any one person at any time.

  • A private container for each company
  • Encrypted storage volumes
  • Your code is never used to train models
  • Hosting in the EU or Canada, your choice
  • Full deletion on request, backups included

Put a crew on your backlog this week.

Tell us what you would hand to your AI crew first. We read every entry and reply within two business days.

Join the waiting list