Early access

The ConnectWise MCP gateway for MSPs.

Pulsatrix connects the AI you already pay for straight to ConnectWise. Destructive actions don't exist as tools, and you hold the approval gate. It runs on your machine, on a real service desk, today. Access is granted on request.

Watch it work

Plain language in. Audited ConnectWise changes out.

Reads can run directly; writes follow your policy, and this scenario shows a gated change stopping for a human fingerprint. Pick a scenario and watch the whole path. Redaction, reasoning, approval, execution.

Paid package

Every plugin. One Pulsatrix gateway.

Paid Pulsatrix includes the full stack, ConnectWise PSA, RMM, CPQ, ScreenConnect, SentinelOne, and Axcient x360, on the same local MCP host. Writes and higher-risk actions follow the approval policy you control. There's no à-la-carte plugin menu: paid means everything.

Security & privacy

Enterprise-grade security. MSP-grade control.

Pulsatrix isn't a cloud middleman. It runs on your own infrastructure, with your own LLM, and client data never has to leave your office. The keys, and the policy, stay with you.

Local credential storage

Your ConnectWise API keys live in your own environment: an OS keychain or a local secrets file. Never on a vendor server. The Pulsatrix host reads them locally, only when it calls ConnectWise on your behalf, so they never cross the network to us or sit in any cloud database.

A second gate, and it's yours

Your AI client already asks before it acts; Pulsatrix adds a second gate it can't skip, met with Touch ID, Windows Hello, or the iPhone app when you're away from your desk. You choose what needs a signature: destructive actions never exist as tools, and a revocable grant lets similar calls through without asking again. Each person enrols their own device and profile, and no MCP tool can rewrite or bypass the policy.

Multi-user, per-action isolation

Many vendor products give you one shared API key, so you can't limit what a single technician can do. Pulsatrix limits it at the gateway instead: each person gets their own plugin allowlist, with specific actions turned off just for them, over their own MCP/HTTP instance where a typo can't silently widen access. Credentials stay scoped to that profile in the OS keychain.

Reads flow, gated writes wait

Reads flow across your stack with no approval prompt. Writes and other higher-risk actions wait for your decision, made now or already covered by a bounded grant you issued and can revoke. MCP tools can't skip that gate.

Full audit trail

Every tool call is logged with a timestamp, the action taken, and its result, so you can see exactly what happened. That log lives on your machine, in a local file you control, not on a Pulsatrix server.

Self-hosted by design

Pulsatrix runs on your infrastructure with your own model, local or cloud. There's no vendor middleman in the path. That's true for every connector it drives: PSA, RMM, ScreenConnect, and the rest all run through the same local host, never a hosted Pulsatrix backend.