Skip to content

Vibe-code inside your boundary.

Your people already build apps with Claude. sprig plants what they build in your own Azure tenant. Entra-secured by default, governed by your Ops team, reading corporate data with each viewer's own identity.

The artifact is easy. The connection isn’t.

Section titled “The artifact is easy. The connection isn’t.”

An app vibe-coded in Claude can’t reach your corporate databases, internal APIs, or other governed data. It lives outside your boundary. A demo, not a tool. sprig is the deploy target that brings it inside. One prompt moves the artifact into your tenant, where Entra decides what it can reach, for the owner and for everyone they share it with.

  1. A builder describes an app to Claude and says “share this solution”. Claude uses the organization-provisioned connector and release-matched skills. Claude Code uses the same remote MCP connection.
  2. Claude calls the platform’s publish tool through the gateway, with the builder’s own Entra identity on every call.
  3. The gateway stores a new immutable version of the app’s bundle and flips it live at <app>.apps.<yourdomain> - one always-warm gateway serves every app; there’s no per-app Azure resource and no per-app Entra registration to create.
  4. The app is live, but locked: only the owner can open it, until your Ops team approves sharing with a group.
  5. When the app shows corporate data, every query runs through the gateway, as the viewer. Nobody ever sees data their own permissions wouldn’t allow.

Rooted in your cloud. Deploy with a prompt.