01 — the fragility
One laptop crash away from gone
No deploy pipeline, no backups, no second person who understands it. If the owner's machine dies or they leave, the tool — and often the only copy of the data behind it — goes with them.
For the apps your team already depends on
It runs on a laptop, a free-tier host, or nowhere durable at all. Nobody can safely touch it, secure it, or explain what happens if it disappears. Garden takes that app — whole app, backend and data included — and makes it a properly hosted, secured, governed piece of your infrastructure. In your own cloud, not ours.
The problem
An ops manager needed a dashboard, so they built one with an AI coding assistant over a weekend. It worked. People started depending on it. Eighteen months later it's quietly load-bearing — scheduling shifts, tracking inventory, running payroll checks — and it still lives exactly where it was born: a laptop, a personal Replit account, a free-tier box nobody's renewed the domain on.
01 — the fragility
No deploy pipeline, no backups, no second person who understands it. If the owner's machine dies or they leave, the tool — and often the only copy of the data behind it — goes with them.
02 — the exposure
Hardcoded credentials, no access controls, no idea what data it holds or where it lives. IT can't secure what they don't know exists. That's shadow IT — and it's a real operational risk, not a hypothetical one.
03 — the standstill
Replacing it means months of a "real" engineering project for something that already works. Leaving it alone means betting the business on a laptop. Most companies just... leave it alone.
How it works
Garden repairs the app you already have — it doesn't ask you to recreate it in a new tool.
Hand over a zip, a GitHub repo, or just the URL it's running at. Any stack — Flask and SQLite, Node, a Replit project, whatever it actually is. Nothing to rewrite first.
Hardcoded secrets get pulled out and put in a real secret manager. Ports get bound properly. Data moves off local disk onto managed, backed-up storage. Every change is narrated in plain language — for the owner, not a diff only an engineer could read.
The app gets a real URL and is shared with the owner's whole team by default — not locked down and forgotten. The right people can reach it; the wrong people can't.
Month two always brings a new request. Garden supports ongoing edits without ever touching live traffic during a bad one — so the app keeps evolving instead of calcifying the moment it's "done."
Coming next
A fleet view of every app we've touched — migrated, in repair, waiting — and a plain, boring status page per app: is it up, what it costs per month, who can get in, and when it was last backed up. The goal is an inventory of internal tools that used to have none.
Why it's different
The usual answers
Garden
Security
Garden isn't asking for your trust in a black box. It's asking to work inside infrastructure you already control.
BYOC
Every app is deployed into your cloud project — today, GCP. Your billing, your audit logs, your existing security tooling all still apply.
NO LOCK-IN
If Garden shut down tomorrow, the apps we've repaired keep running exactly where they are. We're not the host. We're the crew that made the house sound.
PLAIN LANGUAGE
Every repair and every future edit is narrated in plain English for the owner — what changed, why, and what it means — never just a diff dropped on someone who didn't write code in the first place.
NO SURPRISE OUTAGES
Ongoing changes are staged and verified before they reach the version people are actually using, so a bad edit doesn't become a bad afternoon for your team.
Get in touch
Tell us about the tool you're most worried about — the spreadsheet-replacement, the scheduling app, the thing one person built and everyone now depends on. We'll show you what repairing and hosting it in your own cloud actually looks like.