← throughly
AI agents · opt-in

You kick it off — the agent rides along.

Turn on the MCP layer and Claude, Cursor or Copilot act inside Throughly — the busywork, while you approve — walled off from your money and confidential documents. It's off by default.

Turning it on

Three steps, then it's live.

There's no plugin to install and no data to hand over. The agent layer is a switch on your own instance — you turn it on, and you can turn it off.

1

Flip the MCP switch

Throughly exposes a scoped MCP endpoint per workspace. It stays off until you enable it — nothing an agent can reach exists before you do.

2

Point your agent at it

Claude, Cursor or Copilot connect with a token you mint yourself and can revoke in a click. The token carries only the scope you grant — one project, or the whole workspace.

3

It reads, then acts

The agent sees your tasks and docs, does the busywork, and hands each result back for you to approve. Every action has to fit inside the boundary below — no exceptions, admin token or not.

What an agent actually does

The busywork, handed off.

Tracks your time

Starts and stops timers, logs each entry against the right project and task, and tidies loose entries so the hours are clean before anything is billed. You stop babysitting the timer; the record stays accurate.

Runs the board

Creates and moves work items, files tickets into the right epic or sprint, and keeps status honest as work progresses — so the board reflects reality without you dragging cards across it every morning.

Triages the help desk

Reads the shared inbox, drafts replies in context, and assigns and prioritises by SLA. It clears the queue down to the decisions that need a human — you stay the one who hits send.

Writes the wiki & docs

Turns a finished task into a documented page and keeps the knowledge base current, so what the team worked out doesn't evaporate the moment the ticket closes.

§

Drafts an invoice write-only

Turns tracked hours into a draft invoice for you to review and send. It can create the draft — but it can't read any existing invoice, any rate, or your revenue. Drafting is the single finance action it will ever touch; everything else about your money stays closed to it.

Yours, and only yours

The work is theirs — the vault stays yours.

Every agent runs inside a hard boundary, enforced in one access layer and covered by tests. It can act on your behalf, but it can't reach what's sensitive — not even one minted by an admin.

An agent can
  • Track time & run the board
  • Triage the help desk
  • Write the wiki & docs
  • Draft an invoice for you to send (write-only)
An agent can never
  • Read an invoice, a rate or your revenue
  • Open a confidential document
  • Send money or mark anything paid
  • Reach a project outside its scope
Deny-by-default · one access resolver · every agent action logged
throughly

Your time, projects, support & invoices — one suite you own, end to end.

© 2026 e-manuel software artisans · throughly.app · Self-host · Privacy · Terms