AI-assisted monitoring for small IT teams

For the IT person who looks after everything.

Servers, desktops, firewalls, routers, across one office or a dozen customers. BE Hub watches them all, and when something goes wrong BE AI investigates, tells you what it found, and proposes the fix. You approve. Nothing runs without you.

No NOC, no night shift, no inbound ports. One 8 MB agent per machine.

≈ 30 stypical, from alert to a written diagnosis
Every changeapproved by a named person, by design
5 OS familiesservers, desktops, firewalls and routers
[$X] / machineper month, BE AI included · [PRICING TO CONFIRM]
how it works

An investigator that reads everything and touches nothing.

01

The agent watches

A heartbeat every five minutes, and an event the moment a disk fills, a check fails or a machine reboots. Outbound only, so it works behind any router.

02

BE AI investigates

It reads the history, then asks the machine read-only questions: diagnostics, processes, services, logs, checks. It writes a plain-English conclusion with a confidence level.

03

It proposes, you approve

A change arrives as a proposal with the exact command and the reason. Approve, reject, or ask a follow-up in the same thread, from your phone if you like.

04

Verified and recorded

The result comes back in plain language. Ask BE AI to verify the effect. Every question, call and approval is in the audit trail with a name on it.

Follow one incident from alert to fix →

the console

One screen for the whole fleet, one screen for the machine in front of you.

Fleet. Grouped by your tags, worst first, with a disk sparkline on every row and a "9d" when a disk will be full in nine days. Firewalls and routers sit next to the servers they protect.

Alerts. One alert per machine and problem, with BE AI's assessment attached before anyone is woken. Rules decide who gets an email, a text, a phone call or a webhook, per customer, per severity.

Trends. Hourly rollups kept for two years, sized so a fleet of hundreds stays quick to draw. CPU, memory, disk, ping and network per machine, and a fleet chart on the dashboard.

Companies. Each customer is its own company with an install link, its own sign-ins and its own usage. Look after one office or twelve from the same place. Nobody sees anyone else's machines.

what you get

Monitoring that does the first hour of every ticket for you.

Not a remote-control suite and not a script engine on the endpoint. Watching, alerting, custom checks, releases, and an operator that stays inside a fixed set of tools.

Alerts that reach a person

Offline, disk, failing check, reboot, degraded ZFS pool. Email, SMS, phone call or webhook, with grace periods so a planned reboot is not a 2 am page.

Custom checks, written in a sentence

"Alert me if the S: drive is not mapped for reception." BE AI turns it into a check, you approve, the agent runs it every minute.

Nightly pass on every machine

BE AI reviews each machine once a day and only proposes when something needs a decision. Quiet machines cost you nothing.

Firewalls and routers included

OPNsense, pfSense, Teltonika 4G routers and TrueNAS are machines like any other: services, logs, cellular signal, pool health.

Hosted, on-premise, or your own cloud

The hub is one container with one data volume. Let Binary Elements host it, run it on a box in your own rack, or in the cloud account you already pay for.

Works beside your remote-access tool

No remote desktop here, on purpose. BE Hub tells you what is wrong and fixes what can be fixed with a command; keep whatever you use to take the screen.

run it where you like

Hosted by us, on your premises, or in your own cloud.

Same product, your data where you want it. One container, one volume, one outbound call to the AI API. Agents only ever need to reach your hub. Hosting options →

hosted

Binary Elements runs it

Sign in and start enrolling. Hosted in [REGION].

on-premise

A box in your rack

Any host that runs a container.

your cloud

Your cloud account

A small VM serves hundreds of machines.

security model

The AI can read. Only a person can write.

BE AI never gets a shell. It works through a fixed, allow-listed set of tools, and every mutating tool sits behind a human approval on the hub. Whether a machine allows shell commands at all is decided in its own config file, which the hub cannot change. Everything a machine reports is treated as untrusted text. Read the security model →

  • outbound-only agent, no inbound ports, no VPN
  • Ed25519-signed updates, key kept offline
  • read tools automatic, write tools approved
  • per-company isolation enforced on every request
  • full audit trail: who asked, what ran, what came back
preventative maintenance

Most outages announce themselves weeks ahead. BE Hub reads the announcement.

A nightly pass over every machine, disks with a date they will be full, services that keep restarting, machines behind on releases, patch state, checks that drift. The things a good technician would look at every morning if there were time. How the nightly pass works →

  • nightly review of every included machine, only speaks when something needs a decision
  • "full in 12 days" on every disk from a week of history
  • patch and service health recipes on request or on schedule
  • checks that watch for drift: mapped drives, printers, VPN peers
where the investigator made the difference

The same alert, with and without BE AI.

Disk full at 3 am

Threshold alert says 96%. BE Hub says 231 GB of old backups on a 500 GB volume, growing 0.9% a day, and files a listing to approve. The case →

Site down, or box down?

Uptime check says the firewall is unreachable. BE Hub says the 4G router at the same site still answers, so it is the firewall, not the carrier. The case →

The slow morning

No alert at all. Asked why logons took 40 seconds, BE AI finds the backup job that ran late and pinned the domain controller. The case →

Eight cases, side by side →

who it is for

Built for the small IT operator, not the 200-seat NOC.

The one-person IT company

Forty machines across eight customers and a phone that rings at dinner. BE AI does the first hour of every ticket before you open the laptop, and the alert already says what it found. More →

The two-to-five person shop

Every customer is a company with its own install link and its own sign-in. Whoever is on call gets the text; everyone sees the same thread; every approval has a name on it. More →

In-house IT at a small business

A practice, a workshop, a warehouse, with servers nobody has time to check. Tag them by site, let the nightly pass find the disk that will be full next month, and keep approvals in your own hands. More →

questions engineers ask

Before you put an agent on a production box.

Is this an RMM?
Not in the usual sense. There is no remote desktop, no script library and no patch deployment. BE Hub is monitoring with an investigator attached: it finds the problem, explains it, and fixes what a command can fix, with your approval. Keep your remote-access tool.
Can the AI run commands on my servers?
No. It reads through a fixed set of tools and proposes changes. A named person approves each one, and the record shows who did.
Does it need inbound ports or a VPN?
No. The agent opens one outbound HTTPS connection to the hub and keeps it alive. It works behind CGNAT and on 4G routers.
Where does the data live?
Wherever you put the hub: hosted by Binary Elements in [REGION], on your own server, or in your own cloud account. It is one container and one data volume, so moving it later is a copy. Heartbeats are kept 14 days, hourly rollups two years, events a year.

Put BE Hub on ten machines this week.

A pilot takes an afternoon: one install link, your own approvals, your own data. Uninstall the agent and you are out.