ShellYard
Use case · Client Spaces for MSPs

One Space
per client.

Keep each client's connections, credentials, docs, IPAM, diagnostics, and operational notes separated and easy to find — without juggling separate tools per engagement.

01 Isolate

Each client is its own workspace.

Spaces are isolation boundaries — not just labels. Each Space holds its own connections, credentials, documents, notes, IPAM, audit log, and Magellan context. Switch from Acme Client to Globex Lab and the workspace flips entirely: new saved RDPs, new vault entries, new docs, no risk of dragging one client's runbook into another's terminal session.

02 Invite

Members, Groups, ACLs.

Add technicians as Members on a Shared Space. Define Groups (Engineers, Helpdesk, Auditors). Grant read / write / admin on any folder and let permissions cascade. Bulk command runner and Batch SSH let one technician roll a fix across the client's whole fleet without repeating it manually.

03 Secure

No more shared password spreadsheets.

Credentials live in the Space's vault and resolve on connect. No copy-paste between tools, no client password reused across other engagements, no "who has the SSH key for the firewall" Slack thread. Pro envelope-encrypts your Personal credentials under a per-user CMK and syncs them cross-machine. Team and Enterprise add a customer-managed CMK per Shared Space — credentials shared into a Space are decryptable only by Space members, and Group-scoped credentials narrow access further.

04 Document

The client's network, recorded in the Space.

Notes, runbooks, host inventories, network overviews, and IPAM (subnets + hosts) live in the same workspace as the SSH session you used to write them. Inline subnet calculator. IT Glue and Hudu importers bring across what you've already maintained. Version history (90 days on Team, unlimited on Enterprise).

05 Operate

The whole toolkit, scoped to the client.

30+ network diagnostics, multi-engine database inspector, HTTP / GraphQL / Realtime client, real terminal — all of it inside the active Space. When a client raises a ticket, you open their Space and every tool you need is already pointed at their environment.

06 Audit

A per-Space record for client reporting.

Every credential access, document edit, command run, HTTP request, database query, and Magellan invocation logged with actor / action / target / timestamp. Team and Enterprise plans export audit history as CSV, filtered by actor / action / target — useful for client reports, security reviews, and contractual compliance. Enterprise adds cryptographic erasure on offboarding.

Stop mixing client work across tools.

Team is $49/seat/month billed annually, with a 30-day free trial — and includes per-Space customer-managed KMS, Group-scoped credentials, and cryptographic erasure on client offboarding. Enterprise adds per-Space audit-log filtering, larger storage caps, and custom contracts.