Manage NDAs, scopes, payments and delivery for your contractor roster — one secure portal, audit-logged, marketplace-ready when you are.
Replace the spreadsheet, the inbox thread, and the half-finished CRM. Track every agreement, project and dollar from one dashboard.
8-step workflow per agreement. Every view, ack and signature is hashed and audit-logged with full IP + UA capture.
GitHub-linked repos, milestone-based budget, automatic spend tracking, completion notes. Burn rate in real time.
Payments are tracked through a manual ledger today. Stripe/PayPal provider readiness is prepared for future controlled activation — no live charging or payouts run in this version, and live keys are never displayed in the UI. Every entry is audit-logged.
Skill tags, GitHub linkage, agreement history, payment record. Suspend access in one click.
AES-256-GCM, single-user-scoped decryption, every reveal is logged. For credentials, processes, counsel notes.
Revenue vs. spend, developer performance, agreement funnel, project status. Export PDF or CSV in a click.
Designed for solo founders managing many contractors. No marketing fluff between you and the work.
Public application form captures skills, GitHub, location. You review with one click — approve or reject, both audit-logged.
Pick a template, send to a developer. 8-step workflow: open → ack → sign → counter-sign → store. SHA-256 hashed at every step.
Post scope, link a GitHub repo, set milestones with budget. Track commits, PRs, burn rate without leaving the dashboard.
Counter-sign a milestone and record the payment in the manual ledger. Provider payouts (Stripe/PayPal) are prepared for future controlled activation, not automatic today. Every dollar tracked.
Three things that need your attention. Active work. Live activity. Real numbers — not vanity metrics.
Every action is recorded. Vault notes and provider secrets are encrypted at rest when configured. Every authenticated route stays private.
Sign-in, agreement view, milestone release, payment entry — every event timestamped, hashed, IP + UA captured.
Vault notes and payment-provider secrets are encrypted with AES-256-GCM when an APP_KEY is configured; decryption is single-user-scoped and logged. GitHub and SMTP secrets are hidden from the UI and stored as secret settings.
Server-side absolute 24-hour and 2-hour idle session timeouts. Admin 2FA is on the roadmap.
Not yet. Today, developer access is private and admin-controlled. Applications are reviewed manually. A public marketplace is on the roadmap.
Payments are currently tracked through a manual ledger. Stripe/PayPal provider readiness is prepared for future controlled activation — this version performs no live charging or payouts, and live keys are never stored or exposed in the UI. Every entry is audit-logged.
Eight steps per agreement: draft → sent → opened → ack §1–3 → ack §4–5 → signed → counter-signed → stored. Each step is SHA-256 hashed.
Real app. Used internally by BigWheel IT to manage developers, projects, and payments. Demo numbers in the preview above are illustrative.
PHP/MySQL MVC + vanilla CSS + vanilla JS. No frameworks. No third-party UI libraries. PWA-ready.
The dashboard preview above is illustrative. For a real walkthrough, contact admin or sign in with credentials your admin provided.
Stop juggling Google Docs, DocuSign tabs, and Notion pages. One portal. Audit-logged. Private by default.