Admin panels on private databases
CRUD over production tables in PostgreSQL, MySQL, Oracle or SQL Server, with row-level rules on who can edit what.
Self-hosted app builder
Run ToolJet on your own infrastructure: Docker, Kubernetes, your VPC or on-premise. Build internal tools with AI, a coding agent or the visual builder, connect the databases behind your firewall, and keep every app under your SSO, permissions and audit logs.
| Change | Team | Environment | Status |
|---|---|---|---|
| CHG-2291 | Payments | Production | Approved |
| CHG-2294 | Data platform | Production | Second approval |
| CHG-2297 | Identity | Staging | Approved |
| CHG-2301 | Payments | Production | Blocked |
Production changes need two approvers from the platform group; log both names and link the ticket
Approval rule, platform role and ticket query added · awaiting your review
Self-hosted app builder
A self-hosted app builder runs on infrastructure you operate instead of a vendor's cloud. The builder, the apps it produces and the connections to your databases and APIs all live inside your network, so internal tools can reach private systems without exposing them to the internet.
ToolJet is an open-source low-code platform you can self-host from the free plan. The Community Edition is licensed under AGPL-3.0, and the whole platform runs in your environment: the editor, the apps, ToolJet Database and every data-source connection. Build with ToolJet AI, with a coding agent through the ToolJet MCP server, or visually on the canvas.
Teams self-host for data residency, private networks, regulated workloads or control over upgrades. Teams that would rather not run infrastructure can start on ToolJet Cloud instead.
Your deployment initiates a key-authenticated outbound connection to the AI gateway. Requests can include prompts, app context, schemas and data read through connected credentials. Restrict data-source permissions. Fully local AI requires the Self-hosted Enterprise AI gateway add-on and a supported local model.
The Community Edition is AGPL-3.0. The Self-hosted Free plan covers 2 builders, 50 end users and 10 apps; Team adds SSO, audit logs and Git sync, and Enterprise adds SCIM and multiple instances, with air-gapped deployment available as an add-on.
Workflows, Agent Builder and private connectors are available on Self-hosted deployments and not on ToolJet Cloud.
No engineering ticket needed
Type what you want in plain language. ToolJet generates the pages, queries and logic as a working app. Connect your data, set who can see what, and review the generated logic before publishing. Edit the app on the canvas afterwards.
Connect the databases and APIs inside your network
Have developers? They can build the same apps fromthrough the ToolJet plugin
The internal tools that need to sit next to private data, built by the teams that use them.
CRUD over production tables in PostgreSQL, MySQL, Oracle or SQL Server, with row-level rules on who can edit what.
Live views over your warehouse and internal services, filtered by team, with actions wired to queries.
Multi-step approvals with thresholds, role-gated actions and a decision record in your own database.
Scoped views for external users through SSO or invited access, served from your domain.
Webhook, scheduled or app-triggered workflows with JavaScript logic, data-source nodes and run logs. Self-hosted only.
Add an AI Agent node to a workflow, connect the model you prefer and your business data, and debug the agent visually. Self-hosted only.
Run the single-container image, which includes PostgreSQL, and build a first app against a test database.
Kubernetes with Helm, OpenShift, AWS ECS or EKS, Azure AKS or Container Apps, Google GKE or Cloud Run, or a VM, in your VPC or on-premise.
Configure SSO with SAML, OpenID Connect or LDAP on Team and above, then connect the databases and APIs your tools need through 100+ connectors.
Move apps from development to staging to production with Git sync. Enterprise supports multiple instances, so AI can stay on in development and off in production.
Deployment
Evaluate with a single Docker container, then move to Kubernetes, Helm or a managed container service for production. Every target has a setup guide.
docker run \
--name tooljet \
--restart unless-stopped \
-p 80:80 \
--platform linux/amd64 \
-v tooljet_data:/var/lib/postgresql/16/main \
tooljet/try:ee-lts-latestToolJet runs on x86-64 Linux (arm64 is not supported). A VM deployment needs at least 1 vCPU, 4 GB RAM and 8 GiB of storage for ToolJet itself; production deployments also need PostgreSQL (16.x recommended) and Redis 7. Check the system requirements before sizing production.
Compared
Which plan each platform lets you self-host on, what runs on your infrastructure, and under which license.
| Feature | ToolJet | Retool | Appsmith | Superblocks |
|---|---|---|---|---|
| Self-hosting available on | Free, Team and Enterprise | Enterprise for new deployments | Free and above | Enterprise only (Hybrid or Cloud-Prem) |
| Air-gapped deployment | Enterprise add-on | Enterprise | Enterprise add-on | Not documented |
| License | AGPL-3.0 Community Edition | Proprietary | Apache-2.0 | Proprietary |
| Build from a coding agent | MIT-licensed MCP server, cloud or self-hosted | Proprietary MCP server in public beta; self-hosted 4.0+ | No MCP server | Builder MCP that relays to Clark |
Competitor details were verified on 7 September 2026 against each vendor's public pricing and documentation. Superblocks Hybrid runs the data plane in your VPC; Cloud-Prem runs the full platform in your AWS environment, managed by Superblocks. Deployment wording was checked on 30 September 2026. Sources are listed on each comparison page.
ToolJet vs Retool ToolJet vs Appsmith ToolJet vs Superblocks
Governance
Identity, permissions and audit apply to every app, whether a person built it on the canvas or an agent built it from a prompt. SOC 2 Type II, ISO 27001 and GDPR.
SAML, OpenID Connect and LDAP on Team and above, with SCIM provisioning on Enterprise.
Workspace, app, page, component and query-level access, with row-level security where the data needs it.
Platform events with actor, resource and timestamp; configurable retention; export to your SIEM.
Data-source credentials are encrypted with AES-256-GCM, and administrators can turn off telemetry and update checks.
Security and governance features vary by plan. Workflows and Agent Builder are available on Self-hosted only; BYOK is a Self-hosted Enterprise add-on. Compare plan availability.
See the full control model Read the self-hosting docs Visit the trust centre
Two ways to get there
Self-serve
Start free. Describe the tool, refine it on the canvas, and ship it under your own access rules. Start with one app, then test it with your team before rolling it out.
Start freeProfessional services
When the timeline is fixed or the process is tangled, our engineers build alongside you: scoped delivery, production-ready apps, and knowledge transfer so your team owns the result.
Talk about a projectA self-hosted low-code platform is an app builder you run on your own infrastructure instead of a vendor's cloud. You keep the builder, the apps and the data connections inside your network, and your team controls upgrades, backups and access. ToolJet is an open-source, self-hosted low-code platform for internal tools.
Yes. The Community Edition is open source under AGPL-3.0, and the Self-hosted Free plan includes 2 builders, up to 50 end users and up to 10 apps. Team adds SSO, audit logs and Git sync; Enterprise adds unlimited end users, SCIM and multiple instances, with air-gapped deployment available as an add-on.
An x86-64 Linux host or a Kubernetes cluster (arm64 is not supported), PostgreSQL (16.x recommended) and Redis 7. A VM deployment needs at least 1 vCPU, 4 GB RAM and 8 GiB of storage for ToolJet itself. The system requirements page in the docs covers database and cache sizing.
Docker, Kubernetes with or without Helm, OpenShift, AWS (AMI, ECS and EKS), Azure (AKS and Container Apps), Google Cloud (GKE and Cloud Run) and DigitalOcean, in your VPC or on-premise. ToolJet is also available from the AWS and Azure marketplaces.
Yes. ToolJet runs inside your network, so its 100+ connectors reach databases and internal APIs directly, without exposing them to the internet. Data-source credentials are encrypted with AES-256-GCM and stay in your deployment.
Your team does. You run the ToolJet containers, PostgreSQL and Redis, and you decide when to upgrade. ToolJet publishes LTS releases and upgrade guides in the docs. If you would rather not operate the platform, ToolJet Cloud is the managed option.
Yes, on Enterprise. Fully air-gapped operation, including offline licensing, requires the Enterprise air-gapped add-on.
Yes. By default your deployment opens an outbound connection to ToolJet's managed AI server. Requests can include prompts, app context, schemas and data read through connected credentials. Outbound-only connectivity does not limit request contents to schemas. Running the AI gateway inside your infrastructure and bringing your own model keys are Self-hosted Enterprise add-ons. Fully local AI also requires a supported local model; an external model provider still receives requests.
Workflows, Agent Builder and private connectors are available on Self-hosted deployments and not on ToolJet Cloud. Builder bring-your-own-key and a customer-hosted AI server are Self-hosted Enterprise add-ons.
As verified on 7 September 2026, ToolJet self-hosts on Free, Team and Enterprise; Retool lists self-hosting on Enterprise for new deployments; Appsmith self-hosts from its free plan; and Superblocks offers Enterprise Hybrid (data plane in your VPC) or Cloud-Prem (the full platform in your AWS environment, managed by Superblocks).
Run the Docker image to evaluate, or talk to an engineer about Kubernetes, SSO and an air-gapped rollout.
Page updated