StoneOS
Get started
Apps on StoneOS

One app system. Your rules.

Like any modern operating system, StoneOS has an app system that is bigger than a store: the App Store to find and install, App Engine to build and publish, and Launchpad — the dock where apps land. All of it under the same identity, permissions, and traceability as everything else you run.

Software that arrives already knowing the rules.

Every business ends up needing one more tool: a scheduler, an inspection checklist, an approvals app. Normally each one brings its own accounts, its own data island, its own blind spot. The App Store changes the terms of entry: every app it ships — official or third-party — inherits your identity, your permissions, and your event history the moment it installs. The tool adapts to your system — not the other way around.

From "we need a tool" to "it's running."

  1. 01

    Pick it from the App Store.

    Official apps that extend the platforms you already use, and third-party apps from verified publishers.

  2. 02

    Approve what it may touch.

    Every app declares the permissions it needs, in plain terms. You grant them explicitly — or you don't.

  3. 03

    It lands in Launchpad.

    Your people find it in their dock and open it with the identity they already have. No new accounts, no new passwords.

  4. 04

    Everything it does is on the record.

    Every action the app takes lands in the same event history as the rest of the stack.

The StoneOS App Store

One place for what runs on your stack.

Find, evaluate, and install everything in one governed storefront. Official apps extend the existing platforms; third-party publishers ship apps built with App Engine — the same foundation the stack itself runs on, with a built-in IDE. Permissions are visible before you install, and removing an app removes its access — your data and your event history stay yours.

Launchpad

The simple part: your dock.

Launchpad is deliberately small — a dock of shortcuts where installed apps appear for each person, one tap away. No configuration, no ceremony. The intelligence lives in the app system; Launchpad just makes it feel close.

The day you install your first app.

You approve it in the App Store in the morning. Your team finds it in their dock before lunch — no rollout email, no credentials to distribute. The app sees exactly the people and permissions you granted, and its first action is already in the record. That's the whole rollout.

Guardrails, not promises.

Scoped by default.

An app can touch only what it declared and you approved. Nothing else exists for it.

Revocable in one move.

Change your mind and the app's access ends immediately — for everyone, everywhere.

Auditable always.

Every app action is an event in the shared history. "What did that tool do?" always has an answer.

Building something businesses need?

Anyone can build for StoneOS. App Engine — the app foundation of Link Loom Cloud — gives you the runtime, the contracts, and a built-in IDE to create, test, and publish to the App Store as a verified publisher. Your app arrives with identity, permissions, and traceability already solved. If that sounds like your product, let's talk.

Become a publisher

Fair questions.

Is a third-party app safe to run on my stack?

Safer than the alternative. Outside StoneOS, a third-party tool gets whatever access its own account model allows. Inside, it gets exactly the scopes you approved, it runs under verified publisher terms, and everything it does is on the record.

Can I limit what an app sees?

Yes — that's the default. Apps request scopes; you grant them per app. There is no "full access" shortcut.

What happens if we remove an app?

Its access ends. Your data and the event history of everything it did remain with you.

Do apps cost extra?

The App Store — and Launchpad, its dock — comes with StoneOS Complete. Individual apps are priced by their publishers; official platform apps are included with their platforms.

Your stack, extensible on your terms.