Token Controller Docs
Docs / Self-hosting / Enterprise plan instances

Enterprise plan instances

Enterprise plan instances are isolated: your organization alone, on its own instance.

Browse the docs

Hosted for you

An isolated hosted instance in the region you choose, with OIDC and SCIM, an audit log, telemetry passthrough to your own collector, cloud bill connectors on request, and a support SLA. Nothing is shared with other organizations: the instance has its own service and its own Postgres database. It runs the enterprise image with your license key.

Self-hosted with support

A self-hosted instance with a support contract is an Enterprise plan instance. We send you a pull token for the enterprise image and your license key. In your compose.yaml, swap the image for ghcr.io/tokencontroller/tokencontroller-enterprise and set TC_LICENSE_KEY. Everything else stays the same. Talk to us.

The enterprise image

The Enterprise plan features ship in the enterprise image: the open-source service plus closed-source Enterprise code. Without a license key it behaves exactly like the open-source image, so you can switch to it at any time.

The license key

A license key is a signed file that names your organization, your member limit and your support end date. The instance checks the signature itself and never calls us, so it works without internet access.

WhenWhat happens
30 days before the support end dateControllers see a renewal notice in the web app.
After the support end dateEnterprise plan features keep working for a 30-day grace period.
After the grace periodEnterprise plan features switch off. Your data stays: people sign in with magic link, Google, GitHub or Microsoft, and every report and export keeps working.
Last updated 8 October 2026 · Edit this page © 2026 Jan Beck · Privacy · Imprint