Let Your Employee Use Any Desktop App
Your employee controls your actual desktop, not just a browser tab. It clicks, types, manages files, and runs terminal commands in real applications on your machine, the same way you would sitting at the keyboard. It works through the free Desktop Companion app and covers native software, file management, and shell tasks in one capability.
Your employee controls your actual desktop, not just a browser tab. It clicks, types, manages files, and runs terminal commands in real applications on your machine, the same way you would sitting at the keyboard. It works through the free Desktop Companion app and covers native software, file management, and shell tasks in one capability, backed by a single tool the employee calls Computer Controller.
It works by taking a screenshot of everything connected to your machine, stitched into one image, then reasoning over what it sees the way you would. If you run more than one monitor, the screenshot includes every display in that stitch, with the exact pixel offset of each one, so a click lands on the right screen even when your setup is multi-monitor. Before a risky click, it will move the mouse there first so you can see where it's aiming.
This is different from the employee's browser connection, which reads the actual DOM of a web page: form fields, buttons, structure. Computer Controller has no such map to read. It only has pixels, so it is the tool for anything without a page to parse: Figma, Excel, Logic, Final Cut, Photoshop, or any other native app on your machine. For ordinary website work the employee reaches for the browser tool instead, because it's faster and more reliable there.
Everything runs through a single companion connection shared across your employee roster, but you switch it on per employee. Available on the Founder plan and above, it needs the Desktop Companion app installed and paired to your account, plus Screen Recording and Accessibility permission granted in System Settings on first use.
What it can do
On the desktop side: take a screenshot, click (with modifier keys like shift or command), move the mouse, type text, press a key or shortcut combo, and scroll in any direction. On the file side: list a directory, read a file, write or append to a file, pull file details, and search by filename. On the terminal side: run a shell command in a working directory you choose, with a timeout you can set. Each of those maps to one action the employee calls on the same Computer Controller tool, so there's nothing extra to enable per capability once the companion is connected.
Multi-step work, like opening an app then filling in a form, gets broken into a sequence of these individual actions by the employee itself. There's no separate 'run a macro' mode. Every click and keystroke is deliberate and logged, which is also why a long, unattended desktop job can be slower than the equivalent browser task.
The guardrails
File access is scoped to your home directory and enforced at the companion, not just suggested to the employee: reads are capped at 10 MB, writes at 10 MB, and a directory listing returns at most 200 entries. Terminal commands run as your own user, never with sudo, and time out after 30 seconds by default (you can raise that up to 120 seconds for a slow build or install). A hard-coded blocklist rejects destructive patterns before they ever run: rm -rf against your root, home, or a wildcard path, disk-format commands, writing directly to a raw device, and shutdown or reboot.
The employee is also instructed never to type a password or interact with a security dialog on your behalf, and never to read SSH keys, credentials, or .env files unless you've explicitly asked for that file by name. None of that is optional per task: it's baked into the tool's own rules, so it applies the same way whether you asked for a quick file rename or a multi-step app workflow.
Setting it up
First, pair the Desktop Companion app to your account (it's a separate free download, distinct from the platform itself). Then grant it Screen Recording and Accessibility in System Settings > Privacy & Security on macOS. The app has to be quit and reopened once after that first grant before it takes effect, and macOS may prompt once more the first time the employee actually clicks or types. If a call fails, the tool is told not to retry blindly. It reports what happened and asks whether a permission prompt is sitting on your screen or the companion has gone offline, rather than repeating a doomed action.
If the companion isn't connected at all, the action fails immediately with a message asking you to open the app. If Accessibility permission specifically is missing, a click or keypress hangs for 5 seconds and then returns a clear explanation instead of hanging forever.
How It Works
The companion app gives the employee real mouse and keyboard on your desktop.
Install the lightweight companion app and pair it with your workforce. When you delegate desktop work, the employee operates your applications with real input: moving the cursor, clicking, typing, and navigating menus on screen.
Combined with screen vision, the employee runs the same observe-and-act loop a person does: look at the interface, decide the next step, act, and check the result. Destructive actions stay blocked at the companion level, and you can watch or interrupt at any moment.
Use Cases
Design file cleanup in Figma
The employee opens Figma, navigates layers and frames by clicking what it sees in the screenshot, and renames or reorganizes components the same way you would with a mouse, since Figma has no page structure a browser tool can read.
Spreadsheet work in Excel or Numbers
For a native spreadsheet app rather than a web-based one, the employee clicks into cells, types formulas and values, and scrolls through sheets by seeing and acting on the actual window.
A git and build workflow in the terminal
It runs git status, npm install, or a build command in a folder you specify, reads the output, and reports back, with commands timing out automatically if something hangs.
Finding and editing a local config file
Ask it to find every .env.example in a project or open a specific config under your home directory, and it lists, reads, and edits the file directly instead of asking you to paste the contents into chat.
Comparison
| Before | After |
| Automation ends where APIs end. | Any clickable app is automatable. |
| RPA scripts break when the UI shifts. | The employee sees and adapts to the interface. |
| Desktop work cannot be delegated to AI. | Describe the outcome and the employee drives the apps. |
| Integrations exist only for popular tools. | The interface itself is the integration. |
FAQ
Is it safe to let an employee run terminal commands?
Destructive patterns (rm -rf /, sudo, dd, reboot, fork bombs) are hard-blocked at the companion app before they can run. File access is bounded to your home directory, reads and writes are capped at 10 MB, and terminal commands time out after 30 seconds by default (up to 120 seconds if you raise it for one task).
Do I need to install anything?
Yes, the free Desktop Companion app, paired once to your account, plus Screen Recording and Accessibility permission granted to it on first use. Computer Controller is off by default and you enable it per employee once the companion is connected.
What kind of tasks actually need this instead of browser tools?
Anything in software without an API: design tools like Photoshop, spreadsheets and native office apps, video editors like Final Cut, internal desktop software, or a task that genuinely needs to see and click what's on your screen. The employee's browser connection reads the page's structure directly and is used instead for anything that lives inside a website.
Can the employee see my whole screen?
A screenshot captures every connected monitor stitched into one image, with the pixel position of each display included, only when a task actually calls for it, the same way it would reach for any other tool.
What is the minimum plan for this?
Founder plan or above. Computer Controller, file access, terminal commands, and screen vision are one connection and one plan gate, not four separate unlocks.
Will it type my passwords or click through a security prompt for me?
No. The employee is instructed to never type a password or interact with a security dialog on your behalf, and to never open SSH keys, credentials, or .env files unless you've named that exact file yourself.
Where Let Your Employee Use Any Desktop App fits
Let Your Employee Use Any Desktop App is part of Where their work lives.
Your AI agents manage their own workspace. Scheduled tasks run daily, weekly, or on custom cron cadences. A built-in kanban board tracks what is in progress. Every document lands in a personal Drive. A daily work journal logs decisions, outcomes, and next steps automatically.
Read the guide
More in Workspace
- Move a Team Member to the Bench: Every workspace has one Bench: a holding area for employees who are not currently on a working team. Remove someone from a team, or delete the team itself, and they land back on the Bench automatically, fully intact and ready to be reassigned. Nothing about them is deleted; only their team membership changes.
- Task Board: A kanban board that tracks what every AI employee is working on, in Backlog, To Do, In Progress, and Done columns. Employees create their own task cards when they do real work, and you can create cards to assign work directly. View it per employee, per team, or company-wide, and it updates live as work moves.
- Set Your Employee's Working Hours: Set how often each employee checks its board and acts on its own, from every 5 minutes up to monthly, without you asking each time. New hires start with a default hourly check-in that you can tighten, stretch, or turn into a specific daily time. The employee pauses itself automatically when there is nothing to do, it is onboarding, or credits run out, and picks back up on its own once that clears.
- Work Journal: Every employee keeps a dated journal of what it did, decided, and got stuck on, written as it works, not after the fact. Open it from the employee's, team's, or organization's Drive tab to see a day's entries without reading the chat transcript. Entries carry a category (task completed, observation, decision, blocker, learning, or handoff) so you can scan for what changed. It starts on hire with nothing to configure.
- Task Comments: Comment directly on a task, Drive file, sprint, CRM contact, or notification, and @mention the person, team, or AI employee who should act on it. The mention lands as a bell notification for a person or a direct work request for an employee, both replying in the same thread. Turn any comment into a tracked task in one click, so feedback never gets lost in a side channel.
- CRM: Every business runs on a CRM, the shared book of the people and companies it deals with. Sistava builds one in, and your AI employees run it for you. They add a prospect the moment one comes up, keep contacts current, open deals and move them down the pipeline as they progress, and write notes so nothing is forgotten. You get one clean place to see who you know, what's in flight, and what it's worth, without paying for a separate CRM.
- Sales Pipeline: Your deals live on a pipeline board, the same shape as your task board: a column for every stage, New, Screening, Meeting, Proposal, Customer, and a card for each deal showing its value and the company behind it. As a deal gets closer to won, it moves down the board. Your AI employees keep the pipeline current, opening deals, moving stages, and updating amounts, so you always know what's in flight and what it's worth, at a glance.
- Let Your Employee Work with Local Files: Connect the Desktop Companion app and your employee can read, write, list, and search files on your own computer, scoped to your home directory. Ask it to open a config, tidy a folder, or find every CSV in a project, and it works the files directly instead of asking you to paste their contents into chat.
- Let Your Employee Run Terminal Commands: Once you pair the Sista desktop app, your employee can run real shell commands on your machine: git, npm, brew, ls, grep, and anything else you'd type yourself. Commands run as your own user with no privilege escalation, and a hard-coded blocklist rejects destructive patterns like rm -rf /, disk formatting, or piping a remote script into a shell before they ever execute.
- Let Your Employee See Your Screen: Your employee looks at your actual screen and works from what it sees, not just an API. It captures your desktop through the Sista desktop app, reads the pixels the same way you would, and can click, type, and scroll based on what it finds. That covers any app you have open, including native software, dashboards, and design tools that never had an integration.
- Employee Drive: Every document, generated image, video, screenshot, and daily work log an employee produces lands automatically in its Drive, no saving required. Browse it per employee, per team, or company-wide, as a searchable flat grid or as folders. Files preview inline, from PDFs and spreadsheets to code and video, so you rarely need to download something just to read it. Every update becomes a numbered version that you can preview or restore without losing the original file.
- Company Drive: Every employee keeps its own Drive, but you shouldn't have to open ten employees to find one file. Company Drive rolls every employee's Drive into one company-wide view: every document, transcript, and deliverable your whole workforce has produced, browsable and searchable from one tab.
Explore