AI for MSPs, across your PSA, RMM and Microsoft 365
One operator, patched into the whole stack — RMM, PSA, Microsoft 365, distribution, network, security, backup, books. Every answer traced to a real tool call against your systems. Read-only today: any change is refused by our server until a person switches it on. Built as AI skills — see the full catalog — and reachable from the AI you already use as a custom connector.
What MSPs actually ask
The questions, not the demo script.
Most MSP AI tools demo against a sample dataset. Every prompt below is lifted verbatim from a live integration page on this site, one per platform — these are the questions the engine answers today, against your own tenant.
The board
16 platforms answering today.
An AI assistant for MSPs is worth exactly what it can reach. Here is the whole board, with the real status on each one — 16 live and 2 in flight. Each page lists every skill that platform ships with and, just as plainly, what it cannot do.
Platform by platform
Where AI helps an MSP, platform by platform.
AI for MSPs is only as useful as the systems it can read. Here is what a session reads in each platform family an MSP already runs, with a link to the page that lists every skill and every limit. Where a connection is still being built, the paragraph says what is planned.
PSA and the service desk: AI ticket management for MSPs
ConnectWise PSA holds the service queue. A session reads the open queue by board and age, the unassigned pile, and the notes and logged time on any ticket, and it counts tickets exactly across every board. Ask which tickets on the Help Desk board have been waiting on you for more than three days, or which agreements renew this quarter and what they are worth. NinjaOne carries its own helpdesk, and a session reads its boards, its tickets and each ticket's log alongside the alerts that should have a ticket. Both are read-only today: nothing opens, assigns or closes a ticket from a session.
RMM: devices, patches and alerts
On ConnectWise Automate, ask which machines have been offline for more than a week and at which clients, or which machines are sitting reboot-pending before their patches finish. On ConnectWise Asio, ask which automation tasks failed in the last run and which endpoints carry known CVEs. On NinjaOne, ask for pending OS patches grouped by organization. Nothing a session reaches runs a script, pushes a patch or reboots a machine. Datto RMM is in the works: the plan is for a session to read devices and their check-in state, patch status, monitoring alerts and the jobs run against them once it is connected.
Microsoft 365: every client tenant at once
Connect each client's Microsoft 365 tenant and one question spans every tenant the session can reach, with the client name on each row. Ask which clients have MFA gaps right now, how many seats a client pays for on each SKU but does not assign, or which devices are out of compliance. Read-only today. The client's own Global Admin consents to the read packs, tenant by tenant, and can hand over the directory read while keeping the audit read back.
Backup: failed jobs and restore points
On Axcient x360Recover, ask which devices have failed or skipped a backup in the last 24 hours, how recent their restore points are, and what the latest AutoVerify boot test showed. A session can compare backup coverage with your ConnectWise Asio roster and calls out the mappings it cannot resolve instead of guessing. Reading a restore point does not start a recovery or a new test.
Security: threats and agent coverage
On SentinelOne, ask which threats are still unresolved and on which clients, and whether any sites run detect-only instead of protect. With ConnectWise Automate or NinjaOne connected too, a session names the machines the RMM manages that carry no SentinelOne agent. On Webroot, one question reaches every site under the GSM: which endpoints have not checked in this week, any active threats, and what DNS Protection blocked. Both are read-only today: no session isolates a machine in SentinelOne or quarantines a file in Webroot. On Trend Vision One, ask which clients have real-time scan switched off right now, which devices have not checked in for 7 days, or what Trend detected this month and where the cleanup failed. Its partner key is not limited by role, so the limits are ours: the integration makes read calls only.
Billing: subscriptions, margin and receivables
Pax8 holds what you resell. Ask how many active subscriptions you have and what they cost per month, what your margin is on a product against suggested retail, or what is on the next invoice that was not on the last one. Xero holds your own books: ask who owes you money more than 60 days past due, or which supplier bills are overdue. Both are read-only today. Reading a bill is not the same as paying one, and nothing here places an order or changes a seat count.
In the day
Where it fits in the day.
Four moments where an MSP AI session earns its keep. Every capability named here is shipped and documented on the platform page it links to.
NOC triage
Something is down and nobody knows where to start. Ask how many agents are offline across the whole tenant and it counts them in Automate; ask which automation tasks failed on the last run and it reads them out of Asio; ask why wireless dropped at the clinic this morning and it works the Meraki network-health tools for auth, DHCP and DNS. Meraki is the one place a read can become an action, and only five of them — ping, cable test, switch-port cycle, LED blink, and reboot.
Grounded in ConnectWise Automate · ConnectWise Asio · Cisco Meraki
Service desk
The queue is the question. How many tickets are open with nobody assigned, across every board? What's been sitting on Help Desk longer than a week? Who logged hours against the migration project last month? ConnectWise PSA answers all of it by reading. Nothing in the PSA can be created, edited or deleted from a session — no ticket, time entry, invoice, agreement, company, configuration or project. Any change the integration could make in ConnectWise PSA is held back — refused by our server before anything reaches ConnectWise PSA — until a person switches it on, and nothing is switched on today.
Grounded in ConnectWise PSA
| Ticket | Waiting |
|---|---|
| #1042 · VPN access | 4 days |
| #1076 · Mailbox setup | 2 days |
| #1081 · Printer offline | 1 day |
Account management and QBRs
The review deck is a set of questions nobody has time to chase. Which agreements renew this quarter and what are they worth? How many seats is this client paying for on each Microsoft SKU but not assigning? Who owes us money more than 60 days past due, and what does their month-to-date P&L look like? Four systems, one session — and every number in the deck traces back to the call that produced it.
Grounded in ConnectWise PSA · Microsoft 365 · Pax8 · Xero
| Review item | Finding |
|---|---|
| Agreements renewing | 2 this quarter |
| Unassigned M365 seats | 12 seats |
| Overdue invoices | 3 over 60 days |
Vendor and licensing ops
The margin leak is usually in the paperwork. Which clients hold the same product on both annual and month-to-month terms? What's on the next Pax8 invoice that wasn't on the last one, and what's accruing toward it right now? How many Business Standard seats is this client paying for, and who actually holds them? Which Meraki licenses expire in the next 90 days? All reads — no credential we issue carries a write scope, so nothing here places an order or moves a seat count.
Grounded in Pax8 · Google Workspace · Cisco Meraki
| Sample license | Paid / assigned |
|---|---|
| Business Standard | 40 / 34 |
| Business Premium | 60 / 48 |
| Exchange Online | 25 / 22 |
Field notes
AI for MSPs, answered straight.
How is this different from a chatbot or connecting my tools to ChatGPT?
Switchboard brings an engineered system for MSP work: platform-specific skills, vetted playbooks and enforced access controls. We build the integrations, test their behavior and permission boundaries, and check playbook instructions against the tools and data available. Skills handle specific jobs; playbooks guide the investigation, cross-checks and limits of what can be concluded. You can inspect the tool calls behind an answer. Your admin controls who can reach each system, credentials stay server-side, and Switchboard sessions run in isolated environments. Access is read-only today. Any change a platform could make is held back — refused by our server before anything reaches the platform — until a person switches it on, and nothing is switched on today. Your preferred AI client can be your interface to this controlled access; your chosen client’s own data-handling terms still apply.
What can AI actually do for an MSP today?
Answer questions about your own systems, in plain English, without anyone opening five consoles. A Switchboard session is patched into the platforms you have connected — RMM, PSA, Microsoft 365, Google Workspace, distribution, network, security, backup, books — and works the same read APIs a tech would click through, then reports what came back. What it does not do is run the business for you. It reads, correlates and explains; the judgement, and on most platforms the changes, stay with your team.
Can it change things in my stack, or does it only read?
Hosted and external AI connections provide read-only access. ConnectWise Automate, ConnectWise Asio, Pax8, Webroot, Xero, Axcient x360Recover, Ninety, SentinelOne and ConnectWise PSA are read-only today: no credential we issue carries a write scope, and where an agent's code holds write actions, each is held back — refused by our server before anything reaches the platform — until a person switches it on; nothing is switched on today. Nothing in those platforms can be created, edited or deleted from a session. Platforms with a named write surface include Cisco Meraki, with exactly five device actions — ping, cable test, switch-port cycle, LED blink and reboot; and ConnectWise ScreenConnect, whose write surface — session actions, machine commands and an access-issuance action — ships unreachable, with nothing scoped to it. Microsoft 365 and Google Workspace also need capability-pack consent from the client's Global Admin or super admin, tenant by tenant. That vendor consent is separate from approval for a call and does not enable writes through your external AI connector.
Can I make my own AI agents?
Yes. Once your systems are connected, tell Grace, your in-app guide, the job you want done, for example “give me a morning report of which clients' backups failed”. She sets up the agent (name, brief, which Space it works in, which systems it may read) and you confirm it in the app, or you make one yourself with New agent. There is no limit on how many you make. Each one is read-only, keeps notes on what it learns about your MSP, and works in the Space you put it in. The AI Agents page shows twelve examples we designed, from a client churn radar to backup assurance.
How are credentials handled?
Each platform agent authenticates with its own scoped credential, held server-side in a credential vault. Nothing sensitive ships to the browser and there is no shared master key. The shape follows whatever the vendor offers: a dedicated Integrator service account on ConnectWise Automate, an OAuth2 grant from Xero's own consent screen, a GSM-scoped Unity API client on Webroot, a partner API key from x360Portal on Axcient, a Viewer service-user token on SentinelOne, a partner key on Trend Vision One that we use for reads only, a separate Entra app registration per consented pack on Microsoft 365. Each credential carries exactly the rights the admin who created it holds — a session can never see more than its credential can — and you revoke it on the vendor's side, not ours.
Which platforms are live right now?
Live on the board today: ConnectWise Automate, ConnectWise PSA, ConnectWise Asio, ConnectWise ScreenConnect, Microsoft 365, Google Workspace, Pax8, Cisco Meraki, Webroot, Xero, Axcient x360Recover, Ninety, ImmyBot, NinjaOne, SentinelOne, and Trend Vision One. In flight: Datto RMM and Hudu. Every one of them has its own page listing each skill it ships with and, just as plainly, the things it cannot do.
What does it cost?
Dedicated starts from $1,386/mo for three users, including your own EdgeKeeper Server and database. Hosted starts from $387/mo for three users on shared infrastructure and supports up to five. Dedicated is required for six through ten users; above ten, talk to Brian. Microsoft 365 and Google Workspace tenants count together: the first 5 are included on Hosted, and the first 10 on Dedicated. Each additional tenant is $10 per month. Dedicated includes all platforms and all Switchboard usage, with no extra token charges, per-question fees or usage top-ups. Reasonable rate limits per user and platform prevent abuse. Hosted includes up to 5 connected platforms, 50 questions per team per day, 3 concurrent sessions, 5 scheduled report runs per week and refreshes every 6 hours. Both packages process requests privately, with your MSP’s data isolated and no separate token bill. Your own AI client’s subscription is separate. On Dedicated, your EdgeKeeper Server and database are provisioned at signup. No onboarding fee and no separate setup wait. Connect your systems and get started. Headless MCP access is included in every seat. Connect your own Claude, ChatGPT or Copilot at no extra cost. Guidance, shared playbooks and automations we release for everyone are included with Dedicated. Bespoke automation builds are scoped separately. Any change a platform could make is held back — refused by our server before anything reaches the platform — until a person switches it on, and nothing is switched on today. The trial covers seats and database for 14 days; the server bills from activation. See Pricing for annual rates and a complete estimate.
How is this different from a chatbot?
A chatbot predicts an answer from what it read on the internet. Switchboard makes calls against your systems and reports what came back. Ask how many agents are offline and the session runs a named tool against your RMM, gets the list, and counts it — and you can open the tool calls behind any answer and see what was asked and what came back. Those calls give you evidence to check. AI can still misinterpret a result or make a mistake, so review the source before acting on an answer.
How long does it take to connect a platform?
An afternoon for the first one, and every platform after that is independent of it. ConnectWise Automate is a dedicated Integrator account, a read-focused user class, and your server address. Microsoft 365 is the guided connect plus the client's own Global Admin walking Microsoft's consent screens, one per pack, in a single sitting — every other tenant then connects the same way, on its own. Xero is one sign-in through Xero's consent screen, which binds every organisation you authorize in that flow. Each integration page carries its own connect steps and links out to the vendor's documentation.
The Hosted and Dedicated packages, trial terms and usage limits are on the Switchboard sheet.
Get AI connected to your stack.
Apply for the beta: 14 days free on the Hosted plan against your own environment, read-only, every answer traced. Accepted MSPs get half off seats and client tenants for the first year. Dedicated infrastructure is priced separately.