Mac-native Kubernetes cockpit

Understand why,
change safely.

Every other client shows you cluster state. Ergo shows you the causal chain behind it — the ownerRefs, the events, the moment it broke — and turns your CRDs into real, typed UI. Then it makes changing that cluster deliberate: a confirmation that names the blast radius, and an audit log on your Mac.

Download on the Mac App Store
macOS 15+ · Apple silicon & Intel · free viewer tier
traefik-tls · Certificate
Causal chain
Certificate
traefik-tls
Ready
CertificateRequest
traefik-tls-1
Issued
Order
traefik-tls-1-2894…
Pending
Challenge · HTTP-01
traefik-tls-1-2894-388…
Failed
Root cause · 4s ago

Challenge propagation check failed — ingress route returns 404 on /.well-known/acme-challenge/… The Traefik IngressRoute for this host isn't matching the solver pod.

The flagship

Stop stitching together describe, logs, and events by hand.

Ergo walks ownerRefs, operator heuristics, and the event stream to reconstruct the full story behind any resource — then pinpoints where it actually broke. What used to be six terminal tabs is one view.

Follow the chain

Certificate → Request → Order → Challenge, resolved automatically across cert-manager, Argo, Keda, and any operator that sets ownerRefs.

Pinpoint the break

Correlated events surface the exact resource and moment a rollout, sync, or issuance went sideways — with a plain-language root cause.

Fix it without guessing

Edit the resource in a typed form or its manifest, and the API server's own dry run returns the exact diff it would apply — defaults and admission mutations included — before you commit it.

Changing a cluster

Understanding a cluster is safe. Changing one should feel that way too.

Scale, restart, apply, evict, cordon, uncordon, drain, edit taints, delete — all nine take the same road: one confirmation you have to read, then one line in a log on your Mac. Browsing and dry runs are free; committing is the part Ergo Pro unlocks.

It names what it will touch

Every confirmation spells out the resource, its namespace, and the cluster — dotted in that cluster's environment color, and set in red when the cluster is marked production.

Production deletes are typed, not clicked

On a cluster marked production, the delete button stays disabled until you type the resource's name. Ergo guesses the environment from the cluster's name and lets you correct the guess.

Deletes say what comes back

A pod its controller owns will be recreated; an unowned one is gone for good. For anything else, the sheet says plainly that dependent objects may be garbage-collected.

A scale that fights the autoscaler says so

Pick a replica count outside a HorizontalPodAutoscaler's bounds and Ergo names the bound you crossed, its current metric targets, and the fact that the autoscaler will override your number anyway.

Every commit leaves a receipt

A plain-JSON audit log on your Mac, one file per day and one line per action — failures written down with their reason, not only the changes that worked.

Agents get a client that cannot write

The local MCP tools are built on Ergo's read-only cluster interface, which has no mutating methods to call. Changes live behind a separate interface the agent surface never holds.

Built on three ideas

A cockpit, not a dashboard.

01

Relationships & time

The pipeline view and the cluster map. Follow ownerRefs, correlated events, and ingress paths down to the pods actually serving — so you can see how everything connects, and where the chain broke.

02

Schema & AI

Every CRD becomes a real, typed form generated deterministically from its OpenAPI schema — no raw YAML guesswork. On-device AI assists; you stay in control.

03

Auth & agents

Native EKS / GKE / AKS auth — no shelling out to CLIs. And a local MCP endpoint, so the Kubernetes client your AI agent can actually drive lives right on your Mac.

Local-first by design

Your kubeconfig and cluster data never leave your Mac.

Credentials live in the Keychain. Your saved views and settings stay on this Mac, and so do your connections unless you switch on iCloud sync — which carries connection details between your own Macs, never credentials. AI runs entirely on-device. No web backend sees your clusters — because there isn't one.

Runs inside the macOS App Sandbox
Credentials in Keychain, never synced to a server
On-device AI — no data resold, no telemetry on your clusters
Ergo

See the story behind your cluster.

Free viewer tier, no account required. Download and connect your first cluster in under a minute.

Download on the Mac App Store Read the docs