An AI software engineer that builds, hosts, and iterates on full-stack web apps from natural-language chat, with built-in cloud backend, AI features, and third-party integrations.
Software capabilities Security & Trust Account fraud protection Runs automated fraud checks at sign-up and sign-in and denies attempts flagged as suspicious, such as VPN, proxy, Tor, unusual device or network, browser automation, or repeated failed attempts. Audit logs Provides Enterprise workspaces a searchable audit trail of membership, project, authentication, integration and settings events, with filtering, JSON detail, API-token attribution, and JSONL export. Automatic revocation of leaked API keys Automatically revokes a workspace API key and emails its creator plus every workspace owner and admin when GitHub detects the key committed to a public repository. Domain lock (Require SSO and Block workspace creation) Ties a verified domain to the workspace's SSO provider so users on the domain can only create accounts through SSO and cannot create workspaces, via support-enabled domain-wide Require SSO and Block workspace creation settings. Require two-factor authentication Lets a workspace admin or owner require two-factor authentication for everyone accessing the workspace; members without 2FA are redirected to enroll before they can use it, and the setting is mutually exclusive with Enforce SSO. SCIM provisioning Automates user and group lifecycle management in a workspace from an identity provider: setup requires mapping at least one IdP group to each of Admin, Editor and Viewer (Owner is also mappable), pushed IdP groups sync automatically into workspace Groups with a SCIM badge, an Activity log records SCIM requests, and a lock setting can restrict invites and removal to the identity provider. Security center Shows a workspace-wide dashboard of code analysis, dependency vulnerabilities, secrets exposure, and scan coverage across every project. Security scanning (Basic and Deep scan) Scans a project for row-level security misconfigurations, database and access-control issues, exposed secrets, and dependency vulnerabilities, automatically and on demand; the dependency list sorts known issues by severity with a bulk Try to fix all action, and its JSON export covers every listed vulnerability. Sensitive data scanning Detects personally identifiable information across chat history, Lovable Cloud databases, and storage, and can block or redact messages before they are sent. Single sign-on (SSO) Supports OIDC and SAML 2.0 single sign-on for workspace access on Business and Enterprise plans, with enforced SSO, IdP group role mapping, IdP-initiated SAML sign-in, in-place provider editing, SAML certificate rotation, and OIDC client secret expiry tracking. Step-up verification for sensitive workspace changes Prompts a password confirmation or emailed code before allowing sensitive workspace changes — inviting a member, changing a member's role, or transferring project ownership — when the request looks unusual, such as a new device or location. Workspace identity reuse Lets a built app automatically recognize the signed-in Lovable workspace user, reading their name, email, and user ID without a separate login page.
Agent & Building AI app builder (agent) Generates and edits full-stack web applications from natural-language chat prompts, executing multi-step code changes across a project. Browser testing Lets the agent verify app behavior in a remote browser — clicking, filling forms, navigating, reading logs, and testing screen sizes — including signing in to Cloud-backed apps to test pages behind a login. Chat history search Searches and references a project's full chat history, retrieving past messages and answering semantic questions about prior context. Design guidance Generates three lightweight design directions and asks guided design questions so users shape layout, typography, and color before Lovable builds. File generation and data analysis Analyzes data in chat and produces downloadable files, including CSV, PDF, Excel, Word, PowerPoint, and charts, without modifying the project's source code. Goal mode Lets a user set a Build mode message as a goal with the /goal command so Lovable keeps working on it without pausing to ask questions, for up to 10 hours, until the goal is achieved. Plan mode Lets a user brainstorm and reason through requirements with the agent in a read-only conversation before any code is generated. Prompt queue Queues prompts while the agent works, with pause, resume, reorder, edit, copy, remove, and repeatable items up to 50 times. Skills Stores reusable named playbooks of instructions that the agent loads on demand when a matching task comes up in any project in the workspace. Subagents Delegates research, code exploration, and review to temporary read-only parallel subagents that report findings back to the main building agent. Workspace and project knowledge Keeps persistent coding standards, brand guidelines, and domain context in every agent conversation across a workspace or project.
Integrations & Extensibility App connectors Provides shared app + chat and app user connections to third-party tools, with private-by-default sharing: creators share by email or workspace invite, can make a connection private again, and Managed by Lovable connections are shared workspace-wide by default. App user connectors Lets each end user of a published app connect their own third-party account, such as Gmail, Salesforce, or Workday, so the app acts with that user's own permissions and sees only their own data. Chat connectors (MCP servers) Connects a user's personal tool accounts, including custom MCP servers, to give the building agent context from real content while a project is created; an Enterprise-only Lovable static IPs option routes custom MCP traffic through fixed egress ranges for firewall allowlisting. Custom API integration Lets a builder describe any external API, public or private, in a prompt so Lovable writes the integration directly, or through a Cloud-backed Edge Function with a stored secret when the API requires authentication. Custom Connector Authoring Lets a workspace admin or owner define a connector for any public or internal REST API - endpoint, authentication method, optional logo, and agent knowledge files - and publish it to the workspace connector catalog; shared members can view a connection's configuration with secret values masked. GitHub, GitLab, and Bitbucket git sync Syncs project code to GitHub, GitLab (cloud and self-managed), or Bitbucket Cloud repositories, including GitHub Enterprise Cloud with data residency and self-hosted GitHub Enterprise Server on Enterprise. Lovable API: Build with URL Opens Lovable with a prompt (and optional reference images or pages) prefilled from a shareable link or an existing project's chat, for the person to review and send; links no longer submit automatically. Lovable MCP server Exposes Lovable itself as a Model Context Protocol server so external AI clients can create, edit, inspect, and deploy Lovable projects. Lovable public API Exposes a versioned public REST API at api.lovable.dev for managing and deploying existing projects: workspaces, members, groups, project CRUD, publish and audience control, embed URLs, security scans and Security Center insights, PII findings, and project and workspace analytics, with date-pinned versions, rate limits, and cursor pagination.
Publishing & Deployment Build secrets Stores encrypted, workspace-level environment variables that Lovable injects into a project while it builds, such as npm registry tokens for installing private packages; workspace editors can view secret names read-only, while only admins and owners can add, edit, or delete them. Code editor Lets a user view and directly edit a project's source code inside Lovable, alongside agent-driven changes. Custom and branded domains Lets users buy, connect and manage custom domains and subdomains for published projects, with automatic DNS and SSL setup, primary-domain redirects, workspace-level domain management, and editable registrant details. Design systems Defines a reusable React component library, design tokens, and setup instructions in a dedicated project and syncs updates into every connected project. Live preview toggle Lets a user turn off the live-updating editor preview so it shows only the most recently completed version of the app instead, without restarting on version-history switches or pausing when idle. Private npm registry Hosts an internal npm registry for a workspace so teams can publish and install private packages, such as a shared design system, across projects. Publish an app to Slack as an agent Registers a published Lovable project as its own Slack app in an authorized workspace, without a Slack developer account or manual key exchange, so teammates mention or message it directly. Publish and unpublish Deploys a project's current build to a live URL, running publish-time security checks; controls who can view the published app (Public, Workspace, or a Custom audience of groups, members, and people outside the workspace invited by email on Business/Enterprise); and lets a user unpublish it again. TanStack Start project upgrade Migrates a project built on Lovable's earlier React + Vite stack to the TanStack Start template in place, rendering pages server-side so search engines and social previews can read them; triggered from a chat command, project settings, or by asking the agent.
Collaboration Cross-project referencing References other workspace projects via @ mentions so the agent can read their code and history and reuse or adapt implementations in the current project. Drafts Holds project changes in a separate copy with its own chat, preview, and edits until accepted into main; creating, updating, accepting, and deleting a draft use no credits, backend changes like sign-in methods or secrets must be made in main, and an All drafts/My drafts filter narrows the switcher. In-project support requests Files a support request from inside a project, auto-attaching project, workspace and account context plus up to five images. Lovable in Slack Answers @Lovable mentions and direct messages in a connected Slack workspace to create projects, change apps, report what changed and query app data, replying in a thread that several teammates can iterate in. Project comments Lets collaborators and guests with a preview link leave, reply to, and resolve pinned comments directly on the app preview. Real-time collaboration and sharing Lets multiple workspace members co-edit a project in real time and share or reference projects with each other, including across projects.
Cloud Backend App user authentication Provides user authentication for generated apps through Cloud Auth, including magic links, invites, email change and reauthentication flows, with auth redirect URLs updated automatically when a custom domain goes live. Cloud instance management Manages the Cloud backend's infrastructure: resource health cards for CPU, memory and disk pressure, instance resizing, database storage increases, data exports, pausing, and removal. Custom-domain transactional emails Sends branded authentication and app transactional emails from the user's own domain with automated DNS, SPF, DKIM and DMARC setup, per-plan hourly sending limits, delivery analytics, and unsubscribe handling. Database backup restoration Restores a Lovable Cloud project database to any recent daily backup from the Cloud view without contacting support. Lovable Cloud Provisions a managed backend for a project, including database, authentication, file storage with a configurable upload size limit, edge functions, scheduled jobs, and secrets, with no manual infrastructure setup.
Billing & Plans Credits and usage tracking Tracks a workspace's single credit balance across building, hosting, and AI usage, with top-ups, auto top-up, alerts, and per-project and per-member usage breakdowns. In-app payments Lets a built app accept subscriptions and one-time payments through a built-in Paddle or Stripe integration, with test and live environments. Referral program Lets workspace members share an invite link or QR code and earn bonus credits when invitees sign up and first pay for Pro or Business, subject to per-workspace signup caps and fraud checks. Subscription plan management Lets a workspace owner or admin upgrade, downgrade, switch billing cycle, or cancel a subscription, and set per-member credit limits.
Content & Growth Design templates Lets a workspace mark any project as a reusable starting template that other projects can be started from. Lovable templates gallery Provides a public gallery of ready-made apps at lovable.dev/templates that anyone can remix into their own independent copy on any plan, distinct from the Business/Enterprise Design templates feature. Preview toolbar (visual edits) Lets a user select elements, edit text inline, draw annotations, or leave comments directly on the live app preview to drive edits. SEO and AI search optimization Reviews and fixes a project's search-engine and AI-search discoverability, including metadata, structured data, sitemaps, and crawlability.
Governance & Permissions Roles, permissions, and groups Controls what workspace and project members can do based on owner, admin, editor, viewer, and external-collaborator roles, and lets admins organize members into groups. Transfer primary ownership Lets the workspace's primary owner transfer that role, used for billing and domain claims, to another workspace member or to an outside Lovable account by email. Workspace API keys Lets workspace owners and admins create, scope, and revoke API keys (access tokens) for the Lovable API, with per-key resource scopes, expiry, and monthly credit limits. Workspace insights Gives a portfolio-level view of every project in a workspace, combining security findings, PII findings, ownership, lifecycle, and activity into a review priority.
Mobile & Desktop Desktop app Provides a native macOS and Windows app with the full web experience, local MCP server support, multi-project tabs, and keyboard shortcuts. Lovable bot in Telegram Lets users build apps, update projects, publish, query databases read-only, and view analytics by chatting with the Lovable bot inside Telegram. Mobile app Provides a native iOS and Android app for building, chatting with, and managing Lovable projects from a phone, downloadable via QR codes from workspace settings or from the app stores.
Monitoring & Analytics Insights (workspace adoption dashboard) Shows workspace admins and owners 30-day adoption metrics - app visits, active apps, active builders, and connections added, with trend comparisons - plus top apps and top builders rankings, adoption by department for SCIM workspaces, and CSV export of the app and builder lists. Project analytics Tracks visitor traffic and engagement for a published app, including visitors, pageviews, visit duration, bounce rate, and views per visit. Project monitoring Checks a project on a schedule, reviewing code and recent visitor errors, and surfaces important findings to project editors and the owner.
App AI Features Lovable AI (built-in AI features) Adds AI features to a built app, including chat, image and video generation, embeddings, text-to-speech, and speech-to-text, across models from Google and OpenAI, without requiring the builder to manage provider API keys; deprecated models are flagged with a badge and priority processing is available on supported chat models from either provider.