# Witina AI — Frequently asked questions > Direct answers to the questions buyers actually ask: credential storage, vendor support, > cloud requirement, gateway networking, cost, lock-in, and AI access. Source: https://witinaai.com/ai/faq.md Part of the Witina AI machine-readable corpus — index: https://witinaai.com/llms.txt Last updated: 2026-09-30 ## Do you store our device passwords? **No.** Device credentials are not stored in Witina's cloud. They are relayed to a gateway on your own network and kept encrypted there, on infrastructure you run. You can verify this by running the free self-hosted edition and watching the traffic yourself. Detail: https://witinaai.com/ai/security.md ## Which vendors do you support? Discovery and monitoring work across Cisco, Juniper, Arista, UniFi, Netgear, EdgeRouter and more, using standards like LLDP/CDP, SNMP and SSH rather than a single vendor's API. **Configuration-change support varies by platform** — the fastest way to check specific gear is to run the free trial against it. Detail: https://witinaai.com/ai/vendors.md ## Do I have to use your cloud? **No.** The free self-hosted edition runs entirely on your own hardware as a single container, for one network of up to 10 devices. A few features are cloud-only, such as change management, single sign-on and push notifications. The managed cloud adds those, plus multi-site scale, redundancy and hands-off operation. Detail: https://witinaai.com/ai/deployment.md ## How does the gateway reach the cloud? The gateway makes an **outbound** connection to the platform. You do not open any inbound ports or expose your network. It needs to reach the devices you want managed, and the internet. Detail: https://witinaai.com/ai/architecture.md ## What does it cost? You pay per monitored device, and **discovery is free**. Paid plans start at $59/month for 30 devices; the free tier on the managed cloud covers up to 10, and the self-hosted edition is free. Gateways do not count as devices. Every plan and rate is published: https://witinaai.com/ai/pricing.md ## What happens to my network if I leave? Your gateways and your data are yours. There is no software agent installed into your device configuration and no vendor lock-in — hand a network to an MSP, or take it back, on your own terms. ## Can I connect my own AI assistant? **Yes.** Witina runs an MCP server at `https://app.witinaai.com/mcp`. Claude, ChatGPT or an agent you wrote connects over OAuth 2.1 — the client registers itself, and you approve it in the browser, choosing which context it may see and whether it may only read and plan or also execute. The agent reads real collected state (running config, interfaces, VLANs, MAC tables, routes, spanning tree, LLDP neighbours, wireless, incidents) and can draft a change management. It **cannot execute** unless explicitly granted that separate permission, and its permissions are capped to those of the person who authorized it, recomputed on every request. Full detail and complete tool schemas: https://witinaai.com/ai/mcp.md ## Does Witina use AI to diagnose my network? **Not generatively, by design.** Witina's own alerting is a deterministic expert system: named rules that identify a specific fault — an unexpected spanning-tree root, a duplex mismatch, a guard violation — and name the fix. You can read the rules and reason about them. Witina deliberately does not have an LLM guessing at diagnoses in that path. The AI story is the other direction: *your* assistant connects to Witina and reads the facts. See https://witinaai.com/ai/mcp.md ## Will discovery set off our IDS? Discovery starts **passive** — listening to DHCP, LLDP/CDP and mDNS rather than scanning. Active probing and auto-connect are opt-in decisions you make per network. ## Are you SOC 2 certified? **No.** Witina AI is an early, pre-audit company and there is no third-party security certification yet. The marketing site states this plainly. The offered substitute is that the self-hosted edition is the same code and can be inspected end to end. Detail: https://witinaai.com/ai/security.md ## Can it handle overlapping IP ranges across sites or customers? Yes — overlapping IP spaces are supported, which matters for MSPs and for organizations where several sites use the same RFC1918 ranges. ## Can an MSP use one console for many clients? Yes. That is a first-class mode with a portfolio dashboard ordered worst-client-first, per-customer lifecycle, tiers, runbooks and one-form onboarding — with each client's credentials on a gateway in their own network. Detail: https://witinaai.com/ai/msp.md ## How does Witina compare with Auvik, PRTG or Domotz? Each comparison is sourced from the competitor's own documentation, with the rows where the competitor leads shown as well: - **Auvik** stores device credentials in its cloud, can't automatically restore a config, and quotes prices on annual contracts. https://witinaai.com/ai/compare-auvik.md - **PRTG Hosted Monitor** keeps credentials in PRTG's configuration on Paessler's AWS instance, draws maps by hand, and doesn't manage device configuration. https://witinaai.com/ai/compare-prtg.md - **Domotz** stores device credentials in its cloud and documents no approvals or collector failover; it's cheaper for a single site with a lot of gear. https://witinaai.com/ai/compare-domotz.md ## How do I try it? Run the single-container self-hosted trial against your real network — no account, nothing sent to Witina: https://witinaai.com/trial Or start free in the cloud with no credit card: https://app.witinaai.com/account/signup Or book a demo: https://witinaai.com/contact