# For agencies and freelancers

> You build Airtable apps for clients — and shipping one with a hardcoded key is a liability you carry personally. VibeKit makes client work secure by default, with the client's base a clean source of truth you can hand over.

Client work on Airtable has a familiar shape: the data lives in a base the client actually
understands, the brief changes weekly, and every handover ends with you training them on yet
another CMS — then fielding "the site is showing old prices" emails for months afterwards.

VibeKit gives each client site a fast, secure backend — set up by pasting a token and a view
URL — and puts the day-to-day controls where the client already works: inside Airtable. You build
with your AI coding agent; they keep editing records; nobody emails you about a stale page.

## One app per client

Every client gets their own VibeKit app — its own Airtable token, branding, variables, and
cache. Nothing is shared between clients, so one client's token, theme, or data can never leak
into another's project. Each token is stored encrypted on VibeKit's side and never appears in
the code you hand over (see [secure token vault](/products/vibekit/features/secure-token-vault)).

## Build at agent speed

Paste the URL of the client's Airtable view into the admin and VibeKit reads it, learns the
fields, and writes a ready-made prompt for your coding agent. Hand that prompt across and the
agent builds against a concrete, working endpoint instead of guessing from a bare link — the
security, caching, and image plumbing already handled.

## Handover without a CMS

After launch, the client keeps editing in Airtable as they always have. Buttons inside Airtable
refresh the live site — a record, a whole list, or hands-free via an automation. Colours, logos,
and copy live as branding and variables, so a late rebrand or a headline change is one admin edit
that lands instantly, with no redeploy (see
[instant branding](/products/vibekit/features/instant-branding)). If the project needs members, login runs
against a users view in their base, with every attempt recorded in a login log.

## You hear about problems first

If a client automation starts firing cache refreshes too fast, VibeKit eases it off
automatically and flags the failing run in Airtable. Subscribe to an
[email alert digest](/products/vibekit/features/metrics-alerts) per app and you find out on your schedule —
before the client notices anything at all.

## Features that matter most here

- [Real-time updates, triggered from Airtable](/md/features/airtable-cache-control.md) — Refresh exactly what changed on your live site with a button or automation inside Airtable itself.
- [Change branding and colours without a redeploy](/md/features/instant-branding.md) — Change your app's logo and colours from the admin and see the live site update immediately, without a redeploy.
- [Your Airtable API token, kept secure server-side](/md/features/secure-token-vault.md) — Keep your Airtable token out of your website code entirely, so it can never leak to visitors.
- [Email alerts when your app slows down or errors](/md/features/metrics-alerts.md) — Get a brief email when your app hits rate-limit slow-downs or errors — and nothing at all when it's quiet.

## Questions this page answers

- build client websites on airtable data
- hand over an airtable website to a client
- let clients update their own website from airtable
- manage multiple airtable client projects
- agency workflow for airtable sites

---

Part of [VibeKit](/md/home.md) — all pages: [llms.txt](/llms.txt)
