Core Infrastructure

ChromeOS

Immutable endpoint OS. Sandboxed architecture, verified boot, zero-touch deployment. 65% cheaper hardware, 44% lower TCO.

Sovereign OS

Stateless NixOS with a private Flatpak store. Absolute data sovereignty with zero-touch efficiency and custom package delivery.

OpenWrt

Modular, transparent network OS for edge routers. Replaces proprietary appliances with commodity hardware.

SONiC

Open networking OS for switches. Containerized network functions, vendor-agnostic hardware, declarative state via Redis.

Networking & Identity

Tailscale & Headscale

WireGuard-based mesh VPN. Peer-to-peer connectivity with zero per-seat licensing and full data sovereignty.

Nebula

Cross-datacenter mesh networking. Lighthouse architecture scales to tens of thousands of nodes without bottlenecks.

NetBox

Network Source of Truth. IPAM, DCIM, and cabling management. Engineering state is derived from intended design.

Keycloak

Sovereign Identity. Centralized OpenID Connect (OIDC) gatekeeper for the entire organization. Zero SSO tax.

Sovereign Cloud

NixOS

The declarative platform. Unified management of infrastructure and applications via code. Eliminates the need for external PaaS layers.

SeaweedFS

High-performance distributed storage. Blazingly fast object store for the Unix Way, maintaining absolute data control and horizontal scale.

Nomad

Lightweight workload scheduler. Orchestrates Docker, raw binaries, Java, and VMs without Kubernetes overhead.

Business Applications

Odoo

Open-core ERP. Single PostgreSQL backend unifies CRM, billing, inventory, and HR. Multi-tenant by design.

Grist

Database-disguised-as-spreadsheet. Strict data integrity with Python logic. Replaces fragile Excel chains.

Stirling PDF

Self-hosted PDF toolkit. Military-grade document processing without Adobe licensing.

Sovereign Unix Workspace

A modular alternative to Google Workspace. Specialized tools integrated via Keycloak SSO.

Seafile

High-performance file sync. Block-level transfers that outperform standard cloud drives. Virtual drive access.

Matrix & Element

Decentralized, federated chat. End-to-end encrypted communication that you own and control.

OnlyOffice Docs

Real-time collaborative editing. 100% fidelity to Microsoft Office formats (.docx, .xlsx) in the browser.

Stalwart Mail

Modern Rust-based mail server. JMAP support, integrated anti-spam, and blazingly fast search.

Jitsi Meet

Sovereign video conferencing. Browser-based meetings with no accounts required and full encryption.

Observability & Security

VictoriaLogs

Columnar log storage with 87% less RAM than Loki. Compute-scale pricing — no volume tax on ingestion.

Wazuh

Open-source XDR and SIEM. Aligns security costs with compute, not data volume. Automated response.

vLLM & LiteLLM

Private local inference infrastructure. AI as a sovereign asset, not an external dependency.

Migration Playbooks

Ten detailed paths from technical debt to Constant scaling. Click a card to view the full playbook.