Any hardware. Fully portable. Never held hostage.
One control plane for every machine you run — cloud VPS, bare metal, office PCs, GPU rentals. Protect supported Postgres and named-volume workloads with encrypted restic snapshots, restore or move them through an operator-verified workflow, and deploy apps through HostPack → Docker → Traefik. The signed portable pack, unattended relocation, and fleet inference paths remain private beta until their live release gates pass. Your data, your bucket, your exit.
Managed hosting — or license the engine on hardware you already own.
Same control plane. Same agent. Same portability and AI path — whether we host the box or you bring cloud, colo, office machines, or GPU rentals.
Managed hosting, un-trappable by design
Buy capacity from us and the whole stack is baked in: deploy, managed databases, backup, clone, one-click relocate. Portability is the product — not an upsell.
License it wherever you already compute
Install the agent on Hostinger, Hetzner, DigitalOcean, Vultr, AWS, bare metal, office PCs, or a rented GPU. Fleet-aware, provider-agnostic — one dashboard for every machine you refuse to lose.
Deploy tools don't move you.
Backup tools don't run your fleet.
AI APIs don't run on your metal.
The market is sliced into panels, snapshot products, GPU marketplaces, and foundation APIs. Nobody owns the full loop: onboard any machine → protect it → move it → provision cloud when you need it → expose inference to your apps without binding to a vendor. That loop is HostSSH.
Fragmented stack (today)
- PaaS deploys apps — then traps you at renew time
- SQL dumps & disk snapshots — volumes or IPs break the story
- Office GPUs and Vast boxes live outside the control plane
- Inference apps hardcode a vendor URL you can't swap
What HostSSH unifies
- Any hardware joins one fleet (cloud, bare metal, desk, rental)
- Encrypted snapshots of supported Postgres and named-volume workloads; signed portable pack and unattended relocate remain private beta
- Files · DB · Workers · Storage day one; Inference API over your capacity
- Apps talk to HostSSH — never to a box IP or a single GPU vendor
Push code. We build, ship and route it.
A managed HostPack → Docker → Traefik path takes your repo to a live, TLS-terminated URL — no Nix, no Dockerfile required, no hand-wired reverse proxy.
Detect & build
HostPack inspects your repo, picks the runtime and produces a lean, reproducible OCI image — Node, Python, Go, Rust, static and more. No Dockerfile to maintain, no Nix to learn.
Run & supervise
The image runs as a supervised Docker container with health checks, sealed-secret injection, resource caps, persistent volumes and health-gated deploys so a bad build never silently goes live.
Route & secure
Traefik binds your domain, issues and renews Let's Encrypt TLS (HTTP-01 today; DNS-01 for wildcards and pre-cutover certs as nodes upgrade), and load-balances traffic. Routes are declarative, so a relocated box re-binds automatically.
Files. DB. Workers. Inference. Storage.
The relocate engine is the moat — but every node also runs a full day-to-day platform. These five primitives ship with the agent; you don't bolt them on later.
Any file type, in the image
Named volumes survive redeploys. The .hsi captures volume data — uploads, media, SQLite, WordPress, MinIO blobs — binary-safe, not SQL dumps only.
Managed databases
One-click Postgres (pgvector), MariaDB, and Redis — generated creds, internal networking, included in full-server capture & restore.
Same pipeline, no proxy
Background workers and queue consumers deploy like web apps — --command, Slot caps, sealed secrets — without a public route. Spin on-demand workers from MCP too.
Your capacity, one API
OpenAI-compatible gateway routes model names to CPU fleet, office GPUs, or rentals — apps never see upstream hosts. Today: Copilot + MCP. Gateway + templates in product; live fleet completion proof on the path.
Your bucket — and MinIO
BYO R2/S3/B2 for encrypted .hsi backups (zero-egress restores). Need app object storage? One-click MinIO beside your apps.
Every surface. Including the one in the name.
From the first deploy to a 3am disaster recovery — capture, restore, relocate, provision and prove it, all from one control plane or one Go binary.
One-click deploy pipeline
HostPack builds it, Docker runs it, Traefik routes it. Push to ship, with health checks, secrets and versioned images you can roll back to.
Managed databases
Provision Postgres, MariaDB or Redis in a click — connection strings, internal networking, and inclusion in full-server capture & restore.
Persistent files, any type
Named volumes survive redeploys. The .hsi captures the bytes inside — uploads, media, SQLite, WordPress — not empty mount names.
Background workers
Same HostPack → Docker path as web apps, with a command override and no public route — queue consumers and cron-style processes with Slot caps.
Workload capture
Supported Postgres data and named Docker-volume bytes land in encrypted restic snapshots. Broader database adapters and the signed portable pack are gated.
Restore-drills & backup health
Integrity drills verify your backup repository is readable and restorable. Full sandbox row-verify is on the roadmap — a backup you haven't tested is still a rumour.
Automatic IP-rewrite
Deterministic IP rewrite exists in the engine; an operator verifies routes, TLS and health before a production cutover. Unattended relocation remains private beta.
Provisioning queue
Provider drivers and the durable queue are implemented. Provider-by-provider paid rehearsals are the release gate before unattended production use.
Encrypted, your bucket
Images sealed before they leave the host. R2, S3, MinIO, B2, Wasabi, SFTP or local — you own the storage, zero-egress restores.
License-gating & fleet awareness
ed25519 license tokens unlock features per tier; the control plane keeps every agent and server in one fleet view — even across providers.
CLI, MCP & Fleet Copilot
One Go binary drives everything; MCP + Copilot let AI agents diagnose and operate the fleet through the same RBAC-gated actions you use.
Inference API over your metal
Issue sealed keys, map models to fleet upstreams, and call an OpenAI-compatible base URL — swap office GPU for cloud rental without changing app code.
Office, colo, rental, cloud
Same agent join path whether the box is a Hostinger VPS, a desk PC behind NAT, or a Vast GPU — no public IP required when you tunnel.
Slots & capacity
Pack apps onto a box with hard CPU/memory/PID caps in four sizes — a real isolation unit you can meter, place, and move between machines.
One-click hardening
Default-deny firewall baseline today; full Security Score, granular profiles and armed auto-revert rolling out behind the security spine.
Monitoring & delivered alerts
Auto uptime monitors on every routed domain, plus disk, backup and cert watches — that page you on Slack, PagerDuty, webhook or email, not just draw a red dot.
Browser root SSH
Keyless, audited root access from the browser through an mTLS relay — private beta; session recording and pentest before general availability.
Built on an engine we verify before release.
A live capture → restore rehearsal proved the current supported workload path on our own fleet. Scheduled repository integrity drills keep backups readable; full sandbox restoration, row-level verification and unattended cutover are still required before general availability.
Built by Sevak Girard at Girard Media and dogfooded on our own production fleet — the deploy, backup, and relocate paths run our real servers before they run yours.
Per fleet. Bring your own bucket.
You pay for the software; storage stays on your own R2/S3/B2. No surprise egress, no data hostage — emergency restores work even on an expired license.
- 1 server (any hardware)
- Capture · restore · relocate (private beta)
- Inference gateway (early access)
- Restore-drills · BYO storage (private beta)
- Community support
- 3 servers included
- 5 seats
- MCP + AI ops
- Inference gateway (early access)
- Keep-all retention · Email support
- 10 servers included
- 10 seats
- Priority restore · Audit + RBAC
- Cross-provider provisioning (private beta)
- Priority support
- 50 servers included
- White-label brand + domain
- Per-client orgs
- Resold-VPS margin
- Slack / PagerDuty
- Unlimited servers
- White-label + custom domains
- Sub-accounts / org hierarchy
- Self-hosted control plane (roadmap)
- SSO / SCIM (roadmap) · SLA + dedicated
Bring your first VPS online with us.
The signed public installer mirror is in its final activation gate. Request onboarding and we’ll use the verified operator path until the public command passes live proof.
! Signed installer activation pending · Request onboarding →Stop dreading the migration.
Create an account and request onboarding for the verified join path. Backup, restore, and move stay on the same control plane — Files, DB, Workers, Storage, and Inference as it proves out on the fleet.