Skip to content
Capabilities

Core security on every server, the rest from the marketplace

96 Capabilities across 13 categories. Seven are Core, on every server the moment you connect it, and they cover securing the machine and the people who use it. The other 89 are marketplace Plugins you install per Project, so each Project carries only the stack it uses. Every one of them plans, executes, verifies, and rolls back on its own, and adapts to the Linux family your server runs.

CoreOn every server, nothing to install
Built in

Secure SSH

Harden SSH and stop root signing in directly, verified with a fresh connection so you are never locked out of your own server.

Built in

Configure firewall

Close everything that does not need to be open, and keep the ports your own applications answer on.

Built in

Create application user

Give applications an account of their own with only the access they need, so nothing runs as root because it was easier.

Built in

Manage server user

Add a person to a server, with or without sudo, without hand editing anything or sharing one login between people.

Built in

Remove server user

Take an account off a server when someone leaves, and see it confirmed rather than assumed.

Built in

Manage packages

Install and update packages through whichever package manager the server actually uses, with the plan shown before anything runs.

Built in

Enable monitoring

Start collecting load, memory, disk and service counts on a schedule, so a server can tell you how it is doing.

Marketplace89 more, installed per Project
28 Capabilities

Databases

PostgreSQL, MySQL, MariaDB, MongoDB, Redis and Memcached: install one, create a database and a user for an application, or inspect what is already running.

9 Capabilities

Containers and orchestration

Docker, Docker Compose, Podman and k3s, including reading a Compose file that was on the server before SlideOps ever saw it.

10 Capabilities

Web servers and proxies

NGINX, Apache, Caddy and HAProxy, put in front of your applications and pointed at the right one.

Security

HTTPS and certificates

A certificate issued and renewed for a real hostname, verified by asking for the page rather than by trusting that it worked.

Deployment

Deploy from a repository

Pull a branch, build it, and run it, with the next deploy noticing there are new commits waiting for it.

12 Capabilities

Language runtimes

Node.js, Python, Go, PHP, Ruby, Rust and Java, installed at a version you choose and removable when you are done with them.

9 Capabilities

Messaging and queues

RabbitMQ and NATS, with vhosts and users created for the applications that need them.

8 Capabilities

Search and object storage

Meilisearch and MinIO, for the two things an application usually needs a second server for.

5 Capabilities

Private networking

WireGuard interfaces and peers, so servers can talk to each other without going out over the public internet.

Security

Hardening add-ons

Fail2ban, unattended security updates, and key-only SSH enforcement, each verified after it is applied.

Backup

Backups

Scheduled backups configured on the server itself, so the data outlives the machine holding it.

Adoption

Inspect what is already there

Read an existing NGINX, PostgreSQL, Docker Compose or k3s install without changing a thing, and bring it under management as it stands.