Insights
Operations & Automation
Expert guidance on Operations & Automation. These workflows help you take control of your stack and move away from vendor lock-in.
Streamlining agency workflows with automation, CI/CD, and custom technical deployments.
-
Cybersecurity & Hardening
Hermes Agent Deployment: Secure AI Agent Infrastructure for Private Automation
Hermes Agent: the secure AI agent infrastructure pattern I ship for companies. Gateway/sandbox split, rootless Docker, scoped tokens, monthly restore drills.
-
Cybersecurity & Hardening
Dirty Frag (CVE-2026-43284): How Webnestify Mitigated the Linux Kernel LPE Two Hours After Disclosure
Dirty Frag is a new Linux kernel LPE in the Dirty Pipe and Copy Fail family. Here is the bug, the CVE pair, and how we mitigated it in two hours.
-
Cybersecurity & Hardening
Copy Fail (CVE-2026-31431): How Webnestify Patched the Linux Kernel Zero-Day on Disclosure Day
Copy Fail (CVE-2026-31431) gave attackers root on nearly every Linux server. Here's what the bug does and how I patched our managed fleet on day zero.
-
Operations & Automation
AI WordPress Automation With DeepSeek, n8n, and Baserow
How I run AI WordPress automation in production: a self-hosted n8n + Baserow + DeepSeek stack that drafts posts at 2% of GPT-4 cost without SEO penalty.
-
Operations & Automation
Code-server: Self-Hosted VS Code in Your Browser
How I deploy code-server for a portable VS Code in the browser: the Docker stack, the proxy in front, and the workspace-backup rule that saved a week of work.
-
Operations & Automation
IT Tools: Self-Hosted Dev Utilities, No Privacy Trade-Off
How I deploy IT Tools self-hosted as the JWT decoder, hash generator, and JSON formatter that never sees the public internet, plus the reasons I stopped pasting tokens into random websites.
-
Operations & Automation
Listmonk Self-Hosted Newsletter: My Deployment Guide
How I ship Listmonk for clients who want a Mailchimp replacement they actually own, plus the SMTP relay choices that decide whether the campaigns land.
-
Operations & Automation
Mautic Self-Hosted Marketing Automation: My Honest Guide
How I deploy Mautic for clients who refuse to ship lead data to HubSpot, plus the SMTP traps that make most self-hosted setups quietly fail.
-
Operations & Automation
MeshCentral Self-Hosted Remote Management for Agency Fleets
How I deploy MeshCentral self-hosted to replace TeamViewer for agency client SLAs: the Docker stack, the proxy, and the agent install rules I never break.
-
Operations & Automation
n8n Self-Hosted Workflow Automation: Production Notes
How I deploy n8n self-hosted for agency clients: the Docker stack, the proxy in front, the credentials trap, and when it beats writing a Lambda.
-
Open Source Solutions
Plausible Analytics Self-Hosted: My Production Stack
How I deploy Plausible self-hosted analytics for agency clients: the Compose file, the Cloudflare Tunnel in front, SMTP that actually delivers, and the costs.
-
Open Source Solutions
Stirling PDF: Self-Hosted Replacement for ilovepdf.com
How I run Stirling PDF as a self-hosted alternative to ilovepdf.com and Adobe Acrobat for agency document work, with Compose file and Cloudflare Access.
-
Operations & Automation
Uptime Kuma: My Self-Hosted Monitoring Setup
How I deploy Uptime Kuma for client environments: the Docker stack, the proxy in front, and the notification traps I keep watching agencies fall into.
-
Open Source Solutions
Vikunja Self-Hosted Task Management: My Production Setup
How I deploy Vikunja as a self-hosted task manager for an agency: the Compose stack, the Nginx reverse proxy quirk, mail config, and when to skip Trello.
-
Operations & Automation
MeshCentral: An Open-Source RMM Platform That Doesn't Sell You Out
MeshCentral is a free, self-hosted Remote Monitoring and Management platform. Why I default to it over commercial RMM vendors after the ConnectWise breach made the closed-source RMM model look very different.
-
Operations & Automation
Server Monitoring That Actually Catches Problems: Grafana, Prometheus, Loki, Netdata
What real server and web app monitoring looks like in practice. The Grafana + Prometheus + Loki + Promtail stack for full control, Netdata for instant deployment, and how to pick between them.