Everything you'd expect, working out of the box
The things any developer wants on day one. Connect, deploy, done — and none of the "now wire up the rest yourself" that usually follows.
Bring your own server
Connect any VPS
Hetzner, DigitalOcean, Vultr, AWS — point strackt at a fresh VPS and we adopt it. You keep the server, the provider, and the bill.
Auto-detected setup
We read your repo
Connect a Git repo and strackt works out what it needs — PHP version, database, queue, scheduler, Node — and provisions it. No checklist of services to hand-pick.
Zero-downtime deploys
Push to deploy
Push to your branch and strackt deploys: dependencies, migrations, cache, workers restarted — with the old release still serving until the new one checks out.
HTTPS from minute one
Domains & SSL
Every environment gets a working HTTPS URL the moment it's attached. Add your own domains — certificates are issued and renewed for you.
Databases, provisioned
Managed databases
MariaDB, PostgreSQL, or Valkey, installed on your server and wired to your app with its own credentials. No version selector to get wrong.
Watch it happen
Live everything
Deploys and provisioning — streamed to your screen as they run. No refreshing, no wondering whether it's stuck.
Environment editor & secrets — edit your config with live credential references.
Spotlight (⌘K) — search and run actions from anywhere.
The CLI — your infrastructure from the terminal.
GitHub connect — browse and link your repos.
Auto-deploy on push — verified webhooks, deduplicated.
The things you reach for once you're live
Running an app in production is more than shipping it. Here's what's waiting when you need it — and most of it is what sets strackt apart from a panel that walks away after setup.
Backups you actually own
Encrypted, in your bucket
Encrypted snapshots to your own S3 bucket, with the encryption key handed to you to keep. If strackt vanished tomorrow, you'd still hold the key and could restore everything with standard open-source tools and zero strackt code — and we wrote down exactly how. That's what 'fully yours' actually means.
Roll back in seconds
Per app, per service, per generation
Undo exactly what broke — one application, one service, or an operating-system update — to a known-good point in seconds. You roll back the piece that changed and leave everything else running; reverting the whole machine is what a VPS snapshot is for.
Patched now, rebooted on your terms
Reboots on your schedule
strackt watches public advisory feeds, works out which of your servers are actually affected, and applies the fix promptly — most without a reboot you'd ever notice. When a fix does need a reboot to take effect, you pick the window: your timezone, workers drained gracefully first.
Move a running app
Workload mobility
Outgrowing a box, switching providers, moving regions? Move a running environment to another server — data and history intact — through a guided, reversible flow.
A private network across your servers
Cross-provider, low latency
Run your app on one server and its database on another — different providers, different regions — and they talk over a private, encrypted, low-latency network that strackt sets up for you. Neither server has to expose a port to the public internet for them to connect.
A preview for every PR
Preview environments
Open a pull request, get an isolated environment with its own URL and a real deploy. Close the PR and it cleans itself up.
One command to a shell
Signed SSH
strackt ssh
Drive it from code
Scriptable & agent-friendly
Deploy, scan, configure, roll back, manage environments and domains — from a CLI and API built for automation. JSON output, safe retries, and a skill file so an AI coding agent can run the lifecycle for you.
Multiple environments — production, staging, custom, per app.
Firewall management — per-server ports with source allowlisting.
Deploy preflight — bad deploys blocked before any server work.
Shared services — point an app at an existing service.
REST API + idempotency — safe to retry from CI and agents.
Notifications & webhooks — signed, with a delivery log.
Backup scheduling — 15 minutes to weekly, your timezone.
DNS & SSL checker — fixes the 'stuck pending' cert race for you.
What we handle so you never have to
This is the part you don't buy a dashboard for. It runs whether you look or not. No knobs — just fewer 3am problems.
Confidence
Your server can't drift
The configuration is the server. Someone SSHes in and hand-edits something? It gets put back. What we say is running is what's running — every box, the same way.
Confidence · Freedom
Nothing to steal
No passwords or long-lived keys sit on your servers waiting to leak. Access is granted the moment it's needed and expires on its own.
Confidence
Updates that can't half-break
A system update either fully succeeds or doesn't happen — there's no half-applied, half-broken state. And we can rebuild an identical server from scratch in minutes.
Confidence
Fixes land fast, everywhere
When a fix is ready, it reaches your servers fast — not a slow rebuild on each one, one at a time.
Confidence · Freedom
Managed, not exposed
We manage your servers over an encrypted private path. Your management plane isn't sitting open on the internet for anyone to knock on.
Confidence
Your real exposure, not noise
We don't forward you a feed of scary headlines. We work out which advisories actually touch your servers — and some kernel-level holes we close fleet-wide without even rebooting.
And a great deal you'll never see
Audited provisioning, decoupled real-time events, guarded teardown of unused credentials, per-app isolation, 5,000+ tests and counting. The machinery is the product. You just get the result.
The whole list
Everything above, and the rest, in one place — for when you want to scan rather than scroll.
Day one
- Connect any VPS · provider auto-detection
- Repository detection & provisioning
- Push-to-deploy, zero-downtime
- Domains & automatic SSL
- Managed MariaDB / PostgreSQL / Valkey
- Environment editor & secrets
- Live deploy / provisioning streaming
- Spotlight (⌘K) · CLI · GitHub connect
In production
- Customer-owned encrypted backups
- Checkpoints & point-in-time rollback
- CVE watch + maintenance windows
- Workload mobility between servers
- Private network across servers · any provider
- Preview environments per PR
- Signed SSH · firewall · deploy preflight
- Multi-environment · shared services
- REST API + idempotency · webhooks
Underneath
- No configuration drift
- All-or-nothing updates · rebuild in minutes
- No standing credentials on servers
- Private, off-internet management
- Fleet-wide CVE resolution & mitigation
- Per-app isolation
- Audited operations · guarded teardown
- 5,000+ tests across the platform
What we don't claim — yet
We'd rather tell you than have you find out.
- Started with Laravel. strackt manages Laravel applications end to end today. More frameworks are coming — we'd rather do one stack properly than half-support five.
- Reboots are on your schedule. Security fixes are applied as they land; when one needs a reboot to take effect, you choose when. Automatic immediate reboots for actively-exploited criticals are rolling out, not live yet.
- Moves have a brief cutover. Moving an app between servers takes a short pause, not zero downtime.
- The CLI runs the app lifecycle. Deploy, config, and rollback are scriptable today. Firewall, provisioning, maintenance and backups are dashboard-only for now — and on the roadmap.
Get started
Your first app is on us.
Not a trial. Not a countdown. Bring a server, connect a repo, and see what managed-but-yours actually feels like.