The sovereign PaaS for modern infrastructure.
Connect your VPS. Deploy apps, services, databases, and workers. PostgreSQL HA with Patroni. Redis Sentinel failover. AI auto-remediation. WireGuard VPN mesh. No vendor lock-in.
Cloud hosting is broken.
These aren't edge cases. They're the standard experience for teams deploying to the cloud.
You're paying 3-10x too much for cloud hosting
AWS, GCP, Azure mark up compute by 300-1000%. Managed PaaS adds another layer. Your infrastructure costs are eating your runway.
Vendor lock-in traps your business
Once you build on a managed platform, you can't leave. Proprietary APIs, custom runtimes, opaque pricing. Your infrastructure becomes a liability.
High availability is sold as a premium add-on
PostgreSQL replication, Redis failover, auto-scaling — these are table stakes. Yet every platform charges extra for basic reliability.
DevOps complexity slows your team down
Kubernetes, Terraform, Helm charts, IAM policies. Your developers spend more time on infrastructure than building product.
How Grid Solves It
Each problem gets a platform-level architectural solution. Not patches. Permanent fixes.
Run on Your Own VPS
Connect any VPS from any provider. Grid orchestrates your infrastructure while you keep full ownership. Compute costs drop by up to 90%.
Built-In High Availability
PostgreSQL HA with Patroni streaming replication. Redis Sentinel auto-failover. WireGuard VPN mesh. All included. Zero extra cost.
AI Autoscaling & Self-Healing
Three autoscaler engines watch your metrics. AI detects anomalies and auto-remediates. Docker daemon down? Disk full? Grid fixes itself.
Push to Deploy
Connect GitHub, GitLab, or Bitbucket. Every push triggers a Nixpacks build — any language, any framework. PR previews with full-stack environments.
Multi-Cloud Deploy Anywhere
BYO-VPS (Hetzner, DO), AWS, GCP, Azure, bare metal, or air-gapped. No closed garden. Transfer services between nodes with zero downtime.
100% Open Source
AGPL v3 licensed. No open-core tricks. If Grid disappears, your workloads keep running as standard Docker containers on your servers.
No other PaaS does this.
Features that separate Grid from every other platform. Built-in, not bolted on. Open-source, not proprietary.
AI Senate Committee
17 LLM providers. 2+ models deliberate on infrastructure decisions via Propose → Review → Synthesize. Multi-model consensus with per-user cost caps before any automated action.
Jules Auto-Fix Loop
Failed deployment? Jules analyzes the error, opens a Pull Request with the fix, and deploys automatically. AI remediation that ships code, not just alerts.
SSRF Guard with DNS Rebind Protection
Serverless runtime monkey-patches fetch/http/urllib to block RFC 1918, link-local, and cloud metadata IPs. Resolve-then-check — immune to DNS rebinding attacks.
Custom Addon Bundles
Declare Postgres, Redis, Meilisearch, MinIO clusters, Kafka, and 40+ database engines as infrastructure-as-code alongside your app. Full lifecycle: logs, health, backup, metrics, deprovision.
Docker Socket Isolation
Build containers never get direct Docker socket access. A read-only proxy mediates every command. No other PaaS isolates the build surface at this level.
Zero-Downtime Server Transfers
Drag services between nodes with automatic backup, SSH transfer, restore, and DNS update. 48-hour rollback window with pre-transfer safety snapshot.
Zero-Trust Node Attestation
Every server proves its identity via challenge-response HMAC-SHA256 before joining the mesh. Per-node gateway secrets, encrypted Celery tasks, strict SSH host key verification.
Inter-Server TLS Enforcement
TLS between all nodes with certificate validation. No plaintext inter-node traffic. `STRICT` mode by default — no trust-on-first-use for SSH.
Fail-Closed Security Model
If SECRET_KEY or encryption keys are missing, Grid crashes on boot — no silent fallback to hardcoded defaults. Defense in depth, not hope.
One Command. Full Stack.
AI scans your repos, generates a deploy plan with dependency-aware waves, then orchestrates the full stack — addons first, services in topological order. All addons auto-provisioned. Zero manual config.
Zero Downtime. Every Layer.
PostgreSQL streaming replication with Patroni. Redis Sentinel auto-failover. AI-powered predictive autoscaling. Disaster recovery with defined RPO/RTO targets. Your infrastructure survives anything.
PostgreSQL HA Streaming Replication
Patroni-managed primary with streaming replicas. Automatic failover in seconds. PgCat read/write splitting for zero-downtime upgrades.
Redis Sentinel HA
Automatic cache and broker failover via Redis Sentinel. Configurable quorum, replica priorities, and down-after-milliseconds tuning.
AI-Powered Autoscaler
Three engines: Classic CPU hysteresis, AI-enhanced with Prometheus + Loki anomaly detection, and K8s/Docker admin surface.
Disaster Recovery
Tiered backup schedules (6h/24h/7d), cloud replication to S3/R2/MinIO, encryption key rotation with multi-key support.
WireGuard VPN Mesh
Encrypted node-to-node mesh networking across your fleet. Auto-allocated IPs, per-peer latency tracking, multiple named meshes.
Self-Healing Orchestration
Failure classification: Docker daemon down, disk full, OOM. Auto-escalates to AI after 5 failed attempts with intelligent remediation.
PostgreSQL streaming replication, Redis Sentinel, AI autoscaling, and disaster recovery are all built-in. No extra infrastructure, no vendor lock-in, no per-seat fees.
Control your infrastructure from anywhere.
The grid CLI + a real-time dashboard. Every push triggers a full pipeline: build → scan → sign → deploy → health check → monitor. AI auto-remediates failures. Zero-downtime blue-green releases.
Full Pipeline in Seconds
Build → Scan → Sign → Deploy → Health Check. Blue-green releases with zero downtime.
Any Language, Any Framework
Nixpacks auto-detects and builds. 5 deployment types: Git, Docker, Upload, Template, Function.
Signed & Hardened
Trivy CVE scan, Cosign image signing, gVisor sandbox, Falco syscall monitoring. Every deploy.
AI Self-Healing
AI Guardian watches post-deploy. Detects anomalies, auto-remediates, opens PRs for failures.
Stop Paying the Cloud Tax
Grid runs on your infrastructure. No managed service markup. No per-seat pricing.
Grid
The Sovereign PaaS
- Run on your own VPS
- PostgreSQL HA built-in
- Redis Sentinel included
- AI predictive autoscaling
- Multi-Git provider support
- WireGuard VPN mesh
- Custom addon bundles
- 100% open source (AGPL v3)
Managed PaaS
Vercel / Railway / Heroku
- —Platform lock-in
- —No HA by default
- —Opaque pricing at scale
- —Proprietary runtime
- —Limited git providers
- —No VPN mesh
- —No custom addons
- —Open-core only
Cloud Giants
AWS / GCP / Azure
- —Extreme vendor lock-in
- —Complex IAM & VPC setup
- —Unpredictable billing
- —Requires DevOps team
- —Manual HA configuration
- —Separate VPN service
- —No addon system
- —Proprietary everything
Secured by SMSLYCLOUD
Grid is one product in the SMSLYCLOUD infrastructure trust ecosystem — building the tools modern businesses need to communicate, verify, deploy, and grow.
Grid PaaS
Free open-source PaaS. Deploy entire ecosystems on your infrastructure with zero lock-in.
Security Gateway
Zero-trust routing and policy enforcement. Real-time threat detection across all channels.
Identity Service
High-assurance identity management. Carrier-level verification with SilentOTP™.
Global Messaging
SMS, WhatsApp, Voice, and Email. Cryptographic proof of delivery built on Transaction Chain™.
Ignite
AI-powered marketing that runs itself. Trend intel, leads, and content on autopilot.
Hardened for Production
Every container runs in its own gVisor sandbox. Falco monitors syscalls for anomalies in real-time. fail2ban blocks intrusion attempts. Trivy scans for CVEs at push and daily. Cosign verifies every image before deployment. Scoped registry RBAC controls who can pull what.
- Zero-trust multi-server identity attestation (HMAC-SHA256)
- End-to-end WireGuard VPN mesh across all regions
- SSRF guard — runtime protection with DNS rebinding defense
- Docker socket isolation via read-only proxy
- Inter-server TLS enforcement (no plaintext traffic)
- Fail-closed config — crash on missing keys, never fall back
- 13-secret formal rotation runbook with upstream action matrix
- Strict SSH host key verification (no trust-on-first-use)
gVisor Sandboxing
User-space kernel per container. No shared kernel surface, no breakout vectors.
Falco Runtime Security
Real-time syscall monitoring. Detects anomalies, cryptomining, container escapes.
fail2ban Intrusion Prevention
Automatic IP ban on repeated auth failures. Works across SSH, API, and registry.
Trivy CVE Scanning
Continuous scanning at push + daily runtime. Filesystem, image, and IaC.
Scoped Container Registry
Per-project pull/push RBAC. JWT auth backed by platform credentials.
Cosign Image Signing
Sigstore keyless signing. Every image verified before deployment.
Deploy your first cluster in minutes.
100% free and open-source. Connect your VPS and start deploying. No credit card required.