KVM based alternative to Kubernetes with shell and python based live updating declarative deployments

Define resources with dynamic templates that adjust to configuration changes in the cluster. Provides the benefits of Kubernetes with a less complex architecture and fewer interdependent components.

Transparent Python Integration
Utilize both shell and Python in pod templates with a transparent shared environment.

Instance Base Images
Includes base images for common Linux distributions and FreeBSD.

Multi-Tenant Support
Isolate resources into organizations and control user access to each organization.

VPC Networking
Advanced VPC networking with routing table support. Source and destination checking option for instances allows site-to-site VPN configurations.

Access Policies
Policy controls with WebAuthn, location, source network and browser options.

Domain Management
Integrated domain management with API support for AWS, Cloudflare and Oracle Cloud. Configure A, AAAA and CNAME records manually or automated with pods.

Advanced Firewall
Detailed network ingress control with firewall rules that can be defined through role matched rules or in pod templates.

Static IP Management
Static IP management that can manage pools of public IPv4 and IPv6 addresses that are either host specific or shared between multiple hosts. Support for DHCPv4, DHCPv6 and SLAAC is also available.

S3 Storage Integration
Integrated support for S3 API based storage providers. Pod template images, disk snapshots and backups are stored on the S3 storage.

SSH Key Management
Easily manage multiple SSH keys or SSH certificates to control access to instances.

Secrets Storage
Store secrets in JSON format and provide access through the IMDS service and pod templates.

Load Balancer
Built in load balancer to provide access from the host to web servers running on instances.
A new Markdown and YAML based template format that allows adding notes and documentation right into the deployment spec. Python and Shell support allows creating dynamic deployments that can handle complex configurations all in one template.


Live view of deployment status with logging and resource metrics. All deployment management and monitoring can be done from the web console.
Live migrate deployment templates with a diff view of changes that will be applied. Deployments can be migrated from older or newer template commits.


Automatically create SSL certificates from Lets Encrypt with support for HTTP validation or DNS CNAME validation. Certificates are dynamically updated in deployment templates with the IMDS service.
Visually manage large pod deployments with an integrated editor and comprehensive web console.

Integrated Monaco editor for editing templates. Includes syntax highlighting and autocomplete support for all resources in Pritunl Cloud.

Compare changes between different template commits and quickly diagnose issues from changes. All from the web console editor.

Manage users WebAuthn tokens from the administrator console or allow the user to validate their own WebAuthn token.

Scalable self hosted bare metal virtualization with no vendor lock-in.
Multifactor secondary authentication from Duo, OneLogin Protect, Okta Verify and any WebAuthn hardware token including YubiKeys and Google Titan Tokens.
All nodes run independently and will continue running in the event of other nodes failing. Additional nodes can be added and removed as needed for fast scaling without downtime.
IMDS agent delivers deployment information, platform resource access, and real-time CPU, memory, and disk metrics. Security CVE alerts notify when DNF updates are pending.
Pritunl Cloud is free to use with no limits on the number of servers or users. An optional subscription provides enterprise features including multi-tenant support, single sign-on and geo-IP data. The subscription can be activated from the admin web console at anytime.
Free
Free to use with no limits on servers or users.
$50/month
Free 7 day trial included.
Email and community forums available for support. Subscribe to the Substack for security and update announcements.