Security monitoring for your own infrastructure · operated and processed in Germany

The security posture of your systems – central and verifiable.

NODE64 records the packages, services and configuration of your systems – from a Raspberry Pi to a Proxmox cluster – matches them against CVE feeds and hardening baselines, and gives you the command to fix each finding. Scored per device.

Hosting and processing exclusively in Germany · GDPR-compliant · from home lab to SME

What big vendors have long been doing – now for your own infrastructure.

Big vendors have long let their systems “phone home”: telemetry and security data flow into one place and get analysed. NODE64 brings exactly that to you – lightweight, self-hosted and affordable, instead of expensive and bloated.

The difference

A catalogue knows published flaws. NODE64 knows your server.

Checklists and CVE matching are table stakes. The difference starts after that: on every run NODE64 measures every trait your system offers — more than forty on a fully covered Linux server, across five areas — and learns from them what your system normally looks like. What stands out, stands out against that baseline, not against a list someone else wrote.

1

First, listen

For the first few days NODE64 measures and passes no judgement. Where there is not enough history, it says no judgement yet — rather than turning three readings into a number that feigns certainty. The baseline stands once a trait has twenty measurements.

2

Then the baseline

For every trait, the middle value and the usual spread around it — a statistical method a single outlier cannot distort. Plus the daily rhythm: a backup running at three in the morning is normal on your server. The same backup at Tuesday noon is not.

3

Then the deviation

Two more accounts, one more key, one more open port, three more services. Each figure unremarkable on its own, together an installation. NODE64 names afterwards exactly which traits they were — today's value next to the usual one, so you can check the verdict yourself.

And what other installations have already seen

What is new on your server may have been everyday life elsewhere for months. NODE64 condenses observations from all installations into patterns and tells you how ordinary the thing in front of you is. A pattern only forms from twenty observations across five installations, and no single source may contribute more than a quarter of them.

What travels are traits, not contents — figures and identifiers, never file contents, never command lines, never the names of your systems. And the limit holds both ways: a server without that connection detects exactly as much as before. The shared knowledge does not replace your own baseline, it puts it in context.

Behavioural analysis without a rollout project

Anyone shopping for this normally ends up with enterprise tooling: per-endpoint licences, a console of its own, consulting days. For a mid-sized company with twelve servers, and for a home lab, that is the reason it never happens at all.

NODE64 turns it into a single agent with no third-party parts, running on a Raspberry Pi exactly as it does on a Proxmox cluster. The evaluation happens on the server in Germany — all that stays with you is the agent, and the agent reads.

What it costs: time

A method that learns what normal looks like on your systems has little to say in the first week — and NODE64 would rather say nothing than something invented. The full benefit arrives once there is enough history. NODE64 also looks at fixed intervals, not in real time, and it detects and explains: it deletes nothing, kills no process and blocks no connection. The agent only ever reads — no bait files, no markers, no changes to your data.

How this works in detail

What NODE64 does for you

Inventory, vulnerabilities, hardening and operating state – evaluated in one place, across every system.

Anomaly detection

Detects ransomware, back doors and break-ins by how behaviour changes — not by whether somebody has seen them before.

Best practices & optimisation

Curated recommendations per system – with a ready command instead of general advice.

Security & hardening

Spot misconfigurations before they are exploited.

CVE matching

Known vulnerabilities in your own package set, with CVSS and fix version.

Alerting

Rule-based notifications – globally or per device and group.

Telemetry & health

Operating state per host, as a trend rather than a snapshot.

Integrity & changes

Trace changes to critical files and services.

The Sonar measurement network

See your network the way the internet sees it.

All features in detail

How it works

1

Install the agent

Start a small container on your device.

Runs on Raspberry Pi, mini-PC, Proxmox container or a router with container support – minimal footprint.

2

Send data securely

The agent collects locally and sends encrypted to your NODE64 server.

“Phone home” over HTTPS: bulk telemetry in batches, critical alerts instantly.

3

Analyse centrally

Everything lands in your dashboard – including CVE checks and alerts.

Analysis, hardening status and notifications in one place.

Supported systems

NODE64 monitors virtually anything an agent runs on: Raspberry Pi, mini-PCs, Proxmox hosts and containers, Docker/container hosts and routers (coming). Home lab or business: one agent, one central dashboard.

  • Raspberry Pi & SBCs
  • Mini-PCs & servers
  • Proxmox hosts & containers
  • Docker/container hosts
  • Routers (coming)

Who NODE64 is built for

Businesses

For companies that want security without enterprise bloat – no month-long rollout, no licensing maze.

Home-lab enthusiasts

For everyone who wants to stay in control of their home network and servers – with the kind of view usually reserved for large environments.

🇩🇪 Everything in Germany.

Your data is processed and stored exclusively in Germany – on servers at Hetzner. This applies to all data: even anonymised uploads (or data anonymised on the agent itself) stay on German hardware.

  • Servers & backups at Hetzner
  • No third-country transfers
  • Data processing per Art. 28 GDPR

The agent has no supply chain.

The program running on your server uses not a single third-party library – only the Go standard library. No npm, no Composer, no package that changes owner overnight. After xz and the npm takeovers this is no longer a theoretical worry: whatever gets root on your machine should bring as little foreign code as possible.

  • Zero dependencies
  • One file, statically linked
  • Open source
  • Shows you what it sends

You do not have to take our word for it. This command reads the dependencies out of the finished program – ours lists not one:

go version -m node64-agent

So this does not promise more than it delivers: the statement applies to the agent. Our server uses two PHP packages (mail delivery and QR codes for two-factor login), the interface uses Bootstrap and Chart.js – served by us, not from a third-party host. For the agent it holds without qualification.

NODE64 Sonar – your network seen from the outside

Your server knows which ports are open. Whether they are actually reachable from the internet is something only an outside view can tell. That is what we are building NODE64 Sonar for: measurements from other locations against your own systems.

Reachability & latency

Does your service answer from outside, and how fast?

Route

Which path do packets take to reach you, and where does it stall?

DNS

Does your name resolve correctly everywhere – IPv4 and IPv6?

And if you like, your own device voluntarily becomes part of the measurement network and measures for others too. It is off by default – you decide per device and can turn it off again at any time. Only what has been requested is measured; NODE64 never scans anything unasked.

Everything about the measurement network

Start free, grow later.

Free to get started, Supporter (personal & small business) and Business (companies) for more devices, more features and longer data history.

See pricing

Frequently asked questions

A self-hostable platform that centrally collects your devices’ security and system data, checks it against CVEs and alerts you when something’s wrong.

Anything that can run a container – Raspberry Pi, mini-PCs, Proxmox hosts and containers, many routers.

Getting started is free (Free). For more devices, features and longer data history there are Supporter and Business.

Exclusively in Germany – all servers and backups run at Hetzner on German hardware. Even anonymised data never leaves Germany. GDPR-compliant.

Passwordless via magic link: enter your email, click the link, done. Optionally with 2FA (authenticator app).

If you can start a container, that’s enough. The rest happens automatically.

Full transparency: the dashboard shows you exactly what data your device sends, and the agent is published as open source – you (or anyone) can verify what it does. The agent only collects; analysis happens on the server.

An optional measurement network. Enable it for a device and the agent additionally runs ping, traceroute and DNS measurements – so you can see your own systems from the outside, the way the internet sees them. Participation is voluntary and off by default; you enable it per device and can stop it at any time. Measurement traffic then originates from your own connection – we say so openly. Sonar is currently in preparation.

Ready to secure your devices?

Start for free