Uptime monitoring, security scanning, AI-powered infrastructure health, CVE tracking, breach detection, Cloudflare Fight Mode — unified in one platform. Deploy in minutes, own your data forever.
R9ops replaces 12+ separate tools with a single, self-hosted platform. From uptime checks to Cloudflare Fight Mode — it's all here, fully integrated.
R9ops combines web security scanning, dependency analysis, breach monitoring, and CVE tracking into a single security intelligence layer.
Full, quick, and passive scans. Every finding tagged with CVE and CWE references, scored by severity.
Trivy + OSV CLI scans across npm, Go, Python, Maven, NuGet, Ruby, and Cargo ecosystems in Bitbucket repos.
Recurring checks against HIBP and DeHashed for emails and domains. Alert instantly when credentials appear in a breach.
Watch specific tech stacks for new NVD CVEs. Semantic version matching — get alerted only when your version is affected.
Block malicious IPs via Cloudflare Access Rules with a role-based approval workflow. IP intelligence shows country, ISP, ASN, and proxy/datacenter status before you approve. Full audit trail, CSV export, and email notifications on approval.
SonarQube quality scores, Argo CD deployments, Bitbucket commit activity and Jira flow metrics — unified into one team KPI view.
Cross-platform team performance built from real ticket and commit data, with pattern-based team grouping for focused analysis.
Read deployment activity directly from Argo CD sync events. Detect rollbacks, OOM kills, and deployment anomalies automatically.
Pull code quality metrics — bugs, vulnerabilities, code smells, coverage — and track trends over time per team.
Smooth monitoring prevents false alarms. Multi-channel alerting ensures the right person is notified, every time.
Configurable delay thresholds plus automatic retry with backoff. Probe-side network blips — DNS, timeouts, connection resets — are classified separately from real HTTP failures, so they never count against uptime or wake anyone up.
Structured incident lifecycle from investigating to resolved. Link alerts to incidents, track updates, and manage severity.
Schedule planned maintenance to suppress alerts automatically. Teams get advance notifications and calendar events.
Transparent status pages with live uptime, active incidents, maintenance schedules, RSS feeds, and embeddable badges.
R9ops integrates with the tools your teams already use — from project management to CI/CD to communication platforms.
Native desktop and mobile apps that talk to your own R9ops instance. You type in your server address — there is no R9ops cloud in the middle, and no account to create anywhere else.
R9ops is built to run inside your infrastructure. No data leaves your network. No vendor lock-in. No per-seat pricing surprises.
Replace standalone uptime tools like Better Uptime or UptimeRobot — HTTP, TCP, DNS, keyword, and API checks in one place.
Replace dedicated DAST tools — OWASP ZAP full/quick/passive scans with CVE and CWE tagging, scored by severity.
Replace manual NVD monitoring — watch specific tech stacks with semantic version matching and instant alerts for new vulnerabilities.
Replace manual HIBP checks — recurring watchlist monitoring against HIBP and DeHashed for emails, domains, and passwords.
Replace standalone SCA tools — Trivy + OSV scans across npm, Go, Python, Maven, NuGet, Ruby, and Cargo in Bitbucket repos.
Replace manual compliance workflows — automated SOC2 and ISO27001 report generation with one-click PDF export.
Replace manual GEO audits — automated website scoring for AI search engine visibility across ChatGPT, Claude, and Perplexity.
Replace manual Cloudflare IP management — role-based approval workflow for IP blocking with full IP intelligence, audit trail, CSV export, and email notifications.
Cross-platform team performance metrics from Jira, Bitbucket, SonarQube, and Argo CD with pattern-based team grouping for focused analysis.
Track every package change across repositories. Get instant webhook alerts when dependencies are added, removed, or updated.
Category-based Read/Write permission matrix. Control access per team role across Monitoring, Security, Analytics, and Operations.
Replace manual log triage — SSH log collection from any open-source cluster, analyzed by GPT-4 or Claude into a health score and a ranked critical-issue list.
Replace separate synthetic testing tools — Lighthouse scans from multiple probe locations, with Core Web Vitals compared side-by-side across geographies.
Replace a second status dashboard on every laptop — macOS menu bar, Windows tray and iOS apps that all point at your own server, with Android on the way.
Deploy R9ops with a single Docker Compose command. Everything is included — database, backend, workers, and frontend. No infrastructure expertise required.
Get the source from GitHub and copy the example environment file.
Set your SMTP, API keys, and database credentials in .env.
All 11 services start automatically. Access the dashboard at port 3000.
Stop juggling 12+ different tools. R9ops gives your team everything they need to monitor, secure, and optimize your infrastructure — in one self-hosted platform.