Backend operations control plane

Take control of your backend.

Operate your Linux fleet from one control plane. See which hosts and services need attention, choose where workloads belong, and send scoped operating actions. Local launchers and agents handle releases, supervision, managed traffic, and recovery—without an Infraveil application SDK.

One fleet view. Local execution on every host. Hosted control / customer infrastructure
Hosted Fleet control plane

Bring host capacity, service health, placements, and operating actions into one workspace.

See how it works
Operating settings selected
Your infrastructure Server connector

The launcher keeps the local service agents assigned and running on your server.

See how it works
connected / ready
Your infrastructure Service supervisor

The agent starts configured processes, checks health, applies managed gateway rules, and carries out supported recovery.

See service controls
Processes supervised
Your infrastructure Your application

Your application stays an ordinary process on your Linux server. No Infraveil SDK is needed for supported supervised services.

Review data handling
Your application code
WorkspaceProduction
Fleet3 connected Linux hosts
Workloads5 configured services
AttentionHealth + report freshness
Operating scopeSelected host and workload
Illustrative architecture and service examples—not live customer telemetry.

From one host to the whole fleet

See the fleet.
Act where it matters.

Running several servers is more than deploying the same application again. See host capacity and connection freshness alongside workload health. Choose a placement, drain a host from new assignments, or target an operating action without losing the service context.

Fleet healthHosts + workloads

Which services need attention, and is the host report current enough to act on?

PlacementDeliberate host choice

Where should this workload be assigned, and which hosts have capacity?

Scoped operationsHost + service controls

What exactly will this command or maintenance action affect?

One operating workspace for the fleet. Local runtime control for each service.

Fleet operations

Manage the fleet.
Keep every service in context.

Compare host capacity, connection freshness, and workload health. Try a scoped command, a manual placement request, or a host drain—then drill into the service that needs recovery.

INFRAVEIL / OPERATIONSIllustrative workspace · 3 hosts / 5 services

Fleet / Production

Inspect a host. Choose a workload. Keep the action scope visible.

2 items need attention
Connected hosts03
Configured services05
Need attention02
Pending requests00
Attention combines unhealthy services and stale host reports.
Select a host to inspect its workloads and operating controls.
HostLast reportCPUMemoryStorageLoad / coresAssignments
Current8 seconds ago68%72%54%2.4 / 4Open
Current11 seconds ago24%38%42%0.9 / 4Open
Stale4 minutes ago————Fresh report needed

Selected host / api-01

ConnectionCurrent · 8 seconds ago
Host capacityCPU 68% · memory 72% · storage 54%
Existing servicesPayments service, Catalog worker
New assignmentsAllowed

Drain stops new assignments. Existing services remain running until separately stopped.

Choose the workload and target

Command scope: api-01 / Payments service

Placement is an operator request. Reported location and health do not change just because a new target is selected.

Select a host to inspect its capacity and services, or try a scoped operating action.

Requested placement / reported service state

Inspect the Payments failure
ServiceReleaseRequested hostReported hostHealth
Payments service1.8.4api-01api-01Unhealthy
Catalog worker4.3.0api-01api-01Healthy
Identity3.2.8worker-02worker-02Healthy
Email worker2.1.6worker-02worker-02Healthy
Gateway2.14.1edge-03edge-03Last healthy · report stale

Placement does not prove a healthy move or stop the previous process. Confirm reconciliation, service health, and any required source-host stop separately. Read the operating details

Five independently enrolled workloads, each with its service-level context. Controls update this example only and never call production APIs.

An example update

Configure it. Run it. Keep it operating.

Follow one service through release preparation, process startup, ongoing supervision, managed traffic, and a failed-release recovery. The local runtime performs the work; the dashboard gives your team the controls.

Payments service / 1.8.4Managed release · Production · api-01
01 / CONFIGURE

Tell it how your service runs.

Choose a service and server. Its configuration defines the start command, environment, health check, and managed route—not changes inside the application code.

Current step Payments service · configuration ready
HostedControl plane

Coordinates the service, release, and operating policy.

requested update recorded
Customer hostLauncher

Connects the server and manages its service agents.

waiting for approval
Service supervisionAgent

Runs the service, supervises health, and operates managed routes.

update not started
Your applicationApplication

The software and files used by your application.

Your application code
Payments service · configuration readyIllustrative service lifecycle · not live telemetry

Update requested.

Capabilities

The controls for day-to-day operations.

From fleet-wide context to service-level controls: choose an area to see what your team can do and what happens on your servers.

Fleet operations

Operate several hosts as one fleet.

Bring host capacity, connection freshness, and workload health into one workspace. Choose placement deliberately, drain a host from new assignments, and keep each operating action scoped to the intended host and workload.

You inspectHost capacity, connection freshness, and service health
You chooseTarget host, workload placement, or maintenance scope
Runtime actionLocal launchers and agents carry out supported commands
ResultRequested changes alongside reported runtime state
Operating details and approval modes

How Infraveil works

The operating layer around your application.

The hosted control plane coordinates the requested operating state. The launcher manages local agents, and the agents run configured services, supervise health, govern managed routes, and carry out supported recovery.

Control plane

The hosted services behind the dashboard. They coordinate releases, settings, approvals, and activity records.

Launcher

Software on each server that connects to Infraveil, applies assigned settings, and manages service agents.

Agent

Software that checks approved updates, runs a service, monitors its health, and applies supported traffic rules.

Application

Your own software and the files it needs, running on infrastructure your team controls.

See how the system responds
Illustrative flow
HostedControl plane

Coordinates requested settings and receives reports from your servers.

Requested service settings available
Customer-controlled infrastructure / api-01Runs on your server
MachineLauncher

Applies server settings and manages the service agents.

Managing the service agents
Service supervisionAgent

Checks updates, starts the service, and reports its health.

Supervising process and health
ApplicationApplication

The application runs on your server, with its persistent files stored there.

Application running on your server
Health and activity reportsService state available in the dashboard
New changesAvailable
ApplicationsRunning
ReportingCurrent
What this meansLocal runtime performs the work

Traffic + policy

Control traffic reaching your services.

A gateway routes requests to your services and applies the rules you configure. Follow an example request through the decision, response, and record. These controls cover traffic sent through that gateway.

Request story / Payments service
POST/v1/paymentsShared request
Requestreceived
RoutePayments service
Policyevaluating
Applicationwaiting
Responsewaiting
Change historywaiting
Arrivalrequest receivedShared request
Routeroute matchedPayments service
Policyrequest-rate policyallow
Responseapplication response200
The gateway permits this request within its configured rate limit. The service returns a successful response (200) in this example.record linked

Normal request example selected.

Interactive example · a failed releaseThe new version is unhealthy.
What happens next?
Service needs attention
The new version is unhealthyVersion 1.8.4 failed its configured health check.Failed
Automatic retries have stoppedThe restart budget was exhausted; the supervisor stops this retry loop.Retries stopped
A previous version is availableVersion 1.8.3 can be restored using this service’s configured recovery path.Ready to restore
Your choice controls the next actionRestore the previous version, or keep the current one while you investigate.Waiting for your choice
Check the service after the actionThe example shows its running version and health after your choice.Result pending
Failing version1.8.4
Previous version available1.8.3
This exampleYou choose the recovery action

The new version failed its health check. Retries have stopped. Restore 1.8.3 below, or keep 1.8.4 while you investigate.

Recovery is an operating action

Contain the failure.
Get the service running again.

A deployment is not finished because a job says “done.” The local supervisor continues checking the process and its health. When the new version fails, it follows the configured restart limits instead of retrying forever.

Try the recovery choice in this example. Restoring the previous version changes what runs on the server, then checks whether that service is healthy. Keeping the current version does not restore it; it remains unhealthy and needs investigation.

Stop the retry loop.A restart budget gives failure a stopping point.
Use a supported recovery path.The available action depends on the service and its configuration.

Illustrative example—not a live production action. Restoring code does not reverse database migrations or restore application data.

The service after the action

Know what is running.
Know what needs attention.

The same managed service connects its release, process health, route policy, incident, and recovery action. Change the recovery choice above and see the running version and service result update together.

PAYMENTS SERVICE / EXAMPLE OUTCOMEIllustrative · not live telemetry

The release failed. The supervisor stopped retrying.

Running version and healthVersion 1.8.4 · Unhealthy
Recovery choiceRestore previous version or investigate
Runtime actionNo recovery action started
Service resultRecovery needed
Operate the service, not another disconnected tool.

Use one operating layer for the release, running process, managed route, and supported recovery. Investigation and change history stay attached to that service.

History supports the work.

Available records explain which managed action ran and what the server reported afterward. They do not guarantee application correctness or prove that one request caused a failure.

See the supporting activity history for this example
Payments service / activityillustrative
ReleaseVersion 1.8.4 startedRunningapi-01
HealthConfigured check failedUnhealthyRestart budget exhausted
ChoiceRecovery choiceRestore or investigateNo recovery action started
ResultService conditionUnhealthyPayments service · version 1.8.4

Security and data

Know what stays local and what is shared.

Your applications run on your servers. Infraveil receives selected health reports, logs, and events. Some deployment options also store application source files with Infraveil.

Responsibility / stateHosted by InfraveilYour infrastructure
Requested changesRecorded in the dashboard—
Requested settingsSent to the serverApplied on the server
Launcher—Connects and manages the server
Service supervisionSelected health reportsRuns and monitors each service
Running applications—Customer-controlled
Persistent application files—Customer-controlled
Health and change recordsSelected reports and optional local-record referencesFull local record
Release-signing private keyNot held by InfraveilHeld by your team
Source visibility

You can inspect the launcher and agent code on your servers. The hosted dashboard code is private.

Independent review

Infraveil has not completed an independent external security audit. Published documentation and inspectable code do not replace one.

Team access

Workspace access uses an authenticated account. Confirm support with Infraveil before relying on separate permissions for individual team members.

What information is sent to Infraveil?

Depending on your setup, Infraveil receives server status, service settings and health, selected logs and request records, security events, and records of managed changes. Some deployment options also upload application source files.

What remains local?

The application runs on your servers, where its working files, caches, saved data, and full local change record are stored. You retain control of the release-signing private key.

Connected tools

One service lifecycle.
Connected operating controls.

Operate releases, processes, managed routes, and recovery through the same service lifecycle. Connect relevant reports and alerts to specialist tools where their depth still matters.

Work across your tools

Choose an area to see how it fits.

One operating layer

Release execution

Prepare the selected package and run its configured install, build, and start steps.

Your team keeps its existing infrastructure and specialist tools.

Send reports and alertsSlackTeamsincident.ioGitHubSigned webhooks

Pricing

One plan. Clear pricing.

Professional includes two connected servers and five managed services. A service is an independently enrolled workload; it can contain configured APIs, workers, and other application processes.

Professional$99per month · no setup fee
Plan includes
  • 2 connected servers
  • 5 managed services
  • Additional server · $19/mo
  • Additional service · $9/mo
Billing details
  • The published plan has no usage-based charges for traffic, requests, logs, or security events.
  • A signed order applies if it explicitly sets different commercial terms.
  • Server hosting is paid separately. Talk to Infraveil about your setup and contract requirements.

See in operation.

Explore the dashboard and see how Infraveil would work with your applications.

Campaign update

Infraveil is in an active prospecting campaign

About the campaign