awesome-repositories.com
Blog
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoAcerca deCómo clasificamosPrensaServidor MCP
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
MightyMoud avatar

MightyMoud/sidekick

0
View on GitHub↗
7,465 estrellas·160 forks·Go·GPL-3.0·3 vistaswww.sidekickdeploy.com↗

Sidekick

Sidekick is a command-line tool that provisions bare VPS servers, transfers Docker images, manages secrets, and orchestrates zero-downtime deployments across single or multiple server instances. It handles the full deployment pipeline from a local machine, building container images locally and transferring them directly to the server without requiring a remote container registry.

The tool distinguishes itself through an integrated approach to security and automation. It encrypts environment variables locally using SOPS and Age keys, then decrypts them on the server at deploy time for runtime injection, keeping credentials off disk. Deployments use health checks to switch traffic to new containers only after they pass, ensuring no requests are dropped during updates. A single command provisions a bare VPS with Docker, Traefik, and security hardening, including disabling root login and configuring firewalls. The system also supports preview environments tied to git commits, accessible on unique subdomains for testing before production promotion.

Beyond core deployment, Sidekick includes an interactive configuration wizard that walks through setup, database provisioning on the remote server, live container log streaming from the VPS to the local terminal, and Prometheus metrics exposure through the reverse proxy. It can trigger automatic redeployment when a new Docker image is pushed to a registry, and manages traffic routing across multiple applications on a single VPS with automatic TLS certificate generation and renewal.

Features

  • Docker-Based Deployment Tools - Ships a command-line tool that deploys Docker applications to a bare VPS with zero-downtime releases and automatic SSL certificates.
  • VPS Setup Automations - Sets up a bare VPS with Docker, Traefik, SOPS, and Age in a single automated command, hardening security by disabling root login.
  • Docker Image Builds - Builds container images on the local machine, then transfers the image file directly to the server without needing a remote registry.
  • Secrets Deployment Pipelines - Encrypts and injects environment variables at deploy time using SOPS and Age, keeping credentials off disk.
  • Single-Command Deployments - Sets up a production-ready VPS and deploys a Docker application with a single command, eliminating manual configuration.
  • Docker Host Provisioners - Installs Docker, Traefik, and supporting tools on a bare VPS, then configures SSH and TLS for production-ready hosting.
  • Generic VPS Provisioners - Automates the full setup of a bare VPS with Docker, Traefik, and security hardening in a single command.
  • Local-to-Remote Image Transfers - Builds Docker images locally and transfers them directly to the server without requiring a remote container registry.
  • Local-to-Server Image Deployments - Builds a Docker image locally, transfers it to the server, and routes live traffic to it with automatic SSL certificates.
  • Zero-Downtime Rollout Orchestrators - Pushes containerized apps to a server and orchestrates zero-downtime updates with automated rollback on failure.
  • Direct Image File Transfers - Copies the built image file to the server, loads it into the Docker daemon, and removes the file, keeping source code off the remote machine.
  • Dockerfile Deployments - Builds and deploys any application from a Dockerfile with zero downtime and seamless traffic switching.
  • Automated Production Server Setup - Configures a bare VPS with all dependencies and security hardening in a single command for application deployment.
  • Bare VPS Provisioners - Provisions a bare VPS with Docker, Traefik, and security hardening in a single command for production readiness.
  • VPS Provisioning Commands - Runs a single command that installs Docker, configures networking, and hardens a bare VPS for production use.
  • Direct Image File Transfers - Transfers built Docker images directly to the server as files, bypassing the need for a remote container registry.
  • Bare VPS Provisioning Commands - Installs Docker, Traefik, SOPS, and Age on a bare VPS with a single command, hardening security by disabling root login.
  • Docker Application Deployments - Sets up a production-ready environment on a bare VPS and deploys a Docker application with zero-downtime releases.
  • Docker Image Push Deployments - Pushes a local Docker image to a remote host and starts it with a single CLI invocation.
  • Server Deployments - Provisions a remote VPS with all required dependencies and configures it to accept deployments.
  • Server Provisioners - Sets up a production-ready VPS with Docker, Traefik, and security hardening in one automated command.
  • Single-Server Deployment Utilities - Provides a single-command workflow to deploy Docker applications to a single VPS with zero-downtime updates and automatic SSL.
  • Zero-Downtime Deployments - Rolls out new Docker image versions without interrupting live traffic, with automatic health checks and rollback.
  • Health-Check Gated Deployments - Switches traffic to new containers only after they pass health checks, ensuring zero dropped requests during updates.
  • Container Image Layer Transfers - Builds Docker images locally and transfers them directly to a remote server without a container registry.
  • Automated TLS Reverse Proxies - Routes incoming requests through a managed reverse proxy that automatically handles TLS certificate generation and renewal.
  • Runtime Secret Injection - Decrypts environment variables on the server during deployment, making values available only in the running process without storing them on disk.
  • Secret Encryption - Encrypts environment variables locally using age keys and sops, then transfers only the encrypted file to the server for runtime injection.
  • Sops Tooling Integrations - Encrypts and injects secrets at deploy time using SOPS and Age, keeping credentials off the server disk.
  • Zero-Downtime Version Rollouts - Builds a fresh Docker image locally, syncs updated environment variables, and rolls out the new version with zero traffic loss.
  • Application Deployment - Sends the project's Docker image to a provisioned server and starts it with zero-downtime.
  • Commit-Tied Preview Environments - Creates isolated deployments tied to git commit hashes, accessible on unique subdomains for pre-production testing.
  • Image - Triggers automatic redeployment when a new Docker image is pushed to a registry, integrating with CI/CD pipelines.
  • Multi-Server Application Deployments - Coordinates deployments and infrastructure across several VPS instances from a single control point.
  • Multi-Application Load Balancers - Hosts several applications on a single VPS and load-balances incoming requests for high availability.
  • Domain-Based Routing - Directs incoming requests to the correct container based on domain or path rules, handling TLS termination automatically.
  • Database Instance Provisioning - Creates and configures a database instance on the VPS with a single command, ready for application use.
  • Firewall Configurations - Sets up and manages firewall rules on the VPS to secure the deployed applications.
  • VPS Security Hardening - Applies system-level security defaults and firewall rules during initial VPS setup to reduce the attack surface.
  • SSH Private Key Authentications - Detects default SSH keys and agent-loaded keys to log into the VPS, then disables root login for security.
  • Root Login Disablers - Disables direct root login and password-based authentication, creating a dedicated user for all subsequent administrative commands.
  • Secret Management - Stores and injects sensitive values into containers without exposing them in configuration files or logs.
  • SSL Certificate Managers - Obtains and renews SSL certificates automatically for connected domains with no manual configuration required.
  • Multi-Server Orchestration - Manages deployments and infrastructure across multiple VPS instances from a single CLI control point.
  • Preview Deployments - Creates ephemeral preview environments tied to git commits for testing before production promotion.
  • Traffic Routing - Routes incoming requests to the correct container based on domain rules with automatic TLS termination.

Historial de estrellas

Gráfico del historial de estrellas de mightymoud/sidekickGráfico del historial de estrellas de mightymoud/sidekick

Búsqueda con IA

Explora más repositorios increíbles

Describe lo que necesitas en lenguaje sencillo: la IA clasifica miles de proyectos open-source curados por relevancia.

Start searching with AI

Alternativas open-source a Sidekick

Proyectos open-source similares, clasificados según cuántas características comparten con Sidekick.
  • psviderski/unregistryAvatar de psviderski

    psviderski/unregistry

    4,781Ver en GitHub↗

    Unregistry is a decentralized container cluster orchestrator and Docker Compose manager. It allows for the deployment and scaling of containerized services across multiple remote hosts without the need for a centralized control plane. The project distinguishes itself by providing a registry-less deployment model, using SSH to transfer container image layers directly to remote servers. This capability enables deployments to air-gapped or private networks by bypassing external image registries entirely. The system covers a broad range of operational capabilities, including overlay mesh network

    Gocontainerddockergolang
    Ver en GitHub↗4,781
  • teddysun/shadowsocks_installAvatar de teddysun

    teddysun/shadowsocks_install

    8,255Ver en GitHub↗

    This project is a collection of automated deployment tools centered around a Shadowsocks server auto-installer for Linux distributions. It provides a specialized SOCKS5 proxy manager and a web-based proxy control panel to administer secure network tunneling. The toolkit distinguishes itself by integrating a Linux kernel optimizer that enables congestion control algorithms to increase network throughput. It also includes a dedicated deployer for HTTP/3 web servers and a management interface capable of generating connection QR codes and monitoring real-time performance. The software covers a b

    Shellshadowsocksshadowsocks-libevshadowsocks-server
    Ver en GitHub↗8,255
  • dokploy/dokployAvatar de Dokploy

    Dokploy/dokploy

    34,901Ver en GitHub↗

    Dokploy is a self-hosted platform-as-a-service designed to simplify the deployment and management of containerized applications and databases. It provides a centralized control plane that decouples administrative management from application workloads, allowing users to oversee infrastructure across multiple server nodes through a unified web interface or a command-line tool. The platform distinguishes itself through an extensive library of pre-configured application templates, enabling the rapid deployment of databases, identity providers, and various productivity or development tools. It sup

    TypeScriptbackendbackupsdatabases
    Ver en GitHub↗34,901
  • aapanel/baotaAvatar de aaPanel

    aaPanel/BaoTa

    4,543Ver en GitHub↗

    BaoTa is a web-based Linux server control panel and system administration dashboard designed for managing hosting environments and system resources. It provides a graphical interface to translate administrative actions into system-level configurations, allowing users to manage Linux servers and web hosting stacks without relying solely on the command line. The platform distinguishes itself through AI-driven server operations, utilizing artificial intelligence for performance analysis and the execution of maintenance tasks via natural language commands. It supports multi-node orchestration, en

    Pythonbaotabt-panellamp
    Ver en GitHub↗4,543
Ver las 30 alternativas a Sidekick→

Preguntas frecuentes

¿Qué hace mightymoud/sidekick?

Sidekick is a command-line tool that provisions bare VPS servers, transfers Docker images, manages secrets, and orchestrates zero-downtime deployments across single or multiple server instances. It handles the full deployment pipeline from a local machine, building container images locally and transferring them directly to the server without requiring a remote container registry.

¿Cuáles son las características principales de mightymoud/sidekick?

Las características principales de mightymoud/sidekick son: Docker-Based Deployment Tools, VPS Setup Automations, Docker Image Builds, Secrets Deployment Pipelines, Single-Command Deployments, Docker Host Provisioners, Generic VPS Provisioners, Local-to-Remote Image Transfers.

¿Qué alternativas de código abierto existen para mightymoud/sidekick?

Las alternativas de código abierto para mightymoud/sidekick incluyen: psviderski/unregistry — Unregistry is a decentralized container cluster orchestrator and Docker Compose manager. It allows for the deployment… teddysun/shadowsocks_install — This project is a collection of automated deployment tools centered around a Shadowsocks server auto-installer for… dokploy/dokploy — Dokploy is a self-hosted platform-as-a-service designed to simplify the deployment and management of containerized… aapanel/baota — BaoTa is a web-based Linux server control panel and system administration dashboard designed for managing hosting… awesome-selfhosted/awesome-selfhosted — This project is a community-curated directory of open-source software designed for deployment in private server… hestiacp/hestiacp — HestiaCP is a Linux web hosting control panel designed for the centralized administration of web servers, databases,…