Skip to content
@Vault-Web

Vault Web

A collection of useful projects you can use and host within your own server. All projects are included or integrated in the main repo, named after this org

Vault Web

A private entry point for chat, files, habits, passwords, and self-hosted services.

Vault Web is a modular, self-hosted portal for private home-server services. It provides a single web interface for authentication, communication, file management, habit tracking, and service integration while keeping each service independently deployable.

The project is designed as a lighter, more focused alternative to large all-in-one platforms: small services, clear boundaries, VPN-first deployment, and practical operations for a personal server.

What This Organization Builds

Vault Web combines a central portal with domain-specific services. The core application owns users, sessions, chat, and the main navigation experience. Services such as Cloud Page, Vault Habits, and Vaultwarden stay separate and integrate through APIs or authenticated frontend links. New services can be added without folding all logic into the portal itself.

flowchart LR
    client[VPN client] --> proxy[Caddy / HTTPS]
    proxy --> frontend[Vault Web frontend]
    frontend --> core[Core backend]
    frontend --> cloud[Cloud Page backend]
    frontend --> habits[Vault Habits]
    proxy --> vaultwarden[Vaultwarden]
    frontend --> extensions[Extensible by other services]

    core --> coredb[(Core DB)]
    cloud --> clouddb[(Cloud DB)]
    coredb --> postgres[(PostgreSQL instance)]
    clouddb --> postgres
    cloud --> storage[(User storage)]
    syncthing[Syncthing] -. syncs .-> storage
    extensions -.-> apis[Service APIs / links]
    headscale[Headscale / Tailscale] -. private access .-> client
Loading

Repositories

Repository Role
vault-web Central portal frontend and core backend with authentication, sessions, chat, and navigation
cloud-page File-management backend with per-user storage isolation
vault-habits Self-hosted habit tracker integrated through Vault Web login
vaultwarden Integrated upstream/forked Bitwarden-compatible password vault service
auth-api-gateway Experimental authentication gateway, not required for the current production stack
deploy Production Docker Compose stack, runtime configuration, and VPN-first deployment
server-docs Headscale, Split DNS, Syncthing, backup, and operations documentation
password-manager Archived custom password-vault service, replaced by Vaultwarden integration

Focus Areas

Area Direction
Network design Least-exposed, VPN-first access with Headscale/Tailscale and Split DNS
Service boundaries Independent backends instead of one large application server
Personal cloud Filesystem-backed storage with per-user isolation and Syncthing interoperability
Identity Consistent login, session handling, and authenticated service handoff
Security Security activity, token hardening, and a private-by-default deployment model
Operations Docker Compose deployment, backups, health checks, and recovery-oriented runbooks

Interface

Communication

Vault Web chat interface

Cloud Workspace

Vault Web cloud file manager

Deployment Model

The documented production setup keeps Vault Web private by default. Public DNS is reserved for the VPN control plane, while application hostnames resolve only inside the private network through Split DNS. Caddy terminates HTTPS, Docker Compose runs the services, and operational guidance lives in deploy and server-docs.

This model is intentionally conservative: expose as little as possible, keep the portal reachable through trusted private access, and treat backups and monitoring as part of the product rather than an afterthought.

Contributing

Contributions are welcome across application development, security design, deployment, documentation, and service integration. Please read the contribution guidelines before opening a pull request.

Vault Web is an experimental self-hosting project. Review the configuration and security model carefully before exposing any component outside a trusted private network.

Pinned Loading

  1. deploy deploy Public

    Deployment repository for the Vault Web ecosystem: clone this repo to deploy the full stack, including all required service repositories as Git submodules, Docker Compose setup, and automation scri…

    Shell 2 2

  2. server-docs server-docs Public

    Comprehensive documentation for the Vault-Web ecosystem, including setup guides for headscale, syncthing and concepts like architecture, and security concepts.

    3

  3. vault-web vault-web Public

    Central web portal uniting all Vault-Web applications - secure access to cloud, password manager, chats, and more within a private VPN. Discord: https://discord.gg/7Svypmrjy

    Java 32 51

  4. cloud-page cloud-page Public

    A private web-based file manager for users, enabling folder access and file editing via browser.

    Java 9 27

Repositories

Showing 9 of 9 repositories
  • .github Public
    Vault-Web/.github's past year of commit activity
    2 MIT 1 0 0 Updated Oct 4, 2026
  • deploy Public

    Deployment repository for the Vault Web ecosystem: clone this repo to deploy the full stack, including all required service repositories as Git submodules, Docker Compose setup, and automation scripts.

    Vault-Web/deploy's past year of commit activity
    Shell 2 MIT 2 7 8 Updated Oct 3, 2026
  • vault-web Public

    Central web portal uniting all Vault-Web applications - secure access to cloud, password manager, chats, and more within a private VPN. Discord: https://discord.gg/7Svypmrjy

    Vault-Web/vault-web's past year of commit activity
    Java 32 MIT 51 43 (5 issues need help) 21 Updated Oct 2, 2026
  • cloud-page Public

    A private web-based file manager for users, enabling folder access and file editing via browser.

    Vault-Web/cloud-page's past year of commit activity
    Java 9 MIT 27 36 (7 issues need help) 18 Updated Oct 1, 2026
  • password-manager Public archive

    web-based password-manager

    Vault-Web/password-manager's past year of commit activity
    Java 4 MIT 9 9 (1 issue needs help) 6 Updated Sep 27, 2026
  • vaultwarden Public Forked from dani-garcia/vaultwarden

    Unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs

    Vault-Web/vaultwarden's past year of commit activity
    Rust 0 AGPL-3.0 3,428 0 0 Updated Sep 18, 2026
  • auth-api-gateway Public

    The Api gateway for vault-web provides a centralised access to the different services provided and ensures secure access. It's going to be a token based authentication and authorisation system (JWT).

    Vault-Web/auth-api-gateway's past year of commit activity
    Java 5 MIT 7 7 (1 issue needs help) 7 Updated Jul 31, 2026
  • vault-habits Public Forked from daya0576/beaverhabits

    A self-hosted habit tracking app without "Goals"

    Vault-Web/vault-habits's past year of commit activity
    Python 0 BSD-3-Clause 83 1 0 Updated May 27, 2026
  • server-docs Public

    Comprehensive documentation for the Vault-Web ecosystem, including setup guides for headscale, syncthing and concepts like architecture, and security concepts.

    Vault-Web/server-docs's past year of commit activity
    3 MIT 0 2 (2 issues need help) 0 Updated Apr 2, 2026

Top languages

Loading…

Most used topics

Loading…