[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"project-93797":3},{"id":4,"name":5,"fullName":6,"owner":7,"repo":5,"description":8,"homepage":9,"htmlUrl":10,"language":11,"languages":9,"totalLinesOfCode":9,"stars":12,"forks":13,"watchers":14,"openIssues":15,"contributorsCount":9,"subscribersCount":16,"size":16,"stars1d":16,"stars7d":16,"stars30d":16,"stars90d":16,"forks30d":16,"starsTrendScore":16,"compositeScore":17,"rankGlobal":9,"rankLanguage":9,"license":9,"archived":18,"fork":18,"defaultBranch":19,"hasWiki":18,"hasPages":18,"topics":9,"createdAt":9,"pushedAt":9,"updatedAt":20,"readmeContent":21,"aiSummary":22,"trendingCount":16,"starSnapshotCount":16,"syncStatus":23,"lastSyncTime":24,"discoverSource":25},93797,"dockpanel","ovexro\u002Fdockpanel","ovexro","Modern server management panel built with Rust and React. Sites, databases, Docker apps, Git deploy, mail, DNS, monitoring, backups, and security — all in one panel.",null,"https:\u002F\u002Fgithub.com\u002Fovexro\u002Fdockpanel","Rust",474,81,12,10,0,5.74,false,"main","2026-09-21 02:04:14","\u003Cp align=\"center\">\n  \u003Cimg src=\".github\u002Fscreenshots\u002Fdp-dashboard.png\" alt=\"DockPanel Dashboard\" width=\"800\">\n\u003C\u002Fp>\n\n\u003Ch1 align=\"center\">DockPanel\u003C\u002Fh1>\n\n\u003Cp align=\"center\">\n  \u003Cstrong>The most feature-packed free server panel ever built.\u003C\u002Fstrong>\u003Cbr>\n  Self-hosted. Docker-native. Written in Rust. Panel services run on \u003Cstrong>~19MB of RAM\u003C\u002Fstrong>. 776 API endpoints. 152 app templates. 454 E2E tests. ~41MB binaries. Zero subscriptions.\n\u003C\u002Fp>\n\n\u003Cp align=\"center\">\n  \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fovexro\u002Fdockpanel\u002Freleases\">\u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fgithub\u002Fv\u002Frelease\u002Fovexro\u002Fdockpanel\" alt=\"Release\">\u003C\u002Fa>\n  \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fovexro\u002Fdockpanel\u002Factions\">\u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fgithub\u002Factions\u002Fworkflow\u002Fstatus\u002Fovexro\u002Fdockpanel\u002Fci.yml?label=CI\" alt=\"CI\">\u003C\u002Fa>\n  \u003Ca href=\"LICENSE\">\u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fbadge\u002FLicense-BSL_1.1-blue.svg\" alt=\"License: BSL 1.1\">\u003C\u002Fa>\n\u003C\u002Fp>\n\n\u003Cp align=\"center\">\n  \u003Ca href=\"https:\u002F\u002Fdockpanel.dev\">Website\u003C\u002Fa> &bull;\n  \u003Ca href=\"https:\u002F\u002Fdocs.dockpanel.dev\">Docs\u003C\u002Fa> &bull;\n  \u003Ca href=\"CHANGELOG.md\">Changelog\u003C\u002Fa> &bull;\n  \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fovexro\u002Fdockpanel\u002Fdiscussions\">Discussions\u003C\u002Fa>\n\u003C\u002Fp>\n\n---\n\n## Install\n\n```bash\ncurl -sL https:\u002F\u002Fdockpanel.dev\u002Finstall.sh | sudo bash\n```\n\nOpen `http:\u002F\u002FYOUR_SERVER_IP:8443`, create your admin account, done.\n\nSupports Ubuntu 20+, Debian 11+, CentOS 9+, Rocky 9+, Fedora 39+, Amazon Linux 2023. x86_64 and ARM64.\n\n## Why DockPanel?\n\nNo other free panel gives you Git push-to-deploy with blue-green zero-downtime updates, 152 one-click Docker app templates, per-image CVE scanning with deploy gating, a WAF, passkey login, GPU passthrough, multi-server management, reseller accounts, a developer CLI, and Infrastructure as Code — all while the panel services themselves use under 20MB of RAM. DockPanel does.\n\n| | DockPanel | HestiaCP | CloudPanel | RunCloud |\n|---|---|---|---|---|\n| **Price** | **Free** | Free | Free | $8\u002Fmo+ |\n| **Stack** | **Rust + React** | PHP | PHP | PHP (SaaS) |\n| **Docker native** | **152 templates** | No | No | No |\n| **Git deploy** | **Blue-green, zero-downtime** | No | No | Basic |\n| **Multi-server** | **Unlimited** | No | No | Yes |\n| **Reseller + white-label** | **Yes** | Reseller only | No | No |\n| **CLI + IaC** | **Full CLI + YAML export** | Limited | No | No |\n| **RAM usage (panel)** | **~19MB** | ~200MB+ | ~150MB+ | SaaS |\n| **ARM64 \u002F Homelab** | **Yes** | Partial | No | No |\n| **Self-hosted** | **Yes** | Yes | Yes | No |\n\n## Screenshots\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Dashboard\u003C\u002Fstrong> — Live server metrics, 24h graphs, site overview, recent activity\u003C\u002Fsummary>\n\n![Dashboard](.github\u002Fscreenshots\u002Fdp-dashboard.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Sites\u003C\u002Fstrong> — Static, PHP, Node.js, Python, reverse proxy with Nginx + SSL\u003C\u002Fsummary>\n\n![Sites](.github\u002Fscreenshots\u002Fdp-sites.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Site Detail\u003C\u002Fstrong> — SSL, WAF, file manager, terminal, backups, resource limits, custom nginx\u003C\u002Fsummary>\n\n![Site Detail](.github\u002Fscreenshots\u002Fdp-site-detail.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Docker Apps\u003C\u002Fstrong> — 152 one-click templates across 14 categories\u003C\u002Fsummary>\n\n![Docker Apps](.github\u002Fscreenshots\u002Fdp-apps.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Databases\u003C\u002Fstrong> — MySQL\u002FPostgreSQL, SQL browser, schema viewer, point-in-time recovery\u003C\u002Fsummary>\n\n![Databases](.github\u002Fscreenshots\u002Fdp-databases.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>File Manager\u003C\u002Fstrong> — Browse, edit, upload files from the browser\u003C\u002Fsummary>\n\n![File Manager](.github\u002Fscreenshots\u002Fdp-file-manager.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Terminal\u003C\u002Fstrong> — Full SSH in the browser with tabs, themes, session recording\u003C\u002Fsummary>\n\n![Terminal](.github\u002Fscreenshots\u002Fdp-terminal.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Git Deploy\u003C\u002Fstrong> — Push-to-deploy, atomic zero-downtime deploys, preview environments\u003C\u002Fsummary>\n\n![Git Deploy](.github\u002Fscreenshots\u002Fdp-git-deploy.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Monitoring\u003C\u002Fstrong> — HTTP\u002FTCP\u002Fping uptime checks, SLA tracking, PagerDuty integration\u003C\u002Fsummary>\n\n![Monitoring](.github\u002Fscreenshots\u002Fdp-monitoring.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Security\u003C\u002Fstrong> — Firewall, Fail2Ban, SSH hardening, vulnerability scanning, audit logs\u003C\u002Fsummary>\n\n![Security](.github\u002Fscreenshots\u002Fdp-security.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Backups\u003C\u002Fstrong> — Scheduled backups, S3\u002FSFTP destinations, Restic incremental, one-click restore\u003C\u002Fsummary>\n\n![Backups](.github\u002Fscreenshots\u002Fdp-backups.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>DNS\u003C\u002Fstrong> — Cloudflare + PowerDNS, zone management, cache purge, security settings\u003C\u002Fsummary>\n\n![DNS](.github\u002Fscreenshots\u002Fdp-dns.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Mail\u003C\u002Fstrong> — Postfix + Dovecot + DKIM, Roundcube webmail, Rspamd spam filter\u003C\u002Fsummary>\n\n![Mail](.github\u002Fscreenshots\u002Fdp-email.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Cron Jobs\u003C\u002Fstrong> — Scheduled tasks with output logging\u003C\u002Fsummary>\n\n![Cron Jobs](.github\u002Fscreenshots\u002Fdp-crons.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>System\u003C\u002Fstrong> — Services, updates, diagnostics, auto-healing\u003C\u002Fsummary>\n\n![System](.github\u002Fscreenshots\u002Fdp-system.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Settings\u003C\u002Fstrong> — Branding, notifications, alert channels, account security\u003C\u002Fsummary>\n\n![Settings](.github\u002Fscreenshots\u002Fdp-settings.png)\n\u003C\u002Fdetails>\n\n\u003Cdetails>\n\u003Csummary>\u003Cstrong>Login\u003C\u002Fstrong> — Email\u002Fpassword + passkey (WebAuthn) support\u003C\u002Fsummary>\n\n![Login](.github\u002Fscreenshots\u002Fdp-login.png)\n\u003C\u002Fdetails>\n\n## Features\n\n### Hosting\n- **Sites** — Static, PHP (8.1-8.4), Node.js, Python, reverse proxy. Automatic Nginx config, SSL, PHP-FPM pools.\n- **Databases** — MySQL\u002FPostgreSQL in Docker. Built-in SQL browser, visual schema browser, point-in-time recovery (WAL\u002Fbinlog). Auto-cleanup on site delete.\n- **Docker Apps** — 152 templates across 14 categories (AI, CMS, Database, Media, Monitoring, and more). Compose stacks. Resource limits. GPU passthrough.\n- **Git Deploy** — Push-to-deploy. Atomic zero-downtime deploys (Capistrano-style). Nixpacks (30+ languages). Preview environments.\n- **WordPress Toolkit** — Multi-site dashboard, vulnerability scanning, security hardening, bulk updates.\n- **CMS Install** — WordPress, Laravel, Drupal, Joomla, Symfony, CodeIgniter — one click.\n- **Backups** — Scheduled, S3\u002FSFTP remote destinations, one-click restore. Restic incremental (encrypted, deduplicated).\n- **Backup Orchestrator** — DB\u002Fvolume backups, AES-256 encryption, restore verification, cross-resource policies, S3\u002FSFTP\u002FB2\u002FGCS destinations, health dashboard.\n- **CDN** — BunnyCDN and Cloudflare CDN management. Cache purge, bandwidth stats, pull zone discovery.\n- **Image Optimization** — Server-side WebP\u002FAVIF conversion per site.\n- **Secrets Manager** — AES-256-GCM encrypted vaults, version history, auto-inject to .env, masked API, CLI pull endpoint.\n- **Webhook Gateway** — Inbound endpoints with unique URLs, HMAC-SHA256\u002FSHA1 verification, request inspector, route builder, retry\u002Freplay.\n\n### Operations\n- **Multi-Server** — Manage remote servers from one panel. Agent auto-registers.\n- **DNS** — Cloudflare + PowerDNS. Zone templates, propagation checker, DNSSEC. Cloudflare cache purge, security settings, Cloudflare Tunnel.\n- **Container Management** — Auto-sleep (scale to zero), auto-update detection, per-user isolation policies, app migration between servers.\n- **Mail** — Postfix + Dovecot + OpenDKIM. Webmail (Roundcube), spam filter (Rspamd), SMTP relay.\n- **Monitoring** — HTTP\u002FTCP\u002Fping uptime checks, SLA tracking, PagerDuty integration.\n- **Prometheus + Grafana** — Token-gated `\u002Fapi\u002Fmetrics` scrape endpoint (off by default) plus a drop-in [fleet dashboard](dashboards\u002Fdockpanel-grafana.json) covering CPU\u002Fmemory\u002Fdisk, GPU utilization\u002FVRAM\u002Ftemp\u002Fpower, sites, and alerts. See [docs\u002Fguides\u002Fprometheus.md](docs\u002Fguides\u002Fprometheus.md).\n- **Incident Management** — Full lifecycle (investigating, identified, monitoring, resolved, postmortem), severity levels, timeline, affected components.\n- **Public Status Page** — Standalone dark-themed page at `\u002Fstatus`, component groups, email subscribers, overall status auto-computed from checks.\n- **Terminal** — Full SSH with tabs, themes, sharing, session recording.\n\n### Security\n- **Passkey\u002FWebAuthn** — Passwordless login with biometrics or security keys. Plus 2FA\u002FTOTP with recovery codes.\n- **WAF** — ModSecurity3 + OWASP CRS v4 per site. Detection or prevention mode. Event viewer.\n- **CSP & Bot Protection** — Per-site Content Security Policy headers and bot rate limiting.\n- **Firewall** — UFW management with smart port opener.\n- **Fail2Ban** — View\u002Fban\u002Funban IPs, panel-specific jail.\n- **SSH Hardening** — Disable password\u002Froot login, change port — one click.\n- **Vulnerability Scanning** — File integrity, security headers, full-server audits.\n- **Per-Image CVE Scanning** — Scan every running Docker app's image with Anchore grype. Severity badge per app row on the Apps page. Scheduled background rescans (configurable interval). Soft deploy gate refuses deploys on images exceeding a critical\u002Fhigh\u002Fmedium threshold. Grype installs self-contained into `\u002Fvar\u002Flib\u002Fdockpanel\u002Fscanners\u002F` from the Settings UI. **Defaults to off** — opt in from Settings → Services → Image Vulnerability Scanning.\n- **Signed Releases + SBOM** — Every release binary and its SPDX SBOM is signed in CI with cosign keyless via Sigstore (no long-lived signing key, recorded in the public Rekor transparency log). Verification snippet in [SECURITY.md](SECURITY.md#verifying-release-signatures).\n- **Per-Image SBOM Generation** — Generate an SPDX 2.3 JSON SBOM for any deployed Docker app's image on demand (syft). Click \"Download SBOM\" in any app's scan drawer. Self-contained install at `\u002Fvar\u002Flib\u002Fdockpanel\u002Fscanners\u002Fsyft`. **Defaults to off** — opt in from Settings → Services → SBOM Generation. Companion to image CVE scanning: composition vs. risk.\n- **Auto-Healing** — Restart crashed services, clean disk, renew expiring SSL, auto-sleep idle containers.\n\n### Developer Experience\n- **CLI** — `dockpanel status`, `sites`, `apps`, `diagnose`, `export`, `apply`\n- **Infrastructure as Code** — Export\u002Fimport server config as YAML. Terraform\u002FPulumi provider API with scoped IaC tokens.\n- **Smart Diagnostics** — 6 check categories with one-click fixes. Auto-optimization recommendations.\n- **File Manager** — Browse, edit, upload files from the browser.\n- **Command Palette** — Ctrl+K to navigate anywhere.\n- **Nginx FastCGI Cache** — Per-site toggle with smart bypass for logged-in users.\n- **Redis Object Cache** — Per-site isolated Redis DB with WP auto-config.\n\n### Themes & Layouts\n- **6 Themes** — Terminal (hacker green), Midnight (navy blue), Ember (warm amber), Arctic (light teal), Clean (light blue SaaS), Clean Dark (GitHub-dark).\n- **3 Layouts** — Sidebar (full sidebar nav), Compact (collapsible icon rail), Topbar (horizontal navbar).\n\n### Business\n- **Reseller Accounts** — Admin → Reseller → User hierarchy with quotas.\n- **White-Label** — Custom logo, colors, panel name per reseller.\n- **OAuth\u002FSSO** — Google, GitHub, GitLab login.\n- **Extension API** — Webhook events with HMAC signing and scoped API keys.\n- **WHMCS Integration** — Provisioning, suspension, termination hooks. Auto-create users from billing.\n- **Horizontal Auto-Scaling** — Rule-based CPU thresholds with min\u002Fmax replicas and cooldown.\n- **Migration Wizard** — Import from cPanel, HestiaCP. Plesk (beta). App migration between servers.\n- **Teams** — Multi-user access with role-based permissions.\n\n## Architecture\n\n```\nBrowser → React 19 SPA → Nginx\n                           ├── \u002Fapi\u002F* → API (Rust\u002FAxum)\n                           │              ├── PostgreSQL 16\n                           │              └── Agent (Unix socket \u002F HTTPS)\n                           │                     └── Docker, Nginx, SSL, files, terminal\n                           └── \u002F*     → Frontend (static files)\n```\n\n**3 Rust binaries**: Agent (~21MB), API (~20MB), CLI (~1MB). Runtime RAM: ~12MB agent + ~7MB API ≈ 19MB for the panel itself; ~85MB with the bundled PostgreSQL. 11 background services.\n\n| Component | Tech | Role |\n|-----------|------|------|\n| Agent | Rust\u002FAxum | Root-level host operations (Docker, Nginx, SSL, files) |\n| API | Rust\u002FAxum + SQLx | Auth, business logic, multi-server dispatch, background tasks |\n| CLI | Rust\u002FClap | Command-line interface for automation |\n| Frontend | React 19 + Vite + Tailwind 4 | Browser UI with 6 themes + 3 layouts |\n\n## Security\n\nDockPanel has undergone seven rounds of security auditing (280+ vulnerabilities found and fixed). Credentials are encrypted at rest with AES-256-GCM. All child processes run with sanitized environments. Per-image CVE scanning (grype) with optional deploy gating catches vulnerable images before they ship. See [SECURITY.md](SECURITY.md) for details.\n\n## Development\n\n```bash\ngit clone https:\u002F\u002Fgithub.com\u002Fovexro\u002Fdockpanel.git && cd dockpanel\n\n# Start database\ndocker run -d --name dockpanel-postgres \\\n  -e POSTGRES_USER=dockpanel -e POSTGRES_PASSWORD=dockpanel -e POSTGRES_DB=dockpanel \\\n  -p 5450:5432 postgres:16\n\n# Build\ncargo build --release --manifest-path panel\u002Fagent\u002FCargo.toml\ncargo build --release --manifest-path panel\u002Fbackend\u002FCargo.toml\ncargo build --release --manifest-path panel\u002Fcli\u002FCargo.toml\ncd panel\u002Ffrontend && npm install && npx vite build\n```\n\nSee [CONTRIBUTING.md](CONTRIBUTING.md) for full development setup.\n\n## CLI\n\n```bash\ndockpanel status              # Server status (CPU, RAM, disk)\ndockpanel sites               # List all sites\ndockpanel apps                # List Docker apps\ndockpanel diagnose            # Run smart diagnostics\ndockpanel export -o config.yml  # Export server config as YAML\ndockpanel apply config.yml    # Apply config (Infrastructure as Code)\n```\n\n## Update \u002F Uninstall\n\n```bash\nsudo bash \u002Fopt\u002Fdockpanel\u002Fscripts\u002Fupdate.sh     # Update\nsudo bash \u002Fopt\u002Fdockpanel\u002Fscripts\u002Funinstall.sh   # Remove\n```\n\n## Documentation\n\n- [Live Docs](https:\u002F\u002Fdocs.dockpanel.dev) — Getting started, guides, configuration\n- [FEATURES.md](FEATURES.md) — Complete feature manifest (60+ features, ~280 capabilities)\n- [CHANGELOG.md](CHANGELOG.md) — Version history\n- [SECURITY.md](SECURITY.md) — Security model and vulnerability reporting\n- [CONTRIBUTING.md](CONTRIBUTING.md) — Development setup and PR process\n\n## License\n\nBusiness Source License 1.1. Free to use on your own servers. See [LICENSE](LICENSE) for details.\n","DockPanel 是一款轻量、自托管的现代服务器管理面板，专为开发者与运维人员设计。它基于 Rust 和 React 构建，核心功能涵盖网站托管（支持静态\u002FPHP\u002FNode\u002FPython）、Docker 应用一键部署（152 个模板）、Git 推送式蓝绿发布、数据库管理、邮件与 DNS 配置、实时监控、备份及安全防护（含 WAF、CVE 扫描、Passkey 登录）。面板自身仅占用约 19MB 内存，支持多服务器统一纳管、ARM64 架构及基础设施即代码（YAML 导出）。适用于中小团队、个人开发者、Homelab 及需完全掌控基础设施的自托管场景。",2,"2026-07-25 02:30:07","trending"]