Local-first
Core decisioning and response happen at the edge, without mandatory cloud dependency for local defensive operation.
HQ-Lite Edge Security
ChiRi Studio builds HQ-Lite, a live-tested defensive edge appliance that sits close to the network, gives operators local visibility, and supports explainable frontline decisions without mandatory cloud dependency.
HQ-Lite sits inline between WAN and LAN. It is designed to help smaller organisations see what is happening at the edge, understand device-level context, review IOC activity, and support controlled defensive action when policy and operating mode allow it.
Core decisioning and response happen at the edge, without mandatory cloud dependency for local defensive operation.
No endpoint agents are required for core edge visibility. HQ-Lite works from the network position.
Observe-first by default. Armed mode must be validated, auditable and deliberate before active enforcement.
Guardian is evolving from “system reacts” into “system explains, records and supports controlled action.” The live-test lesson was clear: defensive automation is not enough. If a system flags or blocks something, the administrator needs to understand why.
Traffic, IOC, DNS/IP events and device context.
Risk bands, severity, adaptive thresholds and scoring logic.
Why flagged, which layer, which device and what evidence.
observe, would_block, blocked, allowed or false_positive.
nftables/XDP path in armed mode, with event trail.
No new core features are being added now. The focus is making the existing system safer, clearer, more stable and ready for real pilot environments.
Observe, score, explain and decide. Armed-mode validation is the next important step.
DNS/URL/IP intelligence, protected domains, false-positive controls and observe history.
eBPF visibility and enforcement path for high-speed edge decisions when armed and permitted.
Network map and device intelligence: Tree View, Map View, friendly names, shadow devices, IOC context and per-device traffic.
System health, temperature, resource usage, process visibility and operational status.
Users, roles, sessions, DHCP, firewall controls, safer dashboard workflows and operator visibility.
HQ-Lite is designed so an administrator can understand the network without dropping straight into the shell. Echo-Probe explains the LAN. IOC shows observe-first intelligence. Noctilux shows health. Guardian records security decisions.
Device discovery, online/offline lifecycle, friendly names, parent assignment, shadow nodes, Tree View, Map View, Device Details, last IOC tickets and per-device traffic.
DNS/URL/IP policy state, protected domains, runtime checks and event records that support review before enforcement.
High-performance edge visibility and a controlled enforcement path when armed mode is validated and enabled.
CPU, RAM, disk, temperatures, processes and operational health for long-running appliance behaviour.
Practical security visibility without building an internal SOC.
A repeatable edge appliance model for customer environments.
Guest Wi-Fi, IoT, POS/back-office separation and uptime pressure.
Low-power local visibility for constrained environments.
Edge decisioning close to remote users and devices.
Traffic pressure, abuse visibility and controlled mitigation paths.
Alpha Core functionally complete. Core feature expansion is paused.
Hardening, optimisation, documentation, UX refinement and operational cleanup.
Guardian RTS audit, IOC workflow refinement, Settings, Watchdog/self-healing and armed-mode validation.
Prepare the first full ISO and repeatable installation path for structured validation.
Structured pilot environments and beta-readiness with aligned organisations.
Ecosystem expansion only after HQ-Lite is stable, hardened and validated.
Security, networking, Linux systems, architecture, Guardian, edge infrastructure and live technical validation.
Product vision, UI/UX, design direction, operations, communication and founder-led product clarity.
We are open to serious technical, pilot and partner conversations around HQ-Lite, edge security, low-power appliance routes and pilot validation.