Know every box in your fleet is exactly as you declared.
One mechanism, many bodies, held in true.
ESS Orrery is software you install that holds the declared shape of your whole fleet (any provider, any Linux box) and proves, continuously and read-only, that reality still matches it. Six checks surface drift the moment it appears. It measures and reports, it never changes your boxes.
pip install orrery && orrery doctor
hover a body to read it
See the whole fleet in true, at a glance.
One instrument for a mixed fleet. Any provider, any Linux box, from a solo operator's handful to an org across regions. Drift surfaces the moment reality diverges from what you declared. The deck below is illustrative.
The six checks, in detail, live on the reconciler page. / See how it compares.
Declared shape in. Drift out. Continuously.
Three things carry the whole product. Each has a page of its own.
Six read-only checks, run continuously
org-map, fleet-reach, secret-edges, declared-presence, floors, and managed-settings. A fact is not declared until its probe passes. Findings carry a severity and the run exits non-zero on drift, so a cron or CI can alert.
Explore the reconciler Trust by constructionRead-only, self-verifying, enforced below the model
orrery doctor verifies its own install, then keeps watching for drift. The secret graph is value-blind: it never reads a secret value. Rules live in code and architecture, not in a prompt you have to remember to honor.
See the security model Open coreAGPL core, commercial where it scales
The engine that holds your secrets and reaches every box is open and auditable, with zero runtime dependencies. The governed-autonomy trust layer and hosted plane are a separate commercial product, in development.
See pricing and licensingRun it against your own fleet.
Install the core, verify it, then reconcile against a profile you declare. Read-only, so the first run cannot break anything.
pip install orrery && orrery doctor