The directory page for the people you host services for. No account, multilingual, live status.
10K+
The directory page for the people you host services for: no account, multilingual, live status, one tiny container.

You run things for other people. Family, a club, a team, a floor of an office. They have no idea what any of it is called or where it lives, and they should not have to. cairn is the one page you send them: what you host, what it is for, whether it is up, in their own language.
You write two YAML files. cairn serves them. There is no database, no account system, no admin panel, and nothing to log into.
Live demoโ ยท Source and documentationโ
docker run --rm -p 8080:8080 -v ./config:/config:ro morgankryze/cairn:stable
Or with Compose, which is how most people run it:
services:
cairn:
image: morgankryze/cairn:stable
ports:
- 8080:8080
volumes:
- ./config:/config:ro
read_only: true
cap_drop:
- ALL
security_opt:
- no-new-privileges:true
The getting started guideโ
has the two config files to put in ./config, and it is a five minute read.
| Tag | Points at |
|---|---|
stable, latest | the newest release |
<major>, <major>.<minor>, <major>.<minor>.<patch> | that major, minor or exact version |
unstable | every commit on the main branch |
| a commit hash | that exact build |
Pin the exact version if something else depends on the page looking the way it
looks today. 1 and stable move on every release; the
upgrading notesโ
say what a version can refuse to load.
Built for linux/amd64 and linux/arm64, so a Raspberry Pi is a first-class
target rather than an afterthought.
A single static Go binary on scratch, with a CA bundle and nothing else. No
shell, no package manager, no interpreter: there is nothing in the image to
run but cairn. It drops every capability, runs as a non-root user and needs no
writable filesystem, which is what makes the Compose block above possible.
This image is the same object published to GitHub Container Registryโ , copied here digest for digest rather than built twice. It is signed keylessly, so there is no maintainer key to steal, and it carries SLSA build provenance and a software bill of materials.
cosign verify morgankryze/cairn:stable \
--certificate-identity-regexp '^https://github.com/MorganKryze/cairn/' \
--certificate-oidc-issuer https://token.actions.githubusercontent.com
The security policyโ explains what that proves and how to report a problem.
GPL-3.0. Issues, translations and pull requests are welcome on GitHubโ .
Content type
Image
Digest
sha256:4c00be1a3โฆ
Size
4.9 MB
Last updated
17 days ago
docker pull morgankryze/cairn