Infrastructure · Security · Business applications

Your platform, designed, hosted and operated by the same team.

Obicorp builds and runs containerised infrastructure — Docker, Docker Swarm, Kubernetes — secured with a Zero Trust approach and deployed through GitOps. And when the tool you need doesn't exist, we build it.

  • Servers located in France
  • No inbound port exposed to the internet
  • Everything as infrastructure as code
  • One technical point of contact
Docker · Swarm · K8s Three levels of orchestration, matched to your scale
Zero Trust Access to your applications without opening a single port
GitOps Git as the single source of truth
Custom-built Business applications developed in house
What we do

Four disciplines, one chain of responsibility

Most projects don't break in the middle — they break at the seams: between whoever writes the code, whoever deploys it and whoever hosts it. At Obicorp, those three are the same team.

Hosting & infrastructure

We host your applications on servers located in France, in containerised environments that we monitor and keep patched.

  • Docker and Docker Compose for straightforward setups
  • Docker Swarm for high availability without the operational overhead
  • Kubernetes when the scale genuinely calls for it
  • Encrypted backups, monitoring and restores that are actually tested
Learn more

Security & Zero Trust

Infrastructure that is exposed is infrastructure you have to defend. We would rather expose nothing at all: access runs through outbound tunnels behind strong authentication.

  • Cloudflare Tunnel (cloudflared): zero inbound ports open
  • Central authentication and MFA on every admin interface
  • TLS everywhere, WAF and filtering upstream
  • Hardened images, managed secrets, CVE monitoring
Learn more

GitOps & CI/CD

What runs in production is what lives in Git. Every change is reviewed, traced, replayable — and reversible with a single command.

  • Infrastructure and deployments versioned in Git
  • CI/CD pipelines: build, test, scan, ship
  • Continuous reconciliation with Argo CD or Flux
  • Instant rollback and a full history of changes
Learn more

Business applications

When no off-the-shelf product matches the way you work, we build the application that does — and we host it.

  • Web applications, back offices, customer portals
  • APIs and automation of repetitive work
  • Integration with your ERP, your CRM, your existing tools
  • Taking over and modernising existing applications
Learn more
Our stack

The technologies we run every day

Containers & orchestration

  • Docker
  • Docker Compose
  • Docker Swarm
  • Kubernetes
  • Helm
  • Traefik
  • nginx

Security & networking

  • Cloudflare Tunnel
  • Cloudflare Access
  • WAF
  • Let's Encrypt
  • WireGuard
  • Vault
  • Fail2ban

GitOps & CI/CD

  • Git
  • GitLab CI
  • Forgejo Actions
  • Argo CD
  • Flux
  • Renovate
  • Terraform
  • Ansible

Development & data

  • Python
  • PHP
  • Node.js
  • PostgreSQL
  • MariaDB
  • Redis
  • S3
  • Prometheus
  • Grafana
How we work

From the first conversation to day-to-day operations

  1. 01

    Understand the business before the technology

    We start from your real constraints: volumes, seasonality, regulatory obligations, budget, in-house skills. The architecture follows from those — never the other way round.

  2. 02

    Scope an architecture that fits

    A brochure site does not need a Kubernetes cluster. We propose the level of orchestration that matches your scale, and we explain why the alternatives would be money spent on a problem you don't have.

  3. 03

    Build it as infrastructure as code

    Servers, networks, deployments, backups: all described in versioned files. Your platform can be rebuilt identically, and you are not locked in to anyone.

  4. 04

    Go live without downtime

    Progressive migration, controlled DNS cutover, a rollback plan prepared and tested. Your users shouldn't have to find out that a migration happened.

  5. 05

    Operate, monitor, evolve

    Monitoring, security updates, restores verified for real, and a technical contact who already knows your platform when you call.

Why teams hand us their infrastructure

Because responsibility isn’t split. When an application is slow, “is it the code or the hosting?” shouldn’t turn into a game of ping-pong between suppliers. We hold both ends: we answer.

Because the exit is planned from day one. Everything we build sits on open foundations — Docker, Kubernetes, Git, PostgreSQL — and on code you own. If you decide to bring it in house or move to another provider, your platform leaves with you. That’s a guarantee, not a threat.

Because security is an architectural decision. A closed port cannot be attacked. We favour outbound tunnels, strong authentication in front of every admin interface, and backups whose restore procedure has actually been exercised — because a backup that has never been restored is only a hypothesis.

Because we say no. If Kubernetes is oversized for your needs, we’ll tell you. If an existing product already covers 90% of what you want built, we’ll tell you to buy it. A good technical partner is judged as much on the projects they talk you out of as on the ones they sell you.

Let's talk about your infrastructure

Migration, redesign, taking over an existing setup or starting from scratch: tell us your context and we'll come back with a first technical opinion — no strings attached.