Infrastructure
What runs under your services.
Concrete details about the platform that hosts, scales and protects your apps. No hand-waving.
Compute
Container runtime and isolation
- Runtime
- Our own scheduler — no Kubernetes overhead, built specifically for containers billed by resources.
- Container engine
- OCI-compatible containers built from your Dockerfile, a compose file, an uploaded archive or an auto-detected stack.
- Tenant isolation
- Each service runs in its own container with kernel namespaces, cgroup limits and a private network per project.
- Hardware
- AMD Ryzen 9 up to 5.7 GHz, DDR5 memory, NVMe storage. x86_64 only.
- Resource sizing
- vCPU and RAM are set manually per service and can be changed at any time. There is no autoscaling today.
Network
Traffic, DNS and connectivity
- Edge / CDN
- Cloudflare in front of all public traffic.
- TLS termination
- Managed Let's Encrypt certificates, issued and renewed automatically for every domain, subdomain and wildcard.
- Private networking
- Your services reach each other over an internal network without going through the public internet; private services have no public address at all.
- DDoS protection
- L3/L4 and L7 filtering at the Cloudflare edge, enabled automatically on every plan at no extra cost.
Storage
Disks, databases and backups
- Block storage
- NVMe SSD persistent disks mounted directly into your container.
- Managed databases
- PostgreSQL, Redis and MongoDB on current stable major versions, with credentials and a connection string issued on creation.
- Backups
- Scheduled and on-demand backups for both volumes and databases, with a file list and restore from any saved copy.
- Backup retention
- Backups are kept for 7 days, including after a service or database is deleted.
Availability
What happens when things break
- Uptime target
- We target 99.5% monthly uptime. There is no formal SLA with credits yet — we would rather state the target honestly than sell a contract we cannot back.
- Service recovery
- Containers are restarted automatically when they exit; you can also stop, restart, redeploy or rebuild any service from the dashboard.
- RPO / RTO
- RPO (how much data you can lose): up to 24 hours for databases on daily backups. RTO (how long recovery takes): up to 1 hour for a full restore.
- Database HA
- Managed databases run as a single node with automatic restart and backups. Replicas with automatic failover are not available today.
Operations
What you see day to day
- Logs
- Build and runtime logs stream live in the dashboard. Retention is limited; there is no external log shipping yet.
- Metrics
- CPU and RAM usage per service with history.
- Deploy history
- Every deploy is recorded with status, duration and build logs. Redeploy of the current configuration is available; switching back to an older build is not.
- Scheduled jobs
- Cron schedules per service: create, edit, enable, disable or run once manually.
Security
How the platform is protected
- Environment variables
- Environment variables are managed in the dashboard and injected into the container at runtime. There is no separate secrets vault product.
- Build isolation
- Builds run in disposable containers; images are stored in a private registry scoped to your account.
- Network access control
- Private services are unreachable from the internet; databases accept connections only from your own services.
- Shell access
- No SSH or web shell into running containers — you work through deploys, env vars, logs and metrics.
- Audit logs
- Deploy and configuration history is available per service; full account audit logs are not implemented yet.
Compliance
Certifications and commitments
- Certifications
- Muerte Cloud itself is not SOC 2 or ISO 27001 certified.
- Subprocessors
- Cloudflare for edge traffic and Selectel (ООО «Селектел») as the accredited hosting provider whose data centres run the platform. A DPA is available on request.
- Hosting provider
- The platform runs in the data centres of ООО «Селектел» (Selectel), a hosting provider listed in the Roskomnadzor hosting provider registry. Muerte Cloud is the software layer on top of that infrastructure.
- What we don't claim
- No formal SLA, no public status page, no multi-region deployment and no customer-facing object storage. When those ship, this page changes first.
Trust
Questions we haven't answered here?
Ask us directly — we'd rather tell you the honest limits of the platform than have you find them in production.

