Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
pub:trust_center:infrastructure_and_tech_stack [21.07.2026 13:48] – Update tech stack - Mautic and Fider are self-hosted, not cloud Predrag Tasevskipub:trust_center:infrastructure_and_tech_stack [21.07.2026 13:59] (current) – Update: Jitsi and LimeSurvey are self-hosted; GitLab EU for proprietary code Predrag Tasevski
Line 48: Line 48:
 | **n8n** | Workflow automation and integrations | Self-hosted on Unicis infrastructure | Amsterdam, EU | GDPR | | **n8n** | Workflow automation and integrations | Self-hosted on Unicis infrastructure | Amsterdam, EU | GDPR |
 | **Matomo** | Analytics and usage metrics | Self-hosted on Unicis infrastructure | Amsterdam, EU | GDPR | | **Matomo** | Analytics and usage metrics | Self-hosted on Unicis infrastructure | Amsterdam, EU | GDPR |
-| **Jitsi** | Video conferencing (15+ participants) | Cloud | EU | GDPR | +| **Jitsi** | Video conferencing (15+ participants) | Self-hosted on Unicis infrastructure Amsterdam, EU | GDPR | 
-| **LimeSurvey** | Surveys, polls, feedback collection | Cloud or self-hosted | EU | GDPR |+| **LimeSurvey** | Surveys, polls, feedback collection | Self-hosted on Unicis infrastructure | Amsterdam, EU | GDPR | 
 +| **GitLab EU** | Proprietary code repository & CI/CD | Self-hosted / EU-based GitLab | EU | GDPR |
 | **Wise** | Payment processing and transfers | Cloud | EU | GDPR, PSD2 | | **Wise** | Payment processing and transfers | Cloud | EU | GDPR, PSD2 |
-| **GitHub** | Code repository, CI/CD, version control | Cloud | US + EU mirrors | GDPR (SCCs) | 
 | **Discord** | Community and partner communication | Cloud | US/EU | GDPR (SCCs) | | **Discord** | Community and partner communication | Cloud | US/EU | GDPR (SCCs) |
  
Line 67: Line 67:
   * ✅ Mautic — Email/marketing **(deprecated soon)**   * ✅ Mautic — Email/marketing **(deprecated soon)**
   * ✅ Fider — Feedback/roadmap   * ✅ Fider — Feedback/roadmap
 +  * ✅ Jitsi — Video conferencing (15+ participants)
 +  * ✅ LimeSurvey — Surveys/polls/feedback
  
-**Rationale:** Self-hosting critical services reduces vendor lock-in, ensures data remains fully under Unicis control, and maintains compliance with EU data residency requirements. All self-hosted services are on the same Scaleway infrastructure in Amsterdam.+**Code Repository:** 
 +  * ✅ GitLab EU — Proprietary code repository and CI/CD pipeline (EU-based) 
 + 
 +**Rationale:** Self-hosting critical services reduces vendor lock-in, ensures data remains fully under Unicis control, and maintains compliance with EU data residency requirements. All self-hosted services are on the same Scaleway infrastructure in Amsterdam. Proprietary code is stored in EU-based GitLab.
  
 **Services on Third-Party Cloud (With Data Processing Agreements):** **Services on Third-Party Cloud (With Data Processing Agreements):**
-  * ☁️ Jitsi — Video (required for reliability at scale) 
-  * ☁️ LimeSurvey — Surveys (optional; limited customer data) 
   * ☁️ Wise — Payments (PSD2 regulated, no customer data stored)   * ☁️ Wise — Payments (PSD2 regulated, no customer data stored)
-  * ☁️ GitHub — Code (industry standard, SCCs in place, no customer data) 
   * ☁️ Discord — Community (convenience; no customer data stored)   * ☁️ Discord — Community (convenience; no customer data stored)
  
Line 96: Line 98:
   * **Element/Matrix** — Self-hosted in Amsterdam (EU)   * **Element/Matrix** — Self-hosted in Amsterdam (EU)
   * **OpenProject** — Self-hosted in Amsterdam (EU)   * **OpenProject** — Self-hosted in Amsterdam (EU)
 +  * **GitLab EU** — Proprietary code (EU)
  
 Operational data does NOT include customer data and is separated by infrastructure and access control. Operational data does NOT include customer data and is separated by infrastructure and access control.
Line 109: Line 112:
     * Dolibarr: Vendor subscription records (no customer compliance data)     * Dolibarr: Vendor subscription records (no customer compliance data)
     * FreeScout: Support conversations (not compliance data)     * FreeScout: Support conversations (not compliance data)
-    * GitHub: Application code (not customer data)+    * GitLab: Application code (not customer data)
  
 ====== Vendor Assessment & Monitoring ====== ====== Vendor Assessment & Monitoring ======
Line 143: Line 146:
   * Element/Matrix: Replicated storage in Amsterdam   * Element/Matrix: Replicated storage in Amsterdam
   * FreeScout: Local backups + redundancy   * FreeScout: Local backups + redundancy
 +  * Jitsi: Video sessions (no persistent data storage)
 +  * GitLab EU: Repository backups + CI/CD logs
  
 ====== Cost Transparency ====== ====== Cost Transparency ======
Line 179: Line 184:
   * Logging: ELK Stack (centralized, encrypted)   * Logging: ELK Stack (centralized, encrypted)
   * IDS/IPS: CrowdSec (self-hosted)   * IDS/IPS: CrowdSec (self-hosted)
 +
 +**Code Repository & CI/CD:**
 +  * Repository: GitLab EU (proprietary code)
 +  * CI/CD: GitLab Runners (EU-based)
 +  * Branching: Git flow with protected main branch
 +  * Deployment: Automated via GitLab CI/CD pipeline
  
 **Security Tools:** **Security Tools:**
Line 199: Line 210:
   * Primary: Scaleway (Amsterdam) — ACTIVE   * Primary: Scaleway (Amsterdam) — ACTIVE
   * Secondary: OVH DNS/AI — ACTIVE   * Secondary: OVH DNS/AI — ACTIVE
 +  * Code Repository: GitLab EU — ACTIVE
   * Mautic: Self-hosted, will deprecate soon   * Mautic: Self-hosted, will deprecate soon
   * Fider: Self-hosted, active   * Fider: Self-hosted, active
 +  * Jitsi: Self-hosted, active
 +  * LimeSurvey: Self-hosted, active
   * No migration planned   * No migration planned