Skip to content

Latest commit

Β 

History

1,329 Commits

Folders and files

NameName
Last commit message
Last commit date
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
OpsKnight Banner

OpsKnight

Transparent, self-hosted incident operations.
From alert ingestion and on-call routing through response, customer communication, and learning.

opsknight.com

Website Docs License Docker Package Status Next Major Sponsor Tests Security



Important

πŸš€ Major Milestone: OpsKnight 2.0 is Coming Soon!

Target Release Window: Late this month / First week of next month

Over 260+ PRs have been merged since our last release (v1.4.0). While we initially planned a minor v1.5, the massive improvements across the boardβ€”a completely redesigned modern UI, rock-solid availability, scalable architecture, and deep engine upgradesβ€”mean our next milestone will be OpsKnight 2.0!

πŸ’‘ Planning a new deployment? If you are evaluating or planning to install OpsKnight, we strongly recommend waiting for the 2.0 release (or following the active opsknight-test package) to take advantage of the new infrastructure and streamlined configuration:

  • 🌐 Cloud-Native & Kubernetes-Ready: Highly available, horizontally scalable architecture engineered for automatic scaling in Kubernetes and distributed container environments.
  • ✨ Modern UI & Intuitive Configuration: Completely revamped user interface and configuration flows that make setting up services, channels, and team workflows simple and effortless.
  • ⏱️ Per-Service SLA Management: First-class SLA policies per serviceβ€”define schedule, acknowledge, and resolve SLA targets with real-time breach tracking and business hours.
  • πŸ’¬ Interactive Microsoft Teams ChatOps: Full two-way incident triage directly from Teams channelsβ€”acknowledge, assign, snooze, set priority, and resolve incidents in real time.
  • πŸ‘₯ Next-Gen Team, Schedule & Escalation Engine: Re-engineered schedule management, multi-tier escalation policies, and flexible team routing designed for complex on-call rotations.
  • πŸ“’ Upgraded Status Pages & Settings: Redesigned public/private status pages, customizable incident banners, and unified administration controls.
  • πŸ” Enterprise Security & Mature OIDC: Upgraded OpenID Connect (OIDC) integration, redesigned login experience, strict RBAC authorization, and hardened session security.
  • πŸ“Š Actionable Reliability Metrics: Rich operational analytics, SLA compliance reports, MTTR/MTTA breakdowns, and actionable service health dashboards.

⭐ Star and watch this repository to be notified the moment OpsKnight 2.0 is officially released!


πŸ“¦ Current Stable Release: v1.4.0

Paging reliability β€” delayed escalations remain delayed, orphaned work is recovered safely, and notification routes avoid duplicate delivery.

Operational confidence β€” the administrator Health Center consolidates supported runtime checks, while the release contract validates installation, upgrades, recovery, incident delivery, deployment rendering, and stable AMD64/ARM64 images.

Release notes Β· Integrations Β· Changelog

v1.2 added Slack ChatOps incident war rooms β€” setup guide.


πŸ“‘ Table of Contents


⚑ Why OpsKnight?

Own the incident loop, the operational evidence, and the data.

OpsKnight is an open-source, self-hosted alternative to per-seat on-call SaaS (including PagerDuty and Opsgenie). It is not affiliated with those companies. Designed for teams that want incident data on their own machines.

Whether you are an SRE team at a startup or a platform team at a larger organization, OpsKnight connects detect β†’ route β†’ respond β†’ communicate β†’ learn on infrastructure you control. Reliability and transparent operational evidenceβ€”not raw feature countβ€”are the product contract.

Feature OpsKnight Typical per-seat SaaS
Hosting Self-hosted Vendor cloud
Software fee $0 (Apache-2.0) Per-user plans
Users No seat meter in the product Per-seat pricing
Status pages One page per install Often a separate SKU
Voice paging Not included Often included
Incident data Your Postgres / VPC Vendor cloud

πŸŽ₯ Demo

OpsKnight demo

✨ Key Features

🚨 Unified Command Center

Manage incidents, responders, and runbooks from a single real-time dashboard. Track SLAs (MTTA/MTTR) and automate assignments.

πŸ“… Fair On-Call Rotations

Flexible scheduling with daily, weekly, or custom rotations. Handle time zones, overrides, and escalation policies with ease.

πŸ“’ Global Escalations & War Rooms

Multi-channel notifications via Slack ChatOps, SMS, Email, and Push. Automatic Slack Incident War Rooms with 1-click triage actions.

πŸ“± Mobile PWA

Full incident management in your pocket. Installable on iOS/Android with Push Notifications and biometric security.

πŸ“Š Public Status Pages

Keep your users informed with beautiful public status pages. Automate updates and subscriber notifications during incidents.

πŸ”Œ 22+ Native Integrations

Native parsers for Prometheus, Datadog, Sentry, CloudWatch, Grafana, Zabbix, GitLab, Vercel, Jira Cloud sync, and Events API v2 ingest.


πŸ“± Mobile Command Center

Respond to incidents from anywhere. OpsKnight includes a fully installable Progressive Web App (PWA) for iOS and Android.

  • πŸ”” Push Notifications: Get critical alerts instantly on your device.
  • πŸ‘† One-Tap Install: No App Store required. Just "Add to Home Screen".
  • πŸ”’ Secure: Supports biometric authentication (FaceID/TouchID).
Mobile Dashboard

πŸ”Œ Integrations

OpsKnight plays nicely with your entire observability and engineering stack.

Slack Jira Cloud Prometheus Datadog Grafana Sentry CloudWatch Zabbix PagerDuty GitLab Vercel Webhooks

View All 22+ Integrations β†’


πŸ› οΈ Built With

OpsKnight is built on a modern, type-safe stack designed for performance and developer experience.

Next.js React TypeScript Tailwind CSS Prisma PostgreSQL Docker

πŸš€ Quick Start

Prerequisites

  • Docker & Docker Compose
  • Git
  • openssl (ships with macOS and most Linux distributions)

Run the full stack

# 1. Clone the repository
git clone https://github.com/opsknight-labs/OpsKnight.git
cd OpsKnight

# 2. Create your environment file
cp env.example .env

# 3. Generate the two secrets OpsKnight requires
printf 'NEXTAUTH_SECRET=%s\n' "$(openssl rand -base64 32)" >> .env
printf 'ENCRYPTION_KEY=%s\n'  "$(openssl rand -hex 32)"    >> .env

# 4. Start OpsKnight and PostgreSQL
docker compose pull
docker compose up -d

The main-branch Compose file defaults to the patched ghcr.io/opsknight-labs/opsknight:1.4.0-hotfix image. You do not need to switch branches or manually configure latest.

Open http://localhost:3000. The database schema is created on first boot, so there is no migration step to run yourself.

ENCRYPTION_KEY encrypts integration credentials at rest β€” keep it safe and back it up. Losing it means re-entering every integration secret.

Before exposing this to a network, change the default PostgreSQL password in .env and set NEXTAUTH_URL / NEXT_PUBLIC_APP_URL to your real hostname.

Bring your own database

To run the published image against your own PostgreSQL, rather than the bundled one:

docker run -d --name opsknight -p 3000:3000 \
  -e DATABASE_URL="postgresql://user:password@your-db-host:5432/opsknight" \
  -e NEXTAUTH_URL="https://opsknight.example.com" \
  -e NEXT_PUBLIC_APP_URL="https://opsknight.example.com" \
  -e NEXTAUTH_SECRET="$(openssl rand -base64 32)" \
  -e ENCRYPTION_KEY="$(openssl rand -hex 32)" \
  ghcr.io/opsknight-labs/opsknight:1.4.0-hotfix

PostgreSQL 14+ is required. See the deployment guides for TLS, connection pooling and scaling.


🐳 Container Images

Images are published to the GitHub Container Registry and are public β€” no authentication needed to pull.

Image Channel Tags
ghcr.io/opsknight-labs/opsknight Stable releases 1.4.0-hotfix, 1.4.0, 1.4, 1, latest
ghcr.io/opsknight-labs/opsknight-test Pre-release, built from main latest, sha-<commit>
# Pin the patched v1.4 runtime β€” recommended for affected v1.4 deployments
docker pull ghcr.io/opsknight-labs/opsknight:1.4.0-hotfix

# Do not use `latest` for affected v1.4 deployments; the original 1.4.0 image is immutable.

Pinning an exact version is strongly preferred in production: latest moves whenever a release ships, so a container restart can change versions underneath you.

Browse all published versions β†’


πŸ“¦ Deployment Options

We support multiple deployment strategies to fit your infrastructure needs.

Method Best For Guide
Docker Compose Local Development, small teams Read Guide
Helm Chart Production Kubernetes (Recommended) Read Guide
Kustomize GitOps (ArgoCD/Flux) Read Guide

Note: For production, we recommend using an external managed PostgreSQL database.


πŸ—οΈ Architecture

OpsKnight runs as a single Next.js application (UI + API routes + server actions) with an internal DB-backed scheduler and a Postgres-backed job queue.

OpsKnight architecture diagram High-level architecture: clients β†’ app (Next.js) β†’ PostgreSQL (Prisma) β†’ outbound channels.

πŸ“š Documentation

Everything you need to configure and extend OpsKnight.


πŸ”’ Security

OpsKnight handles on-call rotations, integration credentials and incident data, so security is treated as a first-class concern:

  • Integration secrets are encrypted at rest with envelope encryption, keyed by ENCRYPTION_KEY
  • Inbound webhooks and Slack requests are signature-verified and rejected when they cannot be verified β€” there is no fail-open path
  • Every push is scanned by CodeQL, Trivy, TruffleHog, Checkov and OWASP ZAP in CI
  • RBAC governs incident, service and schedule access

Found a vulnerability? Please do not open a public issue β€” see SECURITY.md for private disclosure.

Hardening guidance: Security documentation


πŸ—ΊοΈ Roadmap

πŸ”₯ Currently In Active Development: OpsKnight 2.0 (Next Major Evolution)

  • Core Incident Management & On-Call Schedules
  • Slack ChatOps Incident War Rooms & Interactive Cards
  • Native inbound parsers (catalog size in docs; includes Events API v2 ingest, GitLab, Vercel, Nagios, Icinga, Datadog, Prometheus, etc.)
  • Forensic Webhook Ingestion Security & Mandatory Key Authentication
  • Master Encryption Key Architecture (12-Factor Security)
  • Tier-2 SLA Engine Hardening & Custom Business Hours
  • Jira Cloud Bi-Directional Synchronization & Real-Time Note Sync
  • Public Status Pages with Subscriber Notifications
  • Mobile PWA with Biometric Security & Push Notifications
  • Administrator Health Center & Release-Quality Contract
  • Reliable Delayed Escalation Recovery & Multi-Architecture Releases
  • πŸš€ OpsKnight 2.0: Redesigned UI, real-time push engine, and availability hardening

See the full ROADMAP.md


🀝 Community & Support

We are actively seeking contributors! Whether you're a developer, designer, or technical writer, come help us build OpsKnight.

We love contributors! Please check our Contributing Guide to get started.


❀️ Support the Project

OpsKnight is an independent open-source project. If it helps you sleep better at night, consider supporting its development.

  • 🌟 Star the repo: It helps others find us.
  • πŸ’ Sponsor: Become a Sponsor

Built with ❀️ by Dushyant Rahangdale


GitHub Stars GitHub Forks GitHub Issues

About

The complete open-source platform for on-call management, incident response, and status pages. Self-hosted, extensible, and built for DevOps & SRE teams.

Topics

Resources

Code of conduct

Contributing

Security policy

Stars

53 stars

Watchers

3 watching

Forks

Releases

Sponsor this project

Packages

Used by

Contributors

Languages