Open source · Proxmox-native · MCP built in

The agent-first cloud, on hardware you can point at

zone9 turns Proxmox clusters into a self-service cloud: servers, private networks, firewalls and more — through a console designed to stay out of your way, an API that mirrors it exactly, and MCP tools your AI assistant can drive.

Why zone9

Built by infrastructure operators who wanted a Hetzner-grade experience on their own racks — without giving up visibility, and without a control plane that holds them hostage.

Agent-first by design

Every button in the console is an API intent — and every intent is an MCP tool. Plug zone9 into Claude or your in-house assistant and manage servers by talking to it. Write actions always ask for confirmation.

Your infrastructure keeps running without us

The panel is a thin intent layer over Proxmox. If it goes down, your VMs, networks and firewalls keep working — and any Proxmox admin can see and fix everything with standard tools.

Open source, no lock-in

Run our SaaS, or self-host the exact same code with your own Proxmox cluster and any OIDC identity provider. Every resource is visible in the Proxmox UI with human-readable names and tags.

Private by default

Servers are born on an isolated VXLAN network and reached over WireGuard-based VPN. A public IP is an explicit, per-server choice with a default-deny firewall in front.

Bring your own cluster

Connect your existing Proxmox with a single command. A small agent dials out from your network — no inbound ports — and your hardware becomes a region in the console.

Honest operations

Reconciliation reports drift instead of silently overwriting it. Full audit log of who did what — from the console, the API, or an assistant. Usage events stream out for billing; the panel never invents numbers.

From zero to a running server

No tickets, no VLAN spreadsheets. The boring parts are automated; the decisions stay yours.

Sign in with SSO

One click, one identity. Your account and default project are created on first login.

Pick a region and a package

Choose one of our regions — or a Proxmox cluster you connected yourself. Fixed packages, no overcommit.

Connect in under a minute

Your server boots on a private network with your SSH key installed. Open a public port only when you mean to.

Runs in the open

The console, API, MCP server and the Go executor are one open codebase. Audit it, self-host it, or point it at your own cluster — the SaaS and the self-hosted profile are the same product.

Read the source