MiniSOC

Deploy in minutes. Collect locally. Retain full control.

A lightweight on-premises SIEM for Ubuntu Server (x86_64). Deploy in minutes, collect logs locally, and monitor infrastructure with AI-assisted workflows.

MiniSOC AI LOCAL NETWORK PORTS COMPUTE AI RANKING INGESTED 83% PROCESSED 77% ANOMALIES 24 (9 now) TELEMETRY SORTED — VERIFIED CLASSIFIED EVENT SAFE LOCAL PSU OK SYSTEM OK NET ACTIVE EXT INT MGMT
PROCESSED 0.0 Gbp/s

MiniSOC is a lightweight on-premises SIEM for organisations that need security visibility without enterprise complexity. It collects and analyses telemetry locally, runs on compact hardware, and keeps your data under your control. No cloud lock-in. No heavyweight infrastructure.

It fits small teams, managed service providers, and distributed environments. Branch offices, laboratories, research networks, and edge deployments that need reliable monitoring can run MiniSOC on modest hardware while keeping logs, processing, and analysis fully local.

For European organisations, MiniSOC supports GDPR compliance and digital sovereignty. Logs may contain user identifiers, infrastructure details, and security metadata. By keeping everything inside your own environment, MiniSOC reduces third-party exposure and helps you meet regulatory and governance requirements.

AI-assisted workflows reduce noise and surface what matters. Analysts, administrators, and service providers can recognise patterns faster and move from raw events to operational understanding — while owning their data end to end.

On-prem SIEM Local AI No cloud lock-in Runs on Ubuntu Server GDPR compliant EU built Full data ownership AI-assisted analysis

Common questions

How much hardware do I need?

MiniSOC installs on Ubuntu Server (x86_64). A modest host with 4 GB RAM is enough to start. macOS and Raspberry Pi OS are not supported by the one-command installer today.

Does any data leave my network?

No. All log collection, processing, and analysis happens locally. Your telemetry never leaves your infrastructure.

Is MiniSOC free?

Self-hosted installer available on hardware you own. Lab/trial is $0 per VM; production is licensed per VM. Source is currently private and the license is TBD.

Do I need GitHub access to install?

Yes. Source is currently private. Use a GitHub token or set MINISOC_REPO_URL to a clone URL you can access, then run the installer. A public install bundle is not available yet.

Who is this for?

Small teams, SMBs, MSPs, research labs, branch offices, and any organisation that wants simple, local security monitoring without cloud dependency.

Get started in under 5 minutes.

$ curl -sSL https://minisoc.ai/install.sh | bash

One command on Ubuntu Server (x86_64). Local logs. Full control. Requires GitHub access to the private source (token or MINISOC_REPO_URL). Supported platform: Ubuntu only.