Repository navigation
Releases: 416rehman/Vectory
Release list
Vectory v0.2.1
Vectory 0.2.1 is a self-hosted control plane for Vector.
Install
Use the guided quickstart. Download vectory-0.2.1-server-linux-amd64.tar.gz, extract it, and run ./start.sh on a Linux x86-64 Docker host. The kit verifies release signatures, pulls immutable images from GHCR, and guides first administrator setup. No source compilation is needed.
The native Linux x86-64 server kit is vectory-0.2.1-server-native-linux-amd64.tar.gz. It installs the same prebuilt server, dashboard and agents with an isolated systemd validator, without Docker or a compiler. Use the native installation guide for the supported host requirements and signature-verifying one-command installer. vectory-0.2.1-native-runtime-source.tar.gz separately retains the exact corresponding Debian runtime sources; ordinary installation does not need that optional source archive. The public native installer and exact runtime/source provenance are included as signed release assets.
The local evaluation kit is separate. Managed devices need an existing supported Vector installation; Add device provides the platform download and setup command.
Verify
SHA256SUMS.sigstore.json authenticates SHA256SUMS using GitHub OIDC and Sigstore. IMAGE-DIGESTS.env contains the immutable server and validator references. Both images carry Cosign signatures. Verify the certificate identity https://github.com/416rehman/Vectory/.github/workflows/release.yml@refs/tags/v0.2.1 and issuer https://token.actions.githubusercontent.com. The starter does this through a pinned Cosign container, with no host Cosign installation.
Built-in agent-update catalog signatures use a separate operator key and are not enabled by this release signature. Windows Authenticode and Apple Developer ID/notarization are not present; operating systems may show trust prompts even though the download has a verified Sigstore signature.
Validation and operational limits
Publication requires all application, native service, package, isolated validator, starter TLS/bootstrap/restart, provenance and signature gates on this tag. File download or writing configuration is not verified device activation.
Container scans reject every critical record and every high record with an available fix. Unfixed findings remain disclosed in the three *-image-vulnerabilities.json files and summarized in RELEASE.json. Counts are package records, not proof of exploitability or safety. Use least privilege, backups, restricted dashboard access and your deployment review process.
This release supports a Linux x86-64 Docker Compose manager, Linux amd64/arm64 agents, macOS Intel/Apple Silicon agent downloads and Windows amd64 agents. Consult the tested compatibility matrix before production rollout. Native tests cannot cover every OS or workload.
Source: ca41ed8e38b2def9ab53d1a99e48388eaaece327. CI receipt. Vectory is independent of Datadog and the Vector project.
Vectory v0.2.0
Vectory 0.2.0 is a self-hosted control plane for Vector.
Install
Use the guided quickstart. Download vectory-0.2.0-server-linux-amd64.tar.gz, extract it, and run ./start.sh on a Linux x86-64 Docker host. The kit verifies release signatures, pulls immutable images from GHCR, and guides first administrator setup. No source compilation is needed.
The local evaluation kit is separate. Managed devices need an existing supported Vector installation; Add device provides the platform download and setup command.
Verify
SHA256SUMS.sigstore.json authenticates SHA256SUMS using GitHub OIDC and Sigstore. IMAGE-DIGESTS.env contains the immutable server and validator references. Both images carry Cosign signatures. Verify the certificate identity https://github.com/416rehman/Vectory/.github/workflows/release.yml@refs/tags/v0.2.0 and issuer https://token.actions.githubusercontent.com. The starter does this through a pinned Cosign container, with no host Cosign installation.
Built-in agent-update catalog signatures use a separate operator key and are not enabled by this release signature. Windows Authenticode and Apple Developer ID/notarization are not present; operating systems may show trust prompts even though the download has a verified Sigstore signature.
Validation and operational limits
Publication requires all application, native service, package, isolated validator, starter TLS/bootstrap/restart, provenance and signature gates on this tag. File download or writing configuration is not verified device activation.
Container scans reject every critical record and every high record with an available fix. Unfixed findings remain disclosed in the three *-image-vulnerabilities.json files and summarized in RELEASE.json. Counts are package records, not proof of exploitability or safety. Use least privilege, backups, restricted dashboard access and your deployment review process.
This release supports a Linux x86-64 Docker Compose manager, Linux amd64/arm64 agents, macOS Intel/Apple Silicon agent downloads and Windows amd64 agents. Consult the tested compatibility matrix before production rollout. Native tests cannot cover every OS or workload.
Source: c9aeb26d074d517278f92f29f5fc190ff5bfc20d. CI receipt. Vectory is independent of Datadog and the Vector project.
Publication: CI completion receipt. All tagged qualification, signing and offline-verification gates passed. This job completes publication of that exact signed inventory after correcting the final notes step environment.
Vectory 0.1.1 (unsigned developer preview)
Vectory 0.1.1
An unsigned developer preview of the open-source, self-hosted control plane for Vector.
Design pipelines visually or edit YAML, JSON and TOML, publish immutable configuration versions, choose devices, and follow canaries and rollback. Agents communicate outbound to the manager. Your event stream stays between Vector and your destinations.
Docker 29 preview fix
This patch fixes native validation in the prebuilt local preview on Docker Engine 29.1.3. The manager now reaches its own validator at the checked private container address. The validator has no published host port and retains its internal network, non-root user, read-only filesystem and resource limits.
Startup checks worker ownership, image identity, network, address and health before reporting success. Stop and restart retain the workspace, administrator and certificate authority. Stale shell values cannot replace the verified preview configuration.
The original 0.1.0 tag and download assets remain unchanged.
Start with prebuilt downloads
The preview and server kits require Linux x86-64, Docker Engine and Compose v2. Devices need a separately installed Vector 0.58.x; Vectory does not install or upgrade Vector.
- Local quickstart: download
vectory-0.1.1-preview-linux-amd64.tar.gz, verify it againstSHA256SUMS, extract it and run./start.sh. - Server installation: use the prebuilt server kit with your hostname and TLS certificate.
- Agent archives cover Linux amd64 and arm64, macOS amd64 and arm64, and Windows amd64. Linux packages and a Windows MSI are included. See the tested support matrix before choosing a target.
The Docker images are separate verified release archives loaded by the starter. Ordinary setup needs no Rust, Go, Node.js or compilation. Help, license notices and search assets ship with the server for offline use.
Release validation
The release candidate checks, main checks, and four native platform jobs passed at this release commit.
After publication, the ordinary public-download quickstart also passed on Docker Engine 29.1.3 in WSL Ubuntu, using the released kit and images. It verified native Vector validation through the manager before and after restart, the private validator with no published host port, TLS trust, all five agent download hashes, and bundled Help notice/source hashes. The test's own containers, volumes and temporary credentials were removed.
This public smoke exercised API and static setup checks. It did not install a host agent service or activate a Vector pipeline.
Preview limits
The server and validator images retain known High-severity dependency findings. Review the dependency audit and its limits before using this preview; a matching scan baseline does not establish production safety.
Downloads are unsigned. Checksums detect byte changes but do not establish a separate signing identity. There is no package repository or container registry yet. Read the known limits and security model before consequential use.
Vectory's own code is Apache-2.0. Bundled third-party software retains its licenses in NOTICE, including the supplied corresponding source for Pagefind. Vectory is independent of Datadog and the Vector project.
Vectory 0.1.0 | unsigned developer preview
Vectory 0.1.0 | unsigned developer preview
Docker 29 preview issue (fixed in 0.1.1): the 0.1.0 local preview dashboard starts, but Docker 29 does not publish the validator's port from its internal network. Manager-side native validation is therefore unavailable in that 0.1.0 preview setup.
Update: Vectory 0.1.1 is available and fixes the prebuilt local preview on Docker Engine 29.1.3 by reaching the isolated validator at its checked private address, without publishing a validator host port. Use the 0.1.1 local quickstart. The original 0.1.0 tag and download assets remain unchanged.
Vectory is a self-hosted control plane for Vector 0.58. Build a pipeline in a visual editor, publish an immutable version, then canary, apply, observe and roll it back across your devices. Agents connect outbound; event data continues to flow from Vector to your destinations.
This first preview includes:
- A free browser-only Vector configuration designer for creating, importing, visualizing and exporting YAML, JSON or TOML without an account. Configurations stay in the browser.
- Prebuilt Linux x86-64 Docker preview and server kits that download and verify released images. No Rust, Go, Node or source compilation is needed to install.
- A schema-driven editor for Vector 0.58's 128 component types, a code view with YAML, TOML and JSON import/export, VRL sample tests, and version diffs.
- Device and group targeting with previews, canaries, schedules, pause/cancel controls and rollback.
- Outbound-only Linux, macOS and Windows agents with mutual TLS, signed per-device configurations, host-owned policy and recovery to the last working version.
- A Docker Compose server with SQLite, an isolated Vector validator, an offline Help center, roles, two-factor sign-in and an exportable audit log.
Developer preview: the downloadable binaries, packages and Docker image archives are unsigned. This release is not production qualified. There is no package repository or container registry yet. Agent-update builds and device configurations have separate runtime signatures; those do not sign these release downloads. Review the known limits, platform coverage and security policy before trying it on a host.
Start with the prebuilt local quickstart, or self-host the preview with Docker Compose. Download the small kit, verify its SHA-256, extract it and run ./start.sh with Docker Engine and Compose v2 ready. The kit retains its workspace and device trust when stopped and resumed.
Downloads include the preview and server starter kits, agent archives, .deb and .rpm packages, a Windows MSI, Docker-save image archives, SBOMs, a license inventory, LICENSE, NOTICE, the pinned Pagefind Help search source and manifest, CANDIDATE.json and SHA256SUMS. The source archive is supplied for the compiled Help search and is optional for installation. Download the complete set and verify it with sha256sum -c SHA256SUMS (or a SHA-256 tool on your platform). Vectory's own code is Apache-2.0; bundled third-party materials retain their licenses and notices. The full changelog and What's new have the detailed changes and limitations.
