SaaSHub helps you find the best software and product alternatives Learn more →
Top 4 Nix sops Projects
-
I would strongly recommend sops-nix[0]. Pair this with ssh-to-age/ssh-to-gpg for the keys for each server. We are using this at $work for multiple servers, one notable advantages is that it works in teams (for multiple people) and git (and also gitops).
For remote installations nixos-anywhere is great. deploy-rs or colemna is fine, nixos-rebuild with `--target-host` is also working well for us however.
[0]: https://github.com/Mic92/sops-nix/issues
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
-
Project mention: Local-first software: You own your data, in spite of the cloud | news.ycombinator.com | 2025-07-05
That’s essentially what I’m trying to make widely available through my projects https://github.com/ibizaman/selfhostblocks and https://github.com/ibizaman/skarabox. Their shared goal is to make self-hosting more approachable to the masses.
It’s based on NixOS to provide as much as possible out of the box and declaratively: https, SSO, LDAP, backups, ZFS w/ snapshots, etc.
It’s a competitor to cloud hosting because it packages Vaultwarden and Nextcloud to store most of your data. It does provide more services than that though, home assistant for example.
It’s a competitor to YUNoHost but IMO better (or aims to be) because you can use the building blocks provided by SelfHostBlocks to self-host any packages you want. It’s more of a library than a framework.
It’s a competitor to NAS but better because everything is open source.
-
-
Infrastructure and backend engineer with a low-level systems background. Last 3 years as the sole or one of very few infra engineers at early-stage startups - owning everything from VPC topology to CI/CD to on-call.
Currently building cloud infrastructure for a GPU neocloud (H100/H200) from scratch. Before that, sole platform engineer at an autonomous driving research lab, and before that SRE at a YC-backed video comms startup (acquired by a major cloud provider) managing 20+ Kubernetes clusters across AWS and GCP.
On the systems side - wrote a custom Karpenter provider in Go for a cloud provider, a C++ initramfs to run Gentoo on bare-metal Android phones with Android userland in LXC (GSoC 2020), and ADAS software on Android using Cap'n Proto + ZeroMQ + LMDB serving 275+ vehicles.
Also wrote bin (github.com/wantguns/bin), a self-hostable pastebin in Rust with 300 stars. Outside of work I maintain a multi-continent server mesh across Hetzner, Oracle Cloud and bare-metal, all declared in a public Nix flake (source - https://github.com/wantguns/dotfiles, blogs -https://wantguns.dev/tags/yakshaving)
Nix sops discussion
Nix sops related posts
-
Gentoo Linux 2025 Review
-
git init ~/repos/cathedral
-
Managing NixOS Secrets via SOPS, sops-nix and opsops
-
Archiving PostgreSQL Backups on NixOS
-
A guide to build a Raspberry Pi cluster managed by NixOps
-
A note from our sponsor - SaaSHub
www.saashub.com | 12 Jun 2026