PowerGuardian logo
PowerGuardian
Controller OS

The central control plane
for your power layer.

Controller OS runs on a NanoPi R3S and aggregates all your Connectors into a single dashboard. It runs the rule engine, manages credentials, and gives you visibility across every site — on your hardware, not ours.

Capabilities

What Controller OS does

Platform capabilities

  • Zero-touch connector adoption with one-time tokens
  • Multi-site dashboard — all UPS in one view
  • Staged, ordered shutdown sequences
  • Rule engine with confirmation window before trigger
  • Automation flows: SSH, NUT INSTCMD, WoL, webhooks
  • Signed OTA packages pushed to all connectors
  • Role-based access: Owner / Admin / Viewer
  • Dynamic DNS — 29 providers, background sync
  • Google Drive backup scheduler
  • VLAN-aware networking (802.1Q)
  • Optional cloud proxy for remote access

Security model

  • AES-256-GCM encrypted credential vault
  • TOTP MFA for vault unlock and admin operations
  • X25519 ECDH end-to-end payload encryption
  • Connector tokens with hardware fingerprint binding
  • SSH command whitelist — no free-form exec
  • TOFU host key pinning for SSH shutdown targets
  • SHA-256 verified OTA packages before install
  • 1 MB request body limit, CSP hardened frontend
  • Login lockout per IP, persisted in database

One control plane for your entire power layer.

Pick a plan and manage UPS devices across every site.