Enterprise Infrastructure Command Center — DevOps + Cybersecurity in one terminal
Project description
Deflect One
Agentless DevOps command center for your entire Linux infrastructure - from one terminal. No agents. No cloud. No SaaS. Just SSH access - and Deflect One turns that into a complete operations platform: server monitoring, active attack detection, file management, deployments, and more. AI support is available as an optional add-on.
No agents to install on servers. No cloud. No SaaS. Just SSH access - and Deflect One turns that into a complete operations platform.
From server health monitoring to active attack detection, from deployment orchestration to natural-language command execution via built-in AI - Deflect One combines DevOps observability, cybersecurity response, and LLM-powered decision support into a single, self-contained Python file.
Beta - actively developed.
Main Dashboard
Features
Real-Time Infrastructure Monitoring
CPU, RAM, disk, network I/O, Docker containers, MySQL/PostgreSQL/Redis - across unlimited servers simultaneously. Async-native coroutine pool, near-zero overhead.
Active Attack Detection & Defense
Live attack radar: malicious IPs, geo-location, timeline. Manages UFW/iptables rules. Defense mode executes bans, restarts, and rate limits autonomously within your policy.
Package & System Management
Full apt integration: view available updates, security patches, and install packages - across all hosts from one screen.
Docker & Services
Manage containers, images, and systemd services without leaving the terminal.
File Manager
Dual-panel SFTP/SSH file manager - browse, upload, download, edit, copy files between hosts. Midnight Commander style.
Log Aggregation & Journal Viewer
Cross-host regex log search and live journalctl tailing with 8 preset tabs.
Email Monitor
MTA queue monitoring, account overview, error rates - across all hosts.
Fleet & Bulk Operations
Manage your entire server fleet: bulk DevOps commands, SSH key rotation, host management.
🔧 More Tools
Cron & systemd timer management, network reconnaissance, script runner, config export.
AI-Enhanced Autonomous Operations (experimental, optional)
Unified AI engine: Claude, GPT-4, Gemini, Mistral, Groq, LM Studio. Per-host LLM instructions enable background governance loops - "restart /home/bot1/BotService if /home/bot1/tests.log file is older than one day" - running 24/7 without you watching.
💬 Natural-Language Command Terminal
Ctrl+A → describe what you want in plain English → Deflect One translates to CLI/SSH/Bash and executes it.
Some fun
But why not?
deflect-key.jpg
Installation
# Minimal (no AI)
pip install textual paramiko cryptography
# Full (with AI support)
pip install textual paramiko cryptography anthropic openai
# Run
python deflect.py --demo # demo mode, no SSH required
python deflect.py # real mode, reads deflect.json next to the script
Configure AI: F6 → 🤖 AI tab → choose provider → enter API key → Test Connection
Keyboard Shortcuts
| Keys | Screen |
|---|---|
Ctrl+D |
Docker |
Ctrl+W |
Firewall (UFW/iptables) |
Ctrl+F |
File Manager (SFTP, dual-panel) |
Ctrl+A |
AI Chat |
Ctrl+L |
Log Aggregation |
Ctrl+P |
Process Monitor |
Ctrl+Y |
Databases |
Ctrl+G |
Deployments |
Ctrl+X |
Email Monitor |
Ctrl+S |
Script Runner |
Ctrl+T |
Cron & Timers |
Ctrl+B |
Network Connections |
Ctrl+R |
Network Recon |
Ctrl+K |
Secrets Vault |
F2 |
Interactive SSH Shell |
F3 |
Log Tail (journalctl -f) |
F1 |
Help (full shortcut list) |
Compatibility
Runs on (your machine):
Linux · macOS (Intel + Apple Silicon) · Windows (Windows Terminal and Cmd) · WSL2
Any OS that runs Python 3.10+
Manages (remote servers):
Debian · Ubuntu - primary targets, fully tested
Fedora · CentOS · Arch · Alpine - works via SSH, not all features tested yet
Tech Stack
- Python 3.10+ · Textual 8.x (TUI) · asyncio · paramiko (SSH)
- cryptography - Fernet + PBKDF2 for HardwareVault
- AI backends:
anthropic·openai·google-generativeai·mistralai(all optional, experimental)
License
MIT License with Attribution Requirement.
Free for personal and commercial use. Attribution to vladonai.com/deflect required.
Created by Volodymyr Frytskyy (WhitemanV)
Project details
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file deflect_one-0.76.tar.gz.
File metadata
- Download URL: deflect_one-0.76.tar.gz
- Upload date:
- Size: 263.6 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.12
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
2052c189c97fbdc7d116c572d650fe208417e66fbff6194c75f96279db1c6971
|
|
| MD5 |
0e8e9b03790d3c53a2ea9f8bed18f412
|
|
| BLAKE2b-256 |
fcd909dd774c3e0d0cb820ce2bd8140cbc936a8cc7b607fea4e5a22f652dfa89
|
Provenance
The following attestation bundles were made for deflect_one-0.76.tar.gz:
Publisher:
publish.yml on Frytskyy/deflect-one
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
deflect_one-0.76.tar.gz -
Subject digest:
2052c189c97fbdc7d116c572d650fe208417e66fbff6194c75f96279db1c6971 - Sigstore transparency entry: 1328594735
- Sigstore integration time:
-
Permalink:
Frytskyy/deflect-one@66acf0df2a26b1436b7dbb596d925f8b38c40d99 -
Branch / Tag:
refs/tags/v0.76.1 - Owner: https://github.com/Frytskyy
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@66acf0df2a26b1436b7dbb596d925f8b38c40d99 -
Trigger Event:
push
-
Statement type:
File details
Details for the file deflect_one-0.76-py3-none-any.whl.
File metadata
- Download URL: deflect_one-0.76-py3-none-any.whl
- Upload date:
- Size: 263.8 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.12
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
cbb6111b1cad15ace87dee368a4c8175503afff0c470f7fdd4406dae15561c5f
|
|
| MD5 |
3afcb1b5e9a51a983973399c120fa384
|
|
| BLAKE2b-256 |
d9878fe21e1e4da771f07274d37b2dea53fb72c11085363af52ea9e5985cf923
|
Provenance
The following attestation bundles were made for deflect_one-0.76-py3-none-any.whl:
Publisher:
publish.yml on Frytskyy/deflect-one
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
deflect_one-0.76-py3-none-any.whl -
Subject digest:
cbb6111b1cad15ace87dee368a4c8175503afff0c470f7fdd4406dae15561c5f - Sigstore transparency entry: 1328594739
- Sigstore integration time:
-
Permalink:
Frytskyy/deflect-one@66acf0df2a26b1436b7dbb596d925f8b38c40d99 -
Branch / Tag:
refs/tags/v0.76.1 - Owner: https://github.com/Frytskyy
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
publish.yml@66acf0df2a26b1436b7dbb596d925f8b38c40d99 -
Trigger Event:
push
-
Statement type: