Your collection. Your server. Your slightly over-specified NAS.
Keep your collection where you can point at it.
KolleK is built to run on infrastructure you choose. Keep the app, your photos, your documents, and the details of what you own under your control.
Application
State: you own this
Run it yourself
Your data has an address.
Run KolleK yourself with Docker. Your database and uploaded files live where you decide they live, not behind a vague promise and a login page you hope stays around forever.
Encryption at rest
Sensitive details are not stored as plain text.
KolleK encrypts sensitive fields at rest. Names, values, locations, and item details are protected in the database by your instance’s application key. Curious database thieves get gibberish.
Backups
Backups are real, not a decorative button.
A complete backup includes the database, uploaded photos and documents, and your application key. Keep all three. Losing the key would be an extremely bad plot twist.
The database
Every collection, item, custom field, and history entry: the whole catalogue.
Photos & documents
Uploaded files from local disk or S3-compatible storage.
The application key
Decrypts the encrypted fields. Without it, the backup is gibberish too.
You are in charge. That is the point.
Self-hosting asks you to own upgrades and backups. In exchange, you get meaningful control over the collection and the system that holds it.
Read the self-hosting guideYou own upgrades
Pull a new image on your schedule, not ours.
You own backups
Real copies of the database, storage, and key.
You own the key
The application key never leaves your instance.
KolleK might not be for you (yet) if…
You do not want any responsibility for hosting, upgrades, or backups.
You need end-to-end encryption where the operator cannot access application data.
You expect an automated in-app backup button.
Choose KolleK when…
You want to decide where the app, data, photos, and documents live.
You want sensitive fields encrypted at rest and control over the encryption key.
You are willing to make real backups of the database, storage, and application key.
The operator holds the encryption key; backups are an operator responsibility. The feature status page has the boring-but-important details.