I’ve been building Sentrilite for deep Linux system observability and real-time alerting using eBPF. It’s designed for teams that want fine-grained visibility into process activity, network connections, and file access — with the flexibility to define custom rules or use it as an EDR/XDR agent.
What it does:
Traces system events in real-time (execve, socket activity, file reads/writes, etc.)
Sends alerts to a built-in WebSocket server and live dashboard
Supports custom rule creation and reporting
Optional AI-powered risk scoring
Monitors multiple servers from a single UI
Designed to be lightweight, fast, and self-hosted
GitHub: https://github.com/sentrilite/sentrilite
Website: https://sentrilite.com
Demo: https://youtu.be/16BvgmfiYzQ
It’s available with a free trial and low-cost per-server pricing after that. Would love feedback, suggestions, or use cases you’d like supported.Thanks for reading!