Hyperion
Micrantha Lab

Multi-cloud operations, governed by Git

Hyperion is a practical, production-minded platform for managing infrastructure and application lifecycle through Git as the single source of truth.

It coordinates provisioning, configuration, and delivery as one system across local and multi-cloud environments.

GitOps Core
Multi-environment

Named after the largest tree, Hyperion focuses on reproducible environments, secure automation, and consistent delivery across local and cloud targets.

Goals
Source of truth. Model the full stack in Git, from provisioning to app delivery. Reproducible environments. Keep local, dev, staging, and production consistent. Secure automation. Encrypt secrets, validate configs, and enforce policy checks. Operational clarity. Make changes auditable, reviewable, and easy to reason about.
Stack Ledger

Terraform

Infrastructure provisioning for clouds and local labs.

Ansible

Server configuration, security hardening, and platform setup.

K3s

Lightweight Kubernetes control plane for edge and lab use.

Flux CD

Continuous reconciliation between Git and cluster state.

Kustomize

Environment overlays and declarative variants.

SOPS

Encrypted secrets management in GitOps workflows.

GitHub Actions

Automated workflows for infra and deployment cycles.

Observability

Logging and metrics stack for cluster visibility.

Architecture Overview

Infrastructure

Terraform

Multi-cloud + local

Remote state

Configuration

Cloud-init

Ansible roles

Security baseline

Platform

K3s cluster

Flux GitOps

Observability

Applications

Kustomize overlays

Ingress + services

Backup workflows

Key Capabilities

Environment overlays

Base manifests with environment-specific overlays for predictable changes.

Policy & validation

Preflight checks for IaC, manifests, and security posture.

Secret hygiene

SOPS-encrypted secrets integrated into GitOps flow.

Automated delivery

CI workflows to provision, configure, and reconcile changes.

Observability

Logging and metrics pipeline for cluster-level visibility.

Operational runbooks

Backup and restore workflows to keep data resilient.

Benefits

Consistency

Predictable rollouts across local and cloud environments.

Auditability

Infrastructure changes remain reviewable and traceable.

Resilience

Standardized backups and recovery reduce downtime risk.

Risk Control

Policy checks and automated verification lower operational risk.

Environments & Domains
Local *.micrantha.local · *.micrantha.test
Development *.micrantha.dev · *.vpn.micrantha.dev (VPN)
Staging *.staging.micrantha.dev · *.staging.micrantha.com
Production *.micrantha.com · *.micrantha.net · *.micrantha.org