Silence means everything's running.

Native iOS and watchOS monitoring for RouterOS networks, with a self-hosted relay. Push alerts in seconds, end-to-end encrypted — the gateway we host cannot read your data.

✓ no telemetry✓ e2e encrypted✓ self-hosted relayRouterOS 6.45+
Download on the App Store
$ docker run -d -v vigila-data:/data -p 8443:8443 \
    ghcr.io/vigila-eu/vigila-relay
 relay up — pairing code: 7F2K-QM

14:02:11 poll rtr-praha-edge ok 38ms
14:02:26 poll rtr-brno-core timeout
14:02:41 rule link_state ether1 → FIRING
14:02:41 push sealed · e2e · 2.1s delivered
iPhone + Watch nativeX25519 · ChaCha20-Poly1305 e2e pushTOFU cert pinningSQLite on your hardware$24.99 once, not monthly
Lock screen with a live Vigila incident: ether1 link down, FIRING

the 3 a.m. moment

The incident finds you.
Not the other way round.

  • Live Activity on the lock screen — starts when you open the app during an incident, with a running clock.
  • One alert per incident — debouncing and flap suppression, not forty pings.
  • Quiet hours with a hole — critical alerts always break through.
  • Acknowledge from the Watch — one tap silences reminders, the incident stays tracked.

on your wrist

Acknowledge without reaching for your phone.

  • Fleet health ring — how many routers are up, on your watch face as a complication.
  • One-tap acknowledge — silence reminders from the notification, right on your wrist.
  • Standalone app — the watch talks to your routers and relay directly, even without the phone nearby.
Vigila on Apple Watch — fleet health ring showing 1 of 2 routers healthy

your hardware does the watching

A relay you run. A gateway that reads nothing.

iOS apps can't poll your network in the background — so Vigila ships a lightweight Docker relay (Raspberry Pi friendly). It watches around the clock and seals every alert with a key only your iPhone holds. Our gateway just passes the envelope.

$ docker run -d -v vigila-data:/data -p 8443:8443 ghcr.io/vigila-eu/vigila-relay
# full compose + pairing → github.com/vigila-eu/vigila-releases

Published at launch. Full compose example — including pairing — in the repo.

private by architecture

Your data stays yours.

Not a policy promise — the architecture makes it so.

Credentials never leave your hardware

Router passwords live in your iPhone's Keychain or on your own relay. Nothing we host has a field for them.

architecture, not policy — verified by tests

Alerts are sealed before they leave your house

End-to-end encrypted on your relay with a key only your iPhone holds. Our gateway forwards envelopes it cannot open.

X25519 · ChaCha20-Poly1305 · key minted at pairing

Certificates trusted by you, not by a list

First connection pins the router's fingerprint. If it ever changes, Vigila blocks and asks — like SSH would.

trust-on-first-use · SHA-256 pinning

No telemetry. None.

No analytics, no crash uploads. The app talks to your routers, your relay, and Apple push. That's the list.

privacy manifest: data collected — none

fair by design

Free for your homelab. Pro when you grow.

One-time purchase. No subscription. No feature hostages.

Free

$0
  • 2 routers
  • Core alert rules
  • iPhone + Watch apps
  • Widgets & Live Activity
  • Full privacy — same architecture

Vigila Pro

$24.99 once
  • Unlimited routers
  • All nine rule types
  • Family Sharing
  • Supports development

Pricing varies by region.