All your devices and people on one private network — with your own chat, calls and cloud — on a computer you already own. We set it up and look after it.
In a world where everything is recorded and turned into someone else's material,
true luxury is to remain untouched.
Freedom begins where you draw the line yourself.
Only you. Your family. Your company. Your inner circle.
Phones, laptops, the office printer and the home NAS reach each other from anywhere, as if in the same room.
Messages, calls and files between your people only — sealed, on your server, in no one else's cloud.
Nextcloud, Seafile or any other open-source app — we set it up on your server, reachable only through your network, not a public site anyone can knock on.
Travel anywhere and come out of your own front door. Safe on open Wi-Fi.
Open a service to one person, a team or everyone — even inside your network, nobody sees what isn't theirs. Enforced on the server, not trusted to the device.
A new server or a new route reaches every device by itself. No one re-scans a QR code.
Everything you now pay someone else for, person by person — on your own server, even one at home. For your people only, with no subscriptions.
The tunnel runs at the speed of your line. And because networks that are open today may be filtered tomorrow, kilka runs on WireGuard and supports AmneziaWG from day one.
WireGuard and AmneziaWG run inside the Linux kernel on your server — no slow software layer in the way of your traffic.
Devices connect directly whenever their routers allow it. When they can't, the relay is your own server at its full speed — not a shared, throttled one.
AmneziaWG disguises the connection so filters don't recognise it as a VPN. Not needed today? It's one switch in the panel — every device picks it up by itself, no reinstalling, no new QR codes.
Chats, calls, files and broadcasts are built into the Android app — nothing else to install, nobody else's service. Not a replacement for a big team's tools; simply there, and private.
One small app for the network and the messenger. No ads, no feed, no trackers.
Conversations are kept on the phones. The server passes sealed envelopes it cannot open, holds one only until it's collected — a week at most — and keeps no history.
People are in because they are on your network. Nobody hands over a number or makes an account anywhere.
Encrypted voice and video, a group call in one tap, ringing through the phone's own calling system — earpiece, headset, car.
Rooms for a class, a team or a family; polls, voice notes, photos, documents and location.
Broadcast a lesson, a talk or an announcement to the whole network at once. Listening goes on with the screen off.
On Android, messages and calls arrive over one sealed connection to your server — not through Google. They reach you, and the battery lasts.
A message for a phone that is off waits, sealed, and arrives when it comes back.
Rooms and archives for a large team, a shared drive: Matrix or Nextcloud sit on the same network, behind the same keys.
Made for any group that should talk among itself — families, schools and universities, clinics, small offices — without handing its conversations to anyone else.
Anything open to the internet is found, probed and — increasingly with AI — broken into, often before a fix exists. What lives inside your network has no public door to knock on.
Vulnerabilities are now exploited on average a week before a patch is released. Exploits are the most common way in — 32% of intrusions.
The average time for attackers to move on from the first machine — the fastest took 27 seconds.
Attackers using AI stepped up their operations by 89% in a year, for scouting, stealing logins and hiding.
The network itself answers nothing to a device without its key — to a scanner, there is nothing there.
Sources: Mandiant M-Trends 2026 (time to exploit, initial access) · CrowdStrike Global Threat Report 2026 (breakout time, AI) · Verizon DBIR 2025: attacks on VPN and edge devices grew from 3% to 22% of exploited targets. No network is unbreakable; fewer open doors is simply fewer ways in.
The old PC in a cupboard, a mini PC, a Proxmox host, a rack in the office — or a rented server if you have nothing yet.
Your people, places and apps joined. Phones and computers get an app; the rest takes a code.
We look after it if you like. Stop working with us, and everything keeps running.
Built on Linux, WireGuard and other open standards. It runs without us, and anyone can look after it.
Nothing is sent to anyone's cloud to be read, analysed or trained on. No analytics, no trackers.
Encrypted end to end. Even the relay is your own server, and it cannot read what it carries.
WireGuard and AmneziaWG in the Linux kernel; one static binary, no database server.
Devices connect directly where routers allow it, otherwise through a sealed relay on your server.
By country, operator, address or domain, per device, with failover.
PPPoE, VLANs, DHCP and per-device rules on the same machine.
Browser-trusted names for internal services under your own domain.
x86 or ARM, bare metal or Proxmox; hardening, Docker and encrypted backups. Anything else joins with a standard WireGuard client.
You pay to have it built and, if you like, looked after. Not for every person who uses it.
Tell us what you'd like to connect. We'll answer within a day.