Local-first
Core visibility and defensive decision-making remain available at the edge without mandatory cloud dependency.
HQ-Lite | Local-first Edge Security
ChiRi Studio develops its own defensive edge security technology. HQ-Lite is a live-tested, local-first appliance positioned between WAN and LAN, combining network visibility, verified intelligence and Guardian — our purpose-built Digital Brain for explainable, controlled defensive decisions without mandatory cloud dependency.
HQ-Lite is built on a hardened Linux-based platform and sits inline between WAN and LAN. It gives smaller organisations local network visibility, device-level context and a controlled enforcement path while providing Guardian with the tools required to protect the local environment.
Core visibility and defensive decision-making remain available at the edge without mandatory cloud dependency.
No endpoint agents are required for core edge visibility. HQ-Lite works from its position in the network.
Observe-first by default. Active enforcement must be bounded by policy, evidence, operating mode and auditability.
HQ-Lite does not rely on blind feed ingestion. ChiRi Studio's protected Threat Verification Layer classifies, contextualises and checks external threat information and locally generated observations before controlled intelligence packages are prepared for the local appliance.
Raw security signals are organised by what they actually are and the context in which they were observed, rather than being treated as automatic truth.
Signals are checked for relevance, current state and supporting context before they can influence controlled local defensive use.
Validated intelligence is prepared in controlled, auditable packages for HQ-Lite, preserving quality and decision context.
Guardian is HQ-Lite's purpose-built local decision and response engine. It is not an LLM, chatbot or prompt-driven security assistant. It operates at the network edge, where it observes behaviour, combines local context with verified intelligence, assesses risk, explains why an event was flagged and coordinates controlled defensive action when policy and operating mode permit it.
Digital Brain is ChiRi Studio's architectural term for this bounded decision approach: observation, context, assessment, decision and controlled action remain separate parts of an explainable defensive process rather than being reduced to a single detection signal.
Traffic and relevant security and device context.
Risk context, severity, supporting evidence and policy thresholds.
Why something was flagged, the relevant context and the evidence behind it.
Controlled policy decision: observe, allow or prepare enforcement.
Approved local enforcement path with an auditable event trail.
HQ-Lite is no longer in open-ended feature build-out. Current work is focused on making the existing defensive system safer, clearer and more reliable while preparing the controlled foundations required for Beta.
The frontline Digital Brain: observe, assess, explain, decide and coordinate controlled local defensive action.
Security signals are classified, contextualised and checked before controlled intelligence packages are prepared for HQ-Lite.
High-speed network visibility at the edge, with enforcement available only when operating mode and policy permit it.
Network mapping and device intelligence that help operators understand local context and activity.
System health and operational visibility for long-running appliance behaviour.
Users, roles, sessions, network controls and safer local dashboard workflows.
HQ-Lite is designed so an administrator can understand the network without dropping straight into the shell. Echo-Probe explains the LAN, verified intelligence provides reviewable security context, Noctilux shows health, and Guardian records defensive decisions.
Device discovery, local network mapping and device-level context for operator review.
Reviewable security context and event records that support verification before enforcement.
High-performance edge visibility with a controlled enforcement path when Armed Mode is validated and enabled.
System resource and operational health visibility for long-running appliance behaviour.
HQ-Lite is designed for smaller organisations that need stronger local network visibility, resilience and controlled defensive capability without the staffing requirements or infrastructure footprint of enterprise security platforms.
Practical local security visibility without building a full internal SOC.
A repeatable edge appliance model for managed customer environments.
Guest Wi-Fi, IoT, POS/back-office separation and uptime pressure.
Low-power local visibility for constrained environments.
Edge decision-making close to remote users and devices.
Traffic pressure, abuse visibility and controlled mitigation paths.
ChiRi Studio is building a managed appliance model with defined responsibilities. Product support covers the technology we provide; it is not a general-purpose replacement for a customer's IT team.
A controlled business-verification and onboarding process supports human review before a managed deployment is approved.
Planned service model: 24/7 automated first-line support and ticket intake, with human escalation Monday-Friday, 09:00-17:00.
Support covers HQ-Lite, ChiRi-managed services and ChiRi-supplied or owned hardware within the agreed service scope. Third-party IT repair and maintenance are outside that scope unless separately agreed.
Alpha Core is functionally complete and the core feature set is closed.
Threat-intelligence quality, verification workflows, operational cleanup and secure supporting infrastructure.
Validated intelligence exchange, controlled communication workflows and the next stage of Guardian integration.
Full Armed Mode testing with bounded response, auditability, rollback and operational safeguards.
Repeatable installation image, documentation, support readiness and controlled deployment workflows.
Structured Beta pilot environments with aligned organisations and MSP-style partners before wider expansion.
ChiRi Studio Ltd is not a software house. We are building and validating our own product and protected intellectual property around local-first defensive edge security.
Security, networking, Linux systems, architecture, Guardian, edge infrastructure and live technical validation.
Product vision, UI/UX, design direction, operations, communication and founder-led product clarity.
We are particularly interested in UK MSPs, SME technology operators and strategic commercial partners with established customer relationships, practical deployment experience or future pilot opportunities.