ChiRi Studio
    Booting local-first edge security…
    HQ-Lite | Live-tested Alpha Core

    Local-first defensive edge security for smaller organisations.

    ChiRi Studio develops its own defensive edge security technology. HQ-Lite is a live-tested, local-first appliance positioned between WAN and LAN, combining network visibility, verified intelligence and Guardian — our purpose-built Digital Brain for explainable, controlled defensive decisions without mandatory cloud dependency.

    network-first agentless core visibility offline-capable verified intelligence explainable decisions frontline Digital Brain
    Product

    HQ-Lite is a defensive edge appliance, not just another dashboard.

    HQ-Lite is built on a hardened Linux-based platform and sits inline between WAN and LAN. It gives smaller organisations local network visibility, device-level context and a controlled enforcement path while providing Guardian with the tools required to protect the local environment.

    35 daysand 20 minutes live edge operation
    14.79 kWhtotal energy used
    ~17.6 Waverage power draw
    Alpha Corefunctionally complete

    Local-first

    Core visibility and defensive decision-making remain available at the edge without mandatory cloud dependency.

    Network-first

    No endpoint agents are required for core edge visibility. HQ-Lite works from its position in the network.

    Controlled response

    Observe-first by default. Active enforcement must be bounded by policy, evidence, operating mode and auditability.

    Local management by design. The management dashboard remains LAN-only, and the customer network is not controlled from a public SaaS dashboard.
    Threat Verification Layer

    Treat signals as candidates, not automatic truth.

    HQ-Lite does not rely on blind feed ingestion. ChiRi Studio's protected Threat Verification Layer classifies, contextualises and checks external threat information and locally generated observations before controlled intelligence packages are prepared for the local appliance.

    Classify

    Raw security signals are organised by what they actually are and the context in which they were observed, rather than being treated as automatic truth.

    Verify

    Signals are checked for relevance, current state and supporting context before they can influence controlled local defensive use.

    Package

    Validated intelligence is prepared in controlled, auditable packages for HQ-Lite, preserving quality and decision context.

    No blind blocking. The goal is better signal quality, fewer false positives and defensive decisions that remain controlled, auditable and local-first.
    Guardian

    The frontline Digital Brain of HQ-Lite.

    Guardian is HQ-Lite's purpose-built local decision and response engine. It is not an LLM, chatbot or prompt-driven security assistant. It operates at the network edge, where it observes behaviour, combines local context with verified intelligence, assesses risk, explains why an event was flagged and coordinates controlled defensive action when policy and operating mode permit it.

    Digital Brain is ChiRi Studio's architectural term for this bounded decision approach: observation, context, assessment, decision and controlled action remain separate parts of an explainable defensive process rather than being reduced to a single detection signal.

    Observe

    Traffic and relevant security and device context.

    Assess

    Risk context, severity, supporting evidence and policy thresholds.

    Explain

    Why something was flagged, the relevant context and the evidence behind it.

    Decide

    Controlled policy decision: observe, allow or prepare enforcement.

    Act / record

    Approved local enforcement path with an auditable event trail.

    Purpose-built, not generative. Guardian does not make defensive decisions by generating natural-language answers from prompts. Its role is bounded: observe the local environment, evaluate evidence and context, support controlled decisions and retain an auditable record of why an action was taken.
    Built for the frontline — bounded by policy, evidence and context. Defensive automation is not enough. If a system flags or blocks something, the administrator needs to understand why.
    Alpha Core capabilities

    The core feature set is closed. Beta preparation is about trust, integration and validation.

    HQ-Lite is no longer in open-ended feature build-out. Current work is focused on making the existing defensive system safer, clearer and more reliable while preparing the controlled foundations required for Beta.

    Guardian

    The frontline Digital Brain: observe, assess, explain, decide and coordinate controlled local defensive action.

    Threat Verification Layer

    Security signals are classified, contextualised and checked before controlled intelligence packages are prepared for HQ-Lite.

    Edge visibility

    High-speed network visibility at the edge, with enforcement available only when operating mode and policy permit it.

    Echo-Probe

    Network mapping and device intelligence that help operators understand local context and activity.

    Noctilux

    System health and operational visibility for long-running appliance behaviour.

    Admin UX

    Users, roles, sessions, network controls and safer local dashboard workflows.

    Operator-first visibility

    Built so admins can see what matters.

    HQ-Lite is designed so an administrator can understand the network without dropping straight into the shell. Echo-Probe explains the LAN, verified intelligence provides reviewable security context, Noctilux shows health, and Guardian records defensive decisions.

    Echo-Probe network map

    Device discovery, local network mapping and device-level context for operator review.

    Verified intelligence history

    Reviewable security context and event records that support verification before enforcement.

    Controlled edge response

    High-performance edge visibility with a controlled enforcement path when Armed Mode is validated and enabled.

    Noctilux health view

    System resource and operational health visibility for long-running appliance behaviour.

    Where HQ-Lite can fit

    Local defensive capability without enterprise-scale complexity.

    HQ-Lite is designed for smaller organisations that need stronger local network visibility, resilience and controlled defensive capability without the staffing requirements or infrastructure footprint of enterprise security platforms.

    SMEs

    Practical local security visibility without building a full internal SOC.

    MSPs

    A repeatable edge appliance model for managed customer environments.

    Hospitality

    Guest Wi-Fi, IoT, POS/back-office separation and uptime pressure.

    Education & community

    Low-power local visibility for constrained environments.

    Branch sites

    Edge decision-making close to remote users and devices.

    Hosting / VPS edge

    Traffic pressure, abuse visibility and controlled mitigation paths.

    Current traction: live-tested Alpha proof and ongoing technical validation. The next major product stage is Beta preparation, followed by structured pilots with aligned organisations or MSP-style partners.
    Operating model

    Clear boundaries around trust, deployment and support.

    ChiRi Studio is building a managed appliance model with defined responsibilities. Product support covers the technology we provide; it is not a general-purpose replacement for a customer's IT team.

    Customer Verification Layer

    A controlled business-verification and onboarding process supports human review before a managed deployment is approved.

    Support Layer

    Planned service model: 24/7 automated first-line support and ticket intake, with human escalation Monday-Friday, 09:00-17:00.

    Defined support scope

    Support covers HQ-Lite, ChiRi-managed services and ChiRi-supplied or owned hardware within the agreed service scope. Third-party IT repair and maintenance are outside that scope unless separately agreed.

    No magic-box promises. HQ-Lite is designed to improve defensive visibility, context and controlled response. ChiRi Studio does not claim that any single appliance can stop every cyber threat.
    Roadmap

    From live-tested Alpha to controlled Beta and structured pilots.

    Now

    Alpha Core is functionally complete and the core feature set is closed.

    Foundation

    Threat-intelligence quality, verification workflows, operational cleanup and secure supporting infrastructure.

    Beta

    Validated intelligence exchange, controlled communication workflows and the next stage of Guardian integration.

    Armed validation

    Full Armed Mode testing with bounded response, auditability, rollback and operational safeguards.

    Deployment

    Repeatable installation image, documentation, support readiness and controlled deployment workflows.

    Pilots

    Structured Beta pilot environments with aligned organisations and MSP-style partners before wider expansion.

    About ChiRi Studio

    Founder-led, UK-based and developing our own defensive edge technology.

    ChiRi Studio Ltd is not a software house. We are building and validating our own product and protected intellectual property around local-first defensive edge security.

    Piotr Danielewicz — Co-founder & CTO

    Security, networking, Linux systems, architecture, Guardian, edge infrastructure and live technical validation.

    Kinga Danielewicz — Co-founder & CEO

    Product vision, UI/UX, design direction, operations, communication and founder-led product clarity.

    Product-and-partnership first. ChiRi Studio is independently funded and is not currently raising external investment. We remain open to strategic commercial partnerships — and selectively to strategic investment — where it brings meaningful market access, operational capability or long-term commercial value.
    Contact

    Practical commercial and technical conversations welcome.

    We are particularly interested in UK MSPs, SME technology operators and strategic commercial partners with established customer relationships, practical deployment experience or future pilot opportunities.