Foravo Sovereignty

European-first infrastructure for code and agent work.

The production topology keeps runtime, database, object backup, DNS, and public ingress on OVHcloud, with Hovia/ZITADEL as the self-hosted identity boundary.

Data plane

  • Forge repositories and platform state use managed PostgreSQL and Kubernetes volumes in OVHcloud.
  • Backup and restore evidence is stored in OVH Object Storage.
  • Public routes terminate through the OVH-hosted Kubernetes ingress.

Agent boundary

  • Agents receive scoped tasks and denied-by-default risky capabilities.
  • Protected paths require human review gates.
  • Receipts and audit rows preserve proof of agent work.