Customer-owned
You choose the compatible Linux VM, own the provider account and bill, and administer DNS, TLS, firewall, backups and recovery.
Run Relay Host on a compatible Linux VM in the cloud account you choose, with checked release-matched assets, no cloud credentials handed to Orionfold and no product secrets placed in cloud user-data.
You choose the compatible Linux VM, own the provider account and bill, and administer DNS, TLS, firewall, backups and recovery.
Cloud user-data prepares the machine only. Model keys, Relay Host licenses and customer credentials are added after bootstrap.
The playbook verifies the release, writes a preparation receipt and keeps the exact configuration available for review and recovery.
Portable, not provider-managed
The playbook prepares a compatible Linux VM and records what it did. It does not create your cloud account, choose a provider for you, configure every provider-specific firewall or operate the server after handoff. You retain the infrastructure bill, administrator responsibility and failure boundary.
DigitalOcean is the current named live-verified path. A portable Linux contract makes other compatible VMs reviewable; it does not turn untested providers into verified promises.
A compatible Linux VM can be evaluated against the checked, release-matched machine contract.
Orionfold has a dated receipt for an exact provider topology. DigitalOcean is the first.
A provider may satisfy the portable contract, but Orionfold does not make a provider-specific promise before its own receipt passes.
From VM to governed Host
Start with Ubuntu 24.04 x64 and at least 2 vCPU, 4 GB RAM and 80 GB disk. This baseline prepares Relay Host; local-model workloads may require materially more memory or GPU capacity.
Use the exact supported release named by the guide. The playbook and deployment assets move together, so a floating branch cannot silently change the machine contract.
Run the checked cloud-init preparation with no cloud-provider token, model API key, Relay license, customer credential or recovery secret embedded in user-data.
Confirm the prepared state and its release identity before adding a Host license, model runtime or customer data. A receipt is evidence of preparation, not an uptime promise.
Free Relay Core can operate directly and one unmanaged Cell. The paid Relay Host right authorizes managed multi-Cell lifecycle within the signed capacity you bought.
Transfer the Host license, model credentials and recovery material over an authenticated operator channel, then keep encrypted recovery outside the Host.
Use the release-matched guide for installation, access, updates, export and recovery. Existing managed Cells continue if the annual license lapses; new managed Cell creation and forward paid updates stop.
Free operating path
Use Relay directly and operate one unmanaged Cell without buying Relay Host. You still own the machine, credentials, data and operating work.
Paid managed authority
Relay Host adds signed managed lifecycle authority, capacity enforcement, forward Host updates and support for $1,499/year. Premium Packs remain separate.
Review Relay Host pricing and terms →Portable playbook FAQ
No. Relay Host runs in infrastructure you or your customer controls. Orionfold does not own the provider account, operate the VM or promise its uptime.
No. You create the VM in your provider account. The portable playbook prepares that machine and deliberately excludes provider credentials and product secrets from cloud user-data.
No. The portable contract targets a compatible Linux VM. DigitalOcean is the only named provider with a current accepted live receipt; other providers need their own dated proof before Orionfold names them as verified.
Relay Core, direct use and one unmanaged Cell remain free. The paid Relay Host license covers managed multi-Cell lifecycle for one Host with up to ten managed Cells. Premium Packs remain separate.
Existing managed Cells remain startable, stoppable, exportable, recoverable and purgeable. New managed Cell creation and forward paid updates stop; compatible critical-security fixes remain included.
Yes, if it meets the documented Linux, architecture, storage, networking and administration prerequisites. Review it as carefully as a new VM because the playbook does not erase unrelated services or make an unsafe host trustworthy.
Not necessarily. The 2 vCPU, 4 GB RAM and 80 GB disk baseline is for Relay Host preparation and lightweight operation. Size local models separately for their memory, accelerator and throughput needs.