Documentation

92 documents, generated from the docs/ directory of the ScalWS repository. Start with Getting started, then Architecture.

Start here 2

  • Getting started

    A Linux-first web and application server written in Rust: fast, observable, secure and multi-tenant, with PHP, Node.js, Python and arbitrary upstreams as first-class runtimes.

  • Changelog

    All notable changes are recorded here. Format: Keep a Changelog.

Architecture 2

  • Architecture

    Status: living document. Reflects the code as of milestone M9 (operations). The engineering contract is SCALWSNextGenWebServerClaudeCodeHandoff.docx; this file explains how the code realizes it and where it does not yet.

  • Decision log

    Significant decisions get an ADR in docs/adr/. Smaller ones are logged here with date and reason so they can be revisited.

Adaptive Runtime 5

Operations 1

  • Operations guide

    From the ScalWS apt repository (Ubuntu 24.04 or later, Debian 13 or later, amd64):

Console 6

  • ScalWS Console: architecture

    ScalWS Console is the web administration of a ScalWS host, shipped with ScalWS the way LiteSpeed WebAdmin ships with LiteSpeed Web Server: the same packages and release artifacts (scalwsd, scalws-controller, scalwsctl, s

  • ScalWS Console: installation and operation

    ScalWS Console is part of the standard ScalWS distribution: the DEB/RPM packages built by scripts/package.sh contain /usr/bin/scalws-console and scalws-console.service, next to scalwsd, scalws-controller and scalwsctl.

  • ScalWS Console: configuration workflow

    The console never edits the active configuration in place. Every change is a transaction over the configuration file the controller reads (controller.config in controller.yaml), and the controller turns the file into a n

  • ScalWS Console: roles and capabilities

    Roles are fixed sets of capabilities (cmd/scalws-console/src/rbac.rs). Every API handler names the capability it needs and checks it on the server; the browser only hides what the session cannot do. Sensitive actions als

  • ScalWS Console: security and threat model

    /etc/scalws/console/credentials (packaged installs; <statedir>/credentials otherwise), mode 0600, one account per line:

  • ScalWS Console: test and security report (2026-10-07, updated 2026-10-08)

    Build: cmd/scalws-console at the commit that adds it; demo stack on the development VM (scripts/console-demo.sh): its own scalws-controller (state [private host path], listeners 127.0.0.1:28080/28443, metrics 39910+, CPU

Security 3

Benchmarks 26

Decision records 47

All 47 decision records