Deploy modern LLMs in zero-trust Alpine containers with immutable, read-only layers, local-only execution, and the strictest kernel hardening stack available. Choose between Qwen 3 or Gemma 3 builds—both running entirely offline while exposing only loopback ports and maintaining a forensic-friendly footprint.
Base Distribution
Alpine 3.19
musl + BusyBox
Filesystem Mode
read-only
noexec / nosuid
Network Surface
127.0.0.1
loopback only
Capability Budget
1 retained
CAP_NET_BIND_SERVICE
Model Profiles
Qwen 3 Hardened
Qwen 3 (7B/14B)
Optimized for multilingual reasoning with quantized weights (q4_0, q8_0) stored on a read-only volume. Includes hardware entropy mirroring for deterministic offline runs.