A Digital Commons

Sovereign security operations, built in the open.

SecOps-NG is a community-driven initiative for European organisations navigating the regulatory baseline. The work is a commons: shared playbooks, durable workflows, and an open framework that anyone can read, audit, fork, and improve.

Not a vendor. Not a consultancy. A commons.

What the commons builds

Three pillars of the work.

01

Sovereign by design

Reference deployments target European-resident, European-governed infrastructure. Data residency and jurisdictional clarity are architectural decisions, not legal afterthoughts. EU-hosted services and EU-origin libraries are preferred throughout.

02

Durable workflows

Security operations are composed as LangGraph state machines with strict Pydantic v2 contracts at every boundary. LLM-facing reasoning lives in DSPy modules — prompts as versioned code, reviewable and replayable.

03

Auditable in the open

Every step in every workflow is plain Python you can read. OpenTelemetry spans capture each node and tool call; an in-band audit trail survives even when the collector is offline. Sovereignty without transparency is just a different cage.

Join the commons

The work happens in the open.

Security engineers, platform builders, policy practitioners, translators, designers — anyone willing to help maintain a shared scaffold for European operational readiness is welcome. There is no membership form and no gatekeeping. Repositories, issues, and design discussions all live on GitHub.