Your website is your business. Here’s exactly how we keep it online and your data safe — the redundancy, the backups, and what actually happens when something goes wrong. No buzzwords, no fine print.
Traditional hosting puts your site on a single server. If that server has a bad day, so does your site. We designed the platform the opposite way: every layer has a backup, and most failures are handled automatically.
A note on plans: the features that need more than one machine — running on multiple live servers and auto-scaling — come with the Standard plan. Micro runs on a single instance, ideal for static and brochure sites.
Your site never depends on a single machine. It runs on more than one server at once behind a load balancer — so if one fails, the others keep serving visitors while a replacement starts automatically, with nothing for you to do.
Your site has its own database on our high-availability cluster — never a shared database server. The cluster keeps live copies on separate machines, and if the main one fails a standby is promoted automatically, typically within a minute, with no action from you.
It isn't only your servers that have a backup — the platform that orchestrates and heals them runs on multiple machines too. There's no single brain whose failure could stop everything, so the system keeps making the right decisions even if part of it goes down.
Every instance is health-checked constantly. If one stops responding or starts misbehaving, it's automatically taken out of rotation and replaced with a fresh, healthy one — traffic is only ever sent to servers that are passing their checks.
When traffic climbs, your site adds more servers automatically within seconds, then scales back down when it settles. A sudden rush — a campaign, a viral post, a sale — means more capacity, not a crash. You only pay for what you actually use.
Your site runs in its own isolated environment, walled off at the network and resource level. Another customer's traffic surge, runaway plugin, or security incident can never spill over and affect you. No noisy neighbors, no shared fate.
Updates roll out by starting fresh servers on the new version, waiting for them to pass health checks, then retiring the old ones. Your visitors are always served by a healthy server — there is no maintenance window and no "be right back" page.
Every site gets a free SSL certificate that's provisioned and renewed automatically. You'll never get a surprise "this certificate has expired" outage — keeping your padlock and your visitors' trust intact takes nothing from you.
Every site is probed continuously and key infrastructure is monitored automatically. If something looks wrong, our team is alerted immediately — and several classes of failure are detected and recovered without anyone having to wake up.
Staying online is only half of it. Your data also has to be safe, recoverable, and identical on every server running your site. Here is how we make sure of that.
On top of daily backups, your database changes are captured continuously — so a site can be rolled back to a specific moment, not just to last night's snapshot. If a bad import or a plugin corrupts your data, we can wind it back to just before it happened.
Your database and files are backed up every night and kept on secure, independent EU storage — separate from the servers your site runs on, so your backups survive even a total failure of the live infrastructure. 30-day retention as standard, restore in one click, and a 20-year permanent option for records you must keep.
Your uploads — images, PDFs, downloads — don't sit on one server's disk. They live on resilient, replicated object storage and are served through a global CDN. A server failure never loses your media, and the files keep being delivered fast from the location nearest each visitor.
WordPress core and the server software are baked into a verified image, not installed on a writable disk. Every server starts from that same clean image — so corruption or malware can't quietly persist across a restart. The foundation your site runs on is identical and known-good on every instance.
Because your site runs on several servers, we make sure they always agree. When you install a plugin, change a theme, or run an update, the change is applied once and propagates to every server within seconds — you never get one version on one server and a different one on another.
Each site can pick how it balances speed against strict consistency — one click in the dashboard. Most sites run on Balanced. A checkout or membership site can switch to Strict, so every server always reads the very latest data. The choice is yours, and it is set per site.
Every host promises “reliability.” Fewer will tell you what happens at the exact moment something breaks. Here’s the honest version.
The load balancer simply stops sending traffic to the failed server and a replacement starts automatically. Because your site is already running on more than one server, visitors keep browsing without noticing.
A standby copy of your database is promoted automatically, typically within a minute, and your site reconnects on its own. Because the standby is kept continuously up to date, at most a fraction of a second of the very latest writes is at risk on a hard crash — everything else is already safely replicated.
New servers start on the new version and have to pass health checks before they receive any traffic. The old servers are only retired once the new ones are proven healthy. If the new version misbehaves, we roll back to the previous one. You see no downtime either way.
A bad import, a buggy plugin, or a mistaken edit can damage content on any platform. Because we keep continuous backups, we can roll your site back to a specific point in time — to just before the problem — rather than losing a whole day to the last nightly snapshot.
Being straight with you: no host can promise literally zero downtime or zero data loss — anyone who does is selling you something. What we promise is that failures are designed for, recovered automatically wherever possible, and measured in seconds rather than hours. We back a 99.9% uptime SLA, and you can watch our live uptime any time on our status page.
Everything on this page is live today — not a roadmap. Here it is in one table.
| Capability | What it means for you | Status |
|---|---|---|
| Multi-server redundancy | Your site runs on more than one server at once, so no single machine can take it down. | Live |
| Automatic database failover | A standby database takes over on its own, typically within a minute, if the main one fails. | Live |
| Redundant control plane | The platform that orchestrates and heals your servers runs on multiple machines — no single point of control. | Live |
| Self-healing & auto-scaling | Unhealthy servers are replaced automatically; traffic spikes add capacity instead of causing downtime. | Live |
| Site isolation | Each site runs walled off from every other — a neighbor’s spike or compromise can’t affect you. | Live |
| Point-in-time recovery | Roll your site back to a specific moment, not just to last night’s backup. | Live |
| Off-site backups & instant restore | Nightly backups on independent storage, separate from your live site; 30-day retention (20-year option), one-click restore. | Live |
| Durable media storage | Uploads live on replicated object storage behind a CDN — never lost with a server, served fast worldwide. | Live |
| Cross-server consistency | Plugin, theme, and update changes apply once and reach every server in seconds. | Live |
| Per-site consistency control | Choose Balanced, Strict, or single-instance per site, in one click. | Live |
| Zero-downtime updates | New versions roll out behind health checks — no maintenance window. | Live |
| Continuous monitoring | Every site is probed around the clock; failures alert us immediately. | Live |
| EU data residency | Stored and backed up entirely within ISO 27001-certified EU data centers. | Live |
Multi-server redundancy and auto-scaling are part of the Standard plan; Micro runs a single instance.
Not if it’s on the Standard plan: your site runs on more than one server at the same time, so if one fails the others keep serving visitors without a blip. Micro runs on a single instance, so there can be a brief interruption while a replacement starts — which is why we recommend Standard for any site where downtime costs you money.
We’re built to make that extremely unlikely. Your database is kept live on more than one machine at once, backed up every night, and captured continuously so we can roll back to a specific point in time. In the worst case — a hard crash of the main database server — at most a fraction of a second of the very latest writes is at risk, because everything else is already replicated. We won’t claim it’s impossible to ever lose anything — no honest host can — but realistically your data is safe.
Nothing visible. Updates roll out by starting fresh servers on the new version, checking they’re healthy, and only then retiring the old ones. There’s no maintenance window and no “be right back” page. If a new version ever misbehaves, we roll back to the previous one.
No, and this is something we put real engineering into. When you install a plugin, switch a theme, or run an update, the change is applied once and propagates to every server within seconds. You’ll never get one version of your site on one server and a different one on another. For checkout, membership, or other sites where it matters most, you can switch that site to Strict mode in one click, which guarantees every server always reads the very latest data.
For an automatic database failover, typically under a minute, with no action from you. For a failed web server, effectively no interruption — another server keeps serving while a replacement starts. For a full restore from backup, minutes — one click from your dashboard. We back a 99.9% uptime SLA, and you can see our live uptime on the status page.
No. Redundancy, failover, backups, monitoring, and update roll-outs all happen automatically — there’s nothing for you to configure or maintain. The one thing you can control, if you want to, is the per-site consistency mode (Balanced or Strict), and even that is a single click. Everything else is just on.
From €3.49/mo (Micro) or €5.99/mo (Standard) per site. Every feature included. Founding-member prices lock forever — they only increase at public launch.
Early access means direct access to our team. You’re not a ticket number. You’re a founding partner.
No commitment. Start free. Go live when you’re ready.
Already hosted elsewhere? Managed migration, zero downtime →