[bldr]
bldr cloud

the orchestration layer your ci/cd needs

the open-source engine builds and caches. bldr cloud makes it a system your whole company can run on: it watches your upstreams, triggers builds, runs multi-stage pipelines, manages secrets, and keeps a complete audit trail — all on a hosted, shared cache.

[01·capabilities]

everything above the build system

triggered builds

the controller polls every workspace member — git branches, image tags — and rebuilds the instant an upstream changes.

deployment pipelines

compose builds and side-effecting deployments into staged pipelines with approvals, gates and environment promotions.

secrets management

aes-256-gcm secrets keyed per tenant, injected into deployments only when they run — ssh keys, kubeconfigs, cloud credentials.

observability

live task trees, per-node timings, cache hit rates and object-store growth — the whole fleet at a glance.

audit logs

every build, deploy and secret access is attributed and immutable, so every change to production is accountable.

rbac & teams

roles, projects and environments scoped to your org — control who can deploy where, and who can read which secrets.

hosted build fleet

managed nodes that scale with your load and share one distributed cache — no runners to babysit.

shared team cache

one content-addressed cache across your whole org — a build on ci is instantly reusable on a laptop, and vice versa.

built on the core

no fork, no lock-in — cloud runs the same open-source daemon you can self-host, so your builds are portable by construction.

[02·pipelines]

from upstream change to production

a push moves a git sha. the controller resolves it to a cid, runs the cached build, and promotes the output through your environments — staging, then production on approval.

bldr cloud · pipeline: api → prod
$bldr pipeline run api
trigger git push · api@2d3090a
✓ build cache hit cid:fs:…q7f2
✓ stage:test passed 12.4s
✓ deploy:staging k8s.apply
⏸ gate:approval awaiting · @lead
→ deploy:prod k8s.apply · queued
[03·deployment methods]

ship a cid anywhere

deployments are the side-effecting edge of a pipeline. point a content-addressed output at a target and bldr does the rest.

k8s.apply
server-side apply of manifests
ssh.scp / exec
transfer trees & run remote commands
aws.s3.put
upload artifacts to s3
aws.cloudformation
create / update stacks
aws.codedeploy
push deployment revisions
oci.image.push
ship images to any registry
aws.appconfig
roll out configuration versions
http.put / post
call any webhook or api

bring your builds. we'll orchestrate.