Operational

Slick Private Access Gateway

Secure access to trusted services, authenticated through Google Cloud OAuth. Invite-only for family and friends.

No public signups. Access is granted manually to authorized users only.

How It Works

Authentication and authorization happen in three straightforward steps:

1

OAuth Authentication

Sign in using your Google account. Your credentials never touch our servers—authentication is handled entirely by Google Cloud.

2

Authorization Check

Your Google account is verified against an allowlist of authorized users. Only pre-approved accounts can proceed.

3

Secure Access

Once authorized, you gain access to private services through a reverse proxy. Sessions are encrypted and time-limited.

Security & Privacy

This gateway is built with a privacy-first, security-focused architecture:

🔐

Zero-Knowledge Auth

Your password never reaches this server. Google handles all credential verification using industry-standard OAuth 2.0.

🎯

Allowlist Only

Access is restricted to manually approved Google accounts. There is no self-service registration or public access.

🛡️

Encrypted Transit

All connections use TLS 1.3. Sessions are secured with HTTP-only cookies and CSRF protection.

🚫

No Tracking

No analytics, no third-party scripts, no advertising. Minimal logging for security purposes only.

🏠

Self-Hosted

Backend services run on private infrastructure. Data never leaves the homelab environment.

⏱️

Session Limits

Sessions expire automatically. Re-authentication is required periodically to maintain access.

Technologies Used

This gateway leverages enterprise-grade infrastructure components:

🔑 Google Cloud OAuth 2.0
🔄 Reverse Proxy (Nginx/Traefik)
🐳 Containerized Services
🔒 Let's Encrypt TLS
🏗️ Self-Hosted Backend
📊 Private Dashboards