About
How PGMSP delivers open-source IT services — declarative NixOS tooling, ChromeOS endpoints, self-hosted applications. Verified benchmarks and reproducible builds.
The Problem
Small businesses need the same IT infrastructure as enterprises — email, document management, billing, payroll, device security, backups — but cannot afford enterprise licensing. Most forgo IT altogether and run their business on shared passwords, unpatched laptops, and fragile spreadsheet chains.
The Model
PGMSP is an open-source managed service provider. The platform uses declarative NixOS as its control plane, ChromeOS on all endpoints, and self-hosted open-core applications. There are no per-seat licensing charges.
Immutable by design
ChromeOS on all endpoints. Verified boot, sandboxed architecture, automatic updates — the OS manages its own state, reducing the manual device-by-device maintenance that drives up traditional IT costs.
Declarative management
Monitoring, updates, and security auditing are driven by Nix configuration rather than per-device manual work. Infrastructure is billed separately at provider rates.
Sustainable Engineering
Management fees are reinvested into the continuous improvement of the open-source stack and the engineers who maintain it.
Multi-tenant management
One central pane manages hundreds of disconnected businesses with full tenant isolation and no data leakage.
Two independent paths
We support two routes to data ownership: the monolithic Hub (Nextcloud) for simple all-in-one collaboration, and the Unix Way (Best of Breed) for organizations that demand modularity and maximum performance.
Open & Reproducible
Our entire business strategy and technical playbooks are open-source. Anyone can follow the Migration Playbooks to reproduce the stack on their own infrastructure.
Technical benchmarks
Verified comparisons showing measurable efficiency differences between self-hosted open-core infrastructure and per-user SaaS models.
Open-source sustainability
A portion of management fees flows back to the open-source projects the platform depends on. Transparent reporting shows which projects receive support.
Why Traditional MSPs Can't Do This
| Component | Traditional MSP | PGMSP |
|---|---|---|
| Endpoint licensing | Windows CALs + EDR per device | ChromeOS — managed provider pricing |
| Productivity suite | Microsoft 365 Business ($22/user/mo) | Google Workspace (paid directly by client) + open-core tools |
| ERP / CRM | Per-user SaaS ($30-150/user/mo) | Odoo — self-hosted, one instance |
| Security / SIEM | Volume-based pricing | Wazuh — open-source, compute-scale |
| VPN / access | Per-user VPN licensing | Headscale — open-source, self-hosted |
| IT labor | Billable hours per incident | Declarative infra reduces reactive work |