
Hetzner VPS Security: Close Port 22 with Tailscale + ufw
Lock down SSH on your Hetzner VPS with Tailscale and restrict port 443 to Cloudflare IPs only. Our exact production ufw setup — no public SSH port, no direct origin access.
Technical deep dives, architecture decisions, and development practices from the Dimantika team.
4 posts

Lock down SSH on your Hetzner VPS with Tailscale and restrict port 443 to Cloudflare IPs only. Our exact production ufw setup — no public SSH port, no direct origin access.

Many founders who vibe code hit the same wall after the initial MVP sprint. Here's the habit system that stops AI-generated SaaS code from collapsing under real users.

Cursor, Claude Code, and OpenAI Codex are battling to become the default AI coding agent. Here's what each tool actually does differently and how to pick the right one.

Wire an AI coding agent to Sentry and it reads unresolved errors every morning, proposes fixes via PRs, and slows down your quota burn — automatically.