Developer Control Center for macOS

One view across your whole system

Thaloca connects Docker, Git, ports, processes, servers, documents, and security findings into one flow—from spotting a problem to verifying that everything is stable again

macOS · Apple Silicon · Local-first · MIT open source
Thaloca
LOCAL ENVIRONMENT

Overview

Search name, port, project…

Needs-attention projects first, then everything else — grouped live from your environment

RUNTIME4/5 containers · 2 processes · 8 ports
SOURCE CONTROL2 repositories changed · 1 ahead
shop-workershop

Restarted 4 times in the last 10 minutes

View logs →
shop1/2 healthy
1 degraded2 ports

shop-api :8080

shop-worker

dashboard3/3 healthy
3 ports1 job

web :3000

api :4000

Interactive demo Choose a sidebar view to explore real Thaloca workflows

01
DISCOVER

Spot the issue

Thaloca discovers your environment and brings unusual projects to the front

02
INVESTIGATE

Go straight to the cause

Move from an incident to its related service, log, port, commit, or security finding

03
ACT

Fix it and verify

Restart, health-check, stage, commit, or operate a server in the same workspace

A real workflow

See failures as they happen
Resolve them in the same flow

Scroll to see Thaloca detect a failing service, open the right log, resolve it, and verify the result in the same place

1
Overview

See the problem before searching

The shop project moves to the top because its worker keeps restarting

2
Runtime

Go straight to the right service

Open the project to inspect status, ports, and actions for each container

3
Logs

Read logs without switching windows

The error stays beside the service, preserving the context you are handling

4
Resolve

Act and verify the result

Restart the worker, run a health check, and see the project return to a healthy state

Thaloca1 incident
LOCAL ENVIRONMENT

Overview

Needs-attention projects first, then everything else.

shop-workershop

Restarted 4 times in the last 10 minutes

View logs →
shop1/2 healthy

shop-api :8080

shop-worker restarting

Containers 2Processes 0Ports 2Jobs 0
shop2/2 running
shop-apic1abcdef0123 · OK
:8080HEALTHY
shop-workerc2abcdef0123
no portsRUNNING
shop-worker | processing payment retry
shop-worker | connection timeout after 5000ms
shop-worker | retrying in 2s…

Documents

Find the right content
Open the exact location

Run exact or semantic search across PDF, PPTX, DOCX, TXT, and Markdown. Every result keeps its page, line, or paragraph citation

Verified local embeddingsNo document uploads or copiesAnswer from passages · Coming later
Documents184 indexed · 3 folders
architecture.pdf · p. 12Health checks run on HTTP, TCP and TLS endpoints…92% match
runbook.md · line 84Restart loops are promoted to active incidents…87% match
Screenshot 2026-07-20.pngSave As…
localhost:3000
560 × 230
API healthyLIVE

Status200

Response time42 ms

Check this value

Captures

Capture the screen
Annotate it immediately

Use local macOS Vision OCR, preview recordings, and a focused editor to annotate, redact sensitive data, crop, and save a new copy

Pen, shapes, arrows, and highlightsText, blur, and cropUndo / redo · Save As

Source Control

Finish every change without switching tools

Choose a repository, inspect changed files, stage, commit, manage branches, and review GitHub pull requests beside the running environment

  • Colored per-file diffs
  • Commit graph and branches
  • Pull requests, checks, and review comments
shop-apimain · ↑1
Changes 3HistoryGraphBranchesPull Requests
@@ -42,7 +42,9 @@
- return request(order)
+ return retry(() => request(order), {
+   attempts: 3
+ })

Security Scanning

Everything runs locally, no need to push code to the cloud

Choose a repository and scan secrets, dependency vulnerabilities, and static analysis together—or install Git hooks to block risky commits and pushes before they happen

  • Secrets, SCA, and SAST in one report
  • Scan images used by running containers
  • One-click pre-commit and pre-push hooks
shop-api3 findings
Findings 3SecretsVulnerabilitiesSAST
CRITICAL
Hardcoded AWS secret keysrc/config/aws.ts:14 · secrets
HIGH
lodash@4.17.15 — prototype pollutionpackage.json · vulnerabilities
MEDIUM
Possible SQL injection from direct string concatenationsrc/api/orders.ts:88 · sast
Git hooks

Explore the full product

Every task
One single place

Scroll through each group to see how Thaloca connects code and documents with operations, security, and daily tools—without breaking your train of thought

01

Overview

Know which projects are healthy and which need action without checking every tool

Project healthPinned reposExpected state
02

Source Control

Review diffs, stage, commit, and handle pull requests beside the running environment

Changes & conflictsGraph · branches · tagsPR review & merge
03

Documents

Find answers in your documents and open the exact source page, line, or paragraph

PDF · PPTX · DOCXExact / semanticCitations
04

Incidents

Turn active failures into a prioritized queue so you know what to fix first

Active incidentsEvent timelineJump to runtime
05

Runtime

Control containers, processes, ports, and background jobs where you diagnose them

Docker enginesContainer terminalPorts & jobs
06

Resources

Spot processes consuming CPU, memory, or bandwidth before your Mac slows down

Live metricsApps & processes24h history
07

Servers

Operate servers through SSH, Docker, cron, VPN, and file transfer without switching apps

Health checksTerminal & filesVPN & bastion
08

Logs

Read local and remote logs in the same flow when you need to find the cause

Unified sourcesLive tailError context
09

Security

Find secrets, risky dependencies, and source issues before they leave with your code

Scan all reposGrouped findingsGit hooks
10

Tools & Packages

See missing tools, manage packages, and preview commands before running them

17+ detected tools5 registriesEnv & config
11

AI Services

Know whether LongBrain, Qdrant, and local models are ready or consuming too many resources

Runtime statusLocal boundaryProcess usage
12

Captures

Move from a capture to OCR, redaction, and annotation without leaving Thaloca

OCR & previewMarkup editorCrop · blur · annotate

Feature details

More than a dashboard
Take action immediately

Current product capabilities, grouped by the job you need to complete

RUN

Runtime & Health

Know what is running, what owns a port, and what just failed—then read every related log in one place

01

Docker by project

Group containers by Docker Compose; start, stop, restart, inspect logs, or operate the whole project

02

Terminal & image scan

Open an interactive container terminal and scan the running image for vulnerabilities

03

Processes, Ports & Jobs

Find the process owning a port, stop it when needed, and monitor cron, launchd, PM2, or Docker workers

04

Health & Anomalies

Check HTTP, TCP, and TLS; detect restart loops, degraded health, panics, OOM events, and repeating errors

CODE

Git & GitHub

A complete Git client beside the environment where the repository runs

01

Changes

Stage or unstage individual files, inspect colored diffs, commit, and resolve conflicts with ours/theirs

02

History, Branches & Tags

Browse history and a multi-branch graph; create, switch, and merge branches, and manage local or remote annotated release tags

03

Sync

Fetch, pull, push, and stash with clear ahead/behind status for each repository

04

Pull Requests

Review conversations, commits, checks, changed files, and inline comments; merge, squash, or rebase

SYSTEM

Machine, Tools & Packages

Monitor Mac resources, keep the toolchain ready, and work with packages, .env, and config files without leaving the app

01

Live resources & history

Track CPU, memory, swap, disk, network, GPU, battery, and thermals; keep 24-hour samples with sparklines and memory-leak hints

02

Packages sub-tab

Search, install, update, or remove packages through Homebrew, npm, PyPI, Cargo, and Composer in a dedicated sub-tab; preview every command first

03

Env Files

Load only key names during scanning; values stay hidden by default, appear only on request, and are never retained

04

Config & Utilities

Inspect machine-wide development configs, toggle them safely, and use encoding, formatting, and local preview utilities

REMOTE

Remote Operations

Manage servers over SSH, including systems reachable only through a bastion or VPN

01

Connect your way

Import ~/.ssh/config, use ProxyJump or a bastion, and connect WireGuard or OpenVPN when needed

02

Operate remotely

Check health, open an SSH terminal, and manage remote Docker containers and cron jobs

03

Files & bulk commands

Browse, upload, and download files, or run one command across selected servers

04

Key privacy

Store only the path to an existing key file; Thaloca never stores SSH key contents

SECURITY

Security Scanning

Run security scans locally without pushing code anywhere

01

Secrets

Gitleaks scans Git history and the working directory for hardcoded API keys, tokens, and secrets

02

Vulnerabilities (SCA)

Trivy and Grype inspect dependencies in common manifests and scan images used by running containers

03

SAST

gosec and Semgrep detect risky source patterns such as SQL injection and hardcoded secrets

04

Git hooks

Install pre-commit or pre-push hooks in one click to block risky commits or pushes

KNOWLEDGE

Documents, Captures & Local AI

Turn local documents and captures into searchable, citable information with a clearly controlled local AI boundary

01

Document library

Monitor PDF, PPTX, DOCX, TXT, and Markdown in source folders without uploading or copying documents

02

Exact & semantic search

Search exact text or meaning, filter by file type, and open the exact page, line, or paragraph citation

03

Local-only indexing

Semantic search works only when LongBrain, Qdrant, and the embedding provider are verified local; external configurations stay blocked

04

Capture editor

Use local macOS Vision OCR and edit PNG/JPEG images with pen, shapes, arrows, highlights, text, blur, crop, undo/redo, and Save As

Across the app

Small utilities
Keep your work uninterrupted

K

Command palette

Jump to a view or action without leaving the keyboard

PORT

Port conflict assistant

Identify the process owning a port and release it safely

COPY

Clipboard history

Keep in-app and system clipboard history with automatic 24-hour expiry

ALERT

Notifications

Notify you about important incidents while respecting quiet hours

SYNC

Backup settings

Export or import configuration when moving Macs or restoring settings

SHA

Verified self-update

Update now verifies SHA-256 and the app bundle before replacing and restarting Thaloca

Closing the window does not stop monitoring

Thaloca keeps scanning in the background; use Cmd+Q or Quit from the Dock to exit completely

Local-first

Monitor directly on your Mac
Your data stays on your Mac

Thaloca runs on macOS and works directly with your existing environment. Server configuration stores only the SSH key path, never the key contents

Your MacThaloca running locally ON-DEVICEDKDockerContainers & portsLOCALGITGit reposCode & changesLOCALSSHSSH serverRemote operationsOPT-IN

Before installing

Good to know

What data does Thaloca send out?+

Environment discovery, resource monitoring, OCR, and security scanning run locally. Network access is used only for GitHub, package registries, SSH servers, or update checks you initiate. Documents enables semantic indexing only with a verified local embedding provider

How do Documents work?+

Choose existing document folders. Thaloca indexes changes through local LongBrain and supports exact or semantic search with citations. Answer from passages is marked Coming later and remains disabled. Dependent actions stay locked when LongBrain or Qdrant is unavailable

Are .env values loaded automatically?+

No. Thaloca reads only key names during scanning. A value is fetched only when you reveal that key, is never stored, and is forgotten when the view closes or refreshes

Which Macs does Thaloca support?+

The current release supports Apple Silicon Macs. Some operations, such as connecting a VPN, may request the macOS administrator password at execution time

What if macOS warns that the app is unverified?+

The current release uses ad-hoc signing and is not notarized. Right-click the app and choose Open once to confirm that you want to run it

Thaloca for macOS

Switch windows less
Focus on the work that matters

One control center for your local development environment and managed servers

Download latest