Durable DAG workflow engine. One static binary, YAML, a database as the only state — no control plane, no cluster to operate.
docker: mancube/dagron-engine
helm: oci://…/mancube/dagron
Platform & workflow engineering
Mancube builds and operates the unglamorous middle of a software estate — pipelines, workflows, data movement, the front door. Twelve of the tools we would reach for on your project are already shipped, and eleven of them are public under Apache‑2.0. Install one this afternoon. Decide about us afterwards.
Four of twelve — the rest are in §02
Durable DAG workflow engine. One static binary, YAML, a database as the only state — no control plane, no cluster to operate.
docker: mancube/dagron-engine
helm: oci://…/mancube/dagron
A secure front door for an app you do not change: authentication, rate limiting, TLS and hardened headers, secure by default.
crates.io: eggrd
docker: mancube/eggrd
MCP gateway and governance plane. Deny-by-default allowlist, RBAC, WASM-sandboxed servers, and a tamper-evident audit ledger.
github: lucheeseng827/mcpdef
Local-first lakehouse table explorer. Open Parquet, CSV and Iceberg tables without standing up a warehouse first.
lakeleto.mancube.net
§01
Ten kinds of work. Each row names what we have already built in that area and made public — not a case study you have to take on trust, but a repository you can clone on the walk back to your seat.
§02
Consultancies are hard to evaluate from the outside; software is not. These are released products, not demos — versioned, documented, and written for people who never speak to us.
12 shipped products 11 public repositories 100% of those under Apache-2.0 2 CPU architectures per release
Orchestration & data movement
AI infrastructure
Edge & operations
§03
Regulated, classified and operational-technology estates are not “cloud with a firewall”. Nothing resolves. Nothing pulls. A licence server is a single point of failure you are not allowed to have. Most orchestration and gateway products quietly assume otherwise.
We design for that case first, because a system that runs with no egress also runs everywhere else. That constraint is why the engine above is a single statically linked binary with a database as its only dependency, why the trace store needs no Python runtime, and why the semantic cache carries no external vector database to install beside it.
1
Binary to install for the workflow engine. No control plane, no broker, no scheduler tier.
0
Outbound calls required to start, validate a workflow, or serve traffic.
2
CPU architectures published per release — linux/amd64 and linux/arm64.
11
Repositories you can vendor, audit and keep — every one Apache-2.0.
§04
All three end with something running in your environment and written down well enough for your team to keep it. None of them end with a slide deck.
A · days
We read the estate — pipelines, deploys, data paths, the bill — and come back with what is actually costing you, ranked, with the measurements attached.
B · weeks
One question, one working answer. Built in your environment against your data, instrumented so the result is a number rather than an impression.
C · months
Delivery of the platform, migration or workflow estate itself — then a handover that assumes we are leaving, because eventually we are.
§05
A paragraph is enough to start. What the system does, what it does badly, and what would have to be true for the problem to be over.
WhatsApp @lucheeseng
English and Bahasa Malaysia. Based in Malaysia; engagements run remote, on site, or inside your network.
If you would rather evaluate the work than the pitch, everything in §02 installs without talking to us first. That is deliberate.