European Sovereign No telemetry No lock-in

European. Sovereign.
Built to stay yours.

H2 Labs is a European technology and social lab serving clients worldwide. We build defensive security and run principled experiments, with software you host yourself and a human in the loop where it matters.

What we do
Many fronts, one foundation

We build sovereign software: free and open for individuals, with subscriptions for the enterprises and institutions that want support, updates, and someone accountable on the other end. That is what keeps the lights on, and it all answers to one rule: build things people can actually own and trust.

Defensive security

Security that defends, not exploits. Threat models in the design review, not the post-mortem. Tools you can audit, run yourself, and keep running after the vendor is gone.

Principled experimentation

We publish the middle of the work: the detour, the dead end that taught us something, the moment a hunch became a decision. Measure, then decide. Failure is data.

Technology & social labs

Not just systems, but the economics around them: who pays for software, what it takes to truly own it, and the human side of the machines we build.

How we build
The non-negotiables

These are constraints, not slogans. They decide what we will and will not ship.

01 / sovereign

Sovereign by default

Your data and your tools stay yours. No dependency dressed up as convenience.

02 / self-hosted

Runs on your hardware

It works on infrastructure you control, under your jurisdiction, on your terms.

03 / human-in-loop

Humans are the source of truth

On anything that matters, a person stays in the loop and has the final word. The machine proposes; people decide.

04 / no telemetry

No telemetry

We don't phone home. What runs on your machine is not a sensor for ours.

05 / no lock-in

Stops paying ≠ stops working

The software keeps running if the subscription ends. Enterprises pay for support, updates, and accountability, never for permission to use what they already have.

06 / european

European by design, global by reach

European engineers, European legal frameworks, clients anywhere. Where we stand is our decision; where you run is yours.

What we run
Running code, and work built to fit

These run today, built on the principles above. Beyond them we do custom implementations, and we start by understanding your needs before building or recommending anything.

agent

Zoya

A sovereign personal agent: one Zig binary, memory that never resets, channels we own.

platform

Servo

The self-hosted app platform this site runs on: every app a folder, no build step.

confinement

Isolation stack

Landlock, egress allowlists, sandboxes that fail closed: the layers under the agent.

access

askd

Single-packet authorization: invisible until asked. Under it: triageIO fleets (each isolated, self-hosted), hardware-key SSH, OpenStack.