Open source, self-hosted, AGPL-3.0

You sent the deck. Now know what happened to it.

You send a proposal and, most of the time, hear nothing back. DeckTrail gives each client their own private, branded space for the work you sent, and shows you what they did with it: who opened it, which parts held them, how far they read. Built for the way work moves in the AI era, and hosted entirely on your own server.

Self-host it Read the source Your server. Your clients. No account here.
The proposal you sent, gated to one person gated

Reducing last-mile delivery cost

  • Where the cost actually sits, route by route
  • The two depots behind most of the overrun
  • What to fix first, and the order to do it in
priya@acme-logistics.example - 16 Jul 2026 - confidential
What you saw back, on your own dashboard idle

You sent your thinking and knew what happened to it. Who opened it, how far they read, how long they stayed. All on your own server, with no account anywhere but yours.

See it in 60 seconds

The whole idea, in one minute.

How it works

A private space per client, and a clear record of what they did with it.

Three things that are real, in that order: confidential delivery, engagement you can see, and work that stays yours. There is no fourth thing called prevention, and the honest limits are further down this page.

01

Gated to one person

Every recipient gets their own link behind a passwordless sign-in. No public URL, and no anonymous forwarding: the link is theirs alone. Every open ties to a named person, which is what makes everything after it possible.

02

You see what happened

Who opened it, which parts they stayed on, how far they read, and whether they finished. Per person and per deck, on your own dashboard, and exportable whenever you want it.

03

Yours, in the AI era

Draft the deck with AI on your own machine: your own Claude login needs no API key, or point it at a free or local model instead. It goes out watermarked to the reader at serve time, and known AI agents are turned away at the door. Everything runs on your server, so nothing ever touches ours.

Three ways to do the writing, and you are not locked to one: your Claude login, a free or local model, or your own routing gateway.

One engagement, one link

A whole engagement, behind one branded landing.

A real engagement is rarely one deck. Group the proposal, the commercials, and the scope of work behind a single gated landing, and send the client one link.

They sign in once and land on their own index. Each card opens a gated, watermarked, tracked artifact: a deck, a document, or a live pricing tool. The landing is gated to that person exactly like the artifacts, so a forwarded link opens for nobody else.

Acme Logistics engagementgated
Proposaldeck
Commercialspricing tool
Scope of workdocument
What it cannot do

Where the floor is, said plainly.

You are handing this to a client you respect. You deserve to know exactly where the floor is, from us, before you meet it in the wild.

What can still happenCan DeckTrail stop it?What you actually get
Photograph the screen No. Never. Their name is in the photo.
Paste the text into a model No. You know who had it open, and for how long.
Retype it by hand No. Dwell time on the slides they retyped.
Right-click, select, copy Friction, not a wall. The attempt is logged against their name.
Forward the link to a colleague Yes, meaningfully. The link is theirs. The colleague has to ask you.
Point a scraper or AI agent at it Known ones, yes. 403 at the door, and it shows up in your log.

We will not tell you the first three can be stopped, because they cannot be, by anyone. What changed in the AI era is not that leaks became possible. It is that a leak now regenerates into something that reads as original. Attribution is the thing that still survives that, so attribution is what we build.

Self-host it

It runs on your box, not ours.

There is no account to make here, because there is nothing here to sign into. You clone it, you run it, and your clients' decks live on your server where they belong. We could not read them if we wanted to.

Postgres and a container, a browser form to set your brand and mail, and you are serving. The setup wizard generates its own secrets on first boot.

On a real server, put it behind the bundled Caddy or your existing Traefik for automatic HTTPS. The server guide walks through both, and you generate decks on your own machine, never on the server.

# macOS, Linux or WSL
git clone https://github.com/orbitqube-tech/decktrail
cd decktrail
./scripts/up.sh

# Windows, in PowerShell
.\scripts\up.ps1

# it generates its own password, waits until the
# portal answers, builds the command line tool,
# and prints the link that finishes setup
Attribution

About that little mark.

Every deck DeckTrail renders carries a small "Made with DeckTrail by OrbitQube" in the corner. The licence does not require it, and you can turn it off without asking us.

We are asking instead. This is free software with no trial funnel and no hosted tier steering anyone back to us, so a consultant noticing that mark on a deck is genuinely the only way the next person finds this. If it saves you a subscription, leaving it on is a fair way to pay that forward. If not, that is fine, and you owe us no explanation.

We drafted a licence term to make it mandatory, then read the AGPL properly and found the term would not have held. So we dropped it rather than ship something that reads enforceable and is not. The reasoning is written up in the repo, including the parts that went against us.

The name is the one thing we do protect. Run it, fork it, sell services with it, no permission needed. Just give your fork its own name.