ZSoftly
Talk to our team
Back to blog

ZCP Marketplace Apps: 64 Preconfigured Images for Self-Hosted Software

ZCP now has 64 marketplace application images. Launch databases, DevOps tools, monitoring, VPN, CMS, business apps, and AI tools from the portal with first-boot setup documented for you.

ZSoftly Team
9 min read
ZCP portal marketplace tab showing application images available during VM deployment

ZCP now has 64 live marketplace application images.

Start a VM with GitLab, WordPress, PostgreSQL, Grafana, Keycloak, OpenBao, or Docker without building the base server by hand first.

The marketplace is not a separate SaaS layer. It is still Infrastructure-as-a-Service. You get a normal VM, full SSH access, your own network rules, your own storage, and the ability to change anything after deployment.

The marketplace removes the repetitive setup work by shipping it inside a maintained image.

Why marketplace images matter

Most teams have installation steps already. The harder part is making the same operational decisions every time:

  • Which OS version should we use?
  • Which packages need to be installed before the app?
  • Where are generated credentials stored?
  • Which service starts after reboot?
  • Which ports should stay closed by default?
  • How do we document the first login?
  • How do we repeat the same install next month?

An app template turns those decisions into a repeatable starting point.

You still own the workload. ZCP provides the prepared image, the VM, the network, and the documentation. You decide the plan size, firewall rules, storage layout, domain name, backup policy, and hardening model.

How it works

When you create an instance in the ZCP portal, open the Marketplace Apps tab and pick the app you want to deploy. Each app card includes a version selector.

ZCP marketplace tab during VM deployment

Each catalog entry has a documented setup path. Every marketplace image ships on Ubuntu 24.04 LTS with a first-boot service. The service completes the image-specific setup when the VM starts for the first time.

During first boot, the setup path handles the image-specific work:

  1. Finish the application setup.
  2. Generate credentials when the app needs them.
  3. Store those credentials in the documented root-only location.
  4. Start the application service.

For example:

  • PostgreSQL generates database credentials and stores them on the VM.
  • GitLab runs the initial GitLab reconfigure step and documents where to retrieve the root password.
  • Dify installs the application stack for LLM apps, workflows, and retrieval pipelines.
  • OpenBao gives you a starting point for secrets management on infrastructure you control.

What we preconfigure

The goal is a clean first boot, not a locked-down black box.

Each template is documented in the ZCP Marketplace docs. The docs show what is included, which versions are available, and what happens on first boot.

They also show where credentials are stored, which service commands matter, and which ports are intentionally closed.

Your team starts from a known baseline instead of a manual install.

Security defaults vary by image, so we document them per app:

  • SSH access is available through the VM.
  • UFW is enabled on images needing host firewall protection.
  • Some web application ports are open by default so the app works after deployment.
  • Database and internal service ports are usually restricted until you allow trusted sources.
  • Generated secrets are stored on the VM in the location listed by the docs.
  • You review each app’s docs before deciding what to expose, restrict, or close.

This matters. A fast deployment still needs a deliberate exposure decision.

How to choose an image

Start with the job the VM needs to do.

Use a runtime template when you want a base for your own application: Docker, Node.js, LAMP, LEMP, Nginx, HAProxy, or Apache Tomcat.

Use a database template when you want the data service on its own VM: PostgreSQL, MySQL, MariaDB, MongoDB, Valkey, Elasticsearch, ClickHouse, InfluxDB, Neo4j, Qdrant, SeaweedFS, and others.

Use a DevOps template when the VM is part of your delivery system: GitLab, Jenkins, Forgejo, Gitea, Harbor, Nexus, Artifactory, Portainer, Rancher, RabbitMQ, or Kafka.

Use a security or VPN template when you need identity, secrets, or private connectivity: Keycloak, Authentik, OpenBao, Vaultwarden, NetBird, Tailscale, Headplane, or WG-Easy.

Use a business app template when you want a ready internal tool: ERPNext, Zammad, Mattermost, Wiki.js, n8n, Medusa, Bagisto, or NocoDB.

Use an AI template when you want tools closer to your data: Ollama for local model serving, Dify for LLM app workflows, or OpenClaw for automation and integrations.

When not to use the marketplace

Use the marketplace when you want a fast, documented starting point.

Use a plain OS image when you need one of these:

  • A custom hardening baseline
  • A specific package version outside the catalog
  • An image built from your own CI pipeline
  • An application topology planned across several VMs from day one

Both options are valid. The catalog removes repetitive setup. It does not hide the infrastructure.

The full catalog

The table below is a reference index for the 64 live app templates. For setup steps, credentials, service commands, and security notes, use the linked docs page for each entry.

Control Panels

For hosting providers and teams managing many websites from one interface.

ImageWhat it is for
cPanelWeb hosting control panel with WHM.

Web Servers

For public sites, reverse proxies, load balancers, and application runtimes.

ImageWhat it is for
LAMP StackClassic Linux, Apache, MariaDB, and PHP stack.
LEMP StackNginx-based PHP application stack.
Nginx Proxy ManagerReverse proxy and SSL management with a web UI.
NginxHigh-performance web server and reverse proxy.
HAProxyTCP and HTTP load balancing.
Apache TomcatJava servlet container for web applications.

CMS

For content sites, publishing workflows, and marketing pages.

ImageWhat it is for
WordPressThe world’s most widely used content management system.
DrupalFlexible CMS for content-heavy sites and applications.
GhostPublishing platform for blogs, newsletters, and memberships.

Developer Tools

For code hosting, CI/CD, container management, package storage, and platform teams.

ImageWhat it is for
DockerDocker CE and Docker Compose on a VM.
Node.js 24Node.js runtime with process management.
GitLab CE 19.1Self-hosted Git, CI/CD, issues, and registry.
JenkinsAutomation server for builds and deployments.
ForgejoLightweight self-hosted Git forge.
GiteaLightweight Git service for small teams and projects.
PortainerWeb UI for Docker, Swarm, and Kubernetes management.
CoolifySelf-hosted PaaS for apps, databases, and services.
RancherKubernetes management console.
RabbitMQMessage broker for queues and event-driven systems.
Apache KafkaEvent streaming platform for real-time data.
NexusArtifact repository for builds and dependencies.
ArtifactoryJFrog artifact repository for packages and binaries.
HarborContainer registry with security-focused workflows.
DirectusHeadless CMS and data platform on SQL databases.
PterodactylGame server management in isolated containers.
Pelican PanelOpen-source control panel for game servers.

Databases

For stateful services on dedicated VMs. Attach block storage before production use.

ImageWhat it is for
MariaDB 11.8Open-source relational database and MySQL replacement.
PostgreSQLRelational database with strong extensibility.
MySQLWidely deployed open-source relational database.
Valkey 9.1Redis-compatible in-memory data store.
Elasticsearch 9Search and analytics engine.
InfluxDB 2Time series database for metrics and events.
MongoDB 8.0Document database for JSON-like data.
SupabaseOpen-source Firebase alternative built on PostgreSQL.
QdrantVector database for semantic search and retrieval.
NocoDBAirtable-style interface on top of databases.
SeaweedFSDistributed file and object storage.
Neo4jGraph database for connected data.
ClickHouseColumn-oriented OLAP database for analytics.

Business Apps

For internal tools, commerce systems, documentation, support, and collaboration.

ImageWhat it is for
n8nWorkflow automation with a visual editor.
MedusaHeadless commerce engine.
BagistoLaravel-based e-commerce platform.
ERPNextERP, CRM, accounting, HR, and inventory.
ZammadHelpdesk and ticketing platform.
MattermostTeam messaging and collaboration.
Wiki.jsSelf-hosted wiki and documentation platform.

Security and VPN

For identity, private access, secrets, passwords, and encrypted connectivity.

ImageWhat it is for
NetBirdWireGuard overlay network.
TailscaleWireGuard-based VPN for devices and servers.
HeadplaneWeb UI for self-hosted Headscale.
KeycloakIdentity and access management with SSO.
AuthentikIdentity provider for SSO, OAuth, and SAML.
VaultwardenLightweight Bitwarden-compatible password manager.
OpenBaoSecrets management and encryption.
WG-EasyWireGuard VPN with a web UI.

Monitoring

For dashboards, alerting, uptime checks, and host-level visibility.

ImageWhat it is for
GrafanaDashboards for metrics, logs, and traces.
PrometheusMetrics collection and alerting.
ZabbixInfrastructure and application monitoring.
Uptime KumaUptime checks and status dashboards.
BeszelLightweight real-time server monitoring.
GatusAutomated service health dashboards.

AI and Agents

For LLM workflows, local model serving, and self-hosted automation close to your data.

ImageWhat it is for
OpenClawSelf-hosted assistant and integration gateway.
OllamaLocal LLM runtime and API.
DifyLLM apps, workflows, RAG, and agent building.

What to do after launch

After the VM starts:

  1. Read the matching marketplace docs page.
  2. SSH into the VM and confirm the first-boot service completed.
  3. Retrieve generated credentials from the documented location.
  4. Change default or generated passwords where the application expects it.
  5. Review which ports are already open, then close, restrict, or expose only what the application needs.
  6. Attach block storage before production use if the application holds important state.
  7. Create a backup or snapshot policy before production use.
  8. Put the app behind a domain and TLS endpoint before sharing it with users.

The fastest launch is still the one you know how to operate later.

Get started

Create a VM, open the Marketplace Apps tab, choose an app, then follow its docs page. Browse the ZCP Marketplace overview, read the full Marketplace documentation, or launch from the portal at cloud.zcp.zsoftly.ca.

Related articles

Announcements

Our CLI and Terraform Provider Reach v1

ZCP CLI v1.0.1 and the Terraform and OpenTofu provider v1.0.0 are available today, bringing Pricing V2 configuration, Kubernetes role sizing, VM backup schedules, and lifecycle fixes to automation workflows.

Announcements

ZCP Pricing V2: Compute and Storage Sold Separately

ZCP plans are now CPU and memory only. You choose the root disk size in GB when you create a server and pay the per-GB rate of the storage tier. Existing servers keep their plan and price.