8 Endpoints.One Operator.
Eight direct endpoints run familiar software: Stalwart/Bulwark, Open WebUI, Vaultwarden, SearXNG, Jellyfin, Keycloak, TeamSpeak 3, and Uptime Kuma.
A real scan.
Inspectable output.
This capture came from DeepSec WebScan against the live PixelCity site. The CLI keeps severity, rule ID, evidence, and remediation together. The current source tree returns zero findings.

Eight endpoints. Named
software.
Webmail
webmail.pixelcity.topStalwart handles mail; Bulwark provides the web client. IMAP and SMTP remain available to configured clients.
AI Chat
ai.pixelcity.topOpen WebUI fronts the language-model endpoint. Model access depends on the current inference backend.
Vault
vault.pixelcity.devVaultwarden provides the web vault and client sync for credentials and secure notes.
Search
search.pixelcity.topSearXNG exposes configurable upstream engines through one metasearch endpoint.
Media
watch.pixelcity.topJellyfin organizes the media library and serves supported browser and client playback.
Identity
id.pixelcity.devKeycloak handles account management and OAuth 2.0 sign-in flows.
Voice
ts3.pixelcity.topTeamSpeak 3 handles realtime voice; desktop and mobile clients connect to the published endpoint.
Status
status.pixelcity.topUptime Kuma publishes configured health checks and incident state at the status endpoint.
Infrastructure,
itemized.
PixelCity operates the eight service endpoints listed in the inventory. Each endpoint maps to a named application.
The application set includes Stalwart/Bulwark for webmail, Open WebUI for AI chat, Vaultwarden for credentials, SearXNG for search, Jellyfin for media, Keycloak for identity, TeamSpeak 3 for voice, and Uptime Kuma for status.
DeepSec is a Go CLI for source, dependency, secret, IaC, container, and HTTP configuration checks. Its documented scope is separate from the service applications.
Contact
PixelCity.
service@pixelcity.devService and infrastructure enquiries.