Portainer Templates logo

Portainer Templates

CashPilot CashPilot

Container

ToolsMonitoring

Self-hosted passive income orchestrator for bandwidth sharing, DePIN, storage, and GPU compute services. Source: https://github.com/GeiserX/CashPilot

Image details

Pulls: 23.8k
Architecture: amd64, arm64
Image size: 32 MB
Latest: 1.35
User: drumsergio
Created: Mar 25, 2026
Updated: 1 day ago
Status: active

Source details

Stars: 40
Forks: 12
Language: Python
License: GPL-3.0
Updated: 1 day ago

Configuration

Type
Container
Platform
linux
Image
drumsergio/cashpilot:latest
Ports
8080:8080/tcp
Volumes
/data
Env vars
TZ=UTCCASHPILOT_SECRET_KEY=CASHPILOT_API_KEY=
Restart
unless-stopped

Notes

This template deploys only the CashPilot UI. To actually deploy and manage earning services you also need the companion worker container (drumsergio/cashpilot-worker) with Docker-socket access, paired via CASHPILOT_API_KEY. See the repo for the full compose.

Standalone Install

Select an install method, to see config/commands for deploying CashPilot

Installation method

Install on Portainer

Import all app templates into your Portainer instance, for easy 1-click deploys

  1. Ensure both Docker and Portainer are installed, and up-to-date
  2. Log into your Portainer web UI
  3. Under Settings → App Templates, paste the below URL
  4. Head to Home → App Templates, and the list of apps will show up
  5. Select CashPilot, fill in any config options, and hit Deploy

Template Import URL

https://raw.githubusercontent.com/Lissy93/portainer-templates/main/templates.json
Show Me demo

More install options in our documentation, or see GeiserX/CashPilot for app-specific guidance.

CashPilot


Docker Pulls GitHub Stars License: GPL-3.0 Tests codecov


What is CashPilot?

CashPilot is a self-hosted platform that lets you deploy, manage, and monitor passive income services from a single web interface. Instead of manually setting up dozens of Docker containers, configuring credentials, and checking multiple dashboards, CashPilot handles everything from one place.
It supports both Docker-based services (deployed and managed automatically) and browser extension / desktop-only services (tracked via the web UI with signup links, earning estimates, and balance monitoring). Whether a service runs in a container or in your browser, CashPilot aggregates all your earnings into a unified dashboard with historical tracking.
The key differentiator: a browser-based setup wizard guides you through account creation and service deployment, orchestrates containers through Docker workers, and collects earnings from 40+ services across bandwidth sharing, DePIN, storage, and GPU compute categories.
Dashboard

Features

  • Web-based setup wizard with guided account creation for each service
  • One-click container deployment for 16+ passive income services
  • Real-time earnings dashboard with historical charts and trend analysis
  • Container health monitoring -- CPU, memory, network, and uptime at a glance
  • Multi-category support -- bandwidth sharing, DePIN, storage sharing, GPU compute
  • Automatic earnings collection from service APIs and dashboards
  • Mobile-responsive dark UI -- manage your fleet from any device
  • Simple two-container setup -- UI + Worker, no dependencies to install
  • Service catalog with earning estimates, requirements, and platform details

Every setting, and which source wins: Configuration reference

Upgrading an existing install? Read UPGRADING.md first. It lists only the releases that need you to do something.

Quick Start

With Docker Compose (recommended):
docker compose up -d
# Open http://localhost:8080

This starts two containers:
  • cashpilot-ui -- Web dashboard, earnings collection, service catalog (port 8080)
  • cashpilot-worker -- Docker agent that deploys and monitors service containers (port 8081, requires Docker socket)

Then open http://localhost:8080 and follow the setup wizard. On first start, CashPilot prints a one-time setup token to the cashpilot-ui container logs (docker compose logs cashpilot-ui) — enter it on the registration form to create the first (owner) account. See Getting Started for details.
Security — network exposure. By default the dashboard is published on loopback only (127.0.0.1:8080), because it can command the Docker-socket worker. To reach it from another machine, set CASHPILOT_BIND_ADDR to a specific interface (e.g. a Tailscale/VPN IP) or, preferably, run an authenticating reverse proxy in front. Never publish the worker's port (8081) on a public interface — it exposes a Docker-socket API equivalent to root on the host.

Note: The worker container requires access to the Docker socket (/var/run/docker.sock) to deploy and manage service containers. Both containers are required for full functionality.

Supported Services

Docker-Deployable Services

Services CashPilot can deploy and manage automatically via Docker.

ServiceGuideResidential IP requiredVPS allowedDevices / AcctDevices / IPPayout
Anyone ProtocolGuide? \*\\? \*\\Crypto
BitpingGuide? \*\\? \*\\Crypto (SOL)
Earn.fmGuide? \*\\1Crypto
EarnApp \*\\\Guide15? \*\\PayPal, Amazon Gift Card, Wise
HoneygainGuide101PayPal, Crypto
IPRoyal PawnsGuide? \*\\1PayPal, Crypto, Bank Transfer
MystNodesGuide? \*\\UnlimitedCrypto
PacketStreamGuide? \*\\? \*\\PayPal
ProxyBaseGuide? \*\\? \*\\Crypto
ProxyBase MarketsGuide? \*\\? \*\\Crypto (USDC)
ProxyLiteGuide? \*\\? \*\\Crypto, PayPal
ProxyRackGuide500? \*\\PayPal, Crypto
RepocketGuide5? \*\\PayPal, Crypto
StorjGuide? \*\\? \*\\Crypto
TraffmonetizerGuide? \*\\UnlimitedCrypto (USDT), PayPal
URnetworkGuide? \*\\? \*\\Crypto

\ Storj nodes on the same /24 subnet share data allocation, reducing per-node earnings.
\
\ Traffmonetizer ToS requires residential IP, but VPS nodes are accepted in practice.
\
\\\ EarnApp's help centre prohibits Docker containers, VMs, hosting services and home servers, with account termination and cancellation of pending payments as the stated penalty — which is exactly how CashPilot deploys it. Read the guide before deploying.
\\\ ? means the catalog does not record this, so nobody has verified it against the provider. It is not a synonym for "no limit" — see per-IP device limits for the values that are sourced. A number widely repeated on review sites is not a source.
These tables are generated from the service YAML by scripts/generate_readme_tables.py and checked in CI, so they cannot drift from the catalog. Edit the YAML, not the table.

Browser Extension / Desktop Only

These services have no Docker image. CashPilot lists them in the catalog with signup links and earning estimates, but cannot deploy or monitor them.

ServiceGuideResidential IP requiredVPS allowedDevices / AcctDevices / IPPayoutStatus
BytebenefitGuide? \*\\? \*\\PayPalActive
BytelixirGuide? \*\\? \*\\CryptoActive
Dawn InternetGuide? \*\\? \*\\CryptoActive
Deeper NetworkGuide? \*\\? \*\\CryptoActive
EbesucherGuide? \*\\1PayPalActive
Gradient NetworkGuide? \*\\? \*\\CryptoActive
GrassGuide? \*\\? \*\\CryptoActive
HeliumGuide? \*\\? \*\\CryptoActive
NodepayGuide? \*\\? \*\\CryptoActive
NodleGuide? \*\\? \*\\CryptoActive
PassiveAppGuide? \*\\? \*\\Crypto, PayPalActive
Sentinel dVPNGuide? \*\\? \*\\CryptoActive
SpideGuide? \*\\1CryptoActive
Teneo ProtocolGuide? \*\\? \*\\CryptoActive
Theta Edge NodeGuide? \*\\? \*\\CryptoActive
Titan NetworkGuide? \*\\? \*\\CryptoActive
UprockGuide? \*\\? \*\\CryptoActive

GPU Compute

GPU-intensive computing services. Requires compatible hardware.

ServiceGuideResidential IP requiredGPUMin StoragePayoutStatus
FluxGuide220GBCryptoActive
Golem NetworkGuide20GBCryptoActive
io.netGuideN/ACryptoActive
NosanaGuide50GBCryptoActive
SaladGuideN/APayPal, Gift CardsActive
Vast.aiGuide100GBCrypto, Bank TransferActive

Note: Earnings vary widely by location, hardware, and demand -- see individual guide pages in docs/guides/ for details.

How It Works

  1. Deploy CashPilot -- a single docker compose up -d gets you running
  2. Open the web UI -- browse the full service catalog at http://localhost:8080
  3. Browse services -- filter by category, see earning estimates and requirements
  4. Sign up -- each service card has a signup link; create accounts as needed
  5. Enter your credentials -- the setup wizard collects only what each service needs
  6. CashPilot deploys and monitors -- the worker launches containers, health-checks them, and the UI tracks earnings automatically

Architecture

CashPilot uses a split UI + Worker architecture:
  • UI container (drumsergio/cashpilot) -- FastAPI web application with dashboard, earnings collection, service catalog, and credential storage. No Docker socket needed.
  • Worker container (drumsergio/cashpilot-worker) -- Agent with Docker socket access that deploys, monitors, and manages service containers. Reports status to the UI via API.
  • Database: SQLite -- zero configuration, backed up via the mounted volume
  • Service definitions: YAML files in services/ are the single source of truth for all service metadata, Docker configuration, and earning estimates
  • Frontend: Server-rendered templates with a responsive dark UI

cashpilot/
  app/            # FastAPI application (UI + worker API)
  services/       # YAML service definitions (source of truth)
    bandwidth/    # Bandwidth sharing services
    depin/        # DePIN services
    storage/      # Storage sharing services
    compute/      # GPU compute services
  docs/           # Documentation and guides

Configuration

UI Environment Variables

VariableDefaultDescription
TZUTCTimezone for scheduling and display
CASHPILOTSECRETKEY(auto-generated)Signing key for login sessions. Persisted at /data/.secretkey. Does not encrypt credentials
CASHPILOTENCRYPTIONKEY(auto-generated)Fernet key encrypting stored credentials at rest. Persisted at /data/.fernetkey. Set this only to restore a backup — see Backing up the encryption key
CASHPILOTALLOWEPHEMERALKEYfalseAllow startup when the encryption key cannot be written to disk. Credentials are then lost on restart, so this is off by default
CASHPILOTAPIKEY--Enrollment/bootstrap key; each worker then gets its own key (per-worker fleet keys, v1.0.0+)
CASHPILOTCOLLECTINTERVAL60Minutes between earnings collection cycles
CASHPILOTMETRICSENABLEDfalseSet to true to expose Prometheus metrics at /metrics
CASHPILOTBINDADDR127.0.0.1Host interface the UI port is published on. Loopback by default; set a specific IP (e.g. a VPN address) or 0.0.0.0 to expose it — prefer a reverse proxy with auth

The UI's web port inside the container is fixed at 8080 (set via the container's CMD); CASHPILOT_BIND_ADDR controls only which host interface it is published on.

Worker Environment Variables

VariableDefaultDescription
TZUTCTimezone
CASHPILOTUIURL--URL of the UI container, e.g. http://cashpilot-ui:8080
CASHPILOTAPIKEY--Must match the UI's API key
CASHPILOTWORKERNAME(hostname)Display name for this worker in the fleet dashboard
CASHPILOTWORKERURL(auto-detected)URL the UI uses to reach this worker, e.g. http://192.168.10.50:8081. Set explicitly for remote/cross-host workers
CASHPILOTWORKERBINDADDR127.0.0.1Host interface the worker's Docker-socket API port is published on. Loopback by default — for a remote worker set a private/VPN interface, never a public IP
CASHPILOTPORT8081Port the worker advertises to the UI. It does not change the listen port, which is fixed by the image's CMD — see the configuration reference
CASHPILOTWORKERNETWORK(detected)residential or hosting. Overrides the hardware-based guess used to warn about residential-only services
CASHPILOTEGRESSDETECTonSet to off to stop this worker looking up its own public IP (see below)
CASHPILOTEGRESSIP--State this worker's public IP directly instead of looking it up. Must be a public address
CASHPILOTEGRESSIPURL--Use your own IP-echo endpoint (returning a bare IP) instead of the public ones. Used exclusively — no fallback

Why the worker looks up its public IP

Bandwidth providers cap earnings per IP address, not per machine. Two workers behind one home connection are two rows on your dashboard and one customer to the provider, so the second one usually earns nothing. To warn you before that happens, each worker asks a public IP-echo service what address it comes from — one request per hour.
That is the only outbound call CashPilot makes purely to learn about your setup. Turn it off with CASHPILOT_EGRESS_DETECT=off, point it at your own endpoint with CASHPILOT_EGRESS_IP_URL, or skip the lookup entirely by stating the address with CASHPILOT_EGRESS_IP. With detection off, the fleet simply reports that worker's exit as undetermined and raises no conflict warnings for it.
Known limitation: grouping matches on the exact address, so on a native-IPv6 connection each machine has its own global address and no conflict is detected. The check is therefore best-effort — it can miss a conflict, but it will not invent one.

Multi-Node Fleet Management

For power users running services across multiple servers, deploy a single CashPilot UI and connect workers from each server. The UI aggregates everything into a unified fleet view; workers report via HTTP API.
CashPilot UI (dashboard + earnings + catalog)
        ^                ^                ^
        | HTTP           | HTTP           | HTTP
  Worker (server-a)  Worker (server-b)  Worker (server-n)
  + Docker socket    + Docker socket    + Docker socket

Setting up the fleet

Use docker-compose.fleet.yml on your main server to run both the UI and a local worker:
docker compose -f docker-compose.fleet.yml up -d

Adding remote workers

On each additional server, deploy only a worker pointing to the UI:
services:
  cashpilot-worker:
    image: drumsergio/cashpilot-worker:1.19
    pull_policy: always
    container_name: cashpilot-worker
    ports:
      # The worker's API is backed by the Docker socket -- deploy, stop or
      # remove ANY container -- so publishing it is publishing full control of
      # this host. It binds LOOPBACK by default for that reason.
      #
      # A remote UI does need to reach it, so set CASHPILOT_WORKER_BIND_ADDR to
      # this server's PRIVATE or VPN address (a Tailscale IP, say). Never a
      # public one, and never 0.0.0.0.
      - "${CASHPILOT_WORKER_BIND_ADDR:-127.0.0.1}:8081:8081"
    volumes:
      - /var/run/docker.sock:/var/run/docker.sock
      - cashpilot_worker_data:/data
    environment:
      - TZ=Europe/Madrid
      - CASHPILOT_UI_URL=http://main-server:8080
      - CASHPILOT_API_KEY=your-shared-api-key
      - CASHPILOT_WORKER_NAME=server-b
      - CASHPILOT_WORKER_URL=http://server-b:8081
    restart: unless-stopped
    security_opt:
      - no-new-privileges:true

volumes:
  cashpilot_worker_data:

Communication goes both ways: workers connect outbound to the UI via HTTP for heartbeats, and the UI connects outbound to each worker's :8081 API to push commands (deploy, stop, restart). This means the worker must be reachable from the UI (LAN, Tailscale, or port forwarding) -- set CASHPILOT_WORKER_URL to the address the UI should use, since auto-detection falls back to the container's own network interface, which is often unreachable from another host. The UI's fleet dashboard shows all connected workers, their containers, and live status.

FAQ

Is bandwidth sharing safe?
Bandwidth sharing services generally route legitimate traffic (market research, ad verification, price comparison, content delivery) through your connection. That said, you are sharing your IP address, so review each service's terms of service and privacy policy carefully before signing up. Running these on a VPS rather than residential IP is an option for some services. This is not legal advice -- consult with the particular services you intend to use and, if needed, seek independent legal counsel regarding your jurisdiction.
How much can I earn?
Earnings vary widely based on location, ISP, number of devices, and which services you run. The dashboard tracks your actual earnings over time so you can optimize your setup.
Can I run on a VPS or cloud server?
Some services require a residential IP and will not pay (or will ban) VPS/datacenter IPs. These are marked as "Residential Only" in the service catalog. Services that work on VPS are a good way to scale up without additional home hardware.
How are credentials stored?
All service credentials are encrypted at rest in the SQLite database using a Fernet key stored at /data/.fernet_key, which is generated automatically on first run. The database file lives in the mounted Docker volume (cashpilot_data:/data). No credentials are ever sent anywhere except to the service containers themselves.
Note that this is a different key from CASHPILOT_SECRET_KEY, which only signs login sessions.

Backing up the encryption key

Your credentials are only as recoverable as /data/.fernet_key. If you lose that file you will have to re-enter every credential, because there is no way to decrypt the stored values without it.
# Back it up
docker exec cashpilot-ui cat /data/.fernet_key

# Restore onto a fresh volume: pass the saved value when starting CashPilot.
# It must reach the container, so put it on the same command line (or export it,
# or set it in your .env) - a bare shell assignment on its own line does nothing.
CASHPILOT_ENCRYPTION_KEY=<the value you saved> docker compose up -d

The file always takes precedence over the environment variable, so setting CASHPILOT_ENCRYPTION_KEY on an instance that already has a key changes nothing and is safe. It is adopted only when no key file exists, which is exactly the restore case.
If the key cannot be written to disk at all — an unwritable or unmounted /data — CashPilot refuses to start rather than encrypting your credentials under a key that disappears on the next restart. Set CASHPILOT_ALLOW_EPHEMERAL_KEY=true if that is genuinely what you want.
What about security?
Every service CashPilot deploys runs inside its own isolated Docker container. Containers cannot access your host filesystem, other containers, or your local network unless explicitly configured to do so. CashPilot further hardens deployments with --security-opt no-new-privileges, preventing privilege escalation inside containers. Service credentials are encrypted at rest using Fernet symmetric encryption. Only the worker container requires Docker socket access; the UI container has no privileged access.
That said, no setup is bulletproof. You are still running third-party software that routes external traffic through your network. Docker isolation significantly reduces the attack surface compared to running these services directly on your host, but it does not eliminate all risk. We recommend running CashPilot on a dedicated machine or VLAN, keeping Docker and your host OS up to date, and reviewing the open-source code of any service before deploying it.
What happens if a service container crashes?
CashPilot monitors container health continuously. If a service container exits unexpectedly, it is automatically restarted. The dashboard shows uptime and health status for every running service.

Disclosure

This project contains affiliate/referral links. If you sign up through these links, the project maintainer may earn a small commission at no extra cost to you. This helps support the development of CashPilot. You are free to replace all referral codes with your own in the Settings page.

Ecosystem

ProjectTypeDescription
CashPilot-androidAndroid AgentMonitoring agent for passive income apps running on Android devices
cashpilot-mcpMCP ServerMonitor earnings from AI assistants via the Model Context Protocol
cashpilot-haHome Assistant IntegrationEarnings and service status sensors for your smart home dashboard
n8n-nodes-cashpilotn8n Community NodeAutomate earnings workflows in n8n

Contributing

Contributions are welcome. To add a new service:
  1. Create a YAML file in the appropriate services/ subdirectory following services/_schema.yml
  2. Add a guide page in docs/guides/ for the service
  3. Update the service tables in this README
  4. Submit a

Serve CashPilot on your own domain behind Caddy, Nginx or Traefik. Fill in your domain and copy the result. It's a starting point, some apps need their own base URL or extra headers set too.

Proxying cashpilot.example.com to http://cashpilot:8080

Add this to your Caddyfile

cashpilot.example.com {
	reverse_proxy http://cashpilot:8080
}

Check the logs first

Nine times out of ten the logs tell you exactly what went wrong.

  • In Portainer, go to Containers, click the container, then Logs. Or run docker logs cashpilot
  • Exit codes help too: 137 means killed, usually out of memory. 126 or 127 means the command inside the image is broken.

Port already in use

If deployment fails with "Bind for 0.0.0.0:8080 failed: port is already allocated", something else on your server is using that port.

  • Find what's using it: sudo ss -tlnp | grep :8080
  • Stop the other service, or pick a different host port. In 8080:8080 only the left number is yours to change, the right one belongs to the app.

Running but the page won't load

The container is up but nothing appears in your browser.

  • Use your server's real IP: http://your-server-ip:8080. The 0.0.0.0 link Portainer shows isn't a real address.
  • Give it a minute after first deploy, cashpilot can take a while to initialise.
  • Make sure your firewall allows the port, e.g. sudo ufw allow 8080

Image won't pull

Test the pull directly on the host: docker pull drumsergio/cashpilot:latest

  • "manifest unknown" means the tag no longer exists. This template uses latest, so try pinning a specific version instead.
  • "toomanyrequests" is the Docker Hub rate limit. Log in with docker login to raise it.
  • "no space left on device" means a full disk. Reclaim space with docker system prune

"exec format error"

This means the image was built for a different CPU architecture than your server.

  • This image supports: amd64, arm64
  • Check yours with uname -m: x86_64 is amd64, aarch64 is arm64. Raspberry Pi and other ARM boards are the usual culprits.

Container keeps restarting

The unless-stopped restart policy relaunches the app after every crash, so the real error can scroll past.

  • Check the logs right after a restart, the last few lines before it died are the useful ones.
  • Get the exit code with docker inspect cashpilot --format '{{.State.ExitCode}}'
  • Still stuck? Redeploy once with the restart policy set to no so the failure stays visible.

Required settings are blank

CASHPILOT_SECRET_KEY, CASHPILOT_API_KEY have no default value, and cashpilot may crash or misbehave if left empty.

  • Fill them in on the deploy screen before hitting deploy.

Raise an issue

Found something which isn't working as it should? Here's how to report it.

A single container

CashPilot runs as one container, the simplest kind of app here. Just the one image to pull and nothing else wired up alongside it.

The app image

An image is the app packed up ready to go, everything CashPilot needs bundled into one download. This template pulls drumsergio/cashpilot:latest, which Docker fetches once (about 32 MB) and then starts your own copy from.

Where the image comes from

Docker pulls its images from registries, public libraries of ready-built apps. CashPilot's comes from Docker Hub, published by drumsergio.

Version tags

The bit after the colon in the image name is the version tag. Here it's latest, which always points at the newest build, so a redeploy can bump you to a newer release without you asking. Newest right now is 1.35. Pin a specific tag if you would rather stay on one version.

Which machines it runs on

Every image is built for particular CPU types. This one ships for amd64, arm64, so it runs on both regular x86 servers and ARM boards like a Raspberry Pi.

Ports

A port is the door the app answers on. A mapping like 8080:8080 means it's reachable on port 8080 of your server, where the left number is yours to change and the right one belongs to the app. Once it's running, open http://your-server-ip:8080 in a browser. It opens:

  • 8080:8080, likely the web interface

Volumes

A volume is where CashPilot keeps its files so they survive an update or a restart. Without one, anything it saves would sit inside the container and vanish the moment it's recreated. This template mounts:

  • /data as a volume Docker manages for you

Environment variables

Environment variables are the settings you hand over when you deploy, things like a password or a timezone. CashPilot takes 3 of them, and 2 need a value before it'll start properly:

  • TZ, defaults to UTC. Timezone
  • CASHPILOT_SECRET_KEY, needs a value. Encryption key — blank to auto-generate (set a fixed value to keep stored credentials across redeploys)
  • CASHPILOT_API_KEY, needs a value. Worker enrollment key (optional)

Restart policy

The restart policy here is unless-stopped, so Docker restarts CashPilot after a crash or reboot, but leaves it off when you stop it on purpose. You can change this on the deploy screen. The choices are no (never restart), on-failure (only after a crash), unless-stopped (restart unless you stop it), and always (bring it back no matter what).

Networking

Nothing custom is set, so CashPilot sits on Docker's default bridge network: its own private space that reaches the outside world only through the ports it publishes.

Container name

Once it's deployed, Portainer names the container cashpilot. That's what you'll spot in the containers list and use in commands like docker logs cashpilot.

Platform

The platform is linux, the kind of system the container is built to run on. Docker and Portainer handle this on a normal Linux server.

Open source license

CashPilot is open source, released under the GPL-3.0 license. In plain terms the code is out in the open, so you're free to run it and change it to fit what you need.

Portainer app templates

Zooming out, this whole page comes from a Portainer app template: a short recipe telling Portainer how to set CashPilot up. Add the template list to Portainer once, then deploying CashPilot is a click rather than a wall of config.