mrkeyoor.com_
Mon 28 Sept 19:13 UTC
Self-Hostedevaluationupdated 27 Sept 2026

yuvomi review

Yuvomi is a self-hosted household organizer that puts tasks, calendars, shopping, meals, budgets, documents, health records, and reminders in one web app. It replaces several family subscriptions with one server and one SQLite database that you control.

trackingstars / 7d
Verdict

Our Yuvomi test run reported 12 passes and 0 failures, then hit the 900-second cap, so its full test command is not a quick confidence check on a clean box. The shipped container and unusually explicit deployment docs make it a good choice for a household that already maintains a server and wants one private system for many routines. Install v2.69.1 or newer, store the encryption key offline, and back up external documents separately.

We ran it

Lab card: what happened when we ran yuvomiScreenshot of yuvomi (yuvomi.cloud)
Install✓ · 37s178 packages · 343 MB
Buildn/ano build script
Tests✗ timed out · 900s12 passed · 0 failed of 12 (node:test)
Known vulns00 critical · 0 high · 0 moderate · 0 low (npm audit)
Repo1719 files~463,365 lines of source · 127.4 MB · 5 CI workflows · Dockerfile · tests dir

Answers from our run

Does yuvomi build from source?

Dependencies installed in 37 seconds (178 packages), and the project has no separate build step. We cloned commit bf2b740 into a clean Debian container with 3 CPUs and no project-specific setup.

Do yuvomi's tests pass?

Yes: 12 of 12 passed when we ran the project's own test command (node:test). Some failures need services or credentials a bare container does not have.

Does yuvomi have known vulnerabilities in its dependencies?

npm audit found none in the dependency tree at the time of our run.

Who should not use yuvomi?

People who want a managed account with no server duties: Yuvomi supplies the software, while you operate the host, HTTPS, updates, and backups.

What are the alternatives to yuvomi?

Grocy, Nextcloud, Mealie. Our Yuvomi test run reported 12 passes and 0 failures, then hit the 900-second cap, so its full test command is not a quick confidence check on a clean box.

Setup4/5Docker, NAS, and guided paths; secrets and backups still need care
Docs5/5Install, security, privacy, data model, and recovery are documented
Community4/51,586 stars, a September 27 push, and active issue work
Maturity4/5v2.69.1 ships broadly, though recent auth fixes demand updates

Who it’s for

Households that want shared planning without sending every task, receipt, and health entry to separate vendors.
Home-server and NAS owners who can run Docker or Podman and maintain backups.
Families that need a multilingual shared screen, with 24 interface languages and a wall mode for a kitchen tablet.
Developers who want an API, third-party modules, or a built-in MCP endpoint around household data.

Who it’s NOT for

People who want a managed account with no server duties: Yuvomi supplies the software, while you operate the host, HTTPS, updates, and backups.
Anyone likely to lose an encryption key: the README says a lost or changed DB_ENCRYPTION_KEY cannot reopen the database.
Households assuming one database archive protects externally stored documents: WebDAV, Google Drive, and local-folder binaries need a separate backup.
Users treating the health module as medical software: the project explicitly makes no diagnostic claims.
Teams that require the full repository test command to finish inside a short CI window: our run hit 900 seconds after reporting 12 passes and no failures.

Setup reality

Our sandbox installed 178 npm packages in 37 seconds and used 343 MB. The 127.4 MB checkout contained 1,719 files and about 463,365 source lines. There is no build target, so that step was skipped. Tests reported 12 passed and 0 failed, but the command timed out at 900 seconds; the log tail does not show why it stayed running.

A normal deployment uses the provided Docker or Podman files, one port, and persistent volumes for data, backups, modules, and documents. You must create a session secret and decide whether to set an unrecoverable database-encryption key. Optional calendar, storage, SSO, mail, and notification integrations add their own credentials.

The repository has 5 CI workflows, a Dockerfile, Compose files, and a test directory. Npm audit found 0 known vulnerabilities. Node 22 or newer is needed for the guided installer, while the container includes Node 24. Documents kept outside SQLite require a separate backup.

Twenty modules share one household database

Yuvomi puts tasks, shopping, meals, calendars, budgets, documents, contacts, health logs, and other household records behind one login. The useful idea is connection between modules. A meal can add ingredients to shopping, a receipt can belong to a transaction and an inventory item, and a completed chore can credit a reward account. Those links are harder to maintain when every routine lives in a different app.

The stated audience is usually a household of 2 to 6 people, and the interface covers 24 languages. Modules can be disabled, which matters because the list reaches 20. Inventory, waste collection, and schedules are off by default. Wall mode is built for a shared tablet, while an Immich screensaver can rotate family photos. This is broad household software, not a grocery list with a few extra tabs.

The 37-second install is easier than owning the data safely

Our clean Node 22 sandbox installed 178 packages in 37 seconds and used 343 MB on disk. The checkout itself was 127.4 MB, with 1,719 files and roughly 463,365 lines of source. Yuvomi has no build script, which matches its use of plain JavaScript modules and CSS, so the build step was skipped rather than passed. Npm audit found 0 known vulnerabilities in the installed dependency tree.

The deployment route is direct. Download the Compose and environment files, create SESSION_SECRET and DB_ENCRYPTION_KEY, then start the container and visit port 3000. There are also catalog entries for TrueNAS SCALE, Umbrel, and Unraid. A browser wizard on port 8090 can detect Docker or Podman, configure HTTPS and single sign-on, schedule backups, and create the first administrator. The guided installer needs Node 22 or newer; the application container carries Node 24.

What happened when we ran it

Our sandbox ran commit bf2b740 with 3 CPUs and 8 GB of RAM. Installation succeeded, and there was no build target to run. The test command reached the 900-second limit. Node's test reporter recorded 12 passing tests and 0 failures before the timeout. The last visible cases covered Unicode-normalized login input and rejection of a wrong password, both marked ok.

The log tail does not identify why the process remained active, so we cannot call it a failed assertion or name a hanging test. The correct result is a timeout after 900 seconds. That matters in CI and contributor workflows even when every reported case is green. The repository also contains 5 CI workflow files, a Dockerfile, Compose configuration, and a test directory, which is a much stronger project skeleton than the timed-out local command alone suggests.

One SQLite file simplifies export but not every backup

Core records live in /data/yuvomi.db. Copying that SQLite file is the basic export when documents are stored in the database, and Yuvomi can also write scheduled backup archives. Optional SQLCipher encryption uses AES-256. The hard edge is deliberate: if you lose or change the database key, neither the maintainer nor another recovery path can open the encrypted data. Keep that key outside the server it protects.

Document storage complicates the neat single-file story. Yuvomi can place binaries in a local folder, on WebDAV, or in Google Drive. Its database backup then contains metadata and links, not those files. The README tells operators to back up that target separately. Yuvomi's visibility rules also stop at its own interface, so anyone with access to the connected Drive folder can see the stored files regardless of permissions shown inside Yuvomi.

Optional connections are where privacy needs attention

A default installation makes one outbound version check against GitHub. Features such as weather, holidays, calendar and contact sync, recipe mirrors, push services, cloud storage, and external document systems contact their respective services only when enabled. Private-address calendar feeds, WebDAV targets, and recipe mirrors stay blocked until the operator opts in, a useful defense when users can enter URLs.

Authentication has password login, invite links, TOTP, recovery codes, password reset by email, and optional OIDC. Release v2.69.1, published September 23, 2026, fixed two meaningful authorization problems: account linking during first SSO sign-in and member access to CardDAV administration. It also requires the CardDAV password again when the server or username changes. Existing installations should treat that release as a security update rather than routine polish.

Active maintenance comes with a busy issue queue

GitHub recorded a push on September 27, 2026, four days after v2.69.1. The repository had 1,586 stars and 60 open issues and pull requests when fetched. Recent issues discuss plural forms, calendar behavior, phone layouts, and test guards in concrete terms. The combined count is not a bug total, but it shows how much surface area follows from 20 modules and 24 locales.

That breadth is Yuvomi's reason to exist and its main ownership cost. A small household can replace several accounts with one container, but the administrator becomes responsible for updates, HTTPS, encryption-key custody, and restores. Our 178-package install was easy. The more important trial is restoring the SQLite database and one externally stored document before the household trusts the system with receipts, calendars, or health entries.

Alternatives

ProjectWhat it isPick it when
GrocyA self-hosted household manager centered on groceries, chores, inventory, and consumables.pick this instead when pantry stock and recurring household work matter more than calendars, documents, and health records.
Nextcloud gh↗A broader personal cloud with files, calendars, contacts, and a large app ecosystem.pick this instead when file sync and collaboration are the center of the household system.
Mealie gh↗A focused self-hosted recipe manager and meal planner for families.pick this instead when recipes and weekly meal planning are the whole job and 20 modules would be excess.

What people are saying

  1. [github-trending] ulsklyc/yuvomi

Sources

  1. Yuvomi repository and README
  2. Yuvomi installation guide
  3. Yuvomi v2.69.1 release notes
  4. Yuvomi security policy

More self-hosted reviews

anythingmcp · Calibre-Web-Automated · CF-Server-Monitor · niubigeo · kuboard-press · taskview-community · the whole board →