Choose where DataSitr runs. The components stay the same, so your evidence and review exports stay consistent.
Three paths, same components. Pick the one that fits your operating model — we keep the runtime identical so evidence and exports look the same to a reviewer regardless of who hosts.
Every request follows the same path: TLS edge, then the API runtime that detects personal data, applies your policy, and chooses the allowed route. State, audit, and signed evidence live alongside the API on Saudi infrastructure.
Request flow · Saudi-hosted runtime · 2026 baseline
The runtime is identical across hosted-pilot, customer-cloud, and on-premises models. Helm guards 2× replicas with shared Postgres + Redis when high-availability mode is on; a single-VPS Docker Compose path is supported for early pilots that don't need it.
The router's lane decision determines what the downstream AI provider sees. Each lane has explicit rules, an explicit destination, and an explicit audit trail.
The same five components run in every deployment model. Sizes scale with traffic; the topology stays the same.
Production deployments needing horizontal scaling, rolling updates, and managed control plane.
Guided deploy script · helm chart · 2× replicas with shared Postgres + Redis · health probes and recovery gates.
Early pilots and on-premises installs that don't need horizontal scaling yet.
Single command, dashboard build, health checks. SQLite-backed sessions when Postgres is not yet provisioned.
Environments where Docker is not available (regulated estates, air-gapped reviewers).
Requires Python 3.12+ and Node.js 20+ on the host. Operator owns process supervision and log rotation.
Bearer token in the Authorization header. Keys carry the sv_ prefix and are role-scoped (tenant / tenant_admin / super_admin / regulator).
Authorization Code + PKCE flow against the operator's corporate IdP. Person-bound identity for every action — required for individual training records and per-user audit attribution.
2 vCPU
4 GB RAM
20 GB SSD
Ubuntu 22.04+
Saudi region
single-VPS Docker Compose path
4+ vCPU per node · 2 nodes
8+ GB RAM per node
50+ GB SSD per node
Shared Postgres + Redis
Off-host backup + scheduled restore drill
Active alert delivery to operator on-call
The runtime emits dated, hash-chained, regulator-readable evidence. Operator-refreshed controls — not timeless freshness guarantees.
Current pilot runtime uses a Saudi-hosted shared-state layout. Dated proof covers scaling beyond a single-process setup, and dated alert-delivery and backup-plus-restore evidence is operator-refreshed. Treat those as controls the operator maintains, not as timeless freshness guarantees.
Optional immutable-evidence retention can strengthen audit evidence when configured. That is a software-level control — it should not be read as hardware-backed immutability or as a high-availability claim.
DataSitr is registered with NDGP as a data services / products provider (LR-25-000018, status Complete) — not licensed. SDAIA AI Service Provider Accreditation (AE-26-000237) remains in progress at the time of writing. References to PDPL articles describe operational alignment; they do not imply regulator approval.