Deployment without a rebuild

Start managed. Move sensitive work when you need to.

Start in an Onterix region, then place sensitive execution in a dedicated environment, your VPC, or your own deployment.

Deployment options

Choose where Onterix runs and where sensitive data stays.

Compare the management boundary, execution location, data location, and best fit for each mode.

Scroll horizontally to compare every column

Onterix deployment modes and control boundaries
ModeManagement serviceWhere actions runWhere sensitive data staysBest fit
Managed shared
Available
Onterix-hosted, sharedOnterix regional environmentSelected Onterix regionEvaluation and standard workloads
Managed dedicated
Available
Onterix-hosted, shared or dedicatedSingle-tenant Onterix environmentDedicated selected regionIsolation, scale, and region requirements
Customer data plane
Available
Onterix-hosted, shared or dedicatedYour VPC or Kubernetes clusterYour environmentLocal credentials, content, indexes, and workflows
Fully self-hosted
Available
Your environmentYour environmentYour environmentDisconnected or maximum-control environments

Management and execution

Manage the platform without routing customer data through it.

Keep credentials, company content, model calls, actions, and detailed evidence in the selected execution environment.

MANAGE

Configuration

Publish policies, available actions, connectors, and deployment settings.

EXECUTE

Sensitive work

Run content processing, model calls, and actions in the selected environment.

ENDPOINT

Local client coverage

Send detailed endpoint events directly to the selected data plane.

CONNECT

Outbound configuration

Pull signed configuration without opening broad inbound access.

Placement and resilience

Route directly to the chosen environment.

Onterix checks the region, model, destination, dependency placement, and failover policy before customer data moves.

Placement
Route directly to the selected environment

Customer data goes to the assigned Onterix region or your infrastructure—not through the central management service.

Failover
Never change regions silently

Onterix follows your explicit failover policy instead of moving regulated work automatically.

Integrations
Use your infrastructure

Connect your identity, keys, storage, models, audit, and data-protection providers.

Enterprise architecture

Put sensitive execution where it belongs.

Map one capability’s data, actions, regions, and providers to the right execution boundary.