Implementation guide / Deployment

Deployment models

Choose cloud, customer VPC, Edge Agent, or hybrid deployment based on data boundaries, operating ownership, and evidence requirements.

StatusPublished
AudienceSecurity, Engineering, Compliance leadership
OwnerUWAY Engineering
Reviewed2026-08-02

Choose by data boundary

Start with the data and operating boundary, not a preferred infrastructure label. Identify which raw customer, document, transaction, screening, model, configuration, and audit data can leave the customer's environment.

Comparison

ModelProcessing locationTypical useCustomer responsibility
CloudUWAY-managed environmentLightweight analytics, configuration, and approved workloadsIdentity integration, data minimisation, policy ownership
Customer VPCCustomer-controlled cloud environmentSensitive processing with customer network and key controlsInfrastructure, access, monitoring, and approved upgrades
Edge AgentCustomer VPC or on-premiseLocal context resolution and controlled data movementRuntime health, local secrets, logs, and capacity
HybridLocal sensitive processing plus approved cloud servicesConfiguration sync, analytics, and local decision contextBoundary definition and end-to-end operating model

Architecture decision record

The deployment decision should record:

  • Data classes and permitted flows.
  • Processing and storage locations.
  • Encryption and key ownership.
  • Identity, role, and privileged access model.
  • Logging, monitoring, retention, and deletion.
  • Model, prompt, rule, and configuration update path.
  • Incident, rollback, and support responsibilities.
  • Evidence required for security and compliance review.

Edge Agent operating requirements

An Edge Agent deployment requires an owner for runtime health, secret rotation, configuration approval, upgrade windows, capacity, local logs, and incident response. Keeping data local does not remove operational responsibility.

Production readiness

  1. Approve the data flow and threat model.
  2. Validate network, identity, secret, and encryption controls.
  3. Test normal, degraded, disconnected, and recovery behaviour.
  4. Confirm configuration and software version evidence.
  5. Run representative workflow and jurisdiction tests.
  6. Agree support, incident, and change windows.

Private tenant configuration

Base URLs, credentials, network allowlists, customer-specific schemas, webhook secrets, and infrastructure parameters belong in the private implementation record, not in public documentation.