Overview
For teams that want complete autonomy, DeepintShield runs entirely inside your own environment both planes in your Azure, GCP, or AWS account. You deploy from a single Helm chart and image set with full Terraform support, and you own upgrades, scaling, secrets, and the audit log. There’s no managed dependency and no required call-home: the platform runs on your infrastructure, under your operations, with compliance evidence customer-managed end to end.
How it works
1
Provision with the Helm chart / Terraform across your chosen cloud(s).
2
Both planes run in your account; you control versioning and scaling.
3
Bring your own keys and connect your existing identity (SSO/OIDC/SAML, SCIM).
4
All decisions, audit logs, and evidence stay in your systems - customer-managed.
5
Get Started.
What runs where
1
Control plane
Your cloud (self-managed).
2
Data plane
Your cloud (self-managed).
3
Your prompts, responses & keys
Never leave your environment.
4
Best for
Platform/security teams that want to own the full stack and upgrade cadence.
Multi-cloud or specific-region deployments with strict change control.
Organizations that require customer-managed compliance evidence.
5
At a glance
Data egress: None · Call-home: not required.
You manage: everything (infra, upgrades, keys, evidence).
Deploy: one Helm chart + Terraform, multi-cloud.