You keep your stack.
You keep control.

Spotonix is deployed in the customer VPC. Security review then makes four boundaries explicit: where components and artifacts live inside that environment, what the model endpoint receives, which identity executes SQL, and what evidence is retained.

Four boundaries.
Four separate answers.

Collapsing these into “in your environment” or “uses your permissions” hides the decisions a security team actually needs to make.

01

Customer-VPC application and storage

Spotonix is deployed in the customer VPC. Document the customer account, region, and where workspace context, logs, caches, result artifacts, backups, and support tooling operate and persist.

02

Model endpoint

Record the provider, model, endpoint, key owner, region, provider terms, retention settings, and context included in each request.

03

Warehouse identity

Identify the credential that executes SQL, then test its grants, denied paths, row restrictions, and column restrictions in the chosen environment.

04

Visible and retained evidence

Separate what is visible in the live answer experience from what is persisted, exportable, linked across systems, or retained for later review.

Trace one question
across every system boundary.

For each checkpoint, record the component, operator, region, credential, input, output, log, storage location, retention policy, and deletion path.

01

Business question

A user submits a question through the supported product or model path.

02

Interpretation request

The configured model path helps resolve the question against available company context.

03

Visible plan

The interpretation and intended analysis become inspectable before execution.

04

Query generation

Query logic is generated and material bindings are checked.

05

Warehouse execution

The configured database connection runs the query and returns the result artifacts.

Every security answer needs
an enforcement point and a test.

The result of the review should be a deployment-specific data-flow record and control matrix—not an inference from product architecture.

Review questionEvidenceDecision owner
Where does each component run in the customer VPC?Customer-VPC deployment diagram with account, operator, region, network route, and support pathApplication and security teams
What crosses the model boundary?Representative request payload, provider endpoint, terms, and retention configurationAI platform and security teams
Which identity executes SQL?Credential mode plus permitted and denied warehouse testsData platform and security teams
What persists and for how long?Artifact inventory, storage location, retention schedule, backup, and deletion testApplication and data owners
What can another user inspect?Cross-role access test for questions, plans, logic, sources, and stored resultsIdentity, application, and data owners

A valid answer for one topology
is not a universal product claim.

These statements may become true for a specific deployment. The security review must earn them with the actual configuration and evidence.

“Nothing leaves the environment.”

That requires a complete data-flow inventory covering model requests, results, telemetry, logs, caches, support access, and backups for the chosen topology.

“Queries run as each user.”

That requires delegated warehouse identity and representative access-policy tests. A service credential is a different execution model.

“The provider does not train on our data.”

That depends on the selected provider contract, endpoint, account, and settings; it cannot be inferred from the Spotonix interface.

“Every action has a durable audit record.”

The live workflow exposes a plan and answer basis. Persistence, stable identity, actor linkage, export, tamper controls, and retention need separate evidence.

“The deployment is compliant.”

Compliance depends on the customer use case, topology, controls, contracts, and any relevant third-party attestations—not a marketing-page label.

State what is observable.
Scope everything else.

Capability labels below describe the public evidence boundary. They do not replace the deployment review.

Visible interpretation and plan

Live

The workflow exposes the interpretation and analytical plan. Durable plan identity, actor linkage, export, tamper controls, and retention are separate evaluation requirements.

Configurable model paths

Live

Anthropic, Google Gemini, and OpenAI backends are configurable. Provider, model, endpoint, credential ownership, region, and data-usage terms remain deployment decisions.

Customer-VPC hosting

Live

The application is deployed in the customer VPC. The customer account, region, runtime, storage, network routes, and support path are recorded for the selected topology.

Identity, retention, and deletion

Engagement

Authentication, database identity, storage locations, deletion, telemetry, support access, and backup handling are confirmed for the selected topology.

Third-party attestations

Roadmap

Spotonix does not currently hold a SOC 2 attestation. Ask for the present status and scope rather than assuming a certification from adjacent controls.