Framework Support
The platform inherits the organization’s existing certifications. Because all components deploy on-premise, the compliance posture of the underlying infrastructure extends to Superatom.
Data Residency
Deploy in any preferred region. Data never leaves the jurisdiction. Regional compliance requirements are met through the on-premise deployment model.Single-region deployment
Single-region deployment
All platform components and data remain within a single geographic region. No cross-region replication occurs unless explicitly configured by the customer’s infrastructure team.
Multi-region deployment
Multi-region deployment
For organizations operating across jurisdictions, each region can host an independent Superatom deployment. Data stays within each region’s boundary.
Air-gapped environments
Air-gapped environments
Self-hosted LLM deployment eliminates all external traffic. Zero data leaves the network perimeter, meeting the strictest residency requirements.
Tenant Isolation
For organizations deploying across multiple business units or departments, isolation is enforced at every layer:Audit Trail for Compliance
The immutable audit trail supports compliance requirements across all frameworks:What is logged
- User identity (from SSO), role, IP address
- Natural language question (verbatim)
- Decomposed query plan and target agents
- Exact SQL queries and API calls executed
- Table names, column names, row counts, filter conditions
- Write-back actions, approval decisions, escalations
- Timestamp for every step
Audit trail properties
- Immutable - records cannot be modified or deleted
- Stored on customer infrastructure - S3-compatible storage, local filesystem, or database
- Queryable - the audit trail is itself a data source within Superatom
- Exportable - standard formats for SIEM, compliance, and governance tool integration
- Configurable retention - set retention periods per organizational policy