Deployment options
Run it our way, or entirely your own.
Sentrasec is the same product either way. What changes is who operates it and where your data lives, never what you get out of it.
Two ways to run Sentrasec
Both include all four surfaces: Sentrasec UI, API, CLI and MCP, connected to Sentrasec Core.
Sentrasec Cloud
Onboard and start today.
Sign up, connect what you want to secure, and start getting findings. Nothing to install and nothing to operate. Updates arrive automatically, so you are always working with current security intelligence.
- Running in minutes
- No infrastructure to manage
- Always current intelligence
- All four surfaces included
Typical fit: Teams who want the platform without the operational overhead.
Self-hosted
Entirely in your ecosystem.
Run Sentrasec UI, API, CLI, MCP and Sentrasec Core inside your own environment. Your code, your findings and your evidence stay within your boundary, under your retention and residency rules.
- Everything inside your boundary
- Your data residency and retention
- Connected or fully disconnected
- All four surfaces included
Typical fit: Organisations with data residency, sovereignty or air-gap requirements.
Running without a connection
Self-hosted deployments can run entirely disconnected, for environments where nothing is allowed to leave.
Nothing leaves
No network connection at all. Security intelligence arrives as a signed update that you transfer on your own schedule, using whatever process you already trust.
Same capabilities
Scanning, explanations, risk reporting and compliance evidence all work offline. The only difference is how recent the security intelligence is.
Built for regulated work
Government, defence and critical infrastructure teams run Sentrasec this way. It is a supported configuration, not a workaround.
Common questions
Do I get less if I self-host?
No. All four surfaces and the full platform are available in both options. Self hosting changes who operates it, not what it does.
Can we start on the cloud and move later?
Yes. Many teams start on Sentrasec Cloud to get value quickly and move to self-hosted when policy requires it.
Does our source code leave our environment?
Not in a self-hosted deployment. Your code, findings and evidence stay inside your boundary.
What is involved in setting it up?
Sentrasec Cloud takes minutes. Self-hosted deployments are planned with us as part of onboarding, sized to your environment.
Not sure which fits?
Tell us about your environment and constraints, and we will tell you which option makes sense.