Deployment & security

SaaS, your cloud, on-premises

Three deployment models, cloud-agnostic, zero-downtime upgrades.

Deployment models

Deployment on your terms.

Deployment models compared
AspectSaaSYour cloudOn-premises
HostingLedger RocketYour AWS, Azure, or GCP, installed via TerraformYour data centres
OwnershipManaged for youYou own the deploymentYou own and operate
Ledger Rocket accessRoles you grantRead-only, plus break-glass for supportAs contracted
UpgradesContinuous, zero downtimeZero downtime, scheduled with youOn your cadence

Security architecture

The ledger is the audit trail.

Immutable by construction

Append-only records, cryptographic integrity verification, tamper-evident history.

Durable by design

Multi-region synchronous replication with defined recovery time and data-loss guarantees.

Controlled by roles

Role-based access control; maker-checker on all configuration, with full changes retained.

Observed continuously

Monitoring, transaction tracing, and automated anomaly detection.

Questions

Does Ledger Rocket run on-premises?

Yes. Ledger Rocket runs in your data centres, which you own and operate, with upgrades on your cadence.

Who can access our deployment?

On SaaS, Ledger Rocket has the roles you grant. In your cloud, Ledger Rocket access is read-only, plus break-glass for support, and on-premises it is as contracted.

Does Ledger Rocket have a SOC 2 Type II report?

Yes. The SOC 2 Type II report and the ISO 27001 certificate are published on the trust centre.

Is there maker-checker on configuration changes?

Yes. There is a recorded checker decision on every match and configuration change, with full changes retained, alongside role-based access control.

Can Ledger Rocket run in our own AWS, Azure or GCP?

Yes. It installs in your AWS, Azure or GCP via Terraform, you own the deployment, and upgrades are zero downtime, scheduled with you.