Feature × Audience

How do startups enforce data residency on Plugsky?

For startups, residency is a deal-readiness capability: configuration-first, adopted when a contract requires it, evidenced before you promise it. Plugsky's region-locked planes — EU (Frankfurt), GCC (UAE), APAC (Singapore) and US (Virginia) — keep requests, logs, embeddings and artefacts in the jurisdiction you select, with VPC, on-prem and air-gapped tiers for in-country processing.

Key facts

Data planesEU (Frankfurt), GCC (UAE), APAC (Singapore) and US (Virginia) region-locked planes
Processing boundaryRequests, logs, embeddings and stored artefacts stay in the selected plane
Deployment tiersIn-region cloud, private endpoint in your VPC, on-prem and air-gapped
FailoverMulti-region failover designed to respect the jurisdiction you select
ContractsDPA with GDPR Article 28 terms, SCCs and PDPL alignment; subprocessor list published
Latency noteA strict boundary can add round-trip time — measure p50 and p95 before cut-over
When requiredAdopt a region-locked plane when a contract demands it
Start costFree plan with plugsky-micro and plugsky-lite, no card required

TL;DR

  • Region-locked planes keep requests, logs and artefacts in the jurisdiction you select.
  • VPC, on-prem and air-gapped tiers cover in-country processing requirements.
  • Keep plane selection in configuration so you can adopt residency on deal demand.
  • Only promise regions you can operate and evidence.
  • Start free with plugsky-micro and plugsky-lite; a 14-day full-access trial covers larger models.

How it works, step by step

  1. Classify the workload's data and pick the plane or deployment tier it requires.
  2. Pin the workspace to that boundary and confirm prompts, embeddings, logs and backups follow it.
  3. Collect the DPA, subprocessor list and region-scoped audit exports for review.
  4. Store region and workspace settings in environment configuration from the start.
  5. Pin the pilot to the customer's required plane and test from their network.
  6. Collect the DPA and subprocessor list before the first production request.
1Classify theworkload's data andpick the plane or2Pin the workspaceto that boundaryand confirm3Collect the DPA,subprocessor listand region-scoped4Store region andworkspace settingsin environment5Pin the pilot tothe customer'srequired plane and6Collect the DPA andsubprocessor listbefore the first

Try it yourself

Open the data residency checker →

Data residency for startups: what changes

Startups usually begin with a single global plane and meet residency when a customer makes it a condition of the deal. Region selection is configuration on an OpenAI-compatible API, so it can be adopted when the requirement is real rather than pre-built for every jurisdiction.

A region-locked data plane keeps processing and storage in the jurisdiction you select instead of routing globally by default. Plugsky exposes EU (Frankfurt), GCC (UAE), APAC (Singapore) and US (Virginia) planes; requests, logs, embeddings and stored artefacts stay in the chosen plane. Where in-country processing is mandatory, the same OpenAI-compatible API runs in your VPC, on-prem or air-gapped, putting the boundary under your control.

Architecture and controls

Keep environment configuration ready for a plane switch, and document which stores — prompts, embeddings, logs — must follow the tenant. Until a requirement arrives, use the free plan with plugsky-micro and plugsky-lite and no card to build without procurement.

Integration pattern and rollout

When the deal lands, pin the pilot workspace to the required plane, test latency from the customer's network, and collect the DPA and subprocessor list for their review. Confirm failover behaviour before the first production request.

Residency is architecture plus evidence: map every store — prompts, embeddings, logs, backups — to a plane, confirm that failover respects the jurisdiction, and review the DPA, subprocessor list and region-scoped audit exports. Latency and residency trade off, because a strict boundary can mean longer round trips than a globally distributed endpoint.

Limits, evidence and cost

Do not market residency you cannot evidence. Start with one region you can genuinely operate, learn the process, then expand; a promise you cannot document is worse than an honest roadmap.

Self-serve pricing is flat monthly with unlimited fair-use usage, so pinning a workload to a plane does not change the billing model — see the live pricing page. Start on the free plan with plugsky-micro and plugsky-lite and no card, and use the 14-day full-access trial to evaluate larger models.

Honest comparison

ConcernPlugsky residencyTypical global APISelf-hosted
Plane choiceEU, GCC, APAC and US region-locked planesFew regions, global default routingWherever you install it
Store coveragePrompts, embeddings, logs and artefacts follow the planeVaries by serviceYou own every store
FailoverDesigned to respect the selected jurisdictionOften globalYour DR design
EvidenceRegion-scoped logs, DPA and subprocessor listContract-level commitmentsYou produce all evidence
Operational loadManaged planes with configurable residencyManaged, limited controlHardware, patching and capacity
Deal readinessAdopt a plane when a contract requires itUsually global onlyOver-engineering early

Frequently asked questions

How do we verify data residency?

Check the plane configuration, confirm that prompts, embeddings, logs and backups follow the boundary, review the DPA and subprocessor list, and test failover behaviour.

Which regions are available?

Plugsky exposes EU (Frankfurt), GCC (UAE), APAC (Singapore) and US (Virginia) region-locked planes, plus VPC, on-prem and air-gapped deployment options. See the docs for current detail.

Does residency add latency?

It can. A strict boundary may mean longer round trips than a globally distributed endpoint, so measure p50 and p95 from your own production network before committing.

When should we add a region-locked plane?

When a customer makes it a contractual condition. Until then, keep plane selection in configuration and avoid pre-building regions you cannot operate.

How fast can we switch?

Region selection is configuration on an OpenAI-compatible API, so the code change is minimal. The work is testing, evidence and support readiness.

What should we promise customers?

Only what you can evidence: the plane, the data categories it covers and the audit trail. Keep the roadmap honest.