
More than compliance. A strategic advantage.
Self-hosting isn't only about keeping data in. It's what it lets agents reach: the internal tools, registries, and systems where your real work happens.
Reach internal tools & services
Agents work against the internal systems that only exist inside your network — not a sealed-off sandbox.
Private package registries
Build against your internal npm, PyPI, Maven, or Artifactory registries. No mirroring or workarounds.
Your build infrastructure
Run on your own CI, runners, and build systems so agent output matches how your code is really built.
Private APIs & databases
Agents can call internal APIs and query private databases to do real work — securely, inside your infrastructure.
Internal docs & knowledge
Ground agents in your wikis, runbooks, and knowledge systems so they work from your context, not guesses.
Full data control & residency
Code, keys, and data never leave your infrastructure — meeting residency and sovereignty requirements by construction.
Where agents run, and what stays inside.

Isolated runtime
Every agent runs in its own hardware-isolated VM, inside your own AWS, GCP, or Azure account — no shared state, no ambient access.

Your repositories
Repos are cloned into the environment in place, with the right branch and dependencies. Your source never leaves your network and is never stored on Tembo's infrastructure.

Secrets & credentials
Injected per session and scoped to the run. Never written to disk, never logged, never sent to Tembo.

Private networking
Network policies you control: reach internal services and databases directly, or cut outbound access off entirely. Full air-gap support.

Test & build in place
Your test suite, build pipeline, and linters run inside your infrastructure — real verification, nothing sent out.

Full toolchain
The same shell, CLIs, and utilities your developers use, running where your code already lives.
Same Tembo. Your infrastructure.
The difference between Managed and Self-Hosted isn't the product — it's who runs the infrastructure. You get the full platform either way.
Full feature parity
Every agent, model, integration, and automation available in our cloud is available self-hosted.
The same experience
The same UI, approvals, and workflows — your team can't tell where it runs, only you can.
Same releases as cloud
Self-hosted runs the exact same releases as Tembo Cloud — you're never stranded on a stale fork or a feature behind.
Runs like production infrastructure.
Self-hosted Tembo deploys into your cluster and runs like any other tier-1 service — your platform team operates it the way they run everything else.
Simple, guided installation. Boot a pre-built VM image on AWS, Azure, or GCP and walk through the installer UI. No complex infrastructure setup required.
You control when you update. New releases are delivered through the installer. You decide when to download and apply them — no forced updates, no surprise changes.
Observable and recoverable. Metrics and logs are yours to monitor. Backups and disaster recovery are owned by you, as part of running Tembo on your own infrastructure.

Which deployment model fits your requirements?
Two ways to run Tembo — fully managed cloud or fully self-hosted. Start where you are today and move deeper into your own infrastructure as your needs change.
Fully managed
Tembo hosts and manages everything. Fastest path to running agents. No infrastructure to maintain.
What it is
Tembo’s fully managed cloud platform. We handle infrastructure, scaling, updates, and uptime.
Who it’s for
Teams that want to start quickly without infrastructure overhead. Startups, mid-market, and teams with standard security requirements.
Data handling
Code is processed in isolated, ephemeral environments. No persistent storage of source code. SOC 2 compliant.
Compliance
SOC 2 Type II. Standard DPA available. Regular third-party audits.
Compare every capability, side by side.
The full breakdown across data control, compliance, setup, and support — so you can match a model to your requirements line by line.
Built for teams that take security seriously.
SOC 2 Type II, ISO 27001, ISO 42001, GDPR, and HIPAA — independently audited, with reports available under NDA. Deploy inside your own infrastructure and inherit the controls your environment already enforces.






Isolated by design
Every agent runs in its own hardware-isolated VM — no shared state, no ambient access, no cross-session bleed.
Inherit your controls
Deploy in your VPC or fully self-hosted and inherit the networking, identity, and compliance frameworks you already run.
Nothing leaves your infrastructure
Code, keys, and data stay inside your network — with full air-gap support for regulated and sovereign environments.
