SOVEX
CBDC Data Centers Sovereign AI Tokenization Deep Tech Architecture About Team Request access
Security & Post-Quantum / Isolation / Data residency

Data residency.

The ledger, the keys, and the model weights live inside the nation that owns them and are engineered so they cannot be replicated out. Residency is a property of the architecture, not a promise in a contract.

The jurisdiction is a hard perimeter, not a preference

Every component that constitutes sovereign state is placed inside national borders and denied a path to leave them.

01

In-nation by placement

Ledger nodes, key stores, and model training run on infrastructure physically located in the owning jurisdiction. Residency starts with where the machines are, before any policy is applied on top.

02

No default egress

The system is built without an outbound replication path to foreign regions. Data staying in-country is the absence of an export mechanism, not a rule that has to be continuously enforced against one.

03

Sovereign operational control

The owning state or institution controls the operators, credentials, and change process for its deployment. No external party can be compelled or required to move data to satisfy another jurisdiction's demand.

04

Perimeter is auditable

The set of locations that hold sovereign state is enumerable and reviewable during audit. Residency claims can be checked against where components actually run, not taken on assertion.

The most sensitive material is the material most bound to the ground

Signing keys and trained model weights are the crown jewels of a sovereign deployment, and they are the assets held most tightly in-nation.

01

Keys never exported

ML-DSA-65 signing keys are generated and used inside in-nation custody and are never transmitted abroad for any operation. Cross-border signing is not offered because it would require the key to travel.

02

Weights trained in-nation

Foundation and specialized models are trained on in-country infrastructure so the resulting weights originate inside the jurisdiction. The nation holds the weights, not a copy licensed from elsewhere.

03

Inference stays local

Serving a sovereign model runs against the in-nation weights rather than a hosted external endpoint. Prompts, context, and outputs never traverse a border to reach the model.

04

Owner-held custody

The owner, not the vendor, holds the custody boundary around keys and weights. Sovereignty over these assets does not depend on trusting an operator to refrain from copying them.

Data is prevented from leaving, not merely discouraged

Residency is protected by removing the pathways over which sovereign data could be replicated outward.

01

No cross-border replicas

Ledger and state replication targets are confined to in-jurisdiction infrastructure. High availability is achieved within national borders rather than by mirroring to a foreign region.

02

Backups stay in-country

Snapshots and archives are written to storage that resides in the same jurisdiction as the live system. A restore never requires pulling data back across a border.

03

Constrained integrations

External connections are limited to what an owner explicitly authorizes and are scoped so they cannot become a channel for bulk export. Interfaces exchange what is agreed, not the underlying state.

04

Egress is observable

Any outbound flow that does exist is defined, logged, and reviewable rather than implicit. If data can leave at all, it leaves through a path an owner chose and can watch.

Residency is grounded in physical facilities the owner controls

The data centers that host sovereign workloads are part of the residency guarantee, not a neutral commodity underneath it.

01

Sited in jurisdiction

Hyperscale and AI/GPU capacity is delivered on facilities built inside the owning nation. The compute that trains models and settles the ledger is subject to national law by virtue of where it stands.

02

EPC to owner control

Facilities can be delivered engineer-procure-construct so the owner holds the resulting infrastructure rather than renting foreign capacity. Ownership of the ground reinforces residency of the data.

03

Isolatable operation

Deployments can run without dependence on external control planes, so residency does not quietly rely on a service reachable only from abroad. The system can operate as a self-contained national installation.

04

In-nation supervision

Operations, monitoring, and incident response are performed by in-country teams under the owner's authority. The people with hands on the system are inside the jurisdiction that governs it.

Build it sovereign.

Talk to us about data residency in a sovereign deployment.