Skip to content
Infrastructure

One package, four deployment modes

From a developer's laptop to multi-AZ enterprise. USB bundle for offline environments included. Profile upgrades require no data migration.

Deployment

Install it where you need it. Same package, same logic.

Four deployment modes, four capacity profiles. Architecture stays the same; only capacity changes. Air-gapped customers get a single USB bundle: images, configuration and offline license included.

4 deployment modes

On-Prem K8S

Single-node POC

Kubernetes

Air-Gapped

USB bundle

Offline install

AWS Single-Node

EC2 + k3s

TR Local Zone ready

AWS EKS

EKS + ECS

Multi-AZ HA · TR Local Zone

4 capacity profiles

Smallk3s single-node
16 GB · 1 user · 1 node

POC, dev, small team

Mediumk3s/EKS HA
192 GB · 100 users · 3-node HA

Departmental platform

LargeEKS / on-prem
320 GB · 500 users · 5+ nodes

Enterprise core

EnterpriseMulti-AZ DR
896 GB · unlimited · 7+ multi-AZ

Bank, telco, public sector

Profile upgrades involve no data migration: a single command adds nodes, brings up storage and updates configuration. No downtime for users.

Authority model

Four-tier authority: no single super-user

Each tier sees and audits only its own scope. If the root account is lost, the runbook offers a three-step recovery path; there is no dead end.

1. Root

Single account, invariant

Always-on MFA, IP allow-list and sudo TTL enforced. Recovery in three layers: codes, CLI, manual DB. Hardcoded role exclusion from Remember Me.

2. Platform Admin

Operator across tenants

Tenant lifecycle, profile upgrades, GPU quotas, audit access. Sees every tenant's perimeter; cannot cross into one.

3. Tenant Admin

Customer-side admin

Manages workspaces, users and licenses. Database-per-tenant isolation enforced; no path into other tenants' data.

4. Workspace Admin

Team admin

Projects, RBAC assignment and environment promotions for a single team. Sees only that team's audit trail.

Sovereignty & compliance

Your data stays on-prem, in your air-gapped facility or inside your own AWS account. Howlet never ships telemetry off your perimeter.

GDPR Art. 15/17/20
KVKK Art. 7
ISO 27560 Consent
SHA-256 hash audit
TCKN / VKN default
SAML / OIDC / LDAP
AWS TR Local Zone
Air-gap parity
SIEM CEF fan-out
Ready when you are

From model to product in 30 minutes, with a demo tailored to your scenario.

Training to serving, RAG to streaming, RBAC to disaster recovery. Not vendor lock-in. Installed on your own infrastructure.

On-prem · air-gapped · AWS. Your data stays with you, the proof stays in the chain.