Data Sovereignty Qualification Matrix

Not every deployment mode fits every industry. Use this matrix to qualify deals and select region, payload, and witness settings — without giving up tamper-evident evidence.

Named tenant profiles

Sigigo ships configuration presets so sales and engineering start from a known posture instead of negotiating each control from scratch. Profiles map to AWS or Microsoft Azure regions.

ProfileTypical buyerPublic anchorPayload residency
P0 — DeveloperStartup, dev/testDisabledSigigo-managed
P1 — Standard SaaSTech company, low regulationOpt-inSigigo-managed
P2 — Regulated USFintech, SOXDisabled or RFC 3161 TSASigigo-managed, US region
P3 — Healthcare USHIPAA covered entityDisabledSigigo-managed, US + BAA
P4 — EU EnterpriseGDPR, DORA, EU AI ActDisabled or private witnessSigigo-managed, EU only
P5 — US FederalFedRAMP, CJISDisabled or private witnessGovCloud / approved region
P6 — Maximum sovereigntyBank, gov, hypersensitive AIDisabled + customer mirrorCustomer-managed

Scenario qualification matrix

Pick the closest scenario, then apply the recommended profile. Most regulated buyers run with blockchainMode: disabled — cryptographic evidence without public ledger publication.

ScenarioProfileRegionAnchorKey controls
EU SaaS with personal dataP4EU only (AWS or Azure)DisabledDPA, erasure policy, reference-only payloads where possible
US healthcare / PHIP3USDisabledBAA, no public chain, Private Commitment Mode for sensitive fields
US fintech / SOXP2USDisabled or TSAWORM retention, export bundles for controls testing
US federal / CJISP5GovCloudDisabledNo public chain, customer mirror optional
AI governance (mixed PII)P4 or P6Customer choiceDisabledPrompt references not raw prompts; customer-managed payload option
PCI CDE-adjacentP2Segmented US/EUDisabledNo PAN in schema; network segmentation

Configuration dimensions

  • dataRegion — Pin processing and storage (e.g. EU West, US East, GovCloud).
  • payloadResidency — Sigigo-managed vs customer-managed storage for canonical payloads.
  • piiPolicy — Reference-only, hash-allowed, or prohibited in canonical form.
  • anchorPolicy — Disabled, RFC 3161 TSA, private witness, or opt-in public chain.
  • keyManagement — Sigigo KMS or customer BYOK per region.
  • Private Commitment Mode — Salted commitments; sensitive data stays in your vault.

What stays true in every profile

Sovereignty-safe settings change the witness tier (public chain), not the evidence tier. Hashing, signing, Merkle batching, and offline-verifiable export bundles remain the core product — a major step up from mutable application logs and vendor-only audit UIs.

Need help qualifying a deal? Contact us for a sovereignty workshop, explore integrations, or review Privacy Policy and Sub-processors for processor scope.

This guide supports qualification and architecture planning — it is not legal advice. Work with your legal and compliance teams on classification, DPAs, and deployment approvals. See also our Regulatory & Compliance page.