Skip to main content

Architecture Overview

Control Zero Self-Managed deploys the complete AI governance stack within your network boundary. No outbound internet access required for core functionality.

High-Level Architecture

Components

ComponentPortPurpose
Frontend3000Dashboard, policy management, analytics
Backend8080API server, policy engine, audit logging
Gateway8000LLM API proxy, PII detection, tool interception
Transactional Database5432Configuration, policies, organizations
Caching Layer6379Caching, rate limiting, session storage
Analytical Store8123Audit logs, analytics, time-series data
Scout AgentN/AEndpoint AI discovery (optional)

Prerequisites

  • Docker 24.0+ and Docker Compose 2.20+
  • 4 GB RAM minimum (8 GB recommended)
  • 2 CPU cores minimum (4 recommended)
  • 10 GB disk space minimum (50 GB recommended for audit logs)
  • License key (contact sales@controlzero.ai)
  • No outbound internet required after initial image pull

Deployment Options

  1. Docker Compose (recommended for evaluation and small deployments)
  2. Kubernetes Helm chart (coming soon)

Air-gap tarball and hybrid deployment modes are planned for future releases.

What Gets Deployed

The self-managed package includes everything needed to run:

  • AI app governance (gateway proxy, policy engine, SDK backend)
  • Shadow AI discovery (Scout agent backend, fleet management)
  • Dashboard (policy management, audit logs, analytics)
  • All supporting data services (database, cache, log storage)

No data leaves your network. All processing happens locally.