Dedicated VPC deployment
The Modal scan worker and the agent runtime live inside your AWS, GCP, or Azure tenancy. Customer source code never crosses your perimeter. The LLM provider you pick is the LLM provider we route to, including Anthropic-only routing for regulated stacks.
Your own rule library
Codify your internal threat model into Semgrep rules that ride alongside our OWASP set. We host the curation and the upgrade path; you own the IP.
Quarterly red-team review
A Dissect engineer audits your Mythos chains and top Tier 2 findings every quarter, then ships a maturity-curve report mapped to your control framework.
SSO, SAML, SCIM
Okta, Azure AD, Google Workspace. Automatic provisioning and role-based access via your IdP. Viewer, member, admin enforced at the API.
SOC2 and ISO27001
Attestation reports, DPA template, audit-log export, and a signed model-routing addendum for buyers who need it.
Priority SLO
99.9% uptime contractual SLO, one-hour response on Sev-1, a named technical contact who can read a Trace Block.