GEODI Deployment and Integrations | On-premises, cloud or hosted

Where it runs, and what it reaches.

Where you put the server sets your jurisdiction. How many systems it reaches sets whether the answer is complete. Both get settled before a scan starts.

GEODI source selection with folder, web, e-mail, database and cloud options, and the cloud list open showing Dropbox, Google Drive, One Drive, Confluence, FTP, Jira, Microsoft Teams, S3, SharePoint, SSH and WebDAV
Adding a source, project wizard

Three deployment models

 Your own serversCloud region you controlHosted service
Index locationYour infrastructureYour tenancy, region of your choosingOperated for you
Who runs the serverYour teamYour teamThe vendor
Jurisdiction controlCompleteCompleteConfirmed by contract
Outbound connectionNot required for discoveryWithin your cloud accountStandard hosted access
Typical fitGovernment, healthcare, defence workEnterprises already standardized on a cloudTeams that want capability without operating a server

Jurisdiction is a deployment choice

GEODI runs inside Canada, the United States or Mexico depending on where you put the server. Data residency stops being a vendor promise and becomes a fact about your own topology.

Two processing paths deserve naming, since they are the only ones a privacy reviewer needs to interrogate.

Optical character recognition
Runs on the GEODI server. Scanned pages are read locally and no page image is transmitted anywhere.
AI question answering
Uses retrieval augmented generation. The prompt and retrieved context reach the model, source documents do not. Where policy forbids any external inference call, the model can be self hosted so nothing leaves.
Index and classification
Local to the server in every deployment model.
Remediation
Executed at the source, under credentials you supply and can revoke.

Source coverage

More than 200 adapters in total. Content is processed identically whatever container it arrives in, so a spreadsheet on a share, the same file attached to an email, and a record inside a database are treated the same way.

Files and storage

  • Folder and network share
  • FTP
  • SSH
  • WebDAV
  • Amazon S3

Cloud drives

  • Dropbox
  • Google Drive
  • One Drive

Collaboration

  • SharePoint
  • Microsoft Teams
  • Confluence
  • Jira

Mail

  • Exchange and mail platforms
  • Attachments read as content

Structured data

  • Relational databases
  • Sampling by record count

Other sources

  • Web content
  • Feed sources
  • Endpoints through the agent
OperationAccess needed
Discovery and indexingRead only
ClassificationRead only
Masking for displayRead only
RemediationEnabled per source, separate credentials

A scan holds no write access

Indexing runs read only. Remediation is a separate switch, turned on per source with credentials you scope and revoke independently. A misconfigured scan has no rights to change a file.

Every action that does change something writes a record naming the account, the target and the time.

Tell us which systems hold the data, and coverage gets confirmed before anyone books a meeting.

Confirm coverage