One governed foundation under everything
The governed foundation under every product — tenancy, single sign-on, permissions, subscriptions, module activation, industry templates, and governance. Included with any product.
Identity & SSO
One sign-on and session model across every product. Provision a user once; they access everything they’re entitled to.
Tenancy & onboarding
Spin up tenants and organizations with the right modules from an industry template — in minutes, not weeks.
Roles & permissions
A governed RBAC model with an editable role→permission matrix. The apps consume it; they never re-implement it.
Subscriptions & modules
Entitlements the execution planes read. Turn modules on or off per tenant without touching code.
Governance
A full audit trail, DSAR export/erase, and time-boxed support sessions — built in, not bolted on.
Cross-tenant control
Operate as a tenant for support, with every action scoped, logged, and reversible.
The same governed platform, wherever it runs
Identity, entitlements, audit, and data-subject rights behave identically across every deployment model — your compliance posture doesn’t change with your infrastructure.
Managed Cloud
DefaultFully managed, zero-ops — live in days.
- Hosted on AWS Mumbai (ap-south-1) — your data stays in India
- Strict tenant isolation, encryption at rest and in transit
- Continuous zero-downtime upgrades, managed by us
Dedicated Instance
Single-tenant isolation for regulated operations.
- Your own isolated stack — compute, database, and keys
- Region of your choice, including in-country residency
- Enterprise plan — provisioned and operated by our team
On-premises / Private cloud
Run ZAFROI inside your own perimeter.
- Deploys into your VPC or data centre with our team
- Your network, your keys, your compliance boundary
- Enterprise engagement — scoped jointly with your IT
The platform is included with every product
You never pay separately for identity or governance — they’re the foundation, not an add-on.