02 / Controlled technical data

Controlled data doesn't leave your building.

TatteredNote is self-hosted end to end. There's no vendor cloud in the data path, no SaaS backend syncing your incident narratives anywhere — the platform runs entirely on infrastructure you own and control.

NOTE

This describes an architecture posture, not a compliance certification. TatteredNote is designed around self-hosted deployment, field-level classification, and audit logging because those are the right defaults for ITAR/CMMC-adjacent environments — but neither we nor this page can certify your deployment as compliant. That determination is yours to make with qualified export-control counsel, applied to your specific data and configuration.

Architecture

What's actually built in

DEPLOYMENT

Fully self-hosted

Runs on your own infrastructure. No cloud dependency, no vendor-hosted backend in the data path.

CLASSIFICATION

Field-level flagging

Individual records — and fields within a record — can be flagged as controlled technical data, not just walled off at the whole-document level.

ACCESS

Role-based, with clearance attributes

User roles carry citizenship and clearance attributes, so access to controlled fields is enforced by who someone is, not just what group they're in.

AUDIT

Full audit logging

Every view and edit of a record is logged — who, what, when. Nothing is a black box after the fact.

INTEGRITY

Append-only by design

Records are enforced append-only at both the application and database layers. Nothing is silently edited or deleted, including votes and outcomes.

OFFLINE

Controlled data never leaves the server

Offline writes on floor devices are append-only and unclassified by default. Records flagged as controlled are never cached to a device — only queried live.

Multi-site

Hub-and-spoke for multi-facility operations

Manufacturers running more than one site can deploy a hub-and-spoke configuration: each facility runs its own local instance, with controlled replication back to a central hub rather than a single shared database every site writes into directly.

PER-SITE

Each facility keeps its own instance

A site's data lives on that site's hardware first. Replication is deliberate, not a default open pipe between locations.

GOVERNANCE

Tag and record governance across sites

Shared tag vocabulary and solution ranking can propagate across the hub without forcing every site onto identical local configuration.

Evaluating this seriously

What we'd want from a real evaluation

TatteredNote is pre-launch. If your team is evaluating it for a controlled-data environment, we'd rather walk through the actual architecture and your specific data-handling requirements directly than have you infer answers from a marketing page.

Start an evaluation conversation

Tell us about your environment and what you'd need to see before this could run in it.

Get in touch