Run Baz in your own environment

Bring agentic code review and coding agents to your team without your source code ever leaving your infrastructure. Choose Private Mode to keep your codebase in your VPC, or self-host the entire Baz cluster.

baz://deploy · private
CODE HOSTSYOUR CLOUDONYOUR CLUSTERPLANSPULL REQUESTSCONTROL PLANEINGRESSCONNECTOR POD

A read-only connector pod runs in your cluster behind your ingress. The Baz control plane reviews plans and pull requests over a hardened REST channel, so code stays put.

What changes on an Enterprise plan

Three things: where your source code is allowed to live, who can act on it, and how much of the stack you operate yourself.

Secure and compliant

Baz is SOC 2 certified and runs in isolated AWS environments. In Private Mode, source code is accessed transiently for analysis and wiped the moment a review ends, never persisted on Baz servers.

Governed access and control

Agents inherit your repo permissions, branch protection, and policy rules, and never act outside the scope you grant. Enterprise adds SAML/OIDC SSO, centralized admin, and repository owners.

Deploy your way

Keep your codebase in your VPC with Private Mode, or self-host the entire Baz control plane and agent runtime in your own cloud. Full feature parity, with data residency locked to your infrastructure.

Your code, your infrastructure, your audit trail

Two ways to run Baz, both built on the same controls. See the Private Mode and security & compliance docs for the full picture.

Private Mode

Deploy one File System Service pod inside your VPC. Baz gets scoped, temporary read access per review and wipes the code the moment it finishes.

Read the Private Mode guide

Self-hosted cluster

Run the entire Baz control plane and agent runtime in your own cloud, for full control over isolation and data residency.

Talk to sales

Scoped, transient access

Baz reads only the repos you onboard, contents: read and nothing more. Code is held for analysis and wiped when the review ends, never persisted on Baz servers.

Authenticated, isolated connectivity

The FSS pod sits behind your ingress and talks to Baz over a hardened REST channel: IP allowlisting, TLS, and API-key auth. Only Baz's published IPs can reach it.

Least-privilege agents

Agents inherit your repo permissions, branch protection, and policy rules. They never act outside the scope you grant.

Selective write

Auto-fix, auto-approve, and auto-merge are gated by labels, allowlists, and protected branches, so automation acts only where you allow it.

Tamper-evident audit logs

Every FSS operation is logged inside your environment with cryptographically traceable records, so every automated action stays reviewable.

Reversible by default

Automated actions are reversible, with global kill switches. If the FSS goes offline, reviews pause and resume automatically.

Choosing Cloud, Private Mode, or Self-hosted

Every model runs the full Baz platform. The difference is where your code lives and how much of the stack you operate.

FeatureBaz CloudManaged SaaSPrivate ModeIn your VPCSelf-hostedYour cloud
Where your code livesAccessed transiently on Baz infrastructure, never persisted at restStays in your VPC; an FSS pod grants scoped, temporary read accessEverything runs in your own cloud
Data residencyBaz-managed AWS environmentRegion-locked to your infrastructureFull control over region and isolation
DeploymentManaged by Baz, start in minutesOne FSS pod via Helm on your AWS EKS, set up with Baz supportFull control plane and agent runtime, deployed with our team
ConnectivityManaged by BazHardened REST: IP allowlist, TLS, and API-key authRuns inside your network
Security and complianceSOC 2 certified, isolated AWS environmentsSOC 2 controls plus your network isolation and policiesAdheres to your organizational policies
Audit loggingStandard platform logsEvery FSS operation logged inside your environmentLogged inside your environment
SAML / OIDC SSOEnterpriseEnterpriseEnterprise
Feature parityFullFullFull
Best forThe fastest way to get startedStrict data residency requirementsMaximum isolation and control
Get startedStart now Read the guide Talk to sales

For your security review

Our infrastructure is code, version-controlled, and deployed through authenticated CI/CD, so every change to it leaves an auditable trail. The SOC 2 report, subprocessor list, and security questionnaires live in the Trust Center.