Some sites can't put batch data in someone else's cloud — sovereignty, defense work, contractual constraints, or sites where the WAN drops every Tuesday. V5 On-Prem is the same platform, deployed on your hardware (or your private cloud), with the same UX, the same validation package, and zero feature gap from the SaaS edition.
Sovereignty, classified work, contractual data-residency clauses, or unreliable connectivity mean cloud is a non-starter for many plants — and the vendor's answer is 'we'll get there in v.next.'
Defense, certain CMO contracts, and some government health agencies require an air-gapped deployment that never touches the public internet. Most cloud-first SaaS vendors can't ship it.
The on-prem product is the abandoned codebase. Cloud users get the features; on-prem users get the maintenance patches.
Without a vendor IQ/OQ/PQ package mapped to your URS, validation is 6–12 months of internal effort before the first batch runs.
V5 On-Prem is the same codebase as V5 Cloud — same UI, same APIs, same release cadence. Your on-prem site gets every feature the cloud site does, in lockstep.
V5 runs fully disconnected: offline license activation, in-perimeter updates via signed packages, optional one-way data diode for export-only telemetry.
Sized reference architectures for 50 / 500 / 5,000 users, Kubernetes or VM, Postgres HA. The vendor IQ/OQ/PQ + traceability matrix shortens internal validation to gap testing.
SAML 2.0 SSO, LDAP / AD bind, SCIM provisioning, certificate auth, optional FIDO2 hardware keys for Part 11 e-signature.
Encrypted PITR backups, hot/warm DR, and signed export bundles for FDA/EMA inspection — independent of the live system.
On-prem QMS/MES must be operable by your IT team, not require a phone call to the vendor for every log rotation. Criteria below tell the two apart.
What it tests: Does the system run with no outbound internet at all?
Why it matters: Defense, sovereign and regulated networks require it.
V5: Air-gap operable, including licensing and update flow.
What it tests: Does the release ship with IQ/OQ/PQ that your CSV team can execute?
Why it matters: Otherwise every install is a services engagement.
V5: Validation pack ships with every release; IQ/OQ automated; PQ template for your site.
What it tests: Are updates version-pinned with a documented delta?
Why it matters: Regulated sites cannot auto-update.
V5: Customer-instigated updates with signed delta and previous versions maintained in Git.
What it tests: Are backup/restore, HA and DR procedures documented and tested?
Why it matters: You own the runbook.
V5: Documented and tested runbook per release.
What it tests: Do you get a real sizing guide against real workload signals?
Why it matters: Vendors that hand-wave here cost you outages.
V5: Sizing guide with reference architecture — see /resources/on-prem-specification.
On-prem V5 vs cloud-only vs legacy on-prem.
| Capability | Spreadsheet | Legacy QMS | V5 Ultimate |
|---|---|---|---|
| Air-gap | N/A | Sometimes | Yes |
| Validation pack | N/A | Consultant | Included per release |
| Customer-instigated updates | N/A | Vendor-driven | Native, no push |
| Runbook | N/A | Ad-hoc | Documented and tested |
On-prem is a data-sovereignty and validation story more than a features story.
A risk-based approach to validation of computerised systems throughout the lifecycle.
V5: Category 4 configuration path; on-prem tenant PQ delta only.
The regulated user should take all reasonable steps to ensure that the system has been developed in accordance with an appropriate quality management system.
V5: V5 SDLC documented and shared under MSA; source-of-truth in Git.
Use of appropriate controls over systems documentation...
V5: Signed doc set per release with prior versions retained.
On-prem lifecycle.
Hardware and network sized to workload.
Automated where safe; witnessed where required.
System-assist for private-cloud and on-prem tenants.
Backup/DR/HA per documented runbook.
Delta reviewed; validation pack executed; previous versions retained.
On-prem ROI is sovereignty and control, not headline TCO.
On-prem full-stack.
No forced updates.
Automated IQ/OQ.
For sovereign customers, sovereignty is the ROI.
Setting
A defense-adjacent contract manufacturer.
Before
Prior QMS required outbound internet; failed a customer security review.
After
V5 air-gapped; passed security review; customer-instigated update process aligned to change board.
No — it's the same codebase deployed differently. Same UI, same APIs, same release cadence. On-Prem sites get every feature cloud sites do, in lockstep.
Yes. Offline license activation, signed in-perimeter update packages, no outbound network requirement. Optional one-way data diode for export-only telemetry.
Vendor IQ/OQ/PQ, traceability to a sample URS, risk assessment, GAMP 5 category mapping, and a signed validation summary. Customer-side validation focuses on gap testing, not a from-scratch project.
Sized reference designs from single-VM (under 50 users) to multi-region HA on Kubernetes with Postgres HA + PITR. We publish hardware specs in the on-prem specification PDF.
Free trial, no card. Live in 7 days with guided onboarding.