<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>KB-2361 Addressing Canadian Data Residency and Compliance for Appian Private AI with Cross-Region Inference</title><link>https://community.appian.com/support/w/kb/3732/kb-2361-addressing-canadian-data-residency-and-compliance-for-appian-private-ai-with-cross-region-inference</link><description /><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>KB-2361 Addressing Canadian Data Residency and Compliance for Appian Private AI with Cross-Region Inference</title><link>https://community.appian.com/support/w/kb/3732/kb-2361-addressing-canadian-data-residency-and-compliance-for-appian-private-ai-with-cross-region-inference</link><pubDate>Thu, 20 Nov 2025 20:21:45 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:36e169b8-8e6b-4fae-9dc3-7e5a0c3beb2b</guid><dc:creator>Kenneth Yu</dc:creator><comments>https://community.appian.com/support/w/kb/3732/kb-2361-addressing-canadian-data-residency-and-compliance-for-appian-private-ai-with-cross-region-inference#comments</comments><description>Current Revision posted to Appian Knowledge Base by Kenneth Yu on 11/20/2025 8:21:45 PM&lt;br /&gt;
&lt;h3&gt;&lt;b&gt;Executive Summary&lt;/b&gt;&lt;/h3&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;This document explains the strategy and compliance posture for Appian Private AI services operating within Canada. To provide our Canadian customers with access to the most advanced Generative AI models and ensure high availability, Appian leverages an underlying architecture that may include AWS&amp;rsquo;s Cross-Region Inference Service (CRIS).&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;This approach &lt;/span&gt;&lt;b&gt;remains fully compliant with &lt;/b&gt;&lt;a href="https://docs.google.com/document/d/1Ertbf-aQCPD5DImTFO5eiy69VY4UGzI1cP_EfWI6fCw/edit?tab=t.0#bookmark=id.b2jzch6se8d8"&gt;&lt;b&gt;Canadian data protection laws (CCCS and TBS)&lt;/b&gt;&lt;/a&gt;&lt;b&gt; and Appian&amp;#39;s own &lt;/b&gt;&lt;a href="https://trustcenter.appian.com/?view=adfcffa6-eb6b-495d-4d53-690439985a1a"&gt;&lt;b&gt;SOC 2 and ISO compliance&lt;/b&gt;&lt;/a&gt;&lt;b&gt; agreements.&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;The key principle is the critical distinction between &lt;/span&gt;&lt;a href="https://docs.appian.com/suite/help/25.3/security-compliance.html#:~:text=Data%20transit%20and%20retention%3A"&gt;&lt;b&gt;data at rest&lt;/b&gt;&lt;span style="font-weight:400;"&gt; and &lt;/span&gt;&lt;b&gt;data in transit&lt;/b&gt;&lt;/a&gt;&lt;span style="font-weight:400;"&gt;.&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Data at Rest:&lt;/b&gt;&lt;span style="font-weight:400;"&gt; All customer data within the Appian platform&amp;mdash;such as data in records, application artifacts, and business documents&amp;mdash;is persistently retained and encrypted at rest within the Appian Cloud Canada (Montreal: ca-central-1) region.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Data in Transit:&lt;/b&gt;&lt;span style="font-weight:400;"&gt; For specific Generative AI tasks, the data (the prompt and input data) is sent over a secure channel for inference only to a US region. Once the inference is completed, the response is sent back over a secure channel to the Canadian Region. No data is retained in the US region.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;This model is aligned with guidance from Canadian regulatory bodies, including the Canadian Centre for Cyber Security (CCCS), which has approved this transient processing model for workloads.&lt;/span&gt;&lt;/p&gt;
&lt;h3&gt;&lt;b&gt;The Need for Cross-Region Inference&lt;/b&gt;&lt;/h3&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;The demand for Generative AI is growing at an unprecedented rate, placing an enormous strain on the global supply of specialized GPU (Graphics Processing Unit) and Data Center capacity.&lt;/span&gt;&lt;/p&gt;
&lt;ol&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;High Demand for Advanced Models:&lt;/b&gt;&lt;span style="font-weight:400;"&gt; The most powerful Large Language Models (LLMs), such as the latest Claude models (Sonnet 4.5 / Haiku 4.5), require massive, cutting-edge GPU clusters to run.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Infrastructure Scaling:&lt;/b&gt;&lt;span style="font-weight:400;"&gt; This specialized hardware is not a simple commodity. Global demand far outpaces supply, and new capacity is brought online in centralized &amp;quot;hyperscale&amp;quot; data centers first, which are primarily in the US.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;The Challenge:&lt;/b&gt;&lt;span style="font-weight:400;"&gt; Waiting for this highly-constrained GPU capacity to be physically deployed in every sovereign region (like Canada) would mean Canadian customers would face significant delays&amp;mdash;months or even years&amp;mdash;in accessing the latest AI models, or they would face severe performance bottlenecks on older, over-provisioned in-country models.&lt;/span&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;Using a cross-region inference model allows AWS to route requests from the Canadian region to a US region with available capacity. This is not a data-hosting strategy; it is a &amp;lsquo;&lt;/span&gt;&lt;b&gt;compute and availability&amp;rsquo; strategy&lt;/b&gt;&lt;span style="font-weight:400;"&gt; to ensure Canadian customers are not at a competitive disadvantage.&lt;/span&gt;&lt;/p&gt;
&lt;h3&gt;&lt;b&gt;How Appian Private AI Manages Data and Compliance&lt;/b&gt;&lt;/h3&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;Appian Private AI is a foundational element of our platform, built on the principle of &amp;quot;private by design.&amp;quot; This privacy extends to how we handle all AI processing, which occurs within our robust, SOC 2-compliant security boundary.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;Here is the step-by-step data flow for a cross-region AI request using the Generative AI Skill:&lt;/span&gt;&lt;/p&gt;
&lt;ol&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Data at Rest (Canada):&lt;/b&gt;&lt;span style="font-weight:400;"&gt; A user in Appian (in the Canada region) triggers an AI skill. The data for the prompt and the input (e.g., text from a record) is read from Appian&amp;#39;s Canadian-hosted database.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Encryption in Transit (Appian):&lt;/b&gt;&lt;span style="font-weight:400;"&gt; The data is sent over a secure, private TLS channel to the AWS Bedrock API endpoint.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Cross-Region Routing (AWS):&lt;/b&gt;&lt;span style="font-weight:400;"&gt; The AWS CRIS service, acting as a smart router, directs this secure request to a US region (e.g., us-east-1, us-east-2, us-west-2) based on current capacity. This entire transit occurs over the private AWS global network backbone, not the public internet.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Data Inference (USA):&lt;/b&gt;&lt;span style="font-weight:400;"&gt; The US-based service receives the encrypted request.&lt;/span&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;ul&gt;
&lt;li style="font-weight:400;"&gt;&lt;span style="font-weight:400;"&gt;The data is decrypted and processed &lt;/span&gt;&lt;b&gt;entirely for inference&lt;/b&gt;&lt;span style="font-weight:400;"&gt;.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;CRITICAL:&lt;/b&gt;&lt;span style="font-weight:400;"&gt; At no point is the customer&amp;#39;s prompt or data &lt;/span&gt;&lt;i&gt;&lt;span style="font-weight:400;"&gt;ever&lt;/span&gt;&lt;/i&gt;&lt;span style="font-weight:400;"&gt; retained on disk in the US region. It is not logged, and it is &lt;/span&gt;&lt;i&gt;&lt;span style="font-weight:400;"&gt;never&lt;/span&gt;&lt;/i&gt;&lt;span style="font-weight:400;"&gt; used to train or improve the underlying AI models.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;ol&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Encrypted Return:&lt;/b&gt;&lt;span style="font-weight:400;"&gt; The model&amp;#39;s response is generated, encrypted, and sent back over to the private AWS global network and subsequently back to the Appian Cloud Canada region via the same secure channel the request was made from.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Data at Rest (Canada):&lt;/b&gt;&lt;span style="font-weight:400;"&gt; The Appian platform receives the secure response and uses it in the process&amp;mdash;where it may then be retained in the Appian record in Canada.&lt;/span&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;h3&gt;&lt;b&gt;Alignment with Canadian Data Governance&lt;/b&gt;&lt;/h3&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;This architecture is fully aligned with modern Canadian data governance and privacy principles.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;The Key Distinction: Inference vs. Retention&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;Canadian data residency and sovereignty laws (such as those in British Columbia, Quebec, and for public sector contracts) are primarily concerned with the &lt;/span&gt;&lt;b&gt;persistent retention of data at rest&lt;/b&gt;&lt;span style="font-weight:400;"&gt;. The &amp;quot;data residency&amp;quot; requirement is to ensure that Canadian data is not retained in a foreign jurisdiction, where it could be subject to foreign laws and access requests.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;The inference model does not violate this principle. The data &lt;/span&gt;&lt;i&gt;&lt;span style="font-weight:400;"&gt;resides&lt;/span&gt;&lt;/i&gt;&lt;span style="font-weight:400;"&gt; in Canada. It merely takes a momentary, encrypted, and secure &amp;quot;trip&amp;quot; to a specialized processor for inference before returning home.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Regulatory Precedent (CCCS and TBS)&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;This is not a new or untested legal theory. The Government of Canada has already assessed and approved this model.&lt;/span&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Canadian Centre for Cyber Security (CCCS):&lt;/b&gt;&lt;span style="font-weight:400;"&gt; The CCCS has assessed AWS Bedrock (the underlying service) as compliant for &lt;/span&gt;&lt;b&gt;CCCS Medium Profile (formerly Protected B)&lt;/b&gt;&lt;span style="font-weight:400;"&gt; workloads. This assessment was granted &lt;/span&gt;&lt;i&gt;&lt;span style="font-weight:400;"&gt;specifically&lt;/span&gt;&lt;/i&gt;&lt;span style="font-weight:400;"&gt; with the understanding that it involved inference capabilities located in US AWS regions, based on the fact that the data is transient and processed for inference only.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Treasury Board Secretariat (TBS):&lt;/b&gt;&lt;span style="font-weight:400;"&gt; The TBS has updated its cloud policy to move from a rigid &amp;quot;storage in Canada only&amp;quot; requirement to a more modern, risk-based approach. This allows for the use of secure, cross-border services where data residency is the principal delivery option, but transient processing is used to access capabilities.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h3&gt;&lt;b&gt;End-to-End Security and Appian Cloud Compliance&lt;/b&gt;&lt;/h3&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;The entire AI process is enveloped within Appian&amp;#39;s comprehensive, independently-audited security and compliance framework.&lt;/span&gt;&lt;/p&gt;
&lt;table&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;
&lt;p&gt;&lt;b&gt;Control Area&lt;/b&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;td&gt;
&lt;p&gt;&lt;b&gt;Appian Private AI Implementation&lt;/b&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;
&lt;p&gt;&lt;b&gt;Appian Cloud Compliance&lt;/b&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;td&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;The Appian Cloud platform (Canada) is independently audited and compliant with &lt;/span&gt;&lt;b&gt;SOC 2 Type II&lt;/b&gt;&lt;span style="font-weight:400;"&gt;, &lt;/span&gt;&lt;b&gt;ISO 27001/27017/27018&lt;/b&gt;&lt;span style="font-weight:400;"&gt;, and &lt;/span&gt;&lt;b&gt;Canada Protected B&lt;/b&gt;&lt;span style="font-weight:400;"&gt;. These agreements cover all services managed within the platform, including the handling and orchestration of AI requests.&lt;/span&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;
&lt;p&gt;&lt;b&gt;Encryption at Rest&lt;/b&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;td&gt;
&lt;p&gt;&lt;b&gt;100% of customer data&lt;/b&gt;&lt;span style="font-weight:400;"&gt; (records, documents, database) is encrypted at rest using AES-256 within the Appian Cloud Canada region.&lt;/span&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;
&lt;p&gt;&lt;b&gt;Encryption in Transit&lt;/b&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;td&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;All data transmitted between Appian and the AWS Bedrock endpoints is encrypted using &lt;/span&gt;&lt;b&gt;TLS&lt;/b&gt;&lt;span style="font-weight:400;"&gt;. This includes all cross-region traffic, which travels over the private AWS backbone, isolating it from the public internet.&lt;/span&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;
&lt;p&gt;&lt;b&gt;Data Privacy (No Training)&lt;/b&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;td&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;A core tenant of Appian Private AI is that your data is your data. &lt;/span&gt;&lt;b&gt;Customer data (prompts, inputs and responses) is never used to train or improve any AI models.&lt;/b&gt;&lt;span style="font-weight:400;"&gt; This is a contractual guarantee.&lt;/span&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;
&lt;p&gt;&lt;b&gt;Auditing and Logging&lt;/b&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;td&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;All API logs (e.g., the &lt;/span&gt;&lt;i&gt;&lt;span style="font-weight:400;"&gt;fact&lt;/span&gt;&lt;/i&gt;&lt;span style="font-weight:400;"&gt; that an AI skill was called at a certain time) are captured and retained &lt;/span&gt;&lt;b&gt;exclusively in the Canadian source region&lt;/b&gt;&lt;span style="font-weight:400;"&gt;. The &lt;/span&gt;&lt;i&gt;&lt;span style="font-weight:400;"&gt;content&lt;/span&gt;&lt;/i&gt;&lt;span style="font-weight:400;"&gt; of the prompt/input/response is never logged or retained in the US processing region. This provides a complete, in-Canada audit trail for compliance.&lt;/span&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p&gt;&lt;/p&gt;
&lt;h3&gt;&lt;b&gt;How to Enable this in Appian?&lt;/b&gt;&lt;/h3&gt;
&lt;p&gt;&lt;span style="font-weight:400;"&gt;To leverage the cross-region inference architecture described above, System Administrators must explicitly configure the AI settings in the Appian Administration Console. This configuration authorizes the platform to route inference requests to the US region for the selected models.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Prerequisites&lt;/b&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Role:&lt;/b&gt;&lt;span style="font-weight:400;"&gt; You must be a &lt;/span&gt;&lt;b&gt;System Administrator&lt;/b&gt;&lt;span style="font-weight:400;"&gt; to modify these settings.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;b&gt;Environment:&lt;/b&gt;&lt;span style="font-weight:400;"&gt; Access to the Administration Console.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;b&gt;Configuration Steps&lt;/b&gt;&lt;/p&gt;
&lt;ol&gt;
&lt;li style="font-weight:400;"&gt;&lt;span style="font-weight:400;"&gt;Open the &lt;/span&gt;&lt;b&gt;Appian Administration Console&lt;/b&gt;&lt;span style="font-weight:400;"&gt;.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;span style="font-weight:400;"&gt;Navigate to the &lt;/span&gt;&lt;b&gt;AI&lt;/b&gt; &lt;b&gt;Services&lt;/b&gt;&lt;span style="font-weight:400;"&gt; page (listed in the left-hand menu).&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;span style="font-weight:400;"&gt;Select the &lt;/span&gt;&lt;b&gt;Appian&lt;/b&gt;&lt;span style="font-weight:400;"&gt; tab.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;span style="font-weight:400;"&gt;Locate the desired model in the list (e.g., &lt;/span&gt;&lt;b&gt;Claude Sonnet 4.5&lt;/b&gt;&lt;span style="font-weight:400;"&gt; or &lt;/span&gt;&lt;b&gt;Claude Haiku 4.5&lt;/b&gt;&lt;span style="font-weight:400;"&gt;).&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;span style="font-weight:400;"&gt;In the &lt;/span&gt;&lt;b&gt;Inference Profile&lt;/b&gt;&lt;span style="font-weight:400;"&gt; dropdown for that model, select the &lt;/span&gt;&lt;b&gt;US&lt;/b&gt;&lt;span style="font-weight:400;"&gt; inference profile.&lt;/span&gt;&lt;ul&gt;
&lt;li style="font-weight:400;"&gt;&lt;span style="font-weight:400;"&gt;This will reflect the list of possible destination regions where the inference will take place.&lt;/span&gt;&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;span style="font-weight:400;"&gt;By selecting a US profile, you are enabling the cross-region data transit described in &lt;/span&gt;&lt;b&gt;Section 3&lt;/b&gt;&lt;span style="font-weight:400;"&gt;.&lt;/span&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li style="font-weight:400;"&gt;&lt;span style="font-weight:400;"&gt;Click &lt;/span&gt;&lt;b&gt;Save Changes&lt;/b&gt;&lt;span style="font-weight:400;"&gt;.&lt;/span&gt;&lt;/li&gt;
&lt;/ol&gt;
&lt;p&gt;&lt;b&gt;Verification&lt;/b&gt;&lt;span style="font-weight:400;"&gt; Once saved, the model becomes immediately available for use in AI Skills, the AI Copilot, and other generative AI capabilities. You can verify the configuration by testing a prompt in an AI Skill design object; the response will now be generated via the designated US inference endpoint.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: Governance, Compliance&lt;/div&gt;
</description></item></channel></rss>