Keep source control inside the boundary you choose.
Reign Ops operates approved self-managed source-control platforms as dedicated single-tenant instances within the agreed deployment boundary. Repositories, secrets and pipeline artifacts remain governed by that boundary while iTmethods assumes the agreed operating responsibilities, leaving your engineering team more capacity for delivery. Where Reign Gateway is included, AI coding-tool calls routed through it are evaluated against policy and recorded.
A single-tenant dedicated instance, in your own AWS or Azure account or in infrastructure iTmethods operates. Both available today; Google Cloud is planned for 2027. Air-gapped and sovereign deployment are supported.
Deployment is one part of the source-control decision.
Feature requirements, existing licenses, engineer familiarity and deployment needs all shape the choice. iTmethods operates supported source-control platforms as dedicated single-tenant instances in your cloud account or in infrastructure we operate, including air-gapped and sovereign deployments.
A breach at that layer is not a breach of a tool. Hardening the substrate stopped being an engineering decision when it became the operating context of the institution.
Each one is a distinct identity that has to be accounted for.
That is the tradeoff this page exists to remove. You keep the control of a self-managed instance; iTmethods carries the operations.
iTmethods does not custody customer code, secrets or pipeline artifacts. The substrate is operated by iTmethods. The artifacts are owned by the customer.
We operate and support three source-control platforms.
GitHub Enterprise, GitLab Self-Managed and Bitbucket Data Center are supported today. Scope and responsibilities are agreed for each engagement.
GitHub Enterprise
GitHub Enterprise Server, operated as a single-tenant dedicated instance inside your authorization boundary. Actions runners isolated per environment with short-lived OIDC tokens.
GitLab Self-Managed
GitLab Ultimate or Premium, operated as a single-tenant dedicated instance against your own identity provider. Runners isolated per environment, CI/CD variables under the same identity boundary as the platform.
Bitbucket Data Center
Bitbucket Data Center, operated as a single-tenant dedicated instance alongside the rest of an Atlassian estate. Atlassian preserved Bitbucket Data Center in its published Data Center plans while other products moved.
Running something else? Bring the platform, version, deployment model and support requirement. iTmethods will confirm whether it fits the current service or needs a separate implementation scope. Tell us what it is →
Named controls, applied at deployment.
Your identity provider at the platform edge, on the protocol you already run. Group and sub-group inheritance enforced rather than reimplemented.
Short-lived tokens, no long-lived registration secrets, and no shared execution surface between environments that are not supposed to see each other.
Those destinations may include iTmethods operations tooling and customer systems.
Substrate, runner fleet and dependencies, on a cadence matched to upstream releases. Version currency is our work rather than something waiting for a quiet week.
iTmethods makes no compliance, certification or accreditation claim under any framework. What each framework asks for, and the limits on what any supplier can tell you about your own position, is set out on regulatory alignment.
The question is not which tools. It is what they can reach.
Copilot, Cursor, Claude Code, GitLab Duo and Atlassian Intelligence can be routed through Reign Gateway. Reign Gateway applies policy and records the model and tool interactions sent through it.
FAQ
Where does the code actually live?
Does moving platform mean re-platforming the pipelines?
What happens to the AI coding tools our engineers already use?
Which deployment shapes can we have?
Can we see the controls before we commit to anything?
Tell us where your source control runs today.
Which platform, roughly which version, and what is forcing the question. We will come back with what we would operate, what stays with your team, and what we would leave alone.
Your repositories and intellectual property, your code review, branch protection and push policy, and the catalog of AI coding tools your organization sanctions are customer decisions.