Skip to main content

Vault

OrchestratorX offers flexible vault deployment options to suit different merchant PCI profiles and hosting preferences. Whether you're self-hosting OrchestratorX with your own PCI setup or leveraging the fully managed SaaS orchestration layer, OrchestratorX's modular vault architecture adapts seamlessly to your compliance boundary.

This section outlines the various Vault Flavors supported by OrchestratorX - covering self-hosted and SaaS environments, in-house and outsourced PCI models, and integrations with OrchestratorX-hosted or third-party vaults such as VGS and TokenEx. Each model includes sequence diagrams, supported feature sets, and references to relevant configuration guides.

Vault Architecture & Deployment Models

Merchant ProfileHosting TypeVault OptionPCI ResponsibilityExample Use Case
Merchant ProfileHosting TypeVault OptionPCI ResponsibilityExample Use Case
SaaS orchestration + OrchestratorX vaultOrchestratorX hosts OrchestratorX orchestrationOrchestratorX hosted vaultPCI handled by OrchestratorXEnterprise or mid-scale merchants using OrchestratorX SaaS
SaaS orchestration + third-party vaultOrchestratorX hosts OrchestratorX orchestrationThird-party vault or vault + SDKPCI shared with external vault providerMerchants already invested in external token vaults
Self-hosted & in-house PCIMerchant hosts OrchestratorX orchestrationNative vault within self deployed OrchestratorXMerchant manages PCI DSS complianceLarge enterprise merchants with full PCI scope
Self-hosted & outsourced PCI (similar to SaaS with 3rd party vault)Merchant hosts OrchestratorX orchestrationOrchestratorX hosted vault + SDK or third-party vault + SDK (VGS, TokenEx)PCI outsourced to third-party providerMerchants who want control over orchestration but offload PCI
Vaulting & outsourced PCI-OrchestratorX hosted vault + SDKPCI handled by OrchestratorXMerchants looking for unified token vault with Proxy API

Modular vaulting in OrchestratorX

Modular Vaulting is a key component of OrchestratorX's payment system, offering merchants the flexibility to either use OrchestratorX's built-in PCI-compliant vault with advanced tokenization and security features or connect to any third party vault provider. This flexibility enables businesses to start simple and scale confidently without re-architecting their entire system.