AI Gateway

One governed door — for cost, data and safety.

Employees, applications and agents reach models through one controlled layer. Every request is priced and attributed, checked on the way out so data does not leak, and on the way back so nothing hidden takes over.

Start free trialSee how it works
01 — Requests come in
Employees
Internal applications
AI agents
SaaS tools
02 — The Gateway decides
The control point
Is this allowed, and is it safe to send?
Which model is most suitable?
Which team pays, and is it within budget?
Which company tools may be reached?
Is the answer safe to act on?
03 — The right model answers
OpenAIAnthropicGoogleMistralOpen-weight modelsSelf-hostedOn-premise
Individual model versions change constantly, so the catalogue lives in the product rather than on this page. Adding a provider is a change of configuration, not of code.
The problem it solves

Nobody planned for AI spend or AI data flow. It just started.

People signed up for their own accounts because the work needed doing, and applications hard-wired one provider each. Nobody can now say what the organisation asks AI, what it costs, or what has left the network — and banning it only pushes that further out of sight.

Unified access

One connection for commercial, open-weight and self-hosted models. Applications stop depending on a single vendor.

Policy-based routing

Route by task, quality, sensitivity and cost. Reserve premium models for work that needs them.

Cost attribution and budgets

Every request tagged to a user, team, project or application, with hard and soft limits and alerts before the ceiling — so AI is a budget line, not a surprise invoice.

Outbound: data-loss prevention

Inspect, redact or block sensitive content before it leaves your network — by policy, not by trust.

Inbound: prompt-injection defence

Content coming back from a model or a fetched document is treated as untrusted. Instructions hidden in it cannot silently trigger a tool call or a write.

Full audit record

Every request, model, decision and cost queryable later for a compliance or incident review.

What it changes

What changes once every request runs through one door.

01
Shadow AI ends without a ban

People keep the models they rely on, through an account the organisation can see. Adoption goes up and exposure goes down at the same time — nobody has to give up a tool.

02
Company data stops leaking

Sensitive content is caught before it leaves, and what comes back is treated as untrusted, so a hidden instruction cannot turn a helpful answer into an action nobody approved.

03
AI spend becomes a budget line

Every request is attributed to a team, project or application, with limits set before the invoice arrives instead of explained after it.

Security and control

Control on the way out, and on the way back.

Permissions per identity
People, applications and agents each get their own credentials, scopes and limits.
Model governance
An approved catalogue per team; unapproved models are simply unavailable.
Outbound data rules
Detection and redaction run inline before anything leaves, so policy is enforced rather than documented.
Inbound content checks
Model output and fetched documents are untrusted. A hidden instruction cannot trigger a tool call or a write without passing policy.
Tool and MCP access
Which company systems and MCP servers an identity may reach, granted per application and per user.
Budgets and caps
Hard and soft limits per team, project and application, with alerts before the ceiling.
Deployment options
EU cloud, private cloud, or entirely inside your own infrastructure.
Auditability
A queryable record with configurable retention.
How security worksISO 27001 and ISO 9001 certified. Certificates and scope statements on request.
How it connects

Part of one platform.

Secure your AI. Start with your people.

Most exposure does not come from your applications — it comes from people doing their job through accounts nobody can see. Put your team behind the Gateway first, then the applications and agents.

14 days · no payment card · bring your own provider account