Start with visibility
Observe and Shadow modes report what a deterministic policy would do before an enforcing rule can interrupt production.
An AI governance gateway that enforces approved models, tools, MCP access, budgets, and rollout modes before provider spend, with reason-coded audit evidence.
AI governance fails when every application interprets the rules differently. AI Gateway HQ evaluates shared rules at the gateway, attaches a clear reason to the outcome, and lets administrators observe a rule's impact before it is allowed to interrupt production.
Begin with visibility, narrow the scope, review affected traffic, and enforce only after the result is understood.
Target organization, workload key, environment, client mode, model, data class, or signed attributes.
Observe what is happening, Shadow a proposed result, or Enforce a tested decision.
Allow, deny, cap, or constrain routes with stable codes that support triage and reporting.
Compare bounded policy and safeguard releases; restore known-good configuration only as a new, reasoned version that must pass current dependency and validation checks.
Inventory function and MCP metadata; apply deny-overrides-allow names, types, hosts, and count limits before spend; then stop unoffered or unauthorized model calls before release.
Bind the request to an organization, workload, environment, user, and declared execution context.
Apply policy and local attack signals before any provider credential is decrypted.
Allow, deny, cap, reroute, or observe the request with a stable reason code.
Write authorized metadata for review without persisting prompt or response bodies by default.
The live ledger shows workload, route, reason code, upstream attempt, outcome, latency, configured cost, and audit-chain integrity.
The live ledger shows workload, route, reason code, upstream attempt, outcome, latency, configured cost, and audit-chain integrity.
Each control has an operating path, an owner, and evidence that can be reviewed without collecting prompt bodies by default.
Observe and Shadow modes report what a deterministic policy would do before an enforcing rule can interrupt production.
Organization posture caps the effective policy mode. A route- or key-scoped rule can narrow access, but it cannot silently weaken the organization boundary.
Signed context distinguishes planning, interactive execution, CI/CD, and unattended agents. Tool profiles inventory function and MCP metadata, enforce names/types/hosts/counts before spend, and stop unoffered or unauthorized calls before release.
Evidence is designed to show what the gateway knew and which current control applied without creating a default prompt warehouse.
Review security boundaries and current status Read the plain-language AI gateway guide Use the 12-test enterprise evaluation Govern without retaining prompt bodies Review the secure gateway boundaryClear answers for buyers, administrators, and security reviewers.
Yes. Observe and Shadow modes preserve the proposed decision and reason while allowing traffic to continue. Move to Enforce only after review.
The current model supports organization and workload-key policy. Delegated hierarchy and non-overridable parent controls are not currently available and should not be assumed in a pilot.
Not by default. The hosted ledger retains operational metadata, policy reasons, bounded tool names/types/MCP hosts, counts, cost, and timing rather than prompt/response bodies, tool schemas, arguments, or results.
No. The gateway controls what may be offered to a model and what emitted calls may be released. The client or tool host still owns user approval, least-privilege credentials, argument validation, egress policy, sandboxing, execution, and result handling.
Connect a provider credential, create a workload key, and begin in Observe mode. Move a tested rule to Enforce when your team is ready.