Trust

Security overview

What we do to keep your credentials and content safe, stated plainly.

Prompts are not stored

Message bodies pass through in memory only. We record model, token counts, latency and status — never content.

Keys are hashed

API keys are stored as salted hashes. We cannot read your key back, which is why rotation exists.

Credentials encrypted

Prompt and completion bodies are never persisted — only usage metadata is recorded.

Everything audited

Every administrative action is written to an append-only audit log with actor, target and timestamp.

Transport

Access control

Isolation and quota

Quota counters are strongly consistent per account, so one customer's traffic can never consume another's budget. Capacity has guaranteed floors per plan, so a large tenant cannot starve smaller ones completely.

Data retention

DataRetention
Prompt and output bodiesNot stored
Request metadata7 / 30 / 90 days by plan
Security and audit logs90 days
Account recordAccount life plus 30 days

Reporting a vulnerability

If you believe you have found a security issue, contact us through the support page with the subject Security report. Please include:

We acknowledge reports within 3 business days and will keep you updated until resolution. Please do not run automated scanners or load tests against production without written permission, and do not access data that is not yours.

Your responsibilities

See the key security guide for a practical checklist, and our Privacy Policy for data handling detail.