Tag

security

6 posts tagged "security".

Posts

Latest first

Inline LLM Guardrails: Redact, Block, or Flag Every Request
Engineering

Inline LLM Guardrails: Redact, Block, or Flag Every Request

A guardrail that runs on a sample is not a guardrail. Here is how nRouter applies PII redaction, prompt-injection detection and keyword blocklists inline on every call, with key-over-team-over-org precedence, on every plan.

nRouter team
10 minRead →
No BYOK: One nRouter Key Instead of Ten Provider Keys
Company

No BYOK: One nRouter Key Instead of Ten Provider Keys

Bring-your-own-key sounds customer-friendly and mostly relocates work to you. nRouter issues one key and credits and manages every provider account — here is the reasoning, the blast-radius math, what the choice costs you, and who should pick a BYOK gateway instead.

nRouter team
10 minRead →
Who Rotated That Key? An Audit Trail That Answers in One Query
Engineering

Who Rotated That Key? An Audit Trail That Answers in One Query

"Who rotated that key, and from where?" should be a filter, not an archaeology project. Here is the audit-trail contract we hold ourselves to on an LLM gateway: complete actor attribution, one shared client-IP path, append-only entries, and reads that are role-scoped and tenant-isolated.

nRouter team
10 minRead →
SOC 2 for an LLM Gateway: The Evidence an Auditor Asks For
Guides

SOC 2 for an LLM Gateway: The Evidence an Auditor Asks For

A criterion-by-criterion checklist for putting an LLM gateway through SOC 2 — access control, audit attribution, retention, encryption, tenant isolation and availability — with the honest current state of each control on nRouter.

nRouter team
11 minRead →
Org, Team, Member: Scoping Keys, Budgets, Guardrails
Engineering

Org, Team, Member: Scoping Keys, Budgets, Guardrails

A flat organization works until the second team arrives, and then every key, budget and policy is visible to everyone. Here is how nRouter nests org, team and key, which control attaches where, and why the team a request is billed to is read from the key rather than the request body.

nRouter team
12 minRead →
Virtual Keys vs Master Key: Scoping a Key Per Job
Guides

Virtual Keys vs Master Key: Scoping a Key Per Job

A management credential and an inference credential are different tools with different blast radii. Here is how to issue one virtual key per environment-and-service pair, narrow it with the four scope fields, cap it, and rotate it without downtime.

nRouter team
11 minRead →