GraySmith.io

Read-only by default.

We ask for the bill, not the conversations.

Access
Read-only scopes on provider billing and usage APIs. Write access only where you enable routing, and only to the providers you nominate.
Content
Prompts and completions are not stored by default. Metadata and cost only.
Residency
EU by default. Per-request residency enforcement available through policy routing.
Identity
SSO (SAML, OIDC), SCIM provisioning, role-based access control.
Audit
Every routing decision, policy block, budget exception and config change logged with actor, timestamp and reason. Exportable.
Paper
DPA and NDA standard. Sub-processor list published. Security review and questionnaire support for enterprise procurement.

Need a security review?

DPA, NDA, sub-processor list and questionnaire support are standard. Tell us what procurement needs.