INFRO for Enterprise
Roll AI out to every team. Keep control of every request.
One governed gateway to every model — with the observability your engineers want and the controls your platform team requires.
- A. KellerOwner$2,410cap $4,000
- M. OkaforAdmin$1,988cap $3,000
- S. LindqvistDeveloper$1,204cap $2,000
- J. BarrosDeveloper$540cap $2,000
- R. TanakaAnalystread-only
Monthly cap
$10,000
Models
17 of 34
allowed by policy
Region
EU only
requests stay in zone
SSO
Okta · SAML
SCIM provisioning on
Console preview · illustrative data
Controls that hold at company scale.
Everything a platform team needs to say yes: access that follows your directory, budgets that enforce themselves, and a record of every change.
- Members & roles
- Four roles out of the box — owner, admin, developer, analyst — with keys, budgets, and console access scoped to each.
- Spend controls
- Ceilings per organization, project, member, and key. Alerts at your thresholds, hard stops at the limit, resets on your billing day.
- Model allowlists
- Approve the models each project may call. Anything else returns a policy error your logs can catch — before it becomes a line item.
- Audit log
- Every member, key, policy, and export event, recorded with who and when — kept twelve months and exportable as CSV.
- SSO & SCIM
- SAML and OIDC sign-in, SCIM provisioning and deprovisioning, and enforced MFA for console access. Offboarding is one directory change.
- SLA & support
- A 99.9% uptime SLA, priority capacity during provider incidents, and a shared channel with our engineers.
Policy, enforced. History, kept.
Allowlists decide what can run before a request costs anything, and the audit log remembers every change that made it so.
Requests for any other model return 403 model_not_allowed — a policy error in your logs, not a surprise on your invoice.
- 14:02policy.updatedmonthly cap $8,000 → $10,000A. Keller
- 13:47member.invitedp.novak@acme.dev · developerM. Okafor
- 11:20key.rotatedsk_infro_·······91c7S. Lindqvist
- 09:03export.createdusage-2026-08.csvR. Tanaka
Every member, key, policy, and export event — kept 12 months, exportable
Built for European rules.
Residency, GDPR, and the AI Act treated as engineering requirements — not a PDF your lawyer has to chase.
- Data residency
- Pin your organization — or a single project — to the EU routing zone and request content is processed only in EU datacenters. Zero-retention mode is available per request when even a debugging window is too much.
- GDPR
- A Data Processing Agreement with Standard Contractual Clauses, countersigned from the console. The subprocessor list is public, deletion runs on schedule, and data-subject requests have tooling instead of a ticket queue.
- EU AI Act
- Every response records which model produced it, so Article 50 transparency duties are a query rather than a project. Provider documentation is passed through as published — never paraphrased.
- SOC 2 Type IICertified
- ISO 27001Certified
- GDPRAvailable
- EU data residencyAvailable
- EU AI ActAvailable
- DPAAvailable
Reports and agreements are available from the console or on request — details on the security page.
Bring us your rollout.
Tell us what your teams run today and we'll price the same workload, governed, on INFRO.