Deployment
Run the gateway on-premises or in a customer-controlled VPC.
Trust & deployment
Skris is designed to run inside your environment. You choose the providers and models, own the policies and keys, and decide what interaction data is retained.
Customer-controlled infrastructure
Raw prompt capture off by default
Policy enforcement before provider egress
Your environment
Requests enter Skris from approved people, applications, and agents. Policy is applied before an approved request is routed to a selected cloud, private, or local destination.
Run the gateway on-premises or in a customer-controlled VPC.
Encrypt provider credentials centrally and store user API keys as hashes.
Keep access, routing, data, usage, and retention decisions under organizational control.
Data handling
Skris separates request processing from optional content retention. The organization configures capture and retention according to its own requirements.
Evidence without overclaiming
Skris can record policy outcomes, routes, usage, cost, and operational events. Hash-chained exports help make changes detectable and provide a defensible record for internal review.
Show which rule and decision applied to a governed request.
Review provider validation, model routes, usage, budgets, and revocation events.
Apply inline text actions including allow, warn, redact, and deny before upstream routing.
Skris provides technical controls and evidence that can support GDPR, EU AI Act, ISO 42001, and other governance programs. It does not certify an organization or guarantee compliance.
Private architecture discussion
Review Skris against your trust boundary.
Bring your deployment, provider, retention, and evidence requirements. We will map the points that need technical validation.
Helpful details