The frontier LLM provider
Built for healthcare, fintech & regulated teams · SOC 2 Type II in progressOne API. Every major model. Governed by default.
Govern every request to every major model — structured PII tokenized before it reaches the provider, PHI kept on BAA-covered providers, secrets encrypted at rest, and a full audit trail.
Auditable, defense-in-depth governance for regulated workloads — not a substitute for your own HIPAA controls or a BAA.
No credit card required · 3 credits included · Cancel anytime
Providers routed through Conduix
Features
The drop-in API with an enterprise spine
Every feature a modern LLM gateway should have, plus the ones your compliance team asks for before they let you sign the contract.
Govern
Spend caps, model allow/blocklists, per-key limits, and region pinning — decide what runs, where, and how much.
Protect
Structured PII tokenized before it reaches the provider, PHI pinned to BAA-covered providers, secrets encrypted at rest.
Prove
An immutable, exportable audit trail of every request, key action, and policy change — evidence for your compliance team.
Drop-in compatible
Point your existing client at one URL — same code reaches every provider Conduix routes.
Multi-provider fallback
When OpenAI is down, we route to Anthropic. When Anthropic is degraded, we route to Gemini. Zero customer action.
Data residency
Lock an org to US / EU / APAC routing. Enforced at the router, not after the request.
Audit log
Every login, key action, billing event, and policy change. Immutable, exportable, compliance-ready.
SSO on day one
SAML, OIDC, SCIM via WorkOS. Okta, Azure AD, Google Workspace — your IT team provisions users as usual.
PII detection & tokenization
Detect structured PII (SSNs, cards, emails, phones, IPs) and tokenize or redact it before requests reach the provider, then restore it in the response. Best-effort defense-in-depth — not a substitute for your HIPAA controls.
Spend caps
Daily and monthly limits per organization. Hard-enforced before the provider call, not after the invoice shock.
Per-key controls
Rate limits, allowed models, and PII toggles — configurable per API key, not just per org.
Transparent pricing
Model catalog shows the exact per-1M-token rate for every model. Pay-as-you-go credits, no per-seat fees, no surprise overages.
Enterprise
Procurement-ready out of the box
Other routers make you wait for enterprise features. Conduix ships them on day one.
- SAML + OIDC SSO (Okta, Azure AD, Google Workspace via WorkOS)
- Immutable audit log with cursor pagination and exports
- Data residency (US / EU / APAC) enforced at the router
- Per-org allow/blocklist for providers — route OpenAI out of Europe
- Daily and monthly spend caps, hard enforced before the provider call
- Detect + tokenize structured PII; pin PHI to BAA-covered providers (fail-closed)
- Invoice billing with PO numbers for NET-30 customers
Structured PII only (not names, addresses, or free-text). Defense-in-depth, not a HIPAA control or a substitute for a BAA.
- Provider failover
- Across 10 LLM providers
- Secrets at rest
- AES-256-GCM
- Two-factor auth
- Required for admins
- Data residency
- US, EU, APAC
- Audit log
- Append-only, exportable
- Single sign-on
- SAML via WorkOS
Ship with one URL change.
Your developers keep the client they already use. Your procurement team gets SOC 2 and DPAs.

