The frontier LLM provider

Built for healthcare, fintech & regulated teams · SOC 2 Type II in progress

One API. Every major model. Governed by default.

Govern every request to every major model — structured PII tokenized before it reaches the provider, PHI kept on BAA-covered providers, secrets encrypted at rest, and a full audit trail.

Auditable, defense-in-depth governance for regulated workloads — not a substitute for your own HIPAA controls or a BAA.

No credit card required · 3 credits included · Cancel anytime

Providers routed through Conduix

OpenAIAnthropicGoogle GeminiGroqMistralTogetherDeepSeekFireworksGrokNVIDIA

Features

The drop-in API with an enterprise spine

Every feature a modern LLM gateway should have, plus the ones your compliance team asks for before they let you sign the contract.

Govern

Spend caps, model allow/blocklists, per-key limits, and region pinning — decide what runs, where, and how much.

Protect

Structured PII tokenized before it reaches the provider, PHI pinned to BAA-covered providers, secrets encrypted at rest.

Prove

An immutable, exportable audit trail of every request, key action, and policy change — evidence for your compliance team.

Drop-in compatible

Point your existing client at one URL — same code reaches every provider Conduix routes.

Multi-provider fallback

When OpenAI is down, we route to Anthropic. When Anthropic is degraded, we route to Gemini. Zero customer action.

Data residency

Lock an org to US / EU / APAC routing. Enforced at the router, not after the request.

Audit log

Every login, key action, billing event, and policy change. Immutable, exportable, compliance-ready.

SSO on day one

SAML, OIDC, SCIM via WorkOS. Okta, Azure AD, Google Workspace — your IT team provisions users as usual.

PII detection & tokenization

Detect structured PII (SSNs, cards, emails, phones, IPs) and tokenize or redact it before requests reach the provider, then restore it in the response. Best-effort defense-in-depth — not a substitute for your HIPAA controls.

Spend caps

Daily and monthly limits per organization. Hard-enforced before the provider call, not after the invoice shock.

Per-key controls

Rate limits, allowed models, and PII toggles — configurable per API key, not just per org.

Transparent pricing

Model catalog shows the exact per-1M-token rate for every model. Pay-as-you-go credits, no per-seat fees, no surprise overages.

Enterprise

Procurement-ready out of the box

Other routers make you wait for enterprise features. Conduix ships them on day one.

  • SAML + OIDC SSO (Okta, Azure AD, Google Workspace via WorkOS)
  • Immutable audit log with cursor pagination and exports
  • Data residency (US / EU / APAC) enforced at the router
  • Per-org allow/blocklist for providers — route OpenAI out of Europe
  • Daily and monthly spend caps, hard enforced before the provider call
  • Detect + tokenize structured PII; pin PHI to BAA-covered providers (fail-closed)
  • Invoice billing with PO numbers for NET-30 customers

Structured PII only (not names, addresses, or free-text). Defense-in-depth, not a HIPAA control or a substitute for a BAA.

Built for enterprise
Provider failover
Across 10 LLM providers
Secrets at rest
AES-256-GCM
Two-factor auth
Required for admins
Data residency
US, EU, APAC
Audit log
Append-only, exportable
Single sign-on
SAML via WorkOS

Ship with one URL change.

Your developers keep the client they already use. Your procurement team gets SOC 2 and DPAs.