One gateway, two editions.
Both editions run every AI request through the same governed gateway - logged, cost-attributed and enforced. Core is the focused edition for smaller teams. Enterprise adds authoring, per-application control, the quality and compliance suite, and white-labelling.
Book a demoGovern the essentials
DLP and prompt-injection enforcement, a capped model allowlist and a board-ready governance summary - everything a smaller organisation needs to put AI under control.
For SMEs and single teams that need real enforcement without the admin overhead.
Explore CoreGovern at scale
Everything in Core, plus rule authoring, per-application policies, agent guardrails, quality and risk monitoring, the compliance framework suite with auditor reports, budgets, SIEM and white-labelling.
For regulated and multi-team organisations that must evidence governance.
Explore EnterpriseWhat is in each edition
✓ Included – Not in this edition value Edition-specific detail
| Capability | Core | Enterprise |
|---|---|---|
| Observe | ||
Governed gateway Every request routed, logged and cost-attributed with a Ray ID. | ✓ | ✓ |
AI runs log One row per request, expandable to the full trace and the rules that fired. | ✓ | Advanced filtering |
Live flow Real-time view of requests flowing into outcome buckets. | ✓ | ✓ |
Applications view Per-application traffic, blocks, findings and spend. | ✓ | ✓ |
Cost Explorer Spend by model, application and cost centre. | ✓ | Per-user drill-down |
Gateway replay Replay a call and watch each check apply, step by step. | ✓ | ✓ |
Troubleshooting Ray-ID lookup and error playbook for developers. | ✓ | ✓ |
Command palette Jump to any page or setting from the search bar. | ✓ | ✓ |
| Enforce | ||
DLP rule packs Data loss prevention across PII, financial data, secrets and more. | ✓ | ✓ |
Prompt-injection rules Jailbreak and instruction-override detection. | ✓ | ✓ |
Per-rule on/off Switch individual rules within a pack. | ✓ | ✓ |
Rule authoring Create, edit and delete your own DLP and prompt-injection rules. | – | ✓ |
Approved-model allowlist Requests to any other model are refused at the gateway. | 4 active models | Unlimited |
Per-application policies A rule profile and model allowlist for each application. | – | ✓ |
Per-application rules Enable, disable or override the action of each rule, per application. | – | ✓ |
Agent Safety Guardrails for autonomous agent behaviour. | – | ✓ |
Budgets Daily token and monthly spend caps, enforced at the gateway. | – | ✓ |
| Govern and comply | ||
Governance summary One-page, board-ready posture report as a PDF. | ✓ | ✓ |
Nando, your virtual CISO A virtual CISO and cost optimiser that reads your live telemetry and hands back prioritised security and cost advice. | ✓ | ✓ |
Quality and Risk Hallucination, model drift and bias detection. | – | ✓ |
AI decision register Audit log of the decisions an AI was asked to make. | – | ✓ |
Compliance frameworks ISO 42001, NIST AI RMF, EU AI Act, SOC 2, HIPAA and GDPR readiness. | – | ✓ |
Auditor reports Per-framework control reports with live evidence, as PDFs. | – | ✓ |
Evidence packages Tamper-evident, SHA-256-sealed compliance bundles. | – | ✓ |
Data subject requests GDPR and DSAR register with status tracking. | – | ✓ |
Governance dashboard Readiness, risk, decisions and spend at a glance. | – | ✓ |
| Operate and brand | ||
Connection and SDK guide Everything needed to send a first governed call. | ✓ | ✓ |
Alerting and SIEM Stream detections to Slack, webhooks or your SOC. | – | ✓ |
White-label Re-skin the dashboard with your own name and colours. | – | ✓ |
Not sure which edition fits?
Tell us how many teams and applications you need to govern, and which frameworks you report against. We will point you at the right one.
Book a demo