Trust center
Security
The gateway separates caller credentials, organization governance, and upstream provider access.
Identity and access
Conscia-issued credentials identify callers and can narrow access; they do not expand access beyond organization policies and entitlements. Administrative capabilities are role- and scope-controlled.
Provider isolation
Upstream provider credentials are managed by the platform and are not returned to gateway consumers. Provider access is mediated through the gateway's routing, policy, quota, and audit controls.
Operational safeguards
The service records security-relevant activity and authoritative usage events, applies rate and usage limits, and exposes operational health signals. Customers remain responsible for protecting issued credentials and configuring organization access appropriately.
Report a concern
Report suspected credential exposure or security incidents through the support or security channel specified in your service agreement. Revoke or rotate affected credentials immediately when possible.