← Back to sign in

Trust center

Security

The gateway separates caller credentials, organization governance, and upstream provider access.

Identity and access

Conscia-issued credentials identify callers and can narrow access; they do not expand access beyond organization policies and entitlements. Administrative capabilities are role- and scope-controlled.

Provider isolation

Upstream provider credentials are managed by the platform and are not returned to gateway consumers. Provider access is mediated through the gateway's routing, policy, quota, and audit controls.

Operational safeguards

The service records security-relevant activity and authoritative usage events, applies rate and usage limits, and exposes operational health signals. Customers remain responsible for protecting issued credentials and configuring organization access appropriately.

Report a concern

Report suspected credential exposure or security incidents through the support or security channel specified in your service agreement. Revoke or rotate affected credentials immediately when possible.