Sentry terminates model traffic, evaluates every request against your policies, and brokers it to the right provider — with a signed audit trail on every decision.
Go-based in-line proxy. Native HTTP/2 + gRPC. Fails open or closed per tenant policy.
Author policies in a simple, Rego-inspired DSL. Compiled to bytecode. Content-addressable.
Every decision links to a policy bundle. Replay any decision at any time.
match: /\b\d{3}-\d{2}-\d{4}\b/
action: deny
reason: "US SSN detected — HIPAA §164.514"
match: /[a-z0-9._%+-]+@[a-z0-9.-]+\.[a-z]{2,}/i
action: redact
reason: "Email redacted — GDPR Art. 5"
match: /ignore (previous|all) instructions/i
action: deny
reason: "Prompt injection guard"