Uncontrolled AI access
Direct AI usage can bypass organisation policy and approval boundaries.
Log inProxiAI authenticates users, enforces tenant policy, detects and masks sensitive data, streams approved AI responses, and records encrypted or metadata-only evidence according to organisation retention policy.

Designed and verified for security-conscious engineering teams
THE PROBLEM
Direct AI usage can bypass organisation policy and approval boundaries.
Prompts may contain credentials, personal data, or internal connection details.
Security and operations teams need usage, decision, and audit evidence without storing plaintext prompts.
Each decision is tenant-scoped, deterministic, and safe to observe.
Enforce approved AI usage policies before any request reaches a provider.
Detect and mask sensitive data to reduce risk and protect confidentiality.
Understand decisions, usage, and routing without exposing sensitive content.
Keep one governed interface while your approved provider strategy evolves.
BUILT FOR ENTERPRISES
A user sends an AI request from their workspace.
Sensitive data is detected and risk is classified.
Organisation policy allows, masks, or blocks safely.
Only the approved prompt reaches the configured provider.
The response streams back with safe decision metadata.
IMPLEMENTED ARCHITECTURE
The Express API remains authoritative. Next.js renders the product surface, MongoDB stores tenant records, Redis coordinates request safety, and dedicated BullMQ workers process durable side effects.
Trusted organisation scope, current database permissions, Argon2id passwords, rotating refresh sessions, and exact-origin CORS.
Deterministic PII detection, explainable risk scoring, and ALLOW, MASK, or BLOCK before provider execution.
Provider adapters use bounded retry, circuit state, ordered pre-token fallback, and safe normalized failures.
Append-only usage records drive billing rollups; BullMQ workers reconcile billing, analytics, anomaly, health, and enqueue recovery.
AES-256-GCM encrypted message storage uses tenant/resource AAD; admin mutations append immutable audit events atomically.
Bounded Prometheus metrics, worker heartbeats, safe structured logs, and operational runbooks expose health without prompt labels.
AWS RELEASE SHAPE
Immutable ECR images deploy as separate frontend, API, and worker ECS/Fargate services behind one ALB. The low-traffic demo uses one task per service and snapshot-driven deep stop/start for cost control; it is not a multi-task high-availability claim.
ProxiAI is designed for organisations that need secure access, reliable policy enforcement, and bounded operational evidence without claiming formal certification or multi-region availability.
VERIFIED RELEASE EVIDENCE
Internal evidence from audit commit 789136c on 22 August 2026. It covers tenant isolation, Auth/RBAC, prompt egress, encryption, immutable audit, billing replay, pagination, Docker, and isolated MongoDB/Redis/BullMQ integration; it is not an external certification.
78.24% lines
Backend coverage
77.62% lines
Frontend coverage
63 / 63 passed
Isolated integration
All approved ≥ 90%
Critical branch gates
RESTRICTED RECRUITER DEMO
Explore the real read-only admin dashboard and governed chat path without receiving or entering an administrator password.
Demo backend may take 1–2 minutes to wake after inactivity.
Open Admin DemoHONEST BOUNDARIES
Join your organisation workspace to use ProxiAI safely.
Access is provisioned by your organisation administrator.