Hey HN,
We’ve grown uncomfortable using OpenAI keys. If they get leaked, they essentially give outsiders unlimited access to our accounts.
So we built a gateway that lets you create API keys that have custom permissions, such as a set spend limit, rate limit, or TTL.
This setup allows you to hide your real OpenAI key behind the gateway. Your applications or developers only have access to permission-limited keys. These keys pose less risk even if they're compromised.
We think this could really help organizations that need to manage both service and developer access to OpenAI.
Come check us out! We’d love your feedback.