Security & trust

Controls, evidence,
and the gaps between them.

Hormuz documents what the alpha enforces today, what the deployment must own, and what still requires independent proof.

Software stageAlphaNot production-ready
Routine telemetryContent-freeSchema-bound
Provider keysServer-sideNot sent to employees
Independent reviewOpen gateNot yet completed

Keep the control record. Leave the conversation out.

Hormuz inspects request material transiently where policy requires it, while routine ledgers retain bounded operational evidence rather than the content itself.

Data classCurrent handlingRoutine evidence boundary
Prompts & responsesRelayed transiently in memoryNot written to routine usage or security telemetry
Employee credentialsValidated at HormuzNever forwarded to model providers
Provider credentialsServer-side environment or managed custody boundaryNever distributed to employees
Usage & costBounded identity, model, token, status, and cost metadataNo prompt or response body
DLP evidenceRule, action, outcome, and bounded countsNo matched value or raw request material

Designed to fail closed at the boundary.

01

Strict configuration

Bounded parsing rejects duplicate members, malformed encoding, non-standard numbers, and unknown fields before startup.

02

Origin-bound egress

Remote provider endpoints require HTTPS, credential-bearing URLs are rejected, and provider redirects are never followed.

03

Pre-provider enforcement

Identity, policy, budgets, privacy settings, DLP, and approvals are resolved before the governed provider call.

04

Revocable access

Short-lived sessions, atomic refresh rotation, replay-family revocation, and secure client credential custody.

No trust badge can close these.

They require real customer-environment work, operational proof, or an independent party—not another marketing claim.

  1. 01Customer-specific TLS and network boundary
  2. 02Deployment-specific custody and retention
  3. 03HA, failover, backup, restore, RPO, and RTO proof
  4. 04Representative customer DLP evaluation
  5. 05Independent security assessment and penetration test

Bring your actual control requirements.

We will separate existing Hormuz evidence, customer-owned controls, and genuinely open engineering work.

Start a security review