Hero background
AI Control Plane

Redact PII before
it reaches your LLM.

Treza is the AI control plane for teams running LLMs on sensitive data. Point your existing client at one URL, or use our API or SDK. Either way we strip names, emails, SSNs, and more from every prompt, with a tamper-evident audit log of exactly what was redacted. No rewrite. Live in minutes.

What you get out of the box
Automatic PII redactionTamper-evident audit logProvider keys stay encrypted
Any providerOne line of codeAPI & SDK
  • 1 line
    To integrate
    Change one base URL. Keep your client.
  • PII + secrets
    Detected & redacted
    Names, emails, SSNs, cards, MRNs, and more
  • 100%
    Of calls audited
    Every request logged with an id and version
  • 14 days
    Free to try
    Full Pro access. Cancel anytime.
How it works

From signup to redacted prompts in 3 steps

No rewrite required. Point the client you already use at Treza. Any LLM with a base URL works, the OpenAI SDK included, or call the Treza API or SDK directly. Treza handles redaction, logging, and your provider key.

  1. Step 01

    Create a redaction proxy

    Stand up a managed proxy in front of OpenAI, Anthropic, or any provider. Pick which PII types to strip. Your provider key is stored encrypted.

    $ POST /v1/proxies
  2. Step 02

    Point your client at Treza

    Change your client’s base URL and pass your proxy id in a header. That’s the only code change. Treza redacts every prompt before it reaches the provider.

    $ https://api.trezalabs.com/v1
  3. Step 03

    Watch the audit trail

    Every call is logged with a request id, the entities redacted, and the engine version. Export it any time for SOC 2, HIPAA, or your next audit.

    $ GET /v1/usage
Watch the explainer

Why AI on sensitive data needs a control plane

A short explainer on how Treza strips PII before it reaches your model — and proves exactly what it removed. Ready to try the AI Control Plane? Start your free trial.

Enterprise control plane

Governance for every agent action

Who ran it, which model and how many tokens, what data it touched, what PII surfaced, and where the output went. Every action your AI agents take, captured in a tamper-evident audit log.

Claude Codeagent
coding-agent · prod
Streamingsess_a3f9c1
Activity log6 events
Prompt frommaria@northwind.io
09:41:55
Claude Opus 4.8 · 2,431 tokens
09:42:06
Authsvc-analytics@snowflakewarehouse:read
09:42:40
Queryanalytics.fct_orders4,803 rows
09:43:12
PII detectedname,address,card
09:43:15
Export to S3s3://nw-exports/orders.csv
09:44:02

How we deploy it

We forward-deploy an engineer into your org to stand up the control plane with you and wire it into the identity and data systems your team already runs.

  1. 01

    We embed an engineer

    A Treza forward-deployed engineer works alongside your team to stand up the control plane inside your own environment. Not a slide deck, a working deployment.

  2. 02

    Wire up your stack

    We connect your identity provider (SSO / SCIM), your agents, your model providers, and your data sources, so every action is attributed to a real person.

  3. 03

    Go live with full governance

    Every agent action lands in a tamper-evident audit log you can stream to your SIEM. Your security and compliance teams own it from day one.

Built on Treza Platform

More than a proxy

The AI Control Plane is the first product built on Treza Platform — the same confidential-compute primitives are available to teams who need attested enclaves, key custody, or a control plane of their own.

Drop-in redaction proxy that sits between your app and any LLM provider
Integrations

Drops into the stack you already run

Ship containers you already build, sign for the chains you already use, and call the models you already trust, without changing how your team works.

Integrates with
AWS
Google Cloud
Microsoft Azure
Docker
Solana
Ethereum
OpenAI
Claude (Anthropic)
FAQ

Common questions

What teams ask before routing their first prompt through Treza.

  • What is the AI Control Plane?

    It’s a managed proxy that sits between your app and any LLM. It strips PII from every prompt before it reaches the provider, logs each request for audit, and keeps your provider key encrypted. Point your existing client at it and you’re redacting in minutes.

  • Do I have to rewrite my code?

    No. Keep the client you already use. Anything that calls an LLM over a base URL works, the OpenAI SDK included. Change the base URL, pass your proxy id in a header, and you’re done. Prefer a native integration? Call the Treza API or SDK directly instead, with no OpenAI-compatible client required.

  • Which PII does it redact?

    Names, emails, phone numbers, addresses, SSNs, credit cards, medical record numbers, dates of birth, account numbers, secrets, and more. You choose which types each proxy strips.

  • Which model providers work?

    Pretty much any model or provider you can reach over a base URL: OpenAI, Anthropic, Azure, Bedrock, your own self-hosted models, or a custom upstream. Your provider key is stored encrypted and never exposed to your agents.

  • Can I prove what was redacted?

    Yes. Every request is logged with an id, the entities removed, and the redaction engine version. Export the audit trail any time for SOC 2, HIPAA, or your own records. Enterprise adds hardware attestation.

  • How much does it cost?

    Start with a 14-day free trial of Pro at $99/mo — 50,000 redaction requests included, then $0.002 per request. Custom policies, multiple providers, and audit export are included. Cancel anytime before the trial ends.

AI Control Plane

Redact PII before it hits the model.

Point your existing client at Treza, or use our API or SDK, then configure a redaction proxy and start sending requests in minutes. 14-day free trial, no sales call required.