Keld optimises what your AI costs without ever taking ownership of your proprietary intelligence. We secure the economics of every job — pricing, matching and settlement — while your prompts and completions pass through only to run, and are never stored.
Keld cleanly separates the control plane (the financial settlement: pricing, matching, the auditable record) from the data plane (the live delivery of your job). The control plane is where Keld operates; your content lives only in the data plane, for as long as the job runs.
A job with a deadline and a ceiling, naming a model or use case. Keld sees the metadata it needs to price and match — not a place to keep your content.
The marketplace matches your job to the best-value provider within your bounds and routes it for execution. Matching and settlement run on the control plane.
The provider runs the job and returns the result. Keld records an auditable settlement; the prompt and completion are not retained afterward.
Prompts and completions are never stored, never logged, and never used for training. Keld secures the economics of the job, not its contents.
All traffic is encrypted in transit (TLS), and the control plane is encrypted at rest. Access is least-privilege and logged.
Pin where jobs are processed, or run Atlas self-hosted or air-gapped inside your own perimeter with full ZDR.
Keld uses a small set of subprocessors to operate the platform. We keep the list deliberately short and review it regularly.
| Category | Purpose |
|---|---|
| Cloud infrastructure | Hosting and running the Keld control plane. |
| Inference providers | The AI model providers in the marketplace that execute matched jobs within your bounds. |
| Product analytics | Aggregate, privacy-respecting usage analytics for the website and console. |
The current, named list of subprocessors — with entity, location and function — is available to customers and prospects under NDA. We notify customers of material changes before they take effect.
We're pursuing SOC 2 Type II covering security, availability and confidentiality. The audit is underway; current status is available under NDA.
Built to support GDPR obligations, including a Data Processing Agreement, data-subject requests and EU data residency options.
SSO/SAML and role-based access control, with a complete, exportable audit trail for every job, model choice and spend decision.
We're happy to walk your security and compliance teams through our architecture, share our subprocessor list and SOC 2 status under NDA, and answer your questionnaire.