Defaults vs configurable
- Default: do not store raw prompts/responses.
- Configurable: retain metadata logs by environment policy.
- Planned: expanded payload diagnostics for approved workflows only.
Security
Data handling, retention boundaries, audit traceability, and access isolation built for enterprise governance.
| Category | Default behavior |
|---|---|
| We log (default) | request id, timestamp, route decision, latency, token counts, policy outcome |
| We never log (default) | raw prompts/responses, provider keys, unmasked PII (when redaction enabled) |
Data flow
For security questions or responsible disclosure, contact the team directly.
Security roadmap
Roadmap items are directional and may change.
No. Sentinel Primo focuses on metadata-first observability and configurable retention policy.
Yes. Redact and block actions are evaluated in policy before routing to external providers.
Retention can be configured by environment and workspace with audit history preserved.
Keys are managed server-side and scoped by project boundaries to reduce lateral exposure.
Yes. Planned controls are marked as planned and not represented as currently available.
Review architecture fit, policy posture, and rollout sequencing with the Sentinel Primo team.