Many engineering teams work inside organizations where ad-hoc ChatGPT use is being restricted and where every new SaaS vendor triggers a security review. InferAll is intentionally positioned to fit that constraint: one vendor, one endpoint, one billing relationship, format-compatible with tooling that's already been approved.
We do not claim FedRAMP, SOC 2, HIPAA, FISMA, or any other certification — those require real audits, and we will only publish them when they exist. See /security for the current state.
Single-vendor relationship
One contract, one DPA, one endpoint — instead of separately evaluating Anthropic plus OpenAI plus Google plus the agent vendor.
Audit-log-ready
The extension scaffolds an inferall.auditLog.enabled VS Code setting for compliance buyers. (The local audit-log writer is on the near-term roadmap; the gateway already centralizes every call through one endpoint that can be logged today.)
Anthropic-format means approved stacks work
If a team has already cleared Claude Code or Anthropic SDK-based tooling, InferAll drops into that same chain without onboarding a brand new vendor.
No fan-out to multiple vendors
Requests leave a single trust boundary. The gateway handles upstream provider selection so the client never talks directly to multiple AI vendors.