Requesty
Security first

Security at Every Layer

Zero data retention. EU hosting. Enterprise-grade security by default. Your data never leaves your control.

Contact founder

Zero Data Retention

Your prompts and completions are never stored. Data is proxied in real-time and immediately discarded after delivery.

EU Data Residency

All data processed through our EU infrastructure. Full GDPR compliance with data never leaving European borders.

End-to-End Encryption

TLS 1.3 encryption for all data in transit. AES-256 for any data at rest. Zero plaintext exposure.

Live

Threat detection, in real time

Every request is inspected before it leaves the gateway. Shadow AI, non-EU egress, prompt injection, leaked secrets — caught and logged as they happen.

Threats blocked
847last 24h
PII tokens scrubbed
23.4klast 24h
Non-EU egress blocked
112last 24h
Shadow-AI attempts
34last 24h
Live event stream
gateway · eu-frankfurt
BLOCKEDShadow AI17:47:34

Unauthorized model rejected

openclaw-72b @ prc-cloud.ai/v1

from eng-team-3

BLOCKEDCompliance17:47:27

Chinese-hosted model blocked

deepseek-v3 @ cn-north-1 — not in allowlist

from key: req_dev_k3x

BLOCKEDData Egress17:47:20

Non-EU endpoint rejected

policy violation: *.us-east-1.amazonaws.com

from policy: eu_only

SCRUBBEDPII17:47:13

3 PII tokens scrubbed before model call

email · ssn · credit_card

from svc-backend-prod

Threat pulse

Events per minute · last 60 min

BLOCKED
SCRUBBED
WARNING
ALLOWED
-60m-45m-30m-15mnow

Top blocked categories

Shadow AI models38%
Non-EU egress27%
Prompt injection18%
PII in prompts12%
Leaked secrets5%

Built-in Guardrails

Enterprise-grade security controls that work out of the box

PII Detection & Scrubbing

Automatically detect and mask personally identifiable information before it reaches the model

Prompt Injection Protection

Real-time detection and blocking of prompt injection attempts

Content Filtering

Configurable content policies to prevent harmful outputs

Rate Limiting

Per-key, per-team, and per-model rate limits to prevent abuse

Spending Controls

Set budgets per team, per user, or per API key with automatic cutoffs

Audit Logging

Complete audit trail of every request with timestamps, users, and models used

Compliance & Certifications

Meeting the highest standards for security and privacy

GDPR Compliant

Full compliance with EU data protection regulations

SOC 2 Type II

In progress - expected Q2 2026

Data processed in EU

All infrastructure hosted in Frankfurt, Germany

No third-party data sharing

Your data is never shared with third parties

Regular security audits

Quarterly penetration testing and security reviews

Responsible disclosure program

We reward security researchers for responsible disclosure

Secure Architecture

Your data flows through our secure gateway, never stored

Your App

Your application

TLS 1.3

Requesty Gateway

Frankfurt, EU

No data storedPII scrubbedAudit logged
TLS 1.3

Model Providers

OpenAI, Anthropic, etc.

End-to-end encrypted

TLS 1.3 everywhere

Zero retention

No data stored

Full audit trail

Every request logged

Security shouldn't be an afterthought

Start building with enterprise-grade security from day one.

Talk to security team