Skip to main content

Gateway Access

V2 console

This card lives in Policy Engine > LLM Gateway at web.quilr.ai/policy. Edits join the shared draft and take effect once you review and publish a revision.

Allow or deny an entire model request by who sent it, which app or model it targets, or what its prompt says. Denied requests are rejected before routing or scanning: no provider call, no tokens.

Gateway Access card expanded with the Requests section holding a Deny rule and an empty Prompt text rules section

Sections​

SectionWhat it doesEmpty state
RequestsAllow or deny the whole request for a scope. Add rule.Everyone without a rule is allowed.
Prompt text rulesAct on a phrase or pattern in the user or system prompt. Add phrase rule.No request is denied for what its prompt says.

Request rule settings​

SettingOptionsDefaultNotes
DecisionAllow, DenyDenyAllow carves an exception out of a broader deny when it outranks it.
SeverityNot set, Very low, Low, Medium, High, Critical, Very criticalNot setReported only.

An allow never bypasses identity, source IP, model or tool checks.

Phrase rule settings​

Request stage only, on chat, responses, bedrock and vertex.

SettingOptionsDefaultNotes
WhereUser prompt, System prompt, EitherUser promptOne per line. Tool-call content is not part of the text.
Conditioncontains, starts with, ends with, matches *wildcard*, is exactly (case-sensitive)containsMatching is case-insensitive (except is exactly) and reads the first 8,192 characters. No regular expressions; wildcards use * and ?.
PhraseText or *pattern*-Add more lines; match any line (default) or all lines.
ThenDeny request, Route to..., Severity onlyDeny requestRoute to sends the request to an ordered list of targets. Severity only tags it.

Examples​

deny_frontier_models_to_internsrequest

runs on requestpriority 800

WhenSmart groupsincludes (ignoring case)Interns
andRequested modelis any ofclaude-opus-4gpt-4.1o3
Then
Request accessdeny
Risk levelmedium
finance_copilot_platform_team_onlyrequest

runs on requestpriority 850

WhenApplicationisFinance Copilot
andSmart groupsdoes not include (ignoring case)Finance Platform
Then
Request accessdeny
Risk levelhigh

For limiting models, an Allowed Models list is usually easier to maintain than a deny list.

Scoping and precedence​

  • Applies to: Everyone, People, Smart group, Application, App tag, Requested model, Provider, API surface, Environment, Prompt text, Tool, Source network, or Except... to carve people out of a broader rule.
  • Highest priority wins. When an allow and a deny share a priority, deny wins. Phrase rules follow the same rule.

Legacy app setting​

None. Gateway Access is a policy-only control with no equivalent app settings section.