BYOK
- Credential owner
- Customer workspace
- Recipient
- Selected model provider or contracted inference processor
- TokenSpend retention
- Encrypted 30-day history, or no storage when workspace ZDR is on
- Downstream data use
- Governed by the customer's provider account, policy, and agreement
- Region
- Customer provider configuration for direct APIs; US or EU default for open-weight routing
- ZDR scope
- TokenSpend storage only. Downstream ZDR depends on the customer's provider configuration.