Workflows
Ship Cheaper Ship Safer Ship Faster Ship Compliant Ship Better
Workflow · Compliance & Governance

Every decision. Signed. Traced. Provable.

Stockyard writes every request, routing decision, and policy action to a hash-chained audit ledger. Tamper-evident. Exportable. Ready for enterprise review.

Install Stockyard
1

Trace

Every request through Stockyard is logged with full metadata: model, provider, tokens, cost, latency, status, and response.

Lookout tracing • Trace Link
2

Sign

Brand writes each event to a hash-chained ledger. Each entry references the previous hash. Tampering breaks the chain.

Brand audit ledger • Relic provenance
3

Enforce

Set policies: data retention, access controls, approval gates. Iron hardens the platform. Grain controls per-key permissions.

Iron • Grain • Compliance Log

Products involved

Brand
Hash-chained audit ledger. Every request, decision, and policy action is signed and linked.
Free • core platform
Relic
Provenance tracking. Full lineage from prompt to response. Where did this output come from?
Individual • $29.99/mo
Iron
Platform hardening. Security policies enforced across all products.
Enterprise • $99.99/mo
Grain
Fine-grained access control. Per-key, per-model permissions.
Team • $99.99/mo
Compliance Log
Structured compliance logging for regulated environments.
Free • built-in module
Trace Link
Distributed trace correlation. Connect Stockyard traces to your existing observability stack.
Free • built-in module

Every routing decision Drover makes is logged with the quality score, cost estimate, and reason. Auditors can verify why each model was chosen.

See the data →
Compliance starts with data residency

When a compliance auditor asks where your LLM prompts are stored, the answer matters. If prompts flow through a third-party observability service, that service becomes part of your compliance surface. Their SOC 2 report, their data processing agreement, their breach notification timeline — all of it becomes your problem. Stockyard runs on your infrastructure, so the answer to "where is the data" is always the same: on servers you control, in a jurisdiction you chose.

The audit trail in Brand (formerly Trust) records every LLM request with its full context: prompt, completion, model, provider, active middleware, and timestamp. Records are hash-chained — each entry includes a SHA-256 hash of the previous entry, creating a tamper-evident log that satisfies audit requirements. The guardrails module blocks requests that match patterns you define before they reach the provider, so sensitive data never leaves your network in the first place. For HIPAA, SOX, GDPR, and SOC 2 environments, this architecture eliminates the compliance gap that SaaS observability tools create.

Five minutes to your first trace.

Install Stockyard, send a request, watch it flow through the middleware chain. Everything on this page starts working immediately.

Install Stockyard See Pricing
Explore: Self-hosted proxy · OpenAI-compatible · Model aliasing