Named AI policies
Define policies by risk category, minimum severity, and the action to take — from logging to escalation.
From detecting risk in a prompt to applying policy, supporting human review, and surfacing patterns over time — Veytrio brings AI governance together in one place.
Prompt captured
Detected
Severity
Veytrio inspects prompt activity for the content that creates governance risk, categorises it, scores it by severity, and explains why — so reviewers can focus on what matters. Follow one event from capture to escalation.
Sensitive fields — names, emails, account numbers, credentials — are redacted before storage or review.
Every event is rated across five severity levels — Informational, Low, Medium, High, or Critical — and sorted into risk categories.
Each event carries a plain-language reason for its rating, so the decision is transparent — then policy decides what happens next.
“Draft a renewal note to Helen Mwangi at Northwind Trading, account AC‑40192 — and paste the API key sk‑live‑8842.”
Detection categories
Severity — five levels
Why it was flagged
A live-looking credential appeared in an outbound prompt alongside customer account details — above the policy threshold for this category.
Illustrative example · synthetic data
Detection uses high-quality pattern and keyword matching — a strong signal to prioritise review, not a guarantee that every risk is caught.
Veytrio gives you an organisation policy engine and human review workflows — so the right activity is flagged, routed, and resolved by the right people.
Six controls · one rule composer
Risk category
Minimum severity
Policy action
If Credentials & secrets reaches High then Escalate to admin.
Define policies by risk category, minimum severity, and the action to take — from logging to escalation.
Enable, disable, or tune each detection category (lenient, standard, or strict) to fit your risk appetite.
Start from ready-made policy templates and apply them in a click, then adapt to your organisation.
Authorised reviewers mark events reviewed, dismissed, or escalated — with a full audit trail.
Flag false positives and give structured feedback — the correct category or severity — to sharpen review.
Escalate critical activity and capture policy acknowledgements, so accountability is recorded.
Policy actions support your team — they flag, alert, escalate, and request acknowledgement. People decide what happens next; Veytrio keeps the record.
Veytrio looks across activity over time to highlight where risk concentrates, always keeping a human in the loop.
Human-supervised by design. Behavioural insight is advisory only, supports a privacy-minded anonymised executive view, and never produces automated decisions about individuals.
Repeat high-risk activity — 3 events this week
Spike above this team’s baseline
Unusual sharing to a newly-adopted AI tool
Single flagged prompt — first occurrence
Illustrative example · synthetic data · human review required
Veytrio runs on one source-agnostic event model, so every channel flows into the same review, policy, and reporting pipeline.
Three channels · one pipeline
A managed browser extension captures activity from ChatGPT, Claude, Gemini, and Microsoft Copilot.
An early VS Code integration captures explicit developer prompts and selections through the unified event model.
A source-agnostic push connector lets internal chatbots and LLM gateways send governance events to Veytrio.
Capture is primarily browser-based today; IDE and internal-tool coverage is expanding. Coverage depends on your deployment and supported environments, and Veytrio is designed for governance visibility over managed usage — not to be presented as impossible to bypass.
Run a controlled, synthetic-first pilot and see detection, policy, and review working end to end.