The Inference Gateway: the security boundary
The component that holds the keys and guards the egress: its pipeline, the threat model around it, what anonymization does to outbound prompts, how model routing stays inspectable, and where the inference-tier boundary sits.
Configuration
The gateway reads a single YAML config (gateway.yaml); see ../gateway.yaml.example for the full schema.