Research sprint
One agent · one operating envelope
- Provider requests
- 17 / 50
- Est. spend
- $1.84 / $5
- Token ceiling
- 100K
- Expires
- Fri · 6 PM
Give every AI agent enough access to finish the job—and a clear stop when the job is done. Set a ceiling for requests, tokens, estimated spend, time, and source across 12 supported providers.
Example boundary — not live account data
One agent · one operating envelope
Till is a hosted control layer for AI provider credentials. It gives each AI agent or automation a disposable Till key with a required request ceiling and optional token, estimated-spend, expiration, and IP controls.
Agents, automations, contractors, and demos are temporary. A shared provider credential can keep working after the task ends.
Till makes access match the work. Each workload gets its own boundary without revealing the provider credential behind it.
Put a request ceiling around loops, retries, research runs, and experiments before they begin.
Give a project disposable access with its own budget, source policy, and end date.
Let prospects try AI features inside a pre-set operating envelope instead of an open tab.
Separate credentials and counters by project so remaining capacity is easier to understand.
Keep the provider accounts your team already uses. Till adds the per-workload boundary in front of them.
Add the provider accounts your team already uses. Connections are encrypted at rest and are not returned after save.
Choose the required request ceiling, then add token, estimated-spend, expiry, or IP controls when the work needs them.
The agent uses its Till key. Till selects a configured connection, checks the boundary, and returns capacity signals.
The same scoped key works across provider-native request schemas. Point a supported client at Till and use the Till key as the bearer. Automatic routing across 12 providers uses configured connections and route, model, or default signals.
# Example Anthropic-native header
anthropic-version: 2023-06-01
authorization: Bearer till_sk_…
# OpenAI-compatible clients can set
base_url = "https://api.till.ac"
Start with the simplest boundary that makes the workload safe to hand off. Add tighter AI API spend controls when you need them.
Connect the providers you use. Till selects among those configured connections from the request route, model, or account default.
A Till key is still a bearer secret. The difference is that it can be limited, revoked, and replaced without revealing the provider credentials behind it.
Provider credentials are stored as AES-256-GCM ciphertext with separate application key material.
After a provider credential is saved, admin APIs expose connection metadata—not the plaintext or ciphertext.
Unknown pricing or a missing output cap cannot silently turn a budgeted generation request into an unbounded one.
Machine-readable headers and validation responses expose remaining limits, warnings, and provider context.
Till is not a zero-knowledge system, prompt firewall, general secrets manager, compliance certification, or replacement for provider billing controls. Read the complete security model and check the independent service status.
Use your own provider accounts. Till charges a fixed platform subscription; provider inference remains billed separately.
Subscriptions cover Till’s hosted control layer, not provider usage, uptime guarantees, compliance certifications, SSO, or dedicated support. Prices shown apply to new subscriptions. Eligible paid beta subscriptions keep their founding price under Till’s founding-customer policy. Existing account holders can authenticate to upgrade. Compare full plan details →
Till is a hosted control layer for AI provider credentials. It gives each AI agent or automation a disposable Till key with a required request ceiling and optional token, estimated-spend, expiration, and IP controls.
Every Till scoped key requires an activation ceiling. You can also add token and estimated-spend budgets, an expiration time, and an IP or network allowlist. Any key can be revoked immediately.
Till supports 12 providers: OpenAI, Anthropic, Google, OpenRouter, Mistral, Groq, Together AI, Fireworks AI, Perplexity, DeepSeek, xAI, and Cohere. Automatic keys route among the provider connections configured for your account.
Till stores provider connections as AES-256-GCM encrypted ciphertext and does not return provider credentials after they are saved. The proxy decrypts the selected credential in service memory when forwarding a request, so Till is not a zero-knowledge system.
Till is in a controlled beta. New accounts are approved and provisioned manually; public anonymous signup is not available. Request beta access to start the onboarding conversation.
Need a deeper answer? Visit the full FAQ, explore use cases, or read the API documentation.
Till is accepting a small number of manually onboarded beta customers. Tell us what you want to put behind the Till line.