Quick summary
Vercel AI Gateway now supports a team-wide 'provider allowlist'. Administrators can restrict the list of allowed AI providers, ensuring that traffic is only routed to vendors that have undergone security and compliance vetting.
Why it matters
- Centralized governance: Only Team Owners can modify the allowlist, making controls transparent and easy to audit. - Data leak prevention: Even if AI agents or developers attempt to route requests to unapproved vendors, the gateway will automatically block them. - Secure by default: Once the allowlist is enabled, new providers are disabled by default until manually approved.
Sources
- https://vercel.com/changelog/team-wide-provider-allowlist-on-ai-gateway