Skip to main content
The NeuralTrust SaaS control plane configures TrustGate in both deployment modes:
  • SaaS — NeuralTrust hosts the data plane. This is the fastest path and requires no infrastructure installation.
  • Private (Hybrid) — you run the data plane in your environment for data residency, private networking, deterministic capacity, or production SLA requirements while continuing to manage it from the NeuralTrust SaaS console.
Choose SaaS for the fastest setup. Choose Private for data residency, private networking, deterministic capacity, or production SLA requirements.
1

Open Getting started

In the NeuralTrust console, open TrustGateGetting started.
2

Add a gateway

If you do not have a gateway, Add new Gateway opens automatically. Otherwise, open the gateway selector and choose New Gateway. Enter a Name and choose SaaS.For a Private data plane, choose Private, then select Docker, Kubernetes, or Manual. Deploy using the generated instructions, enter one bootstrap Dataplane URL, and select Save and Finish. Then open SettingsAgent GatewayGeneral to set or verify the separate LLM URL and MCP URL.
The generated Docker quick path exposes the LLM/proxy service only. Use Kubernetes or a full deployment when you need MCP.
See Private deployment for infrastructure details.
3

Step 1 · Connect a provider

Choose a provider and enter its credentials. Select Test connection to verify them, then select Connect.
4

Step 2 · Send request

Choose one of the provider’s models, enter a question, and select Send request. The console sends the request through the selected gateway.
5

Step 3 · Traces

Review the first trace, including its status, model, latency, token count, trace ID, and response. Continue to Playground, Consumer, or Security from the next-step cards.

Call from your application

The request in Getting started uses an internal playground token. It does not create a reusable API key for your application.
For production traffic:
  1. Open Consumers.
  2. Select Consumer; the New Consumer panel opens. You can also open an existing consumer.
  3. For a new consumer, select API Key under Authentication and copy the generated key when it is shown—it appears only once. For an existing consumer, manage credentials under Auth.
  4. Open Connect and use a snippet under Connection details.
The provider credential remains in TrustGate. Keep the consumer API key secret and use placeholders in shared examples.

SaaS

Use the SaaS gateway URL from Connection details. Do not add X-AG-Gateway-Slug.

Private (Hybrid)

Use the configured LLM URL and include the gateway slug:

Next steps

Consumers

Configure application identities, routes, and authentication.

Routing

Add load balancing and fallback across providers.

Policies

Apply limits, caching, guardrails, and governance.

Private deployment

Deploy and configure a Private data plane.