Identity & access
Authenticate API traffic, manage workspace access, and rotate tenant credentials from a controlled surface.
Security & trust
LiyaEngine combines identity, isolation, policy enforcement, and execution evidence so teams can make deliberate decisions about how AI reaches production.
POST /v1/rundomainintentinputControl surfaces
Platform controls help teams enforce boundaries, while application owners remain responsible for their data, policies, access, and deployment choices.
Authenticate API traffic, manage workspace access, and rotate tenant credentials from a controlled surface.
Scope domains, knowledge, configuration, sessions, and operational data to the owning tenant.
Configure retention, storage consent, memory, and knowledge access for the workload being operated.
Keep provider credentials and model strategy in tenant configuration instead of application source code.
Shared responsibility
Security starts before the first request and continues through configuration changes, runtime execution, and incident response.
Decide what the capability may receive, retrieve, retain, and return.
Scope people, credentials, domains, collections, and provider connections.
Run validation and guardrail checks in the request path.
Use audit and trace records to investigate behavior and improve controls.
Operating principles
Strong platform UX makes ownership, behavior, controls, and evidence visible to the people responsible for the capability.
Customer API data is not presented as training material for LiyaEngine models.
Retention, memory, retrieval, tools, and model access should be configured for the workload.
Security reports can be sent to [email protected] for coordinated investigation.
Questions
No. LiyaEngine supplies platform controls, but customers remain responsible for application design, authorization, data classification, and safe integration.
Yes. Tenant API and provider credentials are managed outside application code and can be rotated through their management surfaces.
Email [email protected] with reproduction steps, expected impact, and any supporting evidence. Avoid accessing customer data or disrupting production systems.
Map identity, data, policies, and evidence to the capability your team is preparing to ship.