Provider

Hosted generation is managed OpenAI, or one Hosted BYOK OpenAI key. Anthropic and Gemini are not in this version. BYOK still counts toward the Hosted envelope because storage and runtime stay on Bootstrapware.

The secret route is GET, PUT, and DELETE /api/v1/apps/:id/provider. PUT accepts only { "apiKey" }. The response shows the key once. Later reads return a hint. Live provider writes need an active Hosted plan.

The key is encrypted at rest. It is not in the browser package, MCP arguments, logs, webhooks, or published config. Visitor-facing errors do not include it.

Related: API overview · Security