Enterprise-ready infrastructure

Slopshop for Teams
Production-grade agent infrastructure

RBAC, audit logging, cost controls, and self-hosting. Everything your security team needs to approve AI agent deployments at scale.

Team features

Everything you need to run agents in production across your organization.

Teams with RBAC

Role-based access control with granular permissions. Admin, developer, and viewer roles. Scope API keys to specific teams, projects, or tool categories.

Usage Analytics

Real-time dashboards for API usage, credit consumption, and tool adoption. Per-team and per-agent breakdowns. Export to your BI tools via webhooks.

Cost Forecasting

Predict monthly spend based on current usage patterns. Set alerts for budget thresholds. Model cost impact of new agent deployments before launch.

Webhooks

Real-time event delivery for agent actions, credit usage, rate limit hits, and errors. HMAC-signed payloads. Retry with exponential backoff.

Custom Rate Limits

Per-team and per-key rate limits. Burst allowances for production workloads. Priority queuing for critical agents. Rate limit headers on every response.

Budget Caps

Hard and soft spending limits per team, project, or API key. Auto-pause agents when budgets are exceeded. Monthly and daily cap options.


Security

Built with defense-in-depth from day one. Not bolted on after the fact.

Content Security Policy

Strict CSP headers on all responses. Script-src, style-src, and connect-src directives prevent XSS and data exfiltration vectors.

HTTPS Enforcement

TLS 1.2+ required on all connections. HSTS headers with long max-age. Certificate transparency monitoring. No plaintext fallback.

Timing-safe Auth

API key validation uses constant-time comparison to prevent timing side-channel attacks. No early returns on partial matches.

Memory Isolation

Agent memory is fully isolated per API key. No cross-tenant data access. Memory namespaces prevent accidental data leakage between projects.

Audit Logging

Every API call logged with timestamp, key hash, endpoint, response code, and latency. Tamper-evident log chains. Export to your SIEM.

Input Validation

Schema-validated inputs on every endpoint. Request size limits. SQL injection, XSS, and path traversal protections on all user-supplied data.


Self-hosting

Run Slopshop on your own infrastructure. Your data never leaves your network.

Run on Your Infrastructure

Single Node.js binary. Deploy to AWS, GCP, Azure, or bare metal. Docker image available. All 1,303 compute handlers work offline with zero external dependencies.

Air-gapped Deployments

All compute APIs work without internet access. SQLite-backed persistence requires no external database. Perfect for regulated industries and classified environments.

Configuration

Environment variable configuration. No config files to manage. Set PORT, API keys, memory limits, and feature flags. Works with your existing secrets management.


SLA tiers

Guaranteed uptime and support response times for production workloads.

Starter
99.5%
Best-effort support
Community Discord
Business
99.9%
8-hour response time
Dedicated Slack channel
Enterprise
99.99%
1-hour response time
Dedicated engineer

Contact us for SLA details


Compliance

Building trust through transparency and third-party validation.

SOC 2 Type II In Preparation

SOC 2 Type II certification is not yet complete. We are implementing controls for security, availability, and confidentiality trust service criteria. Formal audit not yet scheduled.

Data Processing

DPA available on request. Data residency options for EU deployments. Self-hosting option provides full data sovereignty for organizations that require it.

Ready to deploy agents at scale?

Get custom pricing, dedicated support, and SLA guarantees for your team.

dev@slopshop.gg

Contact for Enterprise Pricing