User Guide
How to set up API keys, proxy keys, rules, and connect your IDE to Iron LLM Gateway.
Overview
Iron LLM Gateway sits between your IDE / application and AI providers (OpenAI, Anthropic, GitHub Copilot). Instead of giving each tool your real API key, you create a proxy key in the dashboard and point your tools at the gateway URL.
rpk_... proxy keyStep 1 – Add Provider API Keys
Provider API keys are your real credentials (OpenAI, Anthropic, etc.). They are stored encrypted (AES-256-GCM) and never exposed through the proxy. Only admins can manage them.
Go to API Keys
Open /keys in the dashboard. Click Add Key.
Fill in the form
Save
The key is encrypted immediately on save. You can have multiple keys per provider for load balancing.
?code=yourcode to the proxy URL.Step 2 – Create a Proxy Key
Proxy keys (rpk_...) are what you give to your IDE or application. They never expire unless you delete them, and you can create as many as you need.
Go to Proxy Keys
Open /proxy-keys. Click Create Key.
Name your key
Give it a descriptive name like "VS Code", "Cursor", or "CI Pipeline".
Copy the key immediately
rpk_... key is shown only once at creation time. Copy it now — it cannot be retrieved later (only the SHA-256 hash is stored).# Example proxy key rpk_A1B2C3D4E5F6G7H8I9J0K1L2M3N4O5P6Q7R8S9T0U1V2W3X4
Step 3 – Connect Your IDE
Paste your proxy key below, select your tool, then copy the config.
opencodeCustom provider via @ai-sdk/openai-compatibleContinue~/.continue/config.json (VS Code / JetBrains)CursorEnvironment variables picked up by CursorClaude CodeANTHROPIC_BASE_URL + ANTHROPIC_API_KEY.envAny SDK: OpenAI, Anthropic, LangChain, etc.{
"$schema": "https://opencode.ai/config.json",
"provider": {
"iron-gateway": {
"npm": "@ai-sdk/openai-compatible",
"name": "Iron LLM Gateway",
"options": {
"baseURL": "https://llm-gateway-api.ironcode.cloud/v1/llm",
"apiKey": "xxxx"
},
"models": {
"code/model-name": {
"name": "Add provider keys with routing codes first"
}
}
}
}
}Rules & PII Detection
Every request is scanned for sensitive data before being forwarded. You can configure behavior in /rules.
Built-in PII patterns (always active)
Add a custom rule
Go to /rules → New Rule. Fill in:
| Field | Description |
|---|---|
Pattern | Regex to match in request/response body |
Action | "block" — reject request, or "replace" — redact matched text |
Severity | low / medium / high / critical (for log filtering) |
Salience | Evaluation priority — higher number runs first |
Usage & Logs
Every proxied request is logged with full metadata. Use the dashboard to monitor costs and debug issues.
GitHub Copilot
To route requests through the Copilot proxy, you need to authorize the gateway with your GitHub account. This uses GitHub's Device Flow (no redirect needed).
Go to API Keys → Add Key (Copilot)
Open /keys and select copilot as the provider.
Complete GitHub Device Flow
The dashboard will show a one-time code. Visit github.com/login/device and enter it to authorize.
Use the Copilot endpoint
{
"apiBase": "https://llm-gateway-api.ironcode.cloud/v1/copilot",
"apiKey": "rpk_your_proxy_key",
"model": "gpt-4o"
}