- If abundant public evidence and community validation are mandatory
- Trussed has limited accessible independent review coverage. Organizations that require extensive public peer-review signals may find vendors with larger review footprints easier to justify.
- If the primary requirement is a developer-first, self-serve LLM routing and observability stack
- Some gateway vendors emphasize self-serve onboarding and published pricing that can enable faster evaluation.
- If the primary need is narrow security guardrails only
- If the core requirement is to prevent prompt injection and data leakage without a broader governance/audit control plane, a specialized security guardrails vendor may be more appropriate.
- If an inline proxy/control-plane dependency cannot be tolerated
- Any inline governance layer introduces a critical dependency; architectures that cannot tolerate this dependency or cannot safely test fail-closed/fail-open behavior should consider alternative approaches.
- If specific enterprise IAM integrations must be documented publicly
- Public materials reviewed did not clearly document SSO/SAML/SCIM integrations. Organizations with mandatory, documented IAM requirements should obtain written confirmation or consider vendors with explicit public documentation.
- Current limitations stated in public materials
- The vendor emphasizes a shared-responsibility model: because customers operate their deployments, compliance for a given deployment rests with the customer.
- Roadmap and not-yet-available features
- No public roadmap with delivery dates was located in the accessible materials.
- Scale limitations
- Vendor claims about high throughput and low latency were not independently validated in the sources reviewed. Prospective customers should test peak transactions-per-second/token throughput, policy evaluation overhead at scale, and log storage performance in their own environments.
- Security or compliance gaps
- SOC 2 Type II is stated; other certifications and detailed enterprise IAM integration documentation were not clearly available publicly.
- API limitations or integration constraints
- SDKs are referenced for Python, TypeScript, Go, and REST. Public documentation in this research set was insufficient to confirm complete feature parity across languages and platforms.