Gateway Audit
Every protected downstream MCP call starts and finalizes a durable record in the shared Trace-compatible Aurora database before the gateway reports success.
Recorded
Trace and span ids, target host, MCP method, capability name, HTTP status, duration, and final execution state.
Never recorded
API keys, authorization headers, cookies, raw IPs, request bodies, response bodies, prompts, resource contents, or tool arguments.
Operator API
/api/v1/audit requires PLATPHORM_API_KEY because even redacted operational history is not a public discovery artifact.