<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Tetrate Blog</title><description>Latest from Tetrate on Envoy, Istio, service mesh, and enterprise AI gateway.</description><link>https://tetrate.io/</link><item><title>How to solve LLM provider lock-in, outages, and cost overruns with an AI gateway</title><link>https://tetrate.io/blog/solve-llm-provider-lock-in/</link><guid isPermaLink="true">https://tetrate.io/blog/solve-llm-provider-lock-in/</guid><description>An AI gateway centralizes model routing, fallback, cost control, and observability to solve provider lock-in, outages, and runaway LLM costs at scale.</description><pubDate>Tue, 09 Jun 2026 04:00:00 GMT</pubDate></item><item><title>HTTP Bomb (CVE-2026-47774): The Critical Envoy HTTP/2 Flaw Explained</title><link>https://tetrate.io/blog/envoy-http2-bomb-cve-2026-47774/</link><guid isPermaLink="true">https://tetrate.io/blog/envoy-http2-bomb-cve-2026-47774/</guid><description>A single residential connection can exhaust 32 GB of Envoy memory in ~10 seconds. What the HTTP Bomb is, who is affected, and how to patch it.</description><pubDate>Mon, 08 Jun 2026 16:00:00 GMT</pubDate></item><item><title>Tokens Are the New Unit of Spend. Can You Prove the Return?</title><link>https://tetrate.io/blog/tokenomics-roi-on-tokens/</link><guid isPermaLink="true">https://tetrate.io/blog/tokenomics-roi-on-tokens/</guid><description>Tokens are the fastest-growing line in enterprise tech budgets. The Linux Foundation named the problem; measuring token ROI is still on you. Here&apos;s how.</description><pubDate>Fri, 05 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Parameter-Level Authorization for AI Agents: Enforcing Policy on Live MCP Tool Calls</title><link>https://tetrate.io/blog/parameter-level-authorization-for-ai-agents/</link><guid isPermaLink="true">https://tetrate.io/blog/parameter-level-authorization-for-ai-agents/</guid><description>Tetrate Agent Router Enterprise and Ory enforce dynamic, parameter-level authorization on live MCP tool calls, with step-up approval for high-risk actions.</description><pubDate>Wed, 03 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Stop Asking People to Tag Their AI Spend</title><link>https://tetrate.io/blog/ai-cost-attribution/</link><guid isPermaLink="true">https://tetrate.io/blog/ai-cost-attribution/</guid><description>About half our AI spend last week was on API keys with no team tag, no workload tag, no owner. That&apos;s not a discipline problem, it&apos;s a product problem — and the fix isn&apos;t a better tagging UI.</description><pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate></item><item><title>Is Your AI Spend Producing Anything? A Manager&apos;s Guide</title><link>https://tetrate.io/blog/ai-spend-roi-managers-guide/</link><guid isPermaLink="true">https://tetrate.io/blog/ai-spend-roi-managers-guide/</guid><description>Your AI budget doubled. Someone is going to ask you whether it&apos;s producing anything. Most managers don&apos;t have a great answer. Here are the two levers you actually have, and a three-question Monday-morning diagnostic.</description><pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate></item><item><title>What is an AI gateway, and why every LLM team needs one</title><link>https://tetrate.io/blog/what-is-ai-gateway/</link><guid isPermaLink="true">https://tetrate.io/blog/what-is-ai-gateway/</guid><description>An AI Gateway handles routing to one or more AI models, fallback, authentication, cost control, and observability.</description><pubDate>Thu, 23 Apr 2026 00:00:00 GMT</pubDate></item><item><title>SR 11-7 Just Wrote Itself Out of the GenAI Conversation</title><link>https://tetrate.io/blog/sr-11-7-genai-carve-out/</link><guid isPermaLink="true">https://tetrate.io/blog/sr-11-7-genai-carve-out/</guid><description>The April 17, 2026 interagency MRM rewrite explicitly carves generative and agentic AI out of scope. That&apos;s not a retreat — it&apos;s an RFI window, and it&apos;s the firms with deployed controls that will shape what comes next.</description><pubDate>Wed, 22 Apr 2026 16:00:00 GMT</pubDate></item><item><title>Agent Security: What NIST Wants You to Think About Before Your Agent Calls a Tool</title><link>https://tetrate.io/blog/agent-security-tool-calling/</link><guid isPermaLink="true">https://tetrate.io/blog/agent-security-tool-calling/</guid><description>Your agent has AWS credentials. It can execute cloud CLI commands. NIST has opinions about this. Here&apos;s what tool-calling security looks like in practice.</description><pubDate>Tue, 21 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Making Agents Reliable: Auto-Save, Stable IDs, and the Context Window Problem</title><link>https://tetrate.io/blog/cost-agent-reliability/</link><guid isPermaLink="true">https://tetrate.io/blog/cost-agent-reliability/</guid><description>When your agent crashes at tool call 142 out of 150, you&apos;d better hope the first 141 findings aren&apos;t lost. Here are the patterns that made our cost agents production-ready.</description><pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Not Everything Needs an LLM: When to Remove the AI from Your AI Agent</title><link>https://tetrate.io/blog/not-everything-needs-llm/</link><guid isPermaLink="true">https://tetrate.io/blog/not-everything-needs-llm/</guid><description>We built an agent to sync compliance data. Then we built a version without the LLM that runs faster, costs less, and produces identical results. Knowing when to remove the AI is an underrated skill.</description><pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Two Ways to Build a Cost Agent (And Why We Use Both)</title><link>https://tetrate.io/blog/cost-agent-two-patterns/</link><guid isPermaLink="true">https://tetrate.io/blog/cost-agent-two-patterns/</guid><description>We built two fundamentally different architectures for our cost optimization agents. One lets the LLM drive. The other relegates it to a single call. Both have their place.</description><pubDate>Fri, 03 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Your Agent Found 2.4 Percent of the Savings. Now What?</title><link>https://tetrate.io/blog/cost-agent-gap-analysis/</link><guid isPermaLink="true">https://tetrate.io/blog/cost-agent-gap-analysis/</guid><description>We built a cost optimization agent. It worked. Then we did the math: it was catching 2.4 percent of the savings. Here&apos;s what was missing and what we changed.</description><pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate></item><item><title>From Plain English to Governed Workflows: How WorkflowIQ Earned Runner-Up at the Tetrate AI Buildathon</title><link>https://tetrate.io/blog/workflowiq-buildathon-runner-up/</link><guid isPermaLink="true">https://tetrate.io/blog/workflowiq-buildathon-runner-up/</guid><description>WorkflowIQ&apos;s runner-up finish at the first Tetrate AI Buildathon underscores its innovative approach to governed AI workflows—turning plain English into structured, event-driven processes.</description><pubDate>Wed, 18 Mar 2026 00:00:00 GMT</pubDate></item><item><title>Announcing Built On Envoy: Making Envoy Extensions Accessible to Everyone</title><link>https://tetrate.io/blog/boe-launch/</link><guid isPermaLink="true">https://tetrate.io/blog/boe-launch/</guid><description>Built On Envoy is a community-driven marketplace and CLI that makes discovering, running, and sharing Envoy extensions effortless. Try it today!</description><pubDate>Wed, 11 Mar 2026 00:00:00 GMT</pubDate></item><item><title>From Photos to Packing Lists: How Mvio Won the First Tetrate AI Buildathon</title><link>https://tetrate.io/blog/mvio-buildathon-winner/</link><guid isPermaLink="true">https://tetrate.io/blog/mvio-buildathon-winner/</guid><description>Mvio won the first Tetrate AI Buildathon by turning moving inventory into a simple photo-to-structured-data workflow. Here&apos;s how they did it and why it matters.</description><pubDate>Thu, 05 Mar 2026 00:00:00 GMT</pubDate></item><item><title>Reflections on the First Tetrate AI Buildathon</title><link>https://tetrate.io/blog/reflections-on-first-tetrate-ai-buildathon/</link><guid isPermaLink="true">https://tetrate.io/blog/reflections-on-first-tetrate-ai-buildathon/</guid><description>A reflection on the first Tetrate AI Buildathon—the supportive community, the intentional &apos;Buildathon&apos; approach, 16 demoable projects, and what comes next.</description><pubDate>Tue, 24 Feb 2026 00:00:00 GMT</pubDate></item><item><title>We Built an AI Agent to Cut Our Cloud Bill in Half</title><link>https://tetrate.io/blog/cost-agent-executive-summary/</link><guid isPermaLink="true">https://tetrate.io/blog/cost-agent-executive-summary/</guid><description>Our cloud bill was attracting board-level attention. Instead of hiring a FinOps team, we built AI agents that scan AWS, GCP, and Azure weekly. Here&apos;s what we learned.</description><pubDate>Tue, 17 Feb 2026 00:00:00 GMT</pubDate></item><item><title>FINRA Just Told You What They&apos;ll Examine Your AI Agents On</title><link>https://tetrate.io/blog/finra-agents-what-it-means/</link><guid isPermaLink="true">https://tetrate.io/blog/finra-agents-what-it-means/</guid><description>FINRA&apos;s 2026 report has a new section on AI agents with seven named risks and four considerations for firms. Here&apos;s what that actually means for your engineering team.</description><pubDate>Tue, 10 Feb 2026 00:00:00 GMT</pubDate></item><item><title>Determinism + Transparency: The Use Cases Waiting to Be Unlocked</title><link>https://tetrate.io/blog/determinism-transparency-use-cases-unlocked/</link><guid isPermaLink="true">https://tetrate.io/blog/determinism-transparency-use-cases-unlocked/</guid><description>There&apos;s a world where LLMs sit comfortably inside traditional model-risk frameworks. With deterministic inference and transparent models, we&apos;re closer than you think.</description><pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate></item><item><title>Black Box Models in a Regulated World</title><link>https://tetrate.io/blog/black-box-models-in-a-regulated-world/</link><guid isPermaLink="true">https://tetrate.io/blog/black-box-models-in-a-regulated-world/</guid><description>Trust me, the training data is fine is not a valid response to a regulator. Proprietary LLMs fail on basic transparency requirements that traditional models satisfy easily.</description><pubDate>Tue, 27 Jan 2026 00:00:00 GMT</pubDate></item><item><title>You Can&apos;t Validate What Never Gives the Same Answer Twice</title><link>https://tetrate.io/blog/you-cant-validate-nondeterministic-llms/</link><guid isPermaLink="true">https://tetrate.io/blog/you-cant-validate-nondeterministic-llms/</guid><description>Your model risk team wants to validate your LLM. They run the same test twice. They get different answers. Meeting adjourned.</description><pubDate>Wed, 21 Jan 2026 00:00:00 GMT</pubDate></item><item><title>The Tier 3 Problem: Why Banks Can&apos;t Use LLMs for Real Decisions</title><link>https://tetrate.io/blog/the-tier-3-problem/</link><guid isPermaLink="true">https://tetrate.io/blog/the-tier-3-problem/</guid><description>Banks are leaving $920bn in operational efficiency gains on the table because they can&apos;t get LLMs past their risk teams. The issue isn&apos;t caution—it&apos;s that current LLMs can&apos;t satisfy SR 11-7 requirements.</description><pubDate>Tue, 13 Jan 2026 00:00:00 GMT</pubDate></item><item><title>The Golden Signals of AI Governance</title><link>https://tetrate.io/blog/the-golden-signals-of-ai-governance/</link><guid isPermaLink="true">https://tetrate.io/blog/the-golden-signals-of-ai-governance/</guid><description>When your CEO asks &quot;are our AI systems compliant right now?&quot; can you answer in less than three business days? If not, you&apos;re governing blind. Here are the five metrics that matter.</description><pubDate>Thu, 08 Jan 2026 00:00:00 GMT</pubDate></item><item><title>Automating SEO Implementation with an Agentic Workflow</title><link>https://tetrate.io/blog/automating-seo-implementation-with-an-agentic-workflow/</link><guid isPermaLink="true">https://tetrate.io/blog/automating-seo-implementation-with-an-agentic-workflow/</guid><description>How we built agents to automate SEO reporting and content improvements—and what Tetrate Agent Router handled for us along the way.</description><pubDate>Tue, 06 Jan 2026 04:00:00 GMT</pubDate></item></channel></rss>