Skip to content

Security and data

Meter sits between Claude Code and Anthropic, so every request and response passes through it. Here is what it does with them — and what it doesn’t.

What Meter sees

  • To account for a call, Meter reads a bounded part of each response — up to 64 KB from the start and the end — for the token counts and tool calls.
  • Accounting runs off the request path: the agent’s response never waits on it.
  • The request body is parsed in full only when the team’s policy has repository or path rules. Budget-only policies never read it.

What Meter keeps

  • For each call: who (developer and team), when, model and provider, tokens and cost, repository, status and duration, security flags.
  • File paths and shell commands the agent passed to its tools: up to 32 per call, 300 characters each. Security flags work from these.
  • Secrets in those commands — tokens in known formats, Authorization header values, passwords in URLs, flags and variables such as DB_PASSWORD — are masked in the gateway, before anything is written. This is pattern matching: a secret in an unfamiliar format can get through.
  • Meter does not keep prompt text, response text or code.

Keys

  • Your team’s Anthropic or Ollama key is encrypted in the database with AES-256-GCM and never sent back to the browser.
  • The Meter keys developers put in their agents are stored only as a SHA-256 hash; a key is shown in full once, when it is created.
  • Only the team’s key goes to Anthropic; a developer’s key never does.
  • Error reports carry no request bodies, cookies, headers or keys.

Teams kept apart

  • The team comes from your session or key — never from a header or parameter the client sent.
  • Every analytics read is filtered to one team; live updates never cross teams.
  • Owner, admin and member roles are checked on the server; revoked access is gone within about 10 seconds.

Signing in

  • Passwords are stored only as a stretched hash (scrypt), at least 12 characters; the email address must be confirmed.
  • Google and GitHub sign-in is protected by state, PKCE and token verification.
  • Sign-in attempts are rate limited; a password reset link works once, for an hour, and ends every session.

How long data is kept

  • Call records are deleted after 13 months.
  • The event queue holds them for up to 7 days, so none is lost while storage is down.
  • You can delete your own account: your calls stay in the team's history only under an anonymous id. An owner can delete the team and everything it holds.

Not there yet

  • SSO (SAML or OIDC).
  • A stated hosting region, certifications and nightly off-site backups for the hosted service.

Self-hosted

Meter deploys into your cluster with a Helm chart. Your data then stays in your infrastructure, and nothing in it phones home.