Org AI keys, precedence & cost oversight
Share encrypted org AI keys with your learners, set fallback precedence, and watch usage and estimated cost.
- Learners get Mysty AI without ever seeing (or pasting) a key
- Clear precedence: personal key → shared org keys → platform key, so there are no surprises
- Usage, failures and estimated cost per provider in one dashboard
Mysty AI for your org
Admin → Mysty AI is the tenant control room for AI access.
Shared org keys
Add provider keys to the org's encrypted vault. Members can use them — never see them. Toggle Share org keys with members to let learners without a personal key run Mysty on your keys, and optionally set a fallback precedence (the order your keys are tried).
How precedence resolves
1. The learner's own key, if they added one.
2. Your shared org keys, in your precedence order (when sharing is on).
3. The platform key (Mysty Cloud) — only if your org holds the cloud entitlement. The entitlement status is shown on this page.
Usage & estimated cost
The dashboard shows the last 30 days: calls, failures, estimated cost (metered tokens priced at provider list rates), learners using and the count of shared keys, plus a per-provider usage breakdown. Per-learner AI usage also appears on each learner's Student 360.
Nothing here leaks: only metadata and metering are visible — never key material or chat content.
The journey, step by step
| Step | What you do | What you get |
|---|---|---|
| Add org keys | Admin → Mysty AI: add provider keys to the encrypted vault | Keys are stored encrypted; members can use but never see them |
| Turn on sharing | Enable 'Share org keys with members' | Learners without their own key use the shared org keys |
| Order the fallback | Optionally set key precedence | Calls try your keys in the order you chose |
| Watch the meter | Check calls, failures, estimated cost and learners using (30d) | You see spend building up before the invoice does |
Frequently asked
Which key does a learner's AI call actually use?
Their own personal key first if they added one; otherwise your shared org keys (in your precedence order) when sharing is on; otherwise the platform key (Mysty Cloud) if your org has the cloud entitlement.
Can learners see the shared keys?
No. Keys live in an encrypted vault — members can consume them but never view them.
How is estimated cost calculated?
From metered tokens per call priced at list rates per provider and model. It's an estimate for oversight, not a bill.