Identity and access

Explicit model grants

Signing in grants nothing. You decide which person, group, team or service may use each model.

What it is

Signing in grants nothing. Administrators grant each model or alias to a person, a group, a team, all teams, everyone, a service token or all service tokens, and grants add up.

Why you want it

Cost and data exposure differ a lot between models. Grants let IT approve a frontier model for one group and a cheap internal model for everyone, and prove who could use what.

A grants matrix: Engineering and Data science can use the frontier model; Support and Marketing get the fast model; everyone gets the small and self-hosted models. Frontier$$$$ Fast$$ Small$ On siteyour GPUs Engineering Data science Support Marketing Everyone Marketing asks the frontier model to draft an email. Refused, because Marketing isn't granted that model. The fast model writes the same email for a fraction of the cost.

How it works

  • Grantee types: user, group, all_users, team, all_teams, service_token, all_service_tokens
  • An all_users grant never reaches service tokens, and the reverse
  • GET /v1/models returns exactly what the caller may use
  • Grants on an alias and on its underlying model are independent

In the product

Janus Model grants screen with demo data
Model grants

Every model and alias with exactly who may use it: everyone, a team, or a named service token.

Actual Janus interface · Demo identities and synthetic usage

See it on your own network.

The Community edition is free for up to 25 people. The 30-day Business trial unlocks every Business feature.