Billing & Plans
Billing & Plans

Bring Your Own Key (BYOK)

BYOK (Bring Your Own Key) lets an organization route eligible hosted-model requests through its own provider account. You pay that provider directly instead of drawing Magister model credits for those requests.

Hosted Agent requirement — BYOK requires a hosted Agent project. It is available on Agent plans and for hosted Agent add-ons in Connect organizations. Standalone machine-free Connect uses the model credentials from Claude, ChatGPT, Codex, or another external assistant, so Magister BYOK does not apply there. Free and inactive organizations cannot save or use provider keys. If an organization already has a stored key when it loses eligibility, Magister keeps the key disabled until hosted Agent access returns.

Supported providers

- Anthropic — Claude models

- OpenAI — GPT models

Google/Gemini keys are not accepted by the current BYOK settings or save API.

How to add a key — open Organization Settings → API Keys. Paste the Anthropic or OpenAI key and save. Only organization managers can change organization API keys.

Where your key is stored — encrypted server-side in the gateway. The full key is never shown back to you after you save it; the UI displays the last 4 characters so you can recognize it (e.g. ••••a1b2).

Removing a key — click Remove next to any saved key. The key is deleted from storage and Magister goes back to using its own infrastructure (and your credits).

Model availability — BYOK does not unlock a model that the live hosted picker does not offer. It changes routing and billing for a supported provider/model combination.

Usage reporting — Magister Billing separates estimated usage through Your API Keys from platform-funded credits. The provider's own bill is authoritative for the amount charged.

Combining BYOK and credits — if you save a key for one supported provider but not the other, eligible requests for that provider use your key and other hosted requests use Magister credits.

Connect — your external assistant's model credentials and model bill remain with that assistant provider. A standalone Connect project neither needs nor accepts a Magister provider key. If the organization buys a hosted Agent add-on, that hosted project can use organization BYOK settings.