Enterprise chaos

Enterprises rarely feel AI cost the way a solo builder feels an OpenAI invoice. Spend hides in commits, shared keys, and quarterly FinOps. What they cannot ignore is chaos: shadow tools, the same prompts billed twice, unsafe browse, opaque multi-vendor bills, unattended agent sessions nobody reviewed, and teams locked to one IDE.

Metrecept is the black box for that chaos, at organizational scale — one OpenAI-compatible pipe, org SSO, compliance policy, and a corporate ledger where every line is a signed, independently verifiable receipt, not just a billing rollup. Coding agents (Cursor, Claude Code, VS Code, and friends) plug in over MCP when you want them; SDKs and the Shell work without them.

The chaos map

What's going wrongWhat it looks likeWhat Metrecept does
Repeat inferenceAgents retry the same prompt; bills and rate limits spikeExact-match Redis replay + receipted meters on HIT/MISS
Unaccountable agent sessionsNobody reviewed what an unattended run called or costSigned session receipt aggregating every event
Shadow AIPersonal keys, unmanaged chat tools, no allowlistOrg tenancy, SSO, enforced ingress, model policy
Unsafe browseScrapers stuffing junk (or PII) into promptsPurpose-bound, robots-aware public-web ingest, receipted
Opaque vendorsThree lab invoices, no chargeback storyCost-center ledger + monthly FinOps statement
Client lock-in"We can only work inside one IDE"Agent Shell + any base_url client
Procurement fearNo admin surface, no audit, weak DPA storyOrg console, audit log, enterprise pack

Product surfaces

SurfaceRole
https://api.withohm.dev/v1OpenAI-compatible pipe (BYOK or managed pool)
Org consoleMembers, cost centers, policy, ledger / month CSV
Session demoSigned, verifiable receipts for a real agent session
IntegrationsCursor, Claude Code, VS Code, Windsurf, Zed, and the pipe stack
Enterprise applyDedicated-pool SKU — contact us

How a platform lead proves it

SSO in → mint a service key → attribute spend to two cost centers → export a month → show Legal a denied fetch or a signed receipt for a specific incident. All of that lives in the org console and the pipe — preferred clients stay on the integrations board.

Tag agents with X-Ohm-Path (docs-bot, ci-prompts, …). Org spend caps soft- or hard-stop MISS flood per cost center; HITs still serve. FinOps stays estimate_only — provider invoice import is not shipped.

Internal paths (where exact-match density is high)

PathWhy hits accumulate
Docs Q&A botsSame retrieval + answer template, many times a day
Support triageShort classified prompts over recurring ticket classes
Branch / preview automationMechanical agent loops with stable tool prompts
CI prompt suitesByte-identical checks on every PR

Point those agents at the Metrecept base_url (or attach MCP), keep prompts byte-identical, send a stable X-Ohm-Path, and the ledger records HIT vs MISS by cost center and path — each one receipted, not just tallied.

Fence

Replay is not training. Trees are not Postgres. Savings endpoints stay estimate_only. Metrecept is a recorder, not a governor: nothing here stops a reckless call before it happens — it makes the aftermath accountable. See Honesty · Trust.

Next