Bring every machine into one place
Each computer that runs agents keeps its own record. A hosted workspace gathers them, so the whole team reads one set of numbers without sharing a server.
You will learn
- What a hosted workspace adds
- How to connect each computer to it
- What is sent, and what never is
- What happens when the workspace can't be reached
Where this works
You don't need a plan to read on.| Free editionyour own machines | Hosted Freehosted | Teamhosted | Businesshosted | |
|---|---|---|---|---|
| Gather every computer's records in one workspace | — | |||
| Fill a gap from a gateway's ledger file | — |
Why one place
The gateway on each computer writes every call it serves to a ledger file on that computer. For one person that is the whole record, but a team gets one record per computer and nobody sees the total.
A hosted workspace is one place they all report to. Each computer keeps its own gateway, sends a record of each call to the workspace, and they add up there.
Connect each computer
Hosted FreeTeamBusinessWhoever runs the agents does this once on each computer that runs them, in a terminal (Mac or Linux).
First, install AxiGate. It is free and needs no account.
curl -fsSL https://raw.githubusercontent.com/axigatelabs/axigate-finops/main/install.sh | sh
Then make a key for this computer on Connect a gateway. The key is shown once, when you make it, with the exact command to run, the key already in it. If the page asks you to confirm your email address first, open the link in the email we sent when you signed up; the page sends a new one if you need it.
In your own workspace this is Connect a gateway. Start free to get one.
Run that command and leave it running. It starts the gateway and a local dashboard on this computer. The key goes in AXIGATE_INGEST_KEY so it does not show in the computer's process list.
AXIGATE_INGEST_KEY=<the key from Connect a gateway> axigate-finops serve --ingest-url https://<your workspace>/api/ingest
Last, start your agent through it, with your own agent's command in place of claude. Every call it makes shows up in the workspace.
axigate-finops run --gateway http://127.0.0.1:8787 -- claude
Do the same on every other computer, each with its own key. They all report to one workspace and add up together, and revoking one computer's key leaves the others sending.
What is sent, and what never is
A gateway sends the workspace only a record of each call: the times, the provider, the model and program names, tokens, cost, the outcome, your labels, run and session ids (Claude Code's, for example), a scrambled id of the key that made it ending in its last 4 characters, and whether that was an API key or a signed-in account. The gateway never puts a prompt or an answer in that record, and the workspace keeps only short labels: a tag over 128 characters is left out there, though the gateway's own record on your computer keeps it.
Prompts and answers go to the provider unchanged and are never recorded, in the workspace or on disk. Your provider key is passed through unchanged and never stored: the record names it by a fingerprint that shows at most its last four characters.
When the workspace can't be reached
Hosted FreeTeamBusinessYour agents keep working, and their limits still hold: the gateway on each computer enforces them itself.
Every call is also written to that gateway's ledger file, and the gateway sends what the workspace has not taken yet once it can be reached again, even after a restart. The workspace keeps calls by their id, so a call sent twice is kept once. If the computer's key is refused, the gateway says so once and stops sending until you connect it again with a new key; the calls it held back are sent then.
You can also upload a ledger file on Import a bill: calls the workspace already has are not counted twice, and the ones it adds count toward your plan's calls a month.
In your own workspace this is Import a bill. Start free to get one.
Recap
- A hosted workspace gathers every computer's records in one place. On the free edition, one shared gateway does that job.
- On each computer: install, make that computer's key on Connect a gateway, start the gateway with it, and start your agent through it.
- Only a record of each call is sent, never a prompt or an answer. If the workspace can't be reached, agents keep working and the ledger file fills the gap.