Meridian State UniversityEnterprise Architecture
Restricted InternalAI System Card
MSU AI API Gateway
| Document type | AI System Card | Version | 1.1 |
| Owner | Enterprise Architecture | Approver | AI Governance + ISO |
| Serves | Campus applications | Visibility | Restricted Internal |
| Last reviewed | 2026-04-01 | Next review | 2026-10-01 |
1. System purpose & scope
An institution-controlled gateway that brokers access to approved cloud AI APIs for campus applications, with logging, quotas, and data controls.
2. Architecture
A broker authenticates calling applications, enforces quotas and data-loss-prevention checks, routes to approved model endpoints, and logs each exchange.
3. Identity & access
Consumers
Approved campus applications and developers.
Auth
Service credentials with scoped permissions.
4. Controls
- Per-application quotas and rate limits
- DLP checks on payloads
- Centralized logging and monitoring
5. Governance boundary
Approved for Internal data by approval. Applications handling Confidential data require additional review.
6. Review history
2026-04-01 · v1.1
Added DLP rules; re-reviewed quotas.
2025-09-15 · v1.0
Initial gateway deployment and approval.
Review & approval
System owner — Enterprise Architecture
Information Security Office
AI Governance Committee
Date approved