Hi - I answer from the OpenSmartRoute documentation: routing, the API, plans and quotas, self-hosting. Ask away, or open a support ticket if you need a person.
Grounded in the docs - follow a source before acting on it.
Load only core, security, architecture. Validate every input at the boundary (zod);
parameterized queries only; Argon2id/Bcrypt; confirm RBAC on every mutation; no
stack-trace/PII leakage. See "Security surface" in
.ai/memory/shared/patterns.md for repo boundaries.
Use npm audit for dependency CVEs and report residual risk explicitly.
Use it
Copy one of these into your project. Installing also returns the manifest and these snippets.
# after Install: the listing is in your workspace's routing pool - a plan picks it for its slot
curl -s -X POST https://api.opensmartroute.ai/api/v1/route -H 'Authorization: Bearer $OSR_API_KEY' -H 'Content-Type: application/json' -d '{"text": "...", "plan": true}'
Manifest
An Open Capability Manifest: the router reads it to know what this does, what it costs and when to pick it.