Ingress
The following domains and IP addresses are required for connections from your environment to HiddenLayer services.General Whitelisting Domains
For broad access to all our environments, you can whitelist the following wildcard domains. These domains cover all necessary subdomains for general access.Non-Region Specific
US Region
EU Region
Specific Access Domains
For more fine-grained control or specific service access, the following subdomains should be whitelisted. Console Access — This domain is used for accessing the management console.
API Access — This domain is used for interacting with our APIs and submitting interaction data.
Region-Specific EndpointsThe non-suffixed domain
api.hiddenlayer.ai is an alias that defaults to the US region and is equivalent to api.us.hiddenlayer.ai. Use the region-specific subdomain for consistency across US and EU deployments.IP Addresses
If domain-based whitelisting is not available in your environment, the following IP addresses can be used for API and authentication access. Authentication —auth.hiddenlayer.ai
API —
api.hiddenlayer.ai
Egress
The following IP addresses are used by HiddenLayer when initiating outbound connections to your environment for integrations such as webhooks and Splunk data export. Please ensure that inbound connections from these IP addresses are permitted.IP Addresses
These IPs correspond to the public IP addresses of the NAT Gateways serving our SaaS environments.US Region
3.221.59.634.228.90.13635.170.103.88
EU Region
3.66.107.413.77.95.23118.185.151.6

