---
sourceDocument: Brazil Enable AI
sourceDocumentLink: https://www.servicenow.com/docs/r/intelligent-experiences

 Release :

    - brazil

ft:locale :

    - en-US

ft:publication_title :

    - Brazil Enable AI

ft:clusterId :

    - platai

bundleId :

    - platai

workflow :

    - Platform


---

# Bring your own key for third-party AI provider integration

# Bring your own key for third-party AI provider integration {#ariaid-title1}

Release version: Brazil  
Updated September 10, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read
Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Bring your own key for third-party AI provider integration

The Bring Your Own Key (BYOK) feature allows ServiceNow customers to integrate their own API credentials from supported cloud AI providers, including Azure OpenAI, Amazon Bedrock (Anthropic Claude on AWS), and Google Gemini.
This integration enables generative AI skills and AI agents to run using the customer's cloud AI provider account rather than the ServiceNow AI Platform infrastructure.
Show full answer Show less  
BYOK ensures that customers retain control over their AI configuration, security, and data processing environment while leveraging ServiceNow's AI capabilities. The feature uses the same AI models supported by ServiceNow's AI Platform but processes requests through the customer's cloud environment, maintaining key ownership and data privacy.

## Key Features

* **Cloud AI Provider Support:** Supports Azure OpenAI, Anthropic Claude via Amazon Bedrock, and Google Gemini.
* **API Credential Management:** Customers configure their own API keys, endpoints, and regions to establish connections.
* **Seamless Model Mapping:** Map ServiceNow model aliases to specific provider model versions to ensure compatibility.
* **Custom Prompt Configuration:** Ability to write and customize prompts sent to the AI models for tailored AI responses.
* **Integration Control:** Enable or switch providers via AI Admin Hub and Version Management to use BYOK for AI processing.
* **Security and Compliance:** Keeps encryption keys and AI workloads within customers' cloud environments for enhanced control.

## Configuring BYOK

To use BYOK, customers must:

* Create connection credentials with their chosen cloud AI provider (API key, endpoint, region).
* Enable BYOK in the ServiceNow AI Admin Hub for the selected provider.
* Map ServiceNow AI model aliases to the provider's model versions (e.g., geminilarge → 2.5 Pro).
* Override skill variants in Version Management to direct AI requests through the customer's provider account.
* Validate outbound AI requests by reviewing HTTPS logs to ensure requests use the configured provider account.

Specific configuration instructions for each supported provider are available in the ServiceNow Knowledge Base article for BYOK configuration.

## Important Considerations

* Using your organization's cloud AI provider account for BYOK may incur additional charges from that provider. Customers should review pricing and terms before enabling BYOK.
* BYOK maintains data privacy and security by running AI workloads entirely within the customer's cloud environment.

## Practical Benefits for ServiceNow Customers

* Retain full ownership and control over AI keys, configurations, and data.
* Leverage preferred cloud AI platforms while still using ServiceNow's AI Platform features.
* Customize AI prompts and model selection to better fit organizational needs.
* Ensure compliance with internal security policies by keeping AI workloads and keys within the customer's environments.  
The bring-your-own-key (BYOK) feature enables you to use your own API credentials from supported cloud AI providers, such as Azure OpenAI, Amazon Bedrock, and Google Gemini, to run generative AI skills and AI agents.

When BYOK is enabled, AI model requests are sent through your cloud AI provider account instead of ServiceNow AI Platform infrastructure. This approach lets you maintain ownership of your AI configuration, security controls, and data processing environment while continuing to use ServiceNow AI Platform capabilities.  
BYOK supports the same AI models that the ServiceNow AI Platform supports. After you configure your API credentials, your provider resources are used to process requests instead of the default ServiceNow AI provider. BYOK keeps your keys under your control and AI workloads running within your cloud environment.  
Note:  
Using your organization's cloud AI provider account might result in additional charges from that provider. Review the provider's pricing and terms of service before enabling BYOK.

## ServiceNow integrated model providers {#byok-for-azure-open-ai__section_njw_gt2_zhc}

BYOK supports the following cloud AI providers:

* Azure OpenAI
* Anthropic Claude on AWS, which is accessible through Amazon Bedrock
* Google Gemini
{#byok-for-azure-open-ai__ul_pxb_kt2_zhc}

## Configuring a BYOK connection with a cloud AI provider {#byok-for-azure-open-ai__section_yqb_py3_yhc}

To use your cloud AI provider resources within your ServiceNow instance, configure a connection between ServiceNow and your provider. Configuration steps vary by provider, but follow a similar high-level configuration workflow, such as the following:

1. Create connection and credentials for the provider, such as endpoint, API key, and region.
2. Enable BYOK for the provider in AI Admin Hub.
3. Map ServiceNow model aliases to provider model versions.

   For example, map `gemini_large` → 2.5 Pro.
4. Override variants in each skill in Version Management.
5. Validate that requests are using your AI provider account by reviewing outbound HTTPS logs.
{#byok-for-azure-open-ai__ol_fdb_kwh_b3c}

For step-by-step instructions for each supported cloud AI provider, see [Configure Bring Your Own Key (BYOK) for Now Assist and AI Agents \[KB2666298\]](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB2666298) article in the Now Support
Knowledge Base.  

## High-level BYOK configuration for Azure OpenAI {#byok-for-azure-open-ai__example_grf_rb3_b3c}

1. Set up Azure OpenAI connection with your own key to use Azure OpenAI within your ServiceNow instance.

   For more information, see [Configure API credentials for Azure OpenAI](https://www.servicenow.com/docs/FEhu~qjmXYSbggefW_wZpw "Configure your API credentials to use Azure OpenAI as your LLM provider for Generative AI Controller capabilities.").
2. Configure your Azure OpenAI model and deployment name in Generative AI Controller so your ServiceNow instance can recognize and use it.

   For more information, see [Create a custom embedding model](https://www.servicenow.com/docs/access?context=create-byom&version=brazil&pubname=brazil-platform-administration&ft:locale=en-US).
3. Modify the prompt configuration to write your own prompts to send to the Azure OpenAI LLMs.

   For more information, see [Configure a generic large language model (LLM) connector](https://www.servicenow.com/docs/rcXZxDkgb0dTbdO5zMrroA "Connect an external LLM to the ServiceNow AI Platform by using a generic LLM connector. With a connector, you can write your own prompts to send to the LLM and create your own generative AI capabilities.").
4. Switch providers to use BYOK for AI processing.For more information, see [Manage Integration](https://www.servicenow.com/docs/04yjna9yq7OX5lqRLf_IwA "Choose the preferred integration type for configuring the available model providers. There are two ways to configure a model provider in AI Admin Hub. You can either select Original Equipment Manufacturer (OEM) or Bring Your Own Key (BYOK).").

{#byok-for-azure-open-ai__ol_r2y_zbj_yhc}
**Related tasks**   

* [Configure a custom resource path for BYOK models](https://www.servicenow.com/docs/CQYVxrRXnWa5dyP_DrNtbQ "Enter a custom resource path in your bring-your-own-key (BYOK) model configuration so that Generative AI Controller can connect to AI service providers that use a different web address than the default.")

