LiteLLM gateway online

One login.
Your LiteLLM.

Connect Hermes Agent to your LiteLLM gateway without copying master keys. Sign in once, approve the device, and choose directly from LiteLLM's live model catalog.

No upstream provider keys are exposed to your device.

hermes — pingusecure

$ hermes pingu setup

01Device code createdOpening a secure browser session…
02Identity verifiedyou@company.com
03Choose your modelLive from LiteLLM /v1/models
providerpinguendpoint/v1/chat/completionscredentialscoped · revocable
Device authorizationLive LiteLLM catalogNo duplicated policyLiteLLM routing
Designed for agents

From terminal to inference in three clean steps.

01

Start from Hermes

Run one plugin command. Hermes requests a short-lived device code and opens Pingu.

hermes pingu setup
02

Approve in your browser

Pingu verifies your identity and asks LiteLLM to create a standard revocable Virtual Key.

AAuthenticated user
03

Choose an allowed model

Hermes receives a revocable Virtual Key and reads the current catalog directly from LiteLLM.

LiteLLM cataloglivehermes modelselectPingu Virtual Keyrevocable
Least privilege by default

Your agent gets access.
Not your infrastructure secrets.

01Scoped credentialsEach device receives its own model allowlist, rate limit, and budget.
02One-time deliveryDevice codes expire quickly and the generated key is delivered exactly once.
03Immediate revocationLogout revokes the virtual key in both Pingu and the LiteLLM gateway.