Kong AI Gateway
"Govern all AI traffic. Do it with one gateway." [1]
Kong AI Gateway is a control plane for teams routing traffic across multiple LLM providers, offering unified OpenAI-compatible API access, automatic fallback, semantic caching, token-based spend limits, PII sanitization, and MCP/agent-to-agent governance. It targets platform and security engineering teams that need centralized AI access control, observability, and audit logging across providers. Paid plans start at $105 per seat per month with no sales call required, and a fully self-hosted open-source option (Kong Gateway 3.9.1 and earlier) is available at no cost. The platform holds SOC 2 Type 2 certification, is GDPR and PCI DSS compliant, and publishes an SLA.
Best for / Avoid if
Best for: Prototypes and side projects - free to start, no sales call; Regulated or enterprise workloads - compliance attestations and an enterprise plan; AI agents and automation - an agent-ready surface (MCP / llms.txt)
Pricing & procurement
- Pricing model
- Hybrid (base + usage) [2]
- Published pricing
- ✓ Yes [3]
- Free tier
- ✓ Yes [4]
- Free tier details
- Kong Gateway (the underlying engine) is available under Apache 2.0 license and can be self-hosted for free; the AI plugins were released as entirely free and open source. Kong Konnect offers a 30-day free trial with no credit card required (enterprise functionality during trial).
- Self-serve signup
- ✓ Yes [5]
- Requires sales call
- ✗ No
- Enterprise plan
- ✓ Yes [6]
| Plan | Item | Per | Amount | Source |
|---|---|---|---|---|
| Open Source | Kong Gateway self-hosted (Apache 2.0, includes AI plugins) | $0 | source | |
| Free Trial | Konnect platform trial (AI Gateway included, enterprise functionality) | 30 days | $0 | source |
| Plus | Gateway service (per service/month, usage-based) | gateway service/month | $105 | source |
| Plus | API request volume overage | 1,000,000 additional requests/month | $200 | source |
| Plus | AI Gateway LLM model proxy (beyond 5 included) | model/month | $100 | source |
| Plus | Dedicated Cloud Gateway bandwidth | GB | $0.15 | source |
| Plus | Additional published API (first 10 extras) | published API/month | $20 | source |
| Plus | Additional published API (after first 10 extras) | published API/month | $10 | source |
| Plus | Additional Developer Portal | portal/month | $200 | source |
| Plus | Advanced analytics overage | 1,000,000 requests | $20 | source |
| Enterprise | Konnect Enterprise platform (AI Gateway included, unlimited gateways) | year (custom) | - | source |
Capabilities
- Supported actions
- unified_chat_completions, openai_compatible_api, model_routing, automatic_fallback, load_balancing, semantic_caching, prompt_caching, spend_limits, budgets, rate_limiting, observability_logging, tracing, guardrails, pii_redaction, virtual_keys, byo_provider_keys, prompt_management, semantic_routing, prompt_injection_detection, content_safety_integration, token_metering, chargeback_showback, mcp_proxy, a2a_traffic_governance, rag_injection, llm_as_judge, canary_releases, opentelemetry_support, streaming [7]
- Regions
- US, EU, Australia, India [8]
- Input types
- chat completions, text completions, embeddings, image generation, audio transcription, text-to-speech, function calling, assistants, batches, video generation, reranking, MCP tool calls, A2A agent traffic
- Output types
- streaming (SSE), OpenAI-compatible response, JSON, native LLM provider format
- Webhooks
- ✗ No
- Sandbox / test mode
- ✗ No [9]
- SDK languages
- Go, TypeScript, Go (plugin PDK), JavaScript (plugin PDK), Python (plugin PDK) [10]
- MCP server
- ✓ Yes [11]
Trust & compliance
- SOC 2
- SOC 2 Type II [12]
- HIPAA
- ✗ No [13]
- GDPR
- ✓ Yes [14]
- ISO 27001
- – Unknown [15]
- PCI DSS
- ✓ Yes [16]
- Published SLA
- ✓ Yes [17]
- Known restrictions
- Kong Gateway 3.10+ without a valid license behaves as an expired Enterprise license, not full OSS; last fully OSS builds are version 3.9.1 and earlier, Plus plan limits AI Gateway to up to 5 unique LLM models; additional models cost $100/month each, Policy-based rate limiting currently functions only with AI Proxy Advanced plugin, Token cost for AI Proxy/AI Proxy Advanced is only reflected during the next request (one-request lag), Health checks and circuit breakers require version 3.13+, Native LLM format proxying without conversion requires version 3.10+ [18]
Developer surface
Integration
- API style
- rest
- Base URL
- https://global.api.konghq.com
- Version
- v3
- Versioning
- url
- Stability
- ga
- Auth methods
- api_key, oauth2
- Error format
- vendor-specific
- Webhook signing
- hmac_sha256
Adoption & maturity
- Launched
- 2024-02-15
- GA
- 2024-05-29
- Notable customers
- Rabobank, Richemont, Sky Italia, Verifone, Moderna, Yahoo Japan, First Abu Dhabi Bank, Security Bank, ANZ, Vestas
Other AI Gateway & LLM Routing APIs
Vercel AI Gateway
"AI Gateway provides a unified API to access hundreds of AI models through a single endpoint, with built-in budgets, usage monitoring, and fallbacks."
Portkey
"Production Stack for Gen AI Builders"
Bifrost (Maxim AI)
"The fastest, most resilient, enterprise-grade LLM, MCP, and agent gateway."
Cloudflare AI Gateway
"Connect to any model, dynamically route requests, and manage usage, billing, and logs from one unified gateway."
TrueFoundry AI Gateway
"A unified AI gateway to securely manage and govern AI across 1600+ models with policy control, real-time monitoring, and up to 30% cost reduction."
Helicone
"Open-source LLM observability and monitoring platform for developers" - routes, debugs, and analyzes AI applications with access to 100+ models through one API with built-in observability, automatic fallbacks, and zero markup pricing.
References
- ↑Description: konghq.com
- ↑Pricing model: konghq.com · konghq.com
- ↑Published pricing: konghq.com
- ↑Free tier: konghq.com · konghq.com
- ↑Self-serve signup: konghq.com
- ↑Enterprise plan: konghq.com
- ↑Supported actions: developer.konghq.com · developer.konghq.com
- ↑Regions: developer.konghq.com
- ↑Sandbox: konghq.com
- ↑SDK languages: developer.konghq.com
- ↑MCP server: developer.konghq.com
- ↑SOC 2: trust.konghq.com
- ↑HIPAA: konghq.com · trust.konghq.com
- ↑GDPR: trust.konghq.com
- ↑ISO 27001: trust.konghq.com
- ↑PCI DSS: trust.konghq.com · konghq.com
- ↑Published SLA: konghq.com
- ↑Known restrictions: konghq.com · github.com · developer.konghq.com
Change history
- 2026-06-21 Capabilities: {} → {"guardrails":true,"self_hosted":true,"observability":true,"spend_controls":tru…
- 2026-06-21 Summary Md: (none) → Kong AI Gateway is a control plane for teams routing traffic across multiple LL…
- 2026-06-21 Score Setup Speed: (none) → 85
- 2026-06-21 Score Docs Quality: (none) → 25
- 2026-06-21 Score Procurement Friction: (none) → 100
- 2026-06-21 Score Trust Readiness: (none) → 70
- 2026-06-21 Best For: (none) → Prototypes and side projects - free to start, no sales call, Regulated or enter…
- 2026-06-21 Scoring Methodology: (none) → Scores are computed deterministically from this profile's published, sourced fi…
- 2026-06-21 Score Agent Friendliness: (none) → 65
- 2026-06-21 Score Pricing Transparency: (none) → 100
- 2026-06-21 Llms Txt Present: (none) → Yes
- 2026-06-21 Rendering: (none) → static
- 2026-06-21 Has Structured Data: (none) → Yes
- 2026-06-21 Robots Allows Agents: (none) → Yes
- 2026-06-21 Status Page URL: (none) → https://status.konghq.com
- 2026-06-21 Docs URL: (none) → https://developer.konghq.com/
- 2026-06-21 Llms Txt URL: (none) → https://konghq.com/llms.txt
- 2026-06-21 Has Published Pricing: set to Yes
- 2026-06-21 Free Tier Available: set to Yes
- 2026-06-21 Free Tier Details: set to Kong Gateway (the underlying engine) is available under Apache 2.0 license and …
- 2026-06-21 Self Serve Signup: set to Yes
- 2026-06-21 Requires Sales Call: set to No
- 2026-06-21 Enterprise Plan Available: set to Yes
- 2026-06-21 SOC 2: set to type_2
- 2026-06-21 HIPAA: set to No
- 2026-06-21 GDPR: set to Yes
- 2026-06-21 PCI DSS: set to Yes
- 2026-06-21 SLA Published: set to Yes
- 2026-06-21 SLA URL: set to https://konghq.com/legal/service-level-agreement
- 2026-06-21 Data Retention Policy URL: set to https://konghq.com/legal/data-protection-addendum
- 2026-06-21 Known Restrictions: set to Kong Gateway 3.10+ without a valid license behaves as an expired Enterprise lic…
- 2026-06-21 Auth Methods: set to api_key, oauth2
- 2026-06-21 Auth Docs URL: set to https://developer.konghq.com/konnect-api/
- 2026-06-21 API Style: set to rest
- 2026-06-21 Base URL: set to https://global.api.konghq.com
- 2026-06-21 API Version: set to v3
- 2026-06-21 Versioning Scheme: set to url
- 2026-06-21 Stability: set to ga
- 2026-06-21 Deprecation Policy URL: set to https://developer.konghq.com/gateway/version-support-policy/
- 2026-06-21 Quickstart URL: set to https://get.konghq.com/ai
- 2026-06-21 Error Format: set to vendor-specific
- 2026-06-21 Webhook Signing: set to hmac_sha256
- 2026-06-21 Webhook Events URL: set to https://developer.konghq.com/how-to/create-a-webhook-with-kong-gateway/
- 2026-06-21 Requires Verification: set to No
- 2026-06-21 Starting Price Usd: set to 105
- 2026-06-21 Slug: set to kong-ai-gateway
- 2026-06-21 Free Tier Limit: set to open-source self-host (Kong Gateway OSS, unlimited API calls); Konnect 30-day t…
- 2026-06-21 Launched At: set to 2024-02-15
- 2026-06-21 GA Date: set to 2024-05-29
- 2026-06-21 Notable Customers: set to Rabobank, Richemont, Sky Italia, Verifone, Moderna, Yahoo Japan, First Abu Dhab…
Suggest an edit / leave a review
Leave a review or comment
curl -X POST https://apio.sh/api/feedback/kong-ai-gateway \
-H 'Content-Type: application/json' \
-d '{"kind":"review","rating":5,"body":"Your experience with this API…"}'Suggest a correction to a field (cite a source)
curl -X POST https://apio.sh/api/suggest/kong-ai-gateway/FIELD \
-H 'Content-Type: application/json' \
-d '{"value":"corrected value","citations":[{"url":"https://source.example/page","excerpt":"supporting quote"}],"note":"what changed and why"}'