Skip to content
ai-supply.store
DécouvrirCatégoriesClassementsCommunautéAgent APIFAQ
Se connecterInscription gratuite
catalog / Orchestration / Portkey AI Gateway
⇄ConnectorOrchestrationFree

Portkey AI Gateway

Fast open-source AI gateway that routes to 250+ LLMs through one API with load balancing, fallbacks, retries, and caching.

@ai-supply
Installations2.7k
⟳ upstream v1.15.2 · updated 7mo ago
↗ Dépôt source
← More OrchestrationOrchestration leaderboard →How we grade security →Source ↗
! Grade B · 75/100 · ReviewSecurity assessment
✓No compromise signals39capabilities surfaced1known CVE5of 20 OWASP controls clear
Suspicious network referencesPotentially unbounded loopSuspicious network referencesBroad capability surface
scanned 1mo ago·osv · gitleaks · opengrep · picklescan + heuristics·full breakdown in the Security tab ↓

Portkey AI Gateway

Portkey's AI Gateway is a fast, open-source router that sits between your application and large language model providers, exposing 250+ models through a single, consistent API. It is built for production LLM orchestration, letting you switch or blend providers without rewriting code while keeping latency low with a tiny footprint.

Key features

  • One unified API to OpenAI, Anthropic, Google, Azure, Bedrock, local models, and many more
  • Automatic fallbacks and retries when a provider errors or times out
  • Load balancing and weighted routing across keys and models
  • Semantic and simple caching to cut cost and latency
  • Request/response guardrails, timeouts, and observability hooks

The gateway is designed to add minimal overhead while giving teams resilience and control over model routing. Configuration is declarative, so you can define fallback chains, canary traffic splits, and per-request overrides via headers. It runs anywhere — as a local process, a container, or at the edge — and pairs with SDKs for common languages. With strong community traction, it has become a go-to open component for teams that need reliable, provider-agnostic LLM routing.

Curated mirror of the open-source Portkey AI Gateway (MIT). Get it from the source.

Rating rank
#1
of 16 in Orchestration
Install rank
#14
of 16 in Orchestration
Security score
75/100 · B
review
Security rank
#9
of 16 in Orchestration
Installs
2.7k
cat avg 126k
This listing vs category average
Installs
this
cat avg
Security (of 100)
this
cat avg
Adoption trend
See the Orchestration leaderboard →
! Security: Review · 7575/100 · grade Bscanned 1mo ago
✓ no compromise signals40 risk-surface · 10/20 OWASP controls flagged

Compromise signals — malicious or tampered code (leaked secrets, backdoors, a dropped executable) — reduce the score, and known dependency CVEs carry a bounded penalty (they warrant review but never QUARANTINE — update the dependency to clear). Other dangerous-by-capability traits are risk surface, expected for some capabilities. Every finding is mapped to its OWASP control below.

What this capability can do · high confidence (static)
Tools (2)
get_weathercalculate
⚑ filesystem⚑ network⚑ secretsinstall: postinstall
egress → www.contributor-covenant.org, hacktoberfest.com, hacktoberfest.digitalocean.com, discord.com, twitter.com, calendly.com, img.shields.io, portkey.ai +32
auth: bearergithub.comwww.contributor-covenant.orghacktoberfest.comhacktoberfest.digitalocean.comdiscord.comtwitter.comcalendly.comimg.shields.ioscope: 7.2.2scope: https:

Findings mapped to the OWASP Top 10 for LLM Applications (2025) and the OWASP Machine Learning Security Top 10. Expand any flagged control for the exact findings — compromise reduces the score; expected/risk-surface do not, except a known CVE, which carries a small bounded penalty (high/critical → Review).

OWASP Top 10 for LLM Applications
⚠LLM03Supply Chaincritical
Vulnerable/compromised dependencies, models or archives in the artifact.
•Dependency manifest — 27 npm dependencies declared · Portkey-AI-gateway-669825c/cookbook/integrations/vercel/package.jsonrisk surface
•Dependency manifest — 33 npm dependencies declared · Portkey-AI-gateway-669825c/package.jsonrisk surface
•npm install-lifecycle script — postinstall run on install — executes arbitrary code · Portkey-AI-gateway-669825c/package.json (CWE-506)risk surface
•Vulnerable dependencies — 89 known vulnerabilities in: @babel/core@7.24.5, @babel/helpers@7.24.5, @hono/node-server@1.13.5, ajv@6.12.6, brace-expansion@1.1.11, brace-expansion@2.0.1, defu@6.1.4, esbuild@0.17.19 (CWE-1395)known CVE · -25 pts
⚠LLM01Prompt Injectionhigh
Adversarial instructions embedded in an artifact that hijack a downstream LLM.
•Prompt-injection phrasing — instruction-subversion language detected · Portkey-AI-gateway-669825c/cookbook/getting-started/automatic-retries-on-failures.md (CWE-77)expected
⚠LLM06Excessive Agencyhigh
Over-broad tool/permission surface or unrestricted egress.
•External endpoints declared — 2 distinct host(s) · Portkey-AI-gateway-669825c/.github/CODE_OF_CONDUCT.mdexpected
•External endpoints declared — 5 distinct host(s) · Portkey-AI-gateway-669825c/.github/CONTRIBUTING.cn.mdexpected
•Egress to a private/loopback host — 127.0.0.1 · Portkey-AI-gateway-669825c/.github/README.cn.md (CWE-918)expected
•External endpoints declared — 22 distinct host(s) · Portkey-AI-gateway-669825c/.github/README.cn.mdexpected
•External endpoints declared — 31 distinct host(s) · Portkey-AI-gateway-669825c/.github/README.jp.mdexpected
•External endpoints declared — 1 distinct host(s) · Portkey-AI-gateway-669825c/.github/SUPPORT.mdexpected
•External endpoints declared — 6 distinct host(s) · Portkey-AI-gateway-669825c/.gitignoreexpected
•External endpoints declared — 24 distinct host(s) · Portkey-AI-gateway-669825c/README.mdexpected
•External endpoints declared — 4 distinct host(s) · Portkey-AI-gateway-669825c/cookbook/README.mdexpected
•External endpoints declared — 3 distinct host(s) · Portkey-AI-gateway-669825c/cookbook/integrations/Instructor_with_Portkey.ipynbexpected
•External endpoints declared — 8 distinct host(s) · Portkey-AI-gateway-669825c/cookbook/integrations/Phidata_with_Portkey.ipynbexpected
•External endpoints declared — 7 distinct host(s) · Portkey-AI-gateway-669825c/cookbook/integrations/ReAct Agents Portkey.ipynbexpected
•Broad capability surface — 3 high-impact capability categories referenced — verify least-privilege · Portkey-AI-gateway-669825c/cookbook/integrations/vercel/package-lock.json (CWE-272)risk surface
•External endpoints declared — 11 distinct host(s) · Portkey-AI-gateway-669825c/cookbook/integrations/vercel/package-lock.jsonexpected
•External endpoints declared — 10 distinct host(s) · Portkey-AI-gateway-669825c/cookbook/use-cases/Contextual Embeddings Guide Anthropic, Cohere, Voyage.ipynbexpected
•Broad capability surface — 4 high-impact capability categories referenced — verify least-privilege · Portkey-AI-gateway-669825c/cookbook/use-cases/Creating_Artifacts_with_GPT_4o_.ipynb (CWE-272)risk surface
•External endpoints declared — 13 distinct host(s) · Portkey-AI-gateway-669825c/cookbook/use-cases/LMSYS Series/comparing-top10-LMSYS-models-with-Portkey.ipynbexpected
•External endpoints declared — 18 distinct host(s) · Portkey-AI-gateway-669825c/docs/installation-deployments.mdexpected
•Egress to a private/loopback host — 169.254.169.254 · Portkey-AI-gateway-669825c/plugins/azure/utils.ts (CWE-918)expected
•Egress to an anonymous-paste / tunnel / OOB endpoint — webhook.site · Portkey-AI-gateway-669825c/plugins/default/manifest.json (CWE-200)expected
•External endpoints declared — 38 distinct host(s) · Portkey-AI-gateway-669825c/src/data/providers.jsonexpected
⚠LLM05Improper Output Handlingmedium
Code that pipes model/user output into shell, eval, SQL or paths unsafely.
•Suspicious code patterns — dynamic code execution · Portkey-AI-gateway-669825c/cookbook/integrations/ReAct Agents Portkey.ipynb (CWE-95)expected
•Suspicious code patterns — pickle deserialization · Portkey-AI-gateway-669825c/cookbook/use-cases/Contextual Embeddings Guide Anthropic, Cohere, Voyage.ipynb (CWE-502)expected
•Suspicious code patterns — child_process exec · Portkey-AI-gateway-669825c/start-test.js (CWE-78)expected
⚠LLM07System Prompt Leakagemedium
Secrets, internal hosts or proprietary logic exposed in shipped prompts.
•Low-confidence secret match — possible: JWT · Portkey-AI-gateway-669825c/plugins/default/default.test.ts (CWE-798)risk surface
•Internal host / private infrastructure reference — shipped content references a private IP range or internal-only host · Portkey-AI-gateway-669825c/src/middlewares/requestValidator/index.ts (CWE-200)risk surface
⚠LLM10Unbounded Consumptionmedium
Unbounded loops/recursion causing DoS or runaway cost.
Enforced at runtime by the gateway (rate limits + spend caps + size caps); static check flags unbounded loops.
•Potentially unbounded loop — an infinite loop (while True / while(1) / for(;;)) may cause runaway consumption · Portkey-AI-gateway-669825c/cookbook/guardrails/Langchain Chatbot with PII Guardrails.ipynb (CWE-835)risk surface
⚠LLM02Sensitive Information Disclosurelow
Secrets, credentials or PII shipped inside the artifact.
•Low-confidence secret match — possible: JWT · Portkey-AI-gateway-669825c/plugins/default/default.test.ts (CWE-798)risk surface
§LLM09MisinformationGovernance
Artifacts designed to produce false/deceptive output.
Detectable only by runtime behavioral evaluation; addressed via responsible-use attestation.
✓LLM04Data and Model PoisoningPassed
Backdoors/poisoning in training data or serialized models.
Behavioral poisoning needs model execution; static check covers unsafe serialization + dataset skew only.
✓LLM08Vector and Embedding WeaknessesPassed
PII or plaintext source leakage in embedding/vector exports.
Embedding inversion/poisoning is largely runtime; static check covers PII in vector exports.
OWASP Machine Learning Security Top 10
⚠ML06AI Supply Chaincritical
Compromised PyPI/npm packages, typosquats, unsafe serialized models.
•Dependency manifest — 27 npm dependencies declared · Portkey-AI-gateway-669825c/cookbook/integrations/vercel/package.jsonrisk surface
•Dependency manifest — 33 npm dependencies declared · Portkey-AI-gateway-669825c/package.jsonrisk surface
•npm install-lifecycle script — postinstall run on install — executes arbitrary code · Portkey-AI-gateway-669825c/package.json (CWE-506)risk surface
•Vulnerable dependencies — 89 known vulnerabilities in: @babel/core@7.24.5, @babel/helpers@7.24.5, @hono/node-server@1.13.5, ajv@6.12.6, brace-expansion@1.1.11, brace-expansion@2.0.1, defu@6.1.4, esbuild@0.17.19 (CWE-1395)known CVE · -25 pts
⚠ML02Data Poisoninghigh
Poisoned training datasets with triggers or anomalous distributions.
Static check covers trigger phrasing, PII and label skew; full poisoning detection is runtime.
•Prompt-injection phrasing — instruction-subversion language detected · Portkey-AI-gateway-669825c/cookbook/getting-started/automatic-retries-on-failures.md (CWE-77)expected
⚠ML09Output Integritymedium
Middleware tampering with model outputs in transit.
Gateway enforces TLS + response integrity; static check flags output-rewriting code.
•Suspicious code patterns — dynamic code execution · Portkey-AI-gateway-669825c/cookbook/integrations/ReAct Agents Portkey.ipynb (CWE-95)expected
•Suspicious code patterns — pickle deserialization · Portkey-AI-gateway-669825c/cookbook/use-cases/Contextual Embeddings Guide Anthropic, Cohere, Voyage.ipynb (CWE-502)expected
•Suspicious code patterns — child_process exec · Portkey-AI-gateway-669825c/start-test.js (CWE-78)expected
§ML01Input Manipulation (Adversarial)Governance
Models vulnerable to adversarial perturbations.
Requires runtime robustness evaluation; addressed via publisher robustness attestation.
§ML03Model InversionGovernance
Training data reconstructable from a model's outputs.
Runtime/evaluation property; addressed via model-card data-provenance + DP attestation.
§ML04Membership InferenceGovernance
Determining whether a record was in the training set.
Runtime/evaluation property; addressed via overfitting disclosure + DP attestation.
§ML08Model SkewingGovernance
Models trained on skewed data producing biased output.
Requires fairness evaluation; addressed via model-card bias/limitations disclosure.
✓ML05Model TheftPassed
Unlicensed re-distribution / license-incompatible derivatives.
Static check verifies license declaration; extraction throttling is runtime.
✓ML07Transfer Learning AttackPassed
Backdoored base models / LoRA adapters propagating to derivatives.
Backdoor detection needs behavioral probing; static check covers unsafe serialization + provenance.
✓ML10Model Poisoning (Weights)Passed
Tampered model weight files; integrity must be verifiable.
Static check enforces safe formats + records a content hash for downstream verification.
Other findings (19) · hygiene / uncategorized
•Unrecognized file type — '.dockerignore' is not on the allowlist · Portkey-AI-gateway-669825c/.dockerignorerisk surface
•Unrecognized file type — '.git-blame-ignore-revs' is not on the allowlist · Portkey-AI-gateway-669825c/.git-blame-ignore-revsrisk surface
•Unrecognized file type — '.gitattributes' is not on the allowlist · Portkey-AI-gateway-669825c/.gitattributesrisk surface
•Suspicious network references — raw IP URL (59 URLs) · Portkey-AI-gateway-669825c/.github/README.cn.mdrisk surface
•Unrecognized file type — '.gitignore' is not on the allowlist · Portkey-AI-gateway-669825c/.gitignorerisk surface
•Unrecognized file type — '.?' is not on the allowlist · Portkey-AI-gateway-669825c/.husky/pre-commitrisk surface
•Unrecognized file type — '.prettierignore' is not on the allowlist · Portkey-AI-gateway-669825c/.prettierignorerisk surface
•Unrecognized file type — '.prettierrc' is not on the allowlist · Portkey-AI-gateway-669825c/.prettierrcrisk surface
•Suspicious network references — suspicious TLD (10 URLs) · Portkey-AI-gateway-669825c/cookbook/integrations/mixtral-8x22b.ipynbrisk surface
•Unrecognized file type — '.mjs' is not on the allowlist · Portkey-AI-gateway-669825c/cookbook/integrations/vercel/next.config.mjsrisk surface
•Suspicious network references — suspicious TLD (11 URLs) · Portkey-AI-gateway-669825c/cookbook/providers/together.ipynbrisk surface
•Suspicious network references — suspicious TLD (17 URLs) · Portkey-AI-gateway-669825c/cookbook/use-cases/LMSYS Series/comparing-top10-LMSYS-models-with-Portkey.ipynbrisk surface
•Suspicious network references — suspicious TLD (9 URLs) · Portkey-AI-gateway-669825c/cookbook/use-cases/llama-3-on-groq.ipynbrisk surface
•Unrecognized file type — '.patch' is not on the allowlist · Portkey-AI-gateway-669825c/patches/@types+async-retry+1.4.5.patchrisk surface
•Suspicious network references — raw IP URL (4 URLs) · Portkey-AI-gateway-669825c/plugins/azure/utils.tsrisk surface
•Suspicious network references — raw IP URL (2 URLs) · Portkey-AI-gateway-669825c/plugins/default/validUrls.tsrisk surface
•Suspicious network references — suspicious TLD (39 URLs) · Portkey-AI-gateway-669825c/src/data/providers.jsonrisk surface
•Suspicious network references — suspicious TLD (1 URLs) · Portkey-AI-gateway-669825c/src/providers/hyperbolic/api.tsrisk surface
•Suspicious network references — suspicious TLD (2 URLs) · Portkey-AI-gateway-669825c/src/providers/moonshot/api.tsrisk surface
✔ verified source · pinned Portkey-AI-gateway-669825c
Check against a policy

The same gate an agent runs before installing (POST /api/v1/trust/portkey-ai-gateway/check). Click a policy:

Consume Portkey AI Gateway programmatically. Authenticate with an API key or session — see Authorize an agent.

# Agents: CHECK BEFORE YOU INSTALL (no auth) — score, grade, level, capability manifest
curl https://ai-supply.store/api/v1/trust/portkey-ai-gateway

# Gate against your org policy (returns { pass, violations })
curl -X POST https://ai-supply.store/api/v1/trust/portkey-ai-gateway/check \
  -H "Content-Type: application/json" \
  -d '{"minGrade":"B","denyPermissions":["shell"],"denyUnknownEgress":true}'

# CLI
npx ai-supply add portkey-ai-gateway

# REST (install → download)
curl -X POST https://ai-supply.store/api/v1/listings/portkey-ai-gateway/install \
  -H "Authorization: Bearer $AIM_KEY"

# MCP tool
install_listing({ "slug": "portkey-ai-gateway" })
OpenAPI spec →
vlatest
! Security: Review · 751mo ago

Curated mirror — latest upstream source. See the repository for tagged releases.

Sign in and install this listing to leave a review.

More from @ai-supply

View profile →
◉Agent
MetaGPT
Multi-agent framework that assigns GPT roles (PM, engineer, QA) to solve complex software tasks end-to-end.
↓ 1.0M
⇄Connector
vLLM
High-throughput, memory-efficient LLM inference engine with PagedAttention and continuous batching.
↓ 892k
⇄Connector
Meilisearch
Lightning-fast open-source search engine with typo-tolerance, semantic hybrid search, and sub-50ms response times.
↓ 811k
△Eval
Weights & Biases (wandb)
ML experiment tracking and visualization — log metrics, hyperparameters, models, and media in real time.
↓ 784k
ai-supply.store

Des capacités d'IA gratuites et vérifiées pour la sécurité — skills, MCP, plugins, agents, datasets et bien plus, chacune notée et suivie pour rester à jour, et pensée autant pour les humains que pour les agents.

api · v3.1status · all green
Contact
support@ai-supply.storesecurity@ai-supply.store
Catalogue
  • Découvrir
  • Catégories
  • Classements
  • Benchmarks
  • Sécurité
  • Scan a repo
Communauté
  • Communauté
  • FAQ
Pour les agents
  • Démarrage rapide (60s)
  • Autoriser un agent
  • Agent API
  • Spécification OpenAPI
Pour les développeurs
  • Publier
  • Tableau de bord
Compte
  • Créer un compte
  • Se connecter
  • Paramètres
Mentions légales
  • Conditions
  • Accord éditeur
  • Utilisation acceptable
  • Confidentialité