# AWS API Gateway vs Envoy Gateway

| Attribute | AWS API Gateway | Envoy Gateway |
|---|---|---|
| **Vioscale score** | 54.5 (41% (low)) | 59.6 (33% (low)) |
| activity.commits_last_30d | - | 100 |
| adoption.dependent_repos | - | 0 |
| adoption.github_stars | - | 2,989 |
| deployment.options | `{"cloud":true}` | `{"self_hosted":true}` |
| description.long | A managed cloud service that handles the complete lifecycle of APIs—from creation and deployment to monitoring and security—including traffic management, authorization, throttling, and version control. | Open-source gateway providing traffic management, security controls, and observability for Kubernetes applications following the Gateway API specification. Can be deployed either standalone or as part of a Kubernetes cluster. |
| features.capabilities | `{"hosting":"cloud","k8s_native":false,"grpc_support":false,"observability":true,"rate_limiting":true,"graphql_gateway":false,"developer_portal":true,"request_transformation":true}` | `{"mtls":true,"hosting":"self","k8s_native":true,"oauth_oidc":true,"observability":true,"rate_limiting":true}` |
| integrations.count | 10 | - |
| integrations.list | `[{"name":"AWS Lambda"},{"name":"Amazon CloudFront"},{"name":"Amazon CloudWatch"},{"name":"Amazon DynamoDB"},{"name":"Amazon S3"},{"name":"Amazon EC2"},{"name":"Amazon VPC"},{"name":"AWS PrivateLink"},{"name":"AWS Serverless Application Model"},{"name":"AWS IoT"}]` | - |
| language.primary | - | Go |
| license.spdx | - | Apache-2.0 |
| market.availability | `{"hqCountry":"US","primaryMarkets":["US"],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` | - |
| platform.support | `{"web":true}` | `{"cli":true}` |
| pricing | `{"type":"usage","plans":[{"free":false,"name":"HTTP APIs","summary":"1M free calls/month for 12 months; then $1.00/million (first 300M), $0.90/million above 300M","features":["1M free API calls per month for 12 months","Tiered pricing after free tier","Data transfer out charges apply"],"components":[{"per":{"qty":1000000,"unit":"requests"},"kind":"metered","amount":1,"currency":"USD"}],"description":"Pay per API call and data transfer out","contactSales":false,"includedLimits":{"free_tier_http_api_calls_per_month":"1M for 12 months (new AWS customers)"}},{"free":false,"name":"REST APIs","summary":"1M free calls/month for 12 months; then $3.50/million API calls (Edge Optimized/Regional)","features":["1M free API calls per month for 12 months","$3.50 per million for Edge Optimized/Regional APIs","No data transfer charges for Private APIs (PrivateLink charges apply)","Optional data caching at hourly rate"],"components":[{"per":{"qty":1000000,"unit":"requests"},"kind":"metered","amount":3.5,"currency":"USD"}],"description":"Pay per API call, data transfer, and optional caching","contactSales":false,"includedLimits":{"free_tier_rest_api_calls_per_month":"1M for 12 months (new AWS customers)"}},{"free":false,"name":"WebSocket APIs","summary":"1M free messages + 750k connection minutes/month for 12 months","features":["1M free messages per month for 12 months","750k free connection minutes per month for 12 months","Messages up to 128KB, metered in 32KB increments","Control frames (ping/pong) not metered"],"description":"Pay for messages sent/received and connection minutes","contactSales":false,"includedLimits":{"free_tier_messages_per_month":"1M for 12 months (new AWS customers)","free_tier_connection_minutes_per_month":"750000 for 12 months (new AWS customers)"}},{"free":false,"name":"API Gateway Portals","summary":"Monthly charge includes 10 PortalProducts with 40 REST endpoints each; additional PortalProducts billed separately","features":["Developer portal hosting","10 PortalProducts with 40 REST endpoints each included monthly","Additional PortalProducts billed separately","API discovery and documentation","Centralized governance","Prorated monthly charges"],"description":"Managed developer portals for API discovery and governance","contactSales":true,"includedLimits":{"portal_products":"10 per month","product_rest_endpoints":"40 per product"}}],"summary":"Usage-based pricing with no minimum fees or upfront commitments. HTTP APIs: $1.00/million calls; REST APIs: $3.50/million calls; data transfer charges apply. Free tier: 1M API calls per month for 12 months (new AWS customers). $200 free tier credit for new customers as of July 15, 2025.","currency":"USD","freeTier":true,"sourceUrl":"https://aws.amazon.com/api-gateway/pricing/","retrievedAt":"2026-08-16T20:53:52.220Z","startingPrice":{"amount":1,"period":"month","currency":"USD"},"billingPeriods":["month"]}` | `{"type":"open_source","sourceUrl":"https://gateway.envoyproxy.io","retrievedAt":"2026-08-16T21:35:24.255Z"}` |
| pricing.free_tier | yes | yes |
| pricing.model | freemium | commercial |
| pricing.price_level | low | free |
| pricing.transparent | yes | - |
| release.cadence_days | - | 6 |
| release.history | - | `[{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.9.0","date":"2026-08-15T12:31:24Z","type":"stable","version":"v1.9.0"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.9.0-rc.1","date":"2026-08-09T01:54:41Z","type":"prerelease","version":"v1.9.0-rc.1"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.3","date":"2026-07-22T18:59:16Z","type":"stable","version":"v1.8.3"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.5","date":"2026-07-08T15:36:49Z","type":"stable","version":"v1.7.5"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.2","date":"2026-07-01T07:14:42Z","type":"stable","version":"v1.8.2"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.1","date":"2026-06-05T07:32:33Z","type":"stable","version":"v1.8.1"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.4","date":"2026-06-05T07:55:38Z","type":"stable","version":"v1.7.4"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.0","date":"2026-05-13T15:45:46Z","type":"stable","version":"v1.8.0"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.3","date":"2026-05-09T23:13:52Z","type":"stable","version":"v1.7.3"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.0-rc.1","date":"2026-05-01T05:58:00Z","type":"prerelease","version":"v1.8.0-rc.1"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.6.7","date":"2026-04-27T20:16:54Z","type":"stable","version":"v1.6.7"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.2","date":"2026-04-17T01:33:18Z","type":"stable","version":"v1.7.2"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.6.6","date":"2026-04-16T14:08:03Z","type":"stable","version":"v1.6.6"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.6.5","date":"2026-03-13T02:12:48Z","type":"stable","version":"v1.6.5"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.1","date":"2026-03-12T17:15:44Z","type":"stable","version":"v1.7.1"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.6.4","date":"2026-02-11T18:48:14Z","type":"stable","version":"v1.6.4"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.5.9","date":"2026-02-11T17:32:53Z","type":"stable","version":"v1.5.9"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.0","date":"2026-02-05T22:23:47Z","type":"stable","version":"v1.7.0"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.0-rc.2","date":"2026-02-03T22:28:07Z","type":"prerelease","version":"v1.7.0-rc.2"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.0-rc.1","date":"2026-01-30T11:49:29Z","type":"prerelease","version":"v1.7.0-rc.1"}]` |
| security.disclosure_policy | yes | - |
| security.fedramp | yes | - |
| security.gdpr | yes | - |
| security.pci | yes | - |
| security.scorecard | - | 8 |
| security.vulnerabilities | - | `{"count":0,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=helm&package_name=gateway-crds-helm%2Fgateway-crds-helm&per_page=100","last_12m":0,"max_severity":null}` |

## Capabilities (API Gateways)

| Capability | AWS API Gateway | Envoy Gateway |
|---|:--:|:--:|
| **Deployment** |  |  |
| Hosting | Cloud only | Self-hosted only |
| Kubernetes-native | ✗ | ✓ |
| **Traffic** |  |  |
| Rate limiting | ✓ | ✓ |
| Request/response transformation | ✓ | - |
| **Security** |  |  |
| OAuth2 / OIDC / JWT | - | ✓ |
| Mutual TLS | - | ✓ |
| **Protocols** |  |  |
| GraphQL gateway | ✗ | - |
| gRPC support | ✗ | - |
| **Delivery** |  |  |
| Developer portal | ✓ | - |
| Monetization | - | - |
| **Ecosystem** |  |  |
| Plugin ecosystem | - | - |
| **Insight** |  |  |
| Observability | ✓ | ✓ |

*Source: Vioscale. Generated 2026-09-01T15:08:44.436Z. "-" = undocumented, not absent.*
