# Envoy Gateway vs Traefik

| Attribute | Envoy Gateway | Traefik |
|---|---|---|
| **Vioscale score** | 59.6 (33% (low)) | 54.2 (55% (medium)) |
| activity.commits_last_30d | 100 | 90 |
| adoption.dependent_repos | 0 | 52 |
| adoption.github_stars | 2,989 | 64,604 |
| deployment.options | `{"self_hosted":true}` | `{"cloud":true,"hybrid":true,"on_prem":true,"self_hosted":true}` |
| description.long | Open-source gateway providing traffic management, security controls, and observability for Kubernetes applications following the Gateway API specification. Can be deployed either standalone or as part of a Kubernetes cluster. | Traefik is a reverse proxy that automatically discovers services running in containers, virtual machines, and cloud environments, then routes traffic to them. It supports multiple orchestrators and deployment models while providing load balancing, security controls, API management capabilities, and real-time observability without requiring configuration changes as infrastructure scales. |
| features.capabilities | `{"mtls":true,"hosting":"self","k8s_native":true,"oauth_oidc":true,"observability":true,"rate_limiting":true}` | `{"hosting":"both","k8s_native":true,"oauth_oidc":true,"grpc_support":true,"monetization":true,"observability":true,"rate_limiting":true,"developer_portal":true,"plugin_ecosystem":"extensive","request_transformation":true}` |
| integrations.count | - | 19 |
| integrations.list | - | `[{"name":"Docker"},{"name":"Kubernetes"},{"name":"Docker Swarm"},{"name":"Consul"},{"name":"Etcd"},{"name":"Rancher"},{"name":"Amazon ECS"},{"name":"HashiCorp Nomad"},{"name":"Azure Service Fabric"},{"name":"HashiCorp Vault"},{"name":"Let's Encrypt"},{"name":"Prometheus"},{"name":"Datadog"},{"name":"Statsd"},{"name":"InfluxDB"},{"name":"Argo CD"},{"name":"OpenAPI"},{"name":"ModSecurity"},{"name":"Mesos"}]` |
| language.primary | Go | Go |
| license.spdx | Apache-2.0 | MIT |
| platform.support | `{"cli":true}` | `{"cli":true,"linux":true}` |
| pricing | `{"type":"open_source","sourceUrl":"https://gateway.envoyproxy.io","retrievedAt":"2026-08-16T21:35:24.255Z"}` | `{"type":"hybrid","summary":"Traefik Proxy is open source and free. Traefik Hub API Gateway and Traefik Hub API Management are commercial products requiring contact for pricing.","freeTier":true,"sourceUrl":"https://traefik.io/pricing","retrievedAt":"2026-08-14T11:09:13.148Z"}` |
| pricing.free_tier | yes | yes |
| pricing.model | commercial | commercial |
| pricing.price_level | free | low |
| pricing.transparent | - | no |
| release.cadence_days | 6 | - |
| release.history | `[{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.9.0","date":"2026-08-15T12:31:24Z","type":"stable","version":"v1.9.0"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.9.0-rc.1","date":"2026-08-09T01:54:41Z","type":"prerelease","version":"v1.9.0-rc.1"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.3","date":"2026-07-22T18:59:16Z","type":"stable","version":"v1.8.3"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.5","date":"2026-07-08T15:36:49Z","type":"stable","version":"v1.7.5"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.2","date":"2026-07-01T07:14:42Z","type":"stable","version":"v1.8.2"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.1","date":"2026-06-05T07:32:33Z","type":"stable","version":"v1.8.1"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.4","date":"2026-06-05T07:55:38Z","type":"stable","version":"v1.7.4"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.0","date":"2026-05-13T15:45:46Z","type":"stable","version":"v1.8.0"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.3","date":"2026-05-09T23:13:52Z","type":"stable","version":"v1.7.3"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.8.0-rc.1","date":"2026-05-01T05:58:00Z","type":"prerelease","version":"v1.8.0-rc.1"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.6.7","date":"2026-04-27T20:16:54Z","type":"stable","version":"v1.6.7"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.2","date":"2026-04-17T01:33:18Z","type":"stable","version":"v1.7.2"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.6.6","date":"2026-04-16T14:08:03Z","type":"stable","version":"v1.6.6"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.6.5","date":"2026-03-13T02:12:48Z","type":"stable","version":"v1.6.5"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.1","date":"2026-03-12T17:15:44Z","type":"stable","version":"v1.7.1"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.6.4","date":"2026-02-11T18:48:14Z","type":"stable","version":"v1.6.4"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.5.9","date":"2026-02-11T17:32:53Z","type":"stable","version":"v1.5.9"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.0","date":"2026-02-05T22:23:47Z","type":"stable","version":"v1.7.0"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.0-rc.2","date":"2026-02-03T22:28:07Z","type":"prerelease","version":"v1.7.0-rc.2"},{"url":"https://github.com/envoyproxy/gateway/releases/tag/v1.7.0-rc.1","date":"2026-01-30T11:49:29Z","type":"prerelease","version":"v1.7.0-rc.1"}]` | `[{"url":"https://github.com/traefik/traefik/releases/tag/v3.7.12","date":"2026-08-26T13:42:21Z","type":"stable","version":"v3.7.12"},{"url":"https://github.com/traefik/traefik/releases/tag/v2.11.56","date":"2026-08-26T13:40:05Z","type":"stable","version":"v2.11.56"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.7.11","date":"2026-08-19T06:44:44Z","type":"stable","version":"v3.7.11"},{"url":"https://github.com/traefik/traefik/releases/tag/v2.11.55","date":"2026-08-18T08:56:15Z","type":"stable","version":"v2.11.55"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.7.10","date":"2026-07-31T12:49:21Z","type":"stable","version":"v3.7.10"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.6.25","date":"2026-07-31T12:34:56Z","type":"stable","version":"v3.6.25"},{"url":"https://github.com/traefik/traefik/releases/tag/v2.11.54","date":"2026-07-31T12:18:22Z","type":"stable","version":"v2.11.54"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.7.9","date":"2026-07-24T12:47:15Z","type":"stable","version":"v3.7.9"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.6.24","date":"2026-07-24T12:33:18Z","type":"stable","version":"v3.6.24"},{"url":"https://github.com/traefik/traefik/releases/tag/v2.11.53","date":"2026-07-24T12:19:25Z","type":"stable","version":"v2.11.53"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.7.8","date":"2026-07-15T12:51:10Z","type":"stable","version":"v3.7.8"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.7.7","date":"2026-07-08T15:39:25Z","type":"stable","version":"v3.7.7"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.6.23","date":"2026-07-08T14:31:28Z","type":"stable","version":"v3.6.23"},{"url":"https://github.com/traefik/traefik/releases/tag/v2.11.52","date":"2026-07-08T13:09:07Z","type":"stable","version":"v2.11.52"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.7.6","date":"2026-06-30T12:21:11Z","type":"stable","version":"v3.7.6"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.6.22","date":"2026-06-30T09:58:45Z","type":"stable","version":"v3.6.22"},{"url":"https://github.com/traefik/traefik/releases/tag/v2.11.51","date":"2026-06-30T09:07:16Z","type":"stable","version":"v2.11.51"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.7.5","date":"2026-06-10T15:00:19Z","type":"stable","version":"v3.7.5"},{"url":"https://github.com/traefik/traefik/releases/tag/v3.6.21","date":"2026-06-10T14:17:35Z","type":"stable","version":"v3.6.21"},{"url":"https://github.com/traefik/traefik/releases/tag/v2.11.50","date":"2026-06-10T13:41:42Z","type":"stable","version":"v2.11.50"}]` |
| reliability.status_page | - | yes |
| security.scorecard | 8 | 6.4 |
| security.vulnerabilities | `{"count":0,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=helm&package_name=gateway-crds-helm%2Fgateway-crds-helm&per_page=100","last_12m":0,"max_severity":null}` | `{"count":51,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=go&package_name=github.com%2Ftraefik%2Ftraefik%2Fv2&per_page=100","last_12m":27,"max_severity":"CRITICAL"}` |

## Capabilities (API Gateways)

| Capability | Envoy Gateway | Traefik |
|---|:--:|:--:|
| **Deployment** |  |  |
| Hosting | Self-hosted only | Cloud + self-hosted |
| Kubernetes-native | ✓ | ✓ |
| **Traffic** |  |  |
| Rate limiting | ✓ | ✓ |
| Request/response transformation | - | ✓ |
| **Security** |  |  |
| OAuth2 / OIDC / JWT | ✓ | ✓ |
| Mutual TLS | ✓ | - |
| **Protocols** |  |  |
| GraphQL gateway | - | - |
| gRPC support | - | ✓ |
| **Delivery** |  |  |
| Developer portal | - | ✓ |
| Monetization | - | ✓ |
| **Ecosystem** |  |  |
| Plugin ecosystem | - | Extensive |
| **Insight** |  |  |
| Observability | ✓ | ✓ |

*Source: Vioscale. Generated 2026-09-01T16:30:02.156Z. "-" = undocumented, not absent.*
