Apache APISIX
Open-source traffic management for APIs and AI services
- Also known as
- apache-apisix
What is Apache APISIX?
An open-source API and AI gateway that routes traffic to microservices and AI services. Built on NGINX and etcd, it offers authentication, traffic shaping, monitoring, and over 100 plugins, with configuration changes applied instantly without restarting.
Apache APISIX pricing
We don't have Apache APISIX's full plan breakdown yet (its pricing page resisted automated reading). Here's what we could confirm. Always check live pricing for exact numbers.
What Apache APISIX does
The capabilities that matter for api gateways, normalised so it lines up with every alternative. “-” means we haven't confirmed it, not that it's missing.
- Hosting
- Cloud + self-hosted
- Kubernetes-native
- ✓
- Rate limiting
- ✓
- Request/response transformation
- ✓
- OAuth2 / OIDC / JWT
- ✓
- Mutual TLS
- ✓
- GraphQL gateway
- ✗
- gRPC support
- ✓
- Developer portal
- ✓
- Monetization
- ✓
- Plugin ecosystem
- Extensive
- Observability
- ✓
Platform & deployment
Independently observed- Linux
- Cloud / SaaS
- On-premise
- Self-hosted
Integrations (25)
Independently observed- OpenTelemetry
- ClickHouse
- Google Cloud
- Kubernetes
- OpenAI
- Anthropic
- AWS Bedrock
- DeepSeek
- Ollama
- gRPC
- gRPC-Web
- Open Policy Agent
- Spring Boot
- OAuth2
- OpenID Connect
- Keycloak
- Istio
- Kuma
- AWS Lambda
- Azure Serverless Function
- Apache OpenWhisk
- Vault
- Dubbo
- MQTT
- etcd
Security & compliance
Known vulnerabilities: 0 (0 in the last 12 months) sourcea count reflects scale & disclosure, not quality
Apache APISIX FAQ
Common questions about Apache APISIX, answered from independent, dated evidence.
What is Apache APISIX?
A dynamic, high-performance gateway that routes and secures API traffic with built-in plugins for authentication, rate limiting, and observability. Runs anywhere from bare metal to Kubernetes with no vendor lock-in. It is indexed under API Gateways.
Source: https://apisix.apache.org
Is Apache APISIX free to use?
Apache APISIX is open source, so it can be self-hosted and used at no licence cost. It is released under the Apache-2.0 licence. Pricing changes often, so verify at source before relying on it.
Source: https://apisix.apache.org
What platforms does Apache APISIX support?
Apache APISIX supports Linux and a command-line interface. Platforms we have not confirmed are simply not listed here rather than ruled out.
Source: https://apisix.apache.org
Can Apache APISIX be self-hosted?
Yes. Apache APISIX can be deployed cloud / SaaS and self-hosted, so it does not have to run on the vendor's infrastructure.
Source: https://apisix.apache.org
What does Apache APISIX integrate with?
We have confirmed 20 integrations for Apache APISIX, including OpenAI, Anthropic, AWS Bedrock, DeepSeek, Ollama, gRPC, Open Policy Agent and Spring Boot, plus 12 more. This is what we could verify from public sources, so the vendor may support others we have not indexed.
Source: https://apisix.apache.org
Is Apache APISIX open source?
Yes. Apache APISIX is published under the Apache-2.0 licence, a permissive licence that generally allows commercial use and modification. Licence terms can change between releases, so verify against the repository for the version you intend to use.
Source: https://github.com/apache/apisix
Apache APISIX alternatives
Other api gateways we track, ranked by the same independent score.
- WSO2 API ManagerOpen-source API management platform for enterpriseslow · 24%
- Zuplomedium · 70%
- TraefikA cloud-native gateway and reverse proxy platform for routing microservices, containers, and APIs across hybrid environmentslow · 44%
- TykA cloud-native API gateway for routing and securing REST, GraphQL, TCP, and gRPC traffichigh · 76%
- Envoy GatewayControl and optimize your API and application traffic with an Envoy-based gatewaymedium · 54%
- AWS API GatewayFully managed platform for creating, deploying, and securing APIs at scalelow · 42%
Compare Apache APISIX
Side by side against other api gateways, attribute by attribute, with a source on every value.
The vioscaleAI score: one lens on the evidence
Not user reviews and not a paid placement: a confidence-weighted blend of the independent signals below (adoption, activity, security posture, and more), which you can sort and re-weight yourself. Vendors can correct their listing but can never move their rank, and stars are weighted low as a vanity metric. It is one way to read the evidence for Apache APISIX, not the verdict.
| Signal | Score | Weight | Contribution | Evidence |
|---|---|---|---|---|
| Capabilities | 100 | 0.06 | 6.3 | ✓ |
| Development activity | 58 | 0.09 | 5.4 | ✓ |
| Release cadence | 66 | 0.05 | 3.4 | ✓ |
| Security score | 75 | 0.04 | 3.2 | ✓ |
| Integrations | 35 | 0.07 | 2.6 | ✓ |
| Stars | 80 | 0.03 | 2.1 | ✓ |
| Dependent projects | 5 | 0.06 | 0.3 | ✓ |
| Security posture | 5 | 0.12 | 0.0 | - |
| Package downloads | 0 | 0.14 | 0.0 | - |
| Developer Q&A activity | 0 | 0.06 | 0.0 | - |
Computed . Re-weight it by intent, or see the full method.
All data & sourcesshow ↓
Every value we hold, with its source, retrieval date, and confidence. This is the evidence behind the score: don't trust it, verify it.
Activity
| Attribute | Value | Evidence |
|---|---|---|
| Commits last 30d | 67 | mediumsource · 2026-09-14 · 65% |
Adoption
Content
| Attribute | Value | Evidence |
|---|---|---|
| Faq | 6 items | mediumsource · 2026-09-10 · 66% |
Features
| Attribute | Value | Evidence |
|---|---|---|
| Capabilities | Mtls: Yes · Hosting: both · K8s native: Yes · Oauth oidc: Yes · Open source: Yes · Grpc support: Yes | mediumsource · 2026-09-14 · 60% |
Integrations
| Attribute | Value | Evidence |
|---|---|---|
| Count | 16 | mediumsource · 2026-09-14 · 60% |
Language
| Attribute | Value | Evidence |
|---|---|---|
| Primary | Lua | highsource · 2026-09-14 · 90% |
License
| Attribute | Value | Evidence |
|---|---|---|
| Spdx | Apache-2.0 | highsource · 2026-09-14 · 95% |
Pricing
Release
Security
| Attribute | Value | Evidence |
|---|---|---|
| Disclosure policy | Yes | mediumsource · 2026-08-25 · 60% |
| Scorecard | 7.5 | highsource · 2026-09-14 · 90% |
| Vulnerabilities | Count: 0 · Source: https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=go&package_name=github.com%2Fapache%2Fapisix&per_page=100 · Last 12m: 0 | highsource · 2026-09-14 · 90% |
| Trust center | https://apisix.apache.org/blog/2023/03/02/security-policy-auditable/ | mediumsource · 2026-09-14 · 60% |
Is Apache APISIX the right choice for you?
Tell us the job, the constraints and what you weigh most, and we will rank Apache APISIX against the rest of the api gateways we index, using the same dated evidence weighted your way.
Free to run, no account needed to start. How the evaluation works
Is this your product?
This profile was built from public sources without asking you. You can take the badge below and use it anywhere, and you can claim the profile to correct anything we got wrong. Both are free, and neither moves Apache APISIX up or down: nobody can buy rank here, including you.
Take the badge
Live, always current, and free to use on your own site. It shows Apache APISIX's independent score and links back to this profile.
<a href="https://www.vioscale.ai/software/apache-apisix" target="_blank" rel="noopener">
<img src="https://www.vioscale.ai/badge/software/apache-apisix.svg" alt="Apache APISIX, verified on vioscaleAI" width="330" height="76" loading="lazy" />
</a>Markdown, for a README →
[](https://www.vioscale.ai/software/apache-apisix)Claim the profile
Verify you control the domain and you can correct the facts, add the sources we should be reading, and see how AI assistants are describing Apache APISIX. Free, and it does not change the score.
- Correct anything wrong, with evidence
- Point our crawler at the pages that matter
- See which AI systems are reading this profile
Not the owner? How vendor profiles work