VaikoraVaikora

VaikoraCompare › Vaikora vs Portkey

Vaikora vs Portkey

Open-source AI gateways head to head: routing breadth vs audit-grade enforcement.

Both are open-source AI gateways with commercial control planes. Portkey leads on multi-provider routing across 1,600+ models and prompt management. Vaikora leads on pre-execution policy enforcement, a SHA-256 audit chain, and pre-built SOC 2, HIPAA, GDPR, PCI DSS, and ISO 27001 compliance presets. Many teams run both.

At a glance

CapabilityVaikoraPortkey
Open-source gatewayMIT-licensed, free foreverMIT-licensed (Portkey-AI/gateway)
LLM provider coverageOpenAI, Anthropic, Gemini, OpenRouter + A2A, MCP1,600+ providers normalized
Pre-execution policy enforcementDeterministic, sub-500ms p95Guardrails plugin layer (sync/async)
Cryptographic audit chainSHA-256, append-onlyNot a documented feature
Compliance presetsSOC 2, HIPAA, GDPR, PCI DSS, ISO 27001Configured per deployment
Prompt management (CMS)Via content modules, not a repositoryNative prompt CMS with versioning
Marketplace distributionAWS Marketplace + Azure SentinelPortkey Cloud + GitHub
MCP servervaikora-guard-mcp (Anthropic registry)Not published
PricingFree OSS + quote-based control planeFree OSS + Portkey Cloud tiers

How they compare

Multi-provider routing

Portkey's defining feature is breadth: 1,600+ LLM providers normalized behind one API, with automatic fallbacks, load balancing, and semantic caching. Vaikora's gateway covers the major commercial providers plus the agent-to-agent and MCP protocol layers. If routing across long-tail or self-hosted models is the main job, Portkey is the broader choice.

Pre-execution policy enforcement

Vaikora evaluates every proposed action against a deterministic policy engine before the call leaves the perimeter and returns ALLOW, LOG, CONSTRAIN, or BLOCK in under 500ms at p95. Portkey's guardrails run synchronously or asynchronously around the LLM call and cover PII redaction, content filtering, and injection checks, but deterministic compliance-style decisioning is not the primary frame.

Audit chain and compliance presets

Vaikora signs every decision into a SHA-256 append-only audit chain an auditor can replay without vendor cooperation, and ships presets for SOC 2, HIPAA, GDPR, PCI DSS, and ISO 27001. Portkey provides observability and traces in its commercial Cloud; cryptographic chaining and named compliance presets are not documented features.

Prompt management and distribution

Portkey ships a prompt CMS with versioning, A/B testing, and templates as a first-class surface, distributed through Portkey Cloud and GitHub. Vaikora governs prompts through content modules rather than acting as a repository, and distributes through AWS Marketplace, Azure Sentinel, and the Anthropic MCP registry for regulated procurement. The two coexist: Portkey for routing and prompts, Vaikora in front for policy and audit.

Who each is best for

Choose Vaikora when

  • Audit-grade SHA-256 receipts are a hard requirement.
  • Pre-built SOC 2, HIPAA, GDPR, PCI DSS, or ISO 27001 presets are needed out of the box.
  • Procurement through AWS Marketplace or Azure Sentinel is the preferred path.
  • Deterministic pre-execution enforcement matters more than async guardrails.

Choose Portkey when

  • Routing across 1,600+ models is a primary requirement.
  • A native prompt CMS with versioning and A/B tests is needed.
  • Developer tooling and observability are the dominant criteria.
  • Semantic caching and cross-provider cost routing drive the budget.

See Vaikora enforce policy on your stack

Open-core AI runtime control. Self-host the MIT gateway free, or run the hosted Control Plane.

Get a demo Self-host the gateway

Frequently asked questions

What is the main difference between Vaikora and Portkey?

Both ship open-source AI gateways with commercial control planes. Vaikora's tier bundles a SHA-256 audit chain, five named compliance presets, and AWS Marketplace plus Azure Sentinel distribution. Portkey's tier bundles routing across 1,600+ models, a prompt CMS, traces, and virtual keys.

Can I run Vaikora and Portkey together?

Yes. The common pattern is Portkey for multi-provider routing and prompt management, with Vaikora in front for pre-execution policy enforcement and the audit chain.

Which has stronger compliance coverage?

Vaikora ships SOC 2, HIPAA, GDPR, PCI DSS, and ISO 27001 presets out of the box. Portkey supports those frameworks at the commercial tier through per-deployment configuration.

Is Vaikora free?

Yes. The Vaikora gateway is MIT-licensed and free forever. The commercial Control Plane adds the audit chain, compliance presets, and SLA on quote-based pricing.

More Vaikora comparisons