Xcellerate AIG features
One governed, EU-native gateway between your applications and every AI provider — with the controls enterprises need built in.
One API for every model
OpenAI-compatible, provider-agnostic
Point your applications at a single OpenAI-compatible endpoint and reach every provider behind it. The same request shape works whether the model runs at OpenAI, Anthropic, in your own data centre or anywhere in between.
Learn moreSelf-hosted and air-gapped
Your infrastructure, your data, your rules
Run the entire gateway inside your own network — on Docker, Kubernetes or as a self-contained appliance. It can operate fully air-gapped, so prompts, responses and credentials never leave the perimeter you control.
Learn moreEvery provider, one catalog
Connect the models you already use
Connect OpenAI, Anthropic, Google Gemini, Azure OpenAI, AWS Bedrock, Mistral, Groq, Ollama and OpenRouter — plus any OpenAI-compatible endpoint — and manage them all from one catalog with pricing and capabilities in view.
Learn moreVirtual keys and governance
Companies, teams and keys under control
Issue virtual keys under a companies-and-teams hierarchy instead of sharing raw provider secrets. Each key carries its own permissions, budgets and model access, and can be rotated or revoked without touching your provider accounts.
Learn moreBuilt-in guardrails
Screen every prompt and response
Guardrails inspect traffic on the way in and the way out. Define them as plain topics, back them with a model asked to judge the content, or call an external service — and decide whether to block, redact or simply record.
Learn moreData protection in your own words
Guardrails your DPO can configure
A sensitive-data catalog written in business language, not regular expressions. Your data protection officer decides what counts as sensitive — national identifiers, IBANs, cards, health, salary, legal terms, internal codenames — and what should happen when it appears.
Learn moreAdaptive routing
Send each request to the right model
Write routing rules an operator can read: send a slice of traffic to a canary, run an A/B test, prefer the lowest-latency provider, keep data in a region, or route on what the request is actually about.
Learn moreSemantic response caching
Stop paying for the same answer twice
Cache responses and serve them again when an incoming request is close enough to one already answered — not just an exact match. You cut cost and latency on repetitive traffic, with full control over what is cached and for how long.
Learn moreOperations dashboard
Traffic, spend and health at a glance
A live dashboard shows request volume, spend, latency, error rates and provider health across the whole gateway, so operators can see what is happening and where to look next.
Learn moreRequest logs
Every call, fully searchable
Every request through the gateway is logged with its model, tokens, cost, latency, key and tags. A searchable browser lets operators and auditors find any call and see exactly what happened.
Learn moreObservability
Metrics and traces for your stack
The gateway exposes Prometheus metrics and structured logs, and emits OpenTelemetry traces that leave the building into your existing observability stack — so AI traffic sits alongside the rest of your systems.
Learn moreSpend by tag & chargeback
Attribute every cost to its owner
Tag every request with whatever finance cares about — project, cost centre, customer — and the gateway turns that into a spend breakdown and the chargeback file finance actually asked for, with budgets that track a project rather than just a key.
Learn moreMCP servers & tools
Govern the tools your agents call
Register MCP servers and expose their tools to conversations through the gateway, with the same governance as everything else — so the tools your agents call are catalogued, permissioned and accounted for.
Learn moreData connectors
Your databases as governed tools
Expose on-premise databases and file shares to AI as governed, read-only tools — behind the same virtual keys, guardrails and audit trail as everything else, even when the data sits on a network the gateway itself cannot see.
Learn moreTamper-evident audit log
Provable record of every change
A tamper-evident audit trail records who changed what and when, and signed outbound webhooks let downstream systems trust the events they receive. Alerting is written so a person can still read and act on it a year later.
Learn moreSSO, SCIM & RBAC
Enterprise identity, built in
Sign in with your identity provider over OIDC, provision and de-provision users automatically with SCIM, and control exactly what each role can see and do with deep role-based access control, reveal gating and data scopes.
Learn more
