Xcellerate AIG features

One governed, EU-native gateway between your applications and every AI provider — with the controls enterprises need built in.

One API for every model

OpenAI-compatible, provider-agnostic

Point your applications at a single OpenAI-compatible endpoint and reach every provider behind it. The same request shape works whether the model runs at OpenAI, Anthropic, in your own data centre or anywhere in between.

Learn more

Self-hosted and air-gapped

Your infrastructure, your data, your rules

Run the entire gateway inside your own network — on Docker, Kubernetes or as a self-contained appliance. It can operate fully air-gapped, so prompts, responses and credentials never leave the perimeter you control.

Learn more

Every provider, one catalog

Connect the models you already use

Connect OpenAI, Anthropic, Google Gemini, Azure OpenAI, AWS Bedrock, Mistral, Groq, Ollama and OpenRouter — plus any OpenAI-compatible endpoint — and manage them all from one catalog with pricing and capabilities in view.

Learn more

Virtual keys and governance

Companies, teams and keys under control

Issue virtual keys under a companies-and-teams hierarchy instead of sharing raw provider secrets. Each key carries its own permissions, budgets and model access, and can be rotated or revoked without touching your provider accounts.

Learn more

Built-in guardrails

Screen every prompt and response

Guardrails inspect traffic on the way in and the way out. Define them as plain topics, back them with a model asked to judge the content, or call an external service — and decide whether to block, redact or simply record.

Learn more

Data protection in your own words

Guardrails your DPO can configure

A sensitive-data catalog written in business language, not regular expressions. Your data protection officer decides what counts as sensitive — national identifiers, IBANs, cards, health, salary, legal terms, internal codenames — and what should happen when it appears.

Learn more

Adaptive routing

Send each request to the right model

Write routing rules an operator can read: send a slice of traffic to a canary, run an A/B test, prefer the lowest-latency provider, keep data in a region, or route on what the request is actually about.

Learn more

Semantic response caching

Stop paying for the same answer twice

Cache responses and serve them again when an incoming request is close enough to one already answered — not just an exact match. You cut cost and latency on repetitive traffic, with full control over what is cached and for how long.

Learn more

Operations dashboard

Traffic, spend and health at a glance

A live dashboard shows request volume, spend, latency, error rates and provider health across the whole gateway, so operators can see what is happening and where to look next.

Learn more

Request logs

Every call, fully searchable

Every request through the gateway is logged with its model, tokens, cost, latency, key and tags. A searchable browser lets operators and auditors find any call and see exactly what happened.

Learn more

Observability

Metrics and traces for your stack

The gateway exposes Prometheus metrics and structured logs, and emits OpenTelemetry traces that leave the building into your existing observability stack — so AI traffic sits alongside the rest of your systems.

Learn more

Spend by tag & chargeback

Attribute every cost to its owner

Tag every request with whatever finance cares about — project, cost centre, customer — and the gateway turns that into a spend breakdown and the chargeback file finance actually asked for, with budgets that track a project rather than just a key.

Learn more

MCP servers & tools

Govern the tools your agents call

Register MCP servers and expose their tools to conversations through the gateway, with the same governance as everything else — so the tools your agents call are catalogued, permissioned and accounted for.

Learn more

Data connectors

Your databases as governed tools

Expose on-premise databases and file shares to AI as governed, read-only tools — behind the same virtual keys, guardrails and audit trail as everything else, even when the data sits on a network the gateway itself cannot see.

Learn more

Tamper-evident audit log

Provable record of every change

A tamper-evident audit trail records who changed what and when, and signed outbound webhooks let downstream systems trust the events they receive. Alerting is written so a person can still read and act on it a year later.

Learn more

SSO, SCIM & RBAC

Enterprise identity, built in

Sign in with your identity provider over OIDC, provision and de-provision users automatically with SCIM, and control exactly what each role can see and do with deep role-based access control, reveal gating and data scopes.

Learn more