search
AI Gateway
Trends
- 1Open-source AI Agent Gateway keeps credentials out of agent configs▼AI Agent Gateway: Open-source tool keeps credentials out of agent configs
A new open-source tool called AI Agent Gateway has been released, designed to keep credentials out of AI agent configurations. Instead of embedding API keys and secrets directly in agent setup files, the gateway manages authentication separately, reducing the risk of credential leaks. It targets developers building AI agents, a growing area where insecure handling of secrets is a common concern.
- 2Founders mock how startups raise millions in 2026●How startups raise $10M in 2026: 1. Rebrand a 1994 barcode as "AI Spatial Gateway" 2. Run a 3-line redirect on 20 AWS mi
A satirical take circulating online claims startups can raise $10 million by rebranding a decades-old barcode technology as an "AI Spatial Gateway," wrapping trivial tools in cloud jargon, gating basic exports behind sales demos, and charging per-seat fees. The post contrasts this with its own bootstrapped QR code toolkit, CreateMyQR, built with no outside funding, tapping into frustration over inflated AI branding and subscription pricing.
- 3
Futuriom reports that LLM gateways, infrastructure tools that route, manage and monitor traffic between applications and large language models, are gaining traction as enterprises scale their AI deployments. These gateways help companies control costs, handle model switching and enforce security across multiple AI providers, making them an increasingly important layer in the enterprise AI stack.
- 4GitLab Patches Critical AI Gateway Vulnerability CVE-2026-90970▼CVE-2026-90970: Critical GitLab AI Gateway Flaw Fixed
GitLab has fixed a critical vulnerability, tracked as CVE-2026-90970, affecting its AI Gateway component. Security outlets are urging users to update their deployments promptly, as flaws in AI gateway infrastructure could expose sensitive data or allow unauthorized access. Administrators are advised to review the advisory and apply the patch as soon as possible.
- 5Cloudflare adds Web Search to AI Gateway for agent grounding●Cloudflare has added a native Web Search API to its AI Gateway, built in partnership with search... # ai # automation #
Cloudflare has launched a native Web Search API within its AI Gateway, built in partnership with a search provider, allowing AI agents to ground their responses in live web results. The feature is aimed at developers building automation and agentic applications, letting models pull fresh information instead of relying solely on static training data. Developers are discussing the move as part of the broader push to make AI tools more reliable and up to date.
- 6Critical CVE in GitLab's AI Gateway Sparks Security Review●Earlier this month, a critical vulnerability showed up in GitLab's AI Gateway — CVE-2026-90970, CVSS... # ai # security
A critical vulnerability, CVE-2026-90970, was discovered earlier this month in GitLab's AI Gateway, drawing attention to how AI agent permissions are handled in developer tools. The flaw, rated with a high CVSS severity score, has prompted security-minded developers to re-examine their own systems and question whether permission models for AI agents are properly isolated from core infrastructure.
- 7Tuskira Launches Open Source AI Agent Runtime Gateway●Tuskira Launches Open Source AI Agent Runtime Gateway to Observe, Govern and Switch LLMs and MCP Tools Without Rewiring Agents
Tuskira has released an open source AI agent runtime gateway designed to let teams observe, govern and switch between large language models and MCP tools without rewiring their agents. The announcement, distributed via Business Wire, targets enterprises building AI agents that need model flexibility, oversight and control. Details on adoption and community response are limited so far, as the launch is newly announced.
- 8GitLab warns of critical RCE flaw in AI Gateway▼⚠️ CRITICAL: GitLab warns of critical RCE vulnerability in AI Gateway service GitLab disclosed CVE-2026-90970, a critica
GitLab has disclosed CVE-2026-90970, a critical remote code execution vulnerability in its AI Gateway service. The flaw allows authenticated users with Duo Agent Platform access to escape the prompt sandbox and execute arbitrary commands. Self-hosted instances are affected, and security teams are being urged to patch promptly.
- 9GitLab Rushes Emergency Fixes for Exploited AI Gateway Flaws●GitLab Issues Emergency Patches for Actively Exploited Critical AI Gateway and Path Traversal Flaws GitLab released emer
GitLab has released emergency security patches addressing two critical vulnerabilities: a remote code execution flaw in its AI Gateway, tracked as CVE-2026-90970, and a maximum-severity path traversal issue. Both flaws are reportedly being actively exploited, prompting the unusually urgent rollout. Security teams are being urged to apply the updates immediately, with the disclosures fueling renewed discussion about securing AI infrastructure.
- 10C1.ai launches C1 LLM Gateway for enterprise AI routing●C1.ai launches C1 LLM Gateway to govern enterprise AI model routing
C1.ai has launched the C1 LLM Gateway, a platform designed to help enterprises govern how requests are routed across different large language models. The product is aimed at giving companies centralized control over AI model usage, costs and policies. The announcement was carried by major newswires and financial outlets, drawing attention within enterprise technology circles.
- 11GitLab patches critical CVSS 9.9 AI Gateway vulnerability●🚨 GitLab AI Gateway vulnerability: CVE-2026-90970 GitLab has patched a critical **CVSS 9.9** vulnerability in its AI Gat
GitLab has patched a critical vulnerability, CVE-2026-90970, rated CVSS 9.9, in its AI Gateway. The flaw allows an authenticated attacker to escape the prompt-template sandbox and execute arbitrary commands on self-hosted deployments. Security professionals are urging administrators to apply the update quickly and check whether their installations are affected.
- 12GitLab patches critical AI Gateway flaw allowing command execution●🤖 GitLab patches CVE-2026-90970 (CVSS 9.9, critical) in the AI Gateway: a logged-in user with Duo Agent Platform access
GitLab has released fixes for CVE-2026-90970, a critical vulnerability (CVSS 9.9) in its AI Gateway. An authenticated user with access to the Duo Agent Platform can run commands on the gateway. Only self-hosted gateway deployments are affected. Patches are available in versions 19.2.4, 19.3.2 and 19.4.1, and administrators are urged to update immediately.
- 13GitLab AI Gateway flaw CVE-2026-90970 enables remote code execution●GitLab AI Gateway flaw CVE-2026-90970 enables RCE https:// fawkes.rocks/2026/10/02/gitlab -ai-gateway-flaw-cve-2026-9097
A security vulnerability tracked as CVE-2026-90970 has been disclosed in GitLab's AI Gateway, reportedly allowing remote code execution on affected systems. GitLab's AI Gateway sits in front of the company's AI-powered features, so a flaw there could expose organizations using the platform's AI tooling. Administrators are being urged to check their deployments and apply patches. Details on affected versions and exploitation are still limited.
- 14OpenRouter's 5.5% fee prompts cost comparison with self-hosting●OpenRouter's fee is 5.5% at the credit door, not per-token markup. Honest math on gateway vs direct vs self-hosted LiteL
Developers are debating OpenRouter's pricing model, noting the service charges a 5.5% fee when users add credits rather than a per-token markup on API calls. A breakdown compares the total cost of routing AI requests through OpenRouter versus paying providers directly or self-hosting an open-source proxy like LiteLLM, offering a decision rule for choosing between the three approaches.
- 15Claude 5.5 model upgrade paired with Vercel Gateway rollout●This week landed a rare combination: a meaningful model upgrade that's a genuine drop-in replacement,... # ai # devtools
A new model upgrade landed this week that developers describe as a genuine drop-in replacement, requiring no rework of existing setups. Alongside it, Vercel Gateway support brings claims of roughly 30% faster and cheaper operation. Developers are discussing the rare combination of a meaningful model bump with seamless integration, calling it a good week for AI tooling.
- 16Cloudflare launches Monetization Gateway to charge AI agents▼Monetization Gateway beta: charge AI agents for consumption with HTTP 402
Cloudflare has opened the beta of its Monetization Gateway, letting businesses bill AI agents for the resources they consume using the long-dormant HTTP 402 'Payment Required' status code. The move targets the growing wave of agentic web traffic, giving sites a way to monetize machine access rather than block it, and positions Cloudflare at the center of the emerging pay-per-crawl economy.
Repos
- yetone/magpie Every agent's model. One place. Codex on DeepSeek, Claude Code on Kimi, from the menu bar.
- zouyuxuan122/dsh-our-free-model 在 dsh 里装上这个插件即可,无需登录、注册或填 API Key,就能使用包括 DeepSeek V4.1 Flash、Kimi K3 在内的前沿模型——完全免费,不限量。 All you do is install this plugi
- dzhng/jevgrep Find code by asking what it does. A CLI for coding agents that uses Jev to discover relevant files and source context.
- Ebony-Vinyl/dsh-our-free-model 在 dsh 里装上这个插件即可,无需登录、注册或填 API Key,就能使用包括 DeepSeek V4.1 Flash、Kimi K3 在内的前沿模型——完全免费,不限量。 All you do is install this plugi
- openclaw/openclaw The AI that really does things. Any OS. Any Platform. The lobster way. 🦞