Blocks.ai publishes this comparison and sells in this market. Every claim about another product links to a public source.
DIY vs Kong AI Gateway: an in-house build or a gateway product
Build it yourself (DIY)
Building agent connections and controls in-house from open protocols, existing infrastructure, and open-source tools
Kong AI Gateway
Gateway that governs LLM, MCP, and agent-to-agent traffic
Short answer
DIY is not a product: you connect and govern agents yourself, with open protocols such as MCP and A2A that leave authorization logic to the implementer.Source 1, Source 2 Kong AI Gateway is a product: one gateway for LLM, MCP, and A2A traffic; version 2.x pairs a Kong-managed control plane with data plane nodes you run.Source 3, Source 4
Where each one sits
Six layers of running AI agents at a company, and what each product’s own public sources say it covers.
These aren’t the same kind of product
DIY
Kong AI Gateway
- Build agents: Not publicly documented
- Host and run agents: Not publicly documented
- Agents across organizations: Not publicly documented
At a glance
What each one is
Build it yourself (DIY)
DIY means connecting and governing agents without buying an agent platform: protocols such as MCP and A2A wired together in-house, existing infrastructure stretched, an in-house platform, self-hosted open source, or no central approach; Uber says that before its gateway, teams built integrations independently, duplicating infrastructure.Source 10
The differences that matter
Agent registry
DIYA2A’s current specification prescribes no standard API for curated registries, and its docs say a curated registry means deploying and maintaining a registry service.Source 14
Kong AI GatewayIn 2.x, each agent entity is scoped to one gateway instance; Kong’s organization-wide inventory, Agents in Konnect Catalog, is in beta and not for production.Source 4, Source 9, Source 15
The official MCP Registry is in preview and does not support private servers; its docs recommend hosting your own registry for those.Source 17
Access control
DIYIn A2A, authorization logic is implementation-specific, and MCP makes authorization optional; Pinterest, for example, checks end-user JWTs and mesh identities on almost every MCP call.Source 1, Source 11, Source 16
Kong AI GatewayKong AI Gateway can require API key or OpenID Connect authentication before routing and enforce a per-agent allow or deny list.Source 9
Where it runs
DIYIt runs where you put it: Pinterest optimized for MCP servers in its internal cloud, and Uber’s gateway sends requests through its service mesh sidecar.Source 10, Source 11
Kong AI GatewayVersion 2.x is hybrid only, and Kong says its control plane is never in the path of user data traffic.Source 4
For security teams
What a security review asks, answered from each vendor’s public documentation.
Full comparison
18 criteria in five groups. Every cell links to its source, or says no public source answers it.
| DIY | Kong AI Gateway | |
|---|---|---|
| What it is | ||
| What it is and who it’s for | An in-house build on protocols such as A2A, an open standard for communication between agent systems, and MCP, which the A2A specification calls complementary.Source 1 | A gateway that governs LLM, MCP, and A2A traffic.Source 3, Source 4 All three run through one data plane, with shared authentication, observability, and policy features.Source 4 |
| Maturity | Varies by component: MCP’s latest specification revision is 2026-07-28.Source 2 The official MCP Registry is in preview and may have breaking changes or data resets.Source 17 | Kong announced AI Gateway in February 2024 and 2.0 general availability in September 2026.Source 26, Source 27 2.2.0 came 30 September 2026.Source 28 Catalog agents are in beta.Source 15 |
| Control | ||
| Agent registry and discovery | Build your own: A2A prescribes no standard API for curated registries, and the official MCP Registry is in preview and does not support private servers.Source 14, Source 17 | Each AI Agent entity is scoped to one gateway instance.Source 4, Source 9 Konnect Catalog’s agent inventory is in beta.Source 15 |
| Identity and access control | In A2A, identity is established at the HTTP layer and authorization logic is implementation-specific.Source 1, Source 5 MCP authorization is optional.Source 16 | API key or OpenID Connect through Okta, Azure AD, Google, or any OIDC provider, then a per-agent allow or deny list.Source 9, Source 21 |
| Ownership, policy, and revocation | MCP says implementers should build consent and authorization flows.Source 2 Uber starts every MCP server and tool disabled until reviewed.Source 10 | Per-agent, per-consumer, or global policies for input validation, logging, and rate limits.Source 4, Source 9 PII sanitizing covers model requests, as an add-on on Plus.Source 19, Source 29 |
| Audit log and observability | A2A docs advise auditing significant events and tracing, for example with OpenTelemetry.Source 5 MCP documents trace context propagation.Source 30 | A2A audit logs record task IDs, method calls, latencies, and errors.Source 22 A2A telemetry can go to Konnect and OpenTelemetry.Source 9 Bodies go to Konnect only if you opt in.Source 4 |
| Connection | ||
| How agents connect | MCP servers on Streamable HTTP expose an HTTP endpoint, and A2A agents on HTTP use HTTPS URLs in production.Source 1, Source 20 AWS PrivateLink privately links a VPC to services.Source 7 | An AI Agent entity proxies to an upstream agent URL.Source 9 In 2.x, self-managed data plane nodes hold a persistent connection to the Konnect control plane.Source 4 |
| Agents across organizations | A2A is designed for agents from different companies on separate servers.Source 31 Each server authorizes requests under its own policies.Source 1 | Not publicly documented (checked 2 October 2026) |
| Protocol support | MCP defines stdio and Streamable HTTP transports.Source 32 A2A maps to JSON-RPC, gRPC, and HTTP/REST bindings.Source 1 | A2A over JSON-RPC and REST bindings.Source 9 MCP revisions 2025-03-26, 2025-06-18, 2025-11-25, and 2026-07-28 (from version 2.1).Source 33 |
| Frameworks, models, and clouds supported | A2A gives agents built on different frameworks, languages, or vendors a common language.Source 1 Google’s ADK says it is model-agnostic and deployment-agnostic.Source 8 | Kong says it governs A2A traffic without changing how agents are built.Source 34 Requests to agents that don’t use A2A can pass through as plain HTTP.Source 9 |
| Operations | ||
| Deployment options and data residency | Wherever you run it: Pinterest optimized for MCP servers in its internal cloud.Source 11 A2A leaves protecting stored data to your own policies.Source 5 | 2.x is hybrid: a Konnect control plane, data plane nodes you run.Source 4 Kong’s pricing also lists Kong-managed Dedicated Cloud and serverless AI gateways.Source 19, Source 35, Source 36 |
| Compliance attestations | Sits with the implementer: A2A docs cite regulations such as GDPR, CCPA, and HIPAA, and MCP leaves access controls and data protection to implementers.Source 2, Source 5 | Kong’s trust center lists ISO 27001:2022 and SOC 2 for Kong Inc.Source 25 From 2.2, a FIPS 140-3 compliant package, not submitted for NIST validation.Source 24 |
| Support and SLA | Depends on the component: MCP SDKs are tiered partly by maintenance commitments.Source 37 The official MCP Registry, in preview, gives no uptime guarantees.Source 17, Source 38 | Konnect targets 99.9% a month; Dedicated Cloud Gateways list a 99.99% SLA, serverless AI gateways none.Source 19 Enterprise support SLAs: 30 minutes to 2 hours.Source 19 |
| Time and effort to get running | A curated A2A registry is a service you deploy and maintain.Source 14 Pinterest built a unified deployment pipeline after new MCP servers took too much setup.Source 11 | A quickstart script creates a Konnect control plane and a local Docker data plane.Source 39 To route A2A traffic, you then create an AI Agent entity and attach policies.Source 40 |
| Pricing model and public prices | The A2A and MCP specifications are openly licensed, A2A under Apache 2.0.Source 1, Source 18 Build and running costs are not publicly documented. | Plus: from $25 a month plus usage; control planes $200 hybrid, $500 dedicated, $25 serverless, per month.Source 19 Enterprise: custom, billed annually.Source 19 |
| Building | ||
| Agent building tools | Frameworks such as LangGraph and Google’s open-source Agent Development Kit build and deploy agents.Source 8, Source 12 A2A has SDKs in six languages.Source 41 | Kong says it can generate MCP tools and servers from Kong-managed APIs.Source 3 Tools for building agents are not publicly documented. |
| Model access | Chosen by whoever builds the agents: Google’s ADK says it is optimized for Gemini and model-agnostic.Source 8 | One API to providers including OpenAI, Anthropic, Amazon Bedrock, Gemini, Azure AI, Mistral, and Ollama, with credentials you supply.Source 4, Source 39, Source 42 |
| Integrations and ecosystem | The official MCP Registry, in preview, has a REST API for clients and aggregators to discover MCP servers.Source 17 | A Policies Hub of policies and integrations.Source 43 AI Vault works with AWS, GCP, Azure, and HashiCorp Vault secrets backends.Source 4 |
Which to choose
Choose DIY if
- You need an organization-wide production registry: Uber and Pinterest run theirs;Source 10, Source 11 Kong’s Catalog Agents is in beta, MCP Registries in tech preview.Source 15, Source 44
- You already run a service mesh or internal access-control system and want it to check agent calls, as Uber and Pinterest do.Source 10, Source 11
- You want your own review rules: Uber starts every MCP server and tool disabled until reviewed; Pinterest reviews all but one-off experiments.Source 10, Source 11
- You want no agent platform contract: the A2A and MCP specifications are openly licensed, A2A under Apache 2.0.Source 1, Source 18
Choose Kong AI Gateway if
- You want one gateway for LLM, MCP, and A2A traffic, with shared authentication, observability, and policy features.Source 4
- You want caller authentication and per-agent allow or deny lists without writing them, through API keys or an existing OpenID Connect provider.Source 9, Source 21
- You want a managed control plane (2.x) outside the traffic path, with nodes you run that keep proxying if it is unreachable.Source 4
- You want a vendor with published prices, a 30-day free trial on Plus, and Enterprise support up to a 24x7, 30-minute SLA.Source 19
Questions buyers ask
Is Kong AI Gateway an alternative to building it yourself?
For the gateway part, yes: Kong AI Gateway can authenticate callers, apply per-agent access lists and policies, and log A2A calls.Source 9, Source 22 Kong’s organization-wide agent inventory is in beta, and how Kong AI Gateway handles agents owned by other organizations is not publicly documented.Source 15
Does Kong AI Gateway support A2A and MCP?
Can Kong AI Gateway be fully self-hosted?
How do the costs compare?
On Kong’s AI Management Plus plan, prices start at $25 a month plus usage, and a hybrid AI gateway control plane is $200 a month.Source 19 Enterprise pricing is custom.Source 19 For DIY, the protocol specifications are openly licensed; build and running costs are not publicly documented.Source 1, Source 18
How we compare
Read the full methodEvery claim on this page links to a public source. Where none answers a question, the page says so.
We re-check every fact at least every 90 days. This page was last checked .
Something wrong or out of date? Tell us and we’ll correct it.
Sources
51 public sources, each with the date we checked it. Every one opens in a new tab.
Source 1: Agent2Agent (A2A) Protocol Specification Back:abcdefghijklmnopq
Source 2: Specification - Model Context Protocol 2026-07-28 Back:abcd
Source 4: AI Gateway architecture - Kong Docs Back:abcdefghijklmnopqrstuv
Source 7: What is AWS PrivateLink? - Amazon Virtual Private Cloud Back:ab
Source 9: AI Agents - Kong AI Gateway docs Back:abcdefghijklmnopqrst
Source 10: Designing MCP Gateway Uber's MCP Management Platform - Uber Blog Back:abcdefghi
Source 11: Building an MCP Ecosystem at Pinterest - Pinterest Engineering Blog Back:abcdefgh
Source 13: Integrating with Model Context Protocol (MCP) - Keycloak Back to text
Source 16: Authorization - Model Context Protocol specification 2026-07-28 Back:abcd
Source 17: The MCP Registry - Model Context Protocol Back:abcdef
Source 18: modelcontextprotocol/modelcontextprotocol LICENSE (GitHub) Back:abcd
Source 20: Streamable HTTP - Model Context Protocol specification 2026-07-28 Back:ab
Source 21: AI Auth Strategies - Kong AI Gateway docs Back:abcd
Source 22: Route A2A traffic through AI Gateway - Kong Docs Back:abc
Source 23: Konnect and Dev Portal audit logs - Kong Docs Back to text
Source 24: FIPS 140-3 compliance in AI Gateway - Kong Docs Back:ab
Source 26: Announcing Kong’s New Open Source AI Gateway with Multi-LLM Support, No-Code AI Plugins, Advanced Prompt Engineering, and More Back to text
Source 27: Kong AI Gateway 2.0 Is Now GA - And It's Already Moving Faster Back to text
Source 28: Kong AI Gateway changelog - Kong Docs Back to text
Source 29: AI PII Sanitizer - Policy | Kong Docs Back to text
Source 30: Key Changes - Model Context Protocol specification 2026-07-28 Back to text
Source 32: Transports - Model Context Protocol specification 2026-07-28 Back to text
Source 33: MCP version support - Kong AI Gateway docs Back:ab
Source 34: The Agent Gateway for Secure, Observable Agent-to-Agent Communication (Kong) Back:ab
Source 35: Dedicated Cloud Gateways - Kong Docs Back to text
Source 38: MCP Registry Aggregators - Model Context Protocol Back to text
Source 40: Route A2A agent traffic through AI Gateway - Kong Docs Back to text
Source 43: Kong AI Gateway Policies Hub - Kong Docs Back to text
Source 44: MCP registries in Catalog (tech preview) - Kong Docs Back to text
Source 45: AI Gateway audit log reference - Kong Docs Back to text
Source 46: Configure Kong AI Gateway on-prem - Kong Docs Back to text