Blocks.ai publishes this comparison and sells in this market. Every claim about another product links to a public source.
DIY vs MuleSoft Agent Fabric: an in-house build or an AI control plane for agents across platforms
Build it yourself (DIY)
Building agent connections and controls in-house from open protocols, existing infrastructure, and open-source tools
MuleSoft Agent Fabric
Control plane for agents, MCP servers, and APIs across platforms
Short answer
DIY is not a product: you govern agents yourself on open protocols such as A2A, which sets no standard registry API and leaves authorization logic to each implementation.Source 1, Source 2 MuleSoft Agent Fabric is a product: a MuleSoft-hosted control plane with a registry that scanners fill from supported platforms and a gateway in the request path.Source 3, Source 4, Source 5, Source 6
Where each one sits
Six layers of running AI agents at a company, and what each product’s own public sources say it covers.
These aren’t the same kind of product
DIY
MuleSoft Agent Fabric
- Agents across organizations: Not publicly documented
At a glance
What each one is
Build it yourself (DIY)
DIY means connecting and governing agents without buying an agent platform: open protocols wired together in-house, existing infrastructure stretched, an in-house platform, self-hosted open source, or no central approach; Pinterest, for example, runs a growing ecosystem of MCP servers and a central registry.Source 11
MuleSoft Agent Fabric
MuleSoft Agent Fabric is an AI control plane for agents, MCP servers, and APIs across platforms.Source 3 Its registry catalogs agents in Anypoint Exchange, Omni Gateway enforces policy in managed instances’ request path, and brokers orchestrate A2A-compliant agents.Source 5, Source 6, Source 17 MuleSoft says it is generally available.Source 9
The differences that matter
Finding and registering agents
DIYA2A prescribes no standard API for curated registries, and its docs say one means deploying and maintaining a registry service.Source 1
MuleSoft Agent FabricScanners watch supported platforms and register the agents, APIs, and MCP servers they find; other agents can be registered by uploading an agent card.Source 6, Source 10
Uber and Pinterest each describe their own internal MCP registry.Source 7, Source 11
Enforcing access
DIYA2A calls authorization logic implementation-specific, and MCP makes authorization optional; Uber’s gateway applies policies from Uber’s internal Access Control System to humans, services, and agents.Source 2, Source 7, Source 20
MuleSoft Agent FabricOmni Gateway sits in managed instances’ request path and can require authentication and authorization, and limit which tools and APIs an agent can call.Source 6
Where it runs
DIYWhere you choose: Pinterest optimized for MCP servers in its internal cloud, and Uber’s gateway runs downstream requests through its service mesh sidecar.Source 7, Source 11
MuleSoft Agent FabricMuleSoft hosts the control plane in regional clouds.Source 4, Source 5 Omni Gateway can also be self-managed, in a data center or on EKS, AKS, or GKE.Source 3, Source 21
Self-hosting Agent Fabric’s control plane is not publicly documented; MuleSoft’s self-hosted Private Cloud Edition doesn’t list Agent Fabric.Source 22
For security teams
What a security review asks, answered from each vendor’s public documentation.
Full comparison
18 criteria in five groups. Every cell links to its source, or says no public source answers it.
| DIY | MuleSoft Agent Fabric | |
|---|---|---|
| What it is | ||
| What it is and who it’s for | Not a product: agent connections and controls built in-house on open protocols such as A2A and MCP, which A2A’s specification calls complementary.Source 2 | An AI control plane for agents, MCP servers, and APIs across platforms.Source 3 MuleSoft says it adds new capabilities to existing MuleSoft products.Source 31 |
| Maturity | Varies by component: MCP’s latest revision is 2026-07-28.Source 29 The official MCP Registry is in preview; breaking changes or data resets may occur.Source 15 | Generally available, MuleSoft says.Source 9 Release notes add agent brokers on 3 October 2025, and rogue-agent containment and the A2A bridge on 31 August 2026.Source 5, Source 32 |
| Control | ||
| Agent registry and discovery | Build your own: A2A prescribes no standard registry API.Source 1 The official MCP Registry is in preview and doesn’t support private servers.Source 15 | One inventory of agents, MCP servers, and APIs, whatever platform built them.Source 6 Scanners register what they find; others by uploading an agent card.Source 10 |
| Identity and access control | In A2A, identity is established at the HTTP layer and authorization logic is implementation-specific.Source 2, Source 14 MCP authorization is optional.Source 20 | Omni Gateway can require authentication and authorization and limit which tools and APIs an agent calls.Source 6 Roles come from Anypoint access management.Source 3 |
| Ownership, policy, and revocation | MCP says implementers should build consent and authorization flows.Source 29 Pinterest ties every MCP server but one-off experiments to an owning team and review.Source 11 | Governance strategies set rules for in-scope agents, APIs, and MCP servers and can block or flag noncompliance.Source 6 Budgets cap model-proxy spend.Source 6 |
| Audit log and observability | A2A docs advise auditing significant events and distributed tracing, for example with OpenTelemetry.Source 14 MCP documents trace context propagation.Source 33 | Anypoint audit log, kept a year by default; Omni Gateway traffic audit trail.Source 6, Source 28 With Integration Advanced or Titanium, audit logs export to tools like Splunk.Source 28, Source 34 |
| Connection | ||
| How agents connect | MCP servers on Streamable HTTP expose an endpoint; A2A interfaces over HTTP declare HTTPS URLs in production.Source 2, Source 23 AWS PrivateLink privately links a VPC to services.Source 35 | Omni Gateway sits in each managed instance’s request path.Source 6 Agent networks add ingress gateways with a public endpoint and egress gateways without one.Source 24 |
| Agents across organizations | A2A is designed for agents from different companies on separate servers; each server authorizes requests under its own policies.Source 2, Source 36 | Agent networks can use agents defined elsewhere in your company.Source 37 Partner-held access controls: not publicly documented. |
| Protocol support | MCP defines stdio and Streamable HTTP transports; its latest revision is 2026-07-28.Source 29, Source 38 A2A maps to JSON-RPC, gRPC, and HTTP/REST bindings.Source 2 | Omni Gateway supports MCP and A2A.Source 39 Connectors run MCP or A2A servers and clients in Mule apps; MCP Bridge turns an API into an MCP server.Source 6 |
| Frameworks, models, and clouds supported | A2A gives agents built with different frameworks, languages, or vendors a common language.Source 2 Google’s ADK says it is model- and deployment-agnostic.Source 8 | MuleSoft says it applies control to agents wherever they run, without rebuilding them.Source 9 Orchestration needs A2A-compliant agents; a bridge covers Agentforce.Source 3, Source 6 |
| Operations | ||
| Deployment options and data residency | Where you choose: Pinterest optimized for MCP servers in its internal cloud.Source 11 A2A docs say to protect data at rest under your own security policies.Source 14 | MuleSoft hosts the control plane in regional clouds.Source 4, Source 5 Omni Gateway can be self-managed.Source 3, Source 21 Self-hosting Agent Fabric’s control plane is not publicly documented. |
| Compliance attestations | Sits with the implementer: A2A docs say to comply with relevant regulations such as GDPR, CCPA, and HIPAA, and MCP leaves data protections to implementers.Source 14, Source 29 | MuleSoft says Anypoint Platform holds ISO 27001, SOC 2, PCI DSS, HIPAA, and GDPR compliance.Source 30 Coverage of Agent Fabric isn’t publicly documented. |
| Support and SLA | Depends on the component: MCP SDKs are tiered partly by maintenance commitments.Source 40 The official MCP Registry, in preview, gives no uptime guarantee.Source 41 | MuleSoft’s Cloud Offerings SLA commits to 99.95% monthly availability for covered services (subscriptions started by 1 May 2025).Source 42 Premier Success Plans exist.Source 43 |
| Time and effort to get running | A curated A2A registry is a service you deploy and maintain.Source 1 Pinterest built a unified deployment pipeline after new MCP servers took too much setup.Source 11 | Needs product access, turned on by an admin for a business group or organization.Source 3 Managed instances need Omni Gateway; scanners, a connected cloud provider.Source 3 |
| Pricing model and public prices | The A2A and MCP specifications are openly licensed, A2A under Apache 2.0.Source 2, Source 18 Build and running costs are not publicly documented. | MuleSoft packages from $2,000 a month, billed annually; usage is metered in Mule Credits.Source 19 MuleSoft lists the Agent Fabric package with no price: contact sales.Source 19 |
| Building | ||
| Agent building tools | Open-source frameworks such as Google’s ADK and LangGraph build and deploy agents.Source 8, Source 12 A2A has SDKs in six languages.Source 44 | Agent networks in YAML, brokers in Agent Script; MuleSoft Vibes can generate both.Source 6, Source 37 MuleSoft says Salesforce’s separate Agentforce is for end-to-end agents.Source 9 |
| Model access | Chosen by whoever builds the agents: Google’s ADK, for one, says it is optimized for Gemini and model-agnostic.Source 8 | Brokers support OpenAI, Azure OpenAI, Bedrock OpenAI, and Gemini models.Source 37 Model Proxy is one access layer for several LLM providers.Source 45 |
| Integrations and ecosystem | The official MCP Registry, in preview, has a REST API for clients and aggregators to discover public MCP servers.Source 15 | Hundreds of enterprise connectors, MuleSoft says.Source 9 Credentials can stay in AWS Secrets Manager, Azure Key Vault, or HashiCorp Vault.Source 6 |
Which to choose
Choose DIY if
- You want no agent platform contract: A2A and MCP are openly licensed specifications, A2A under Apache 2.0.Source 2, Source 18
- You want every part, control plane included, to run where you choose; Pinterest optimized for MCP servers in its internal cloud.Source 11
- You want MCP calls checked by systems you already run: Pinterest uses end-user JWTs and mesh identities; Uber, its Access Control System.Source 7, Source 11
- You want your own review rules: Uber starts every MCP server and tool disabled until the owning team reviews and enables it.Source 7
Choose MuleSoft Agent Fabric if
- You want an inventory built for you: scanners register agents, APIs, and MCP servers from platforms such as LangSmith and Copilot Studio.Source 6, Source 46, Source 47
- You want policy enforced at a gateway in managed agents’ request path, where MuleSoft says third-party agents can be governed unmodified.Source 6, Source 9
- You want to contain a rogue agent: quarantine blocks its access to model proxies using the Kill Switch policy, and is reversible.Source 25
- You already run MuleSoft: Agent Fabric uses Anypoint Platform access management and catalogs agents into Anypoint Exchange.Source 3, Source 17
Questions buyers ask
Is MuleSoft Agent Fabric an alternative to building it yourself?
For the control-plane parts, yes: it provides a registry, policy enforcement through Omni Gateway, and agent brokers.Source 5, Source 6 MuleSoft hosts the control plane.Source 4, Source 5 A self-hosted Agent Fabric control plane isn’t publicly documented. Uber, for example, built its own MCP registry and gateway.Source 7
Can MuleSoft Agent Fabric govern agents built outside MuleSoft?
Yes. Scanners import agents from external platforms so they can be governed, and other agents can be registered by uploading an agent card.Source 10, Source 17 Orchestration needs A2A-compliant agents: a bridge covers Agentforce, and one for Microsoft Copilot Studio is planned.Source 3, Source 6, Source 49
Can MuleSoft Agent Fabric connect agents at other companies?
Agent networks can call agents outside the network through an egress gateway and use agents defined elsewhere in your company.Source 24, Source 37 Bringing in another organization’s agents under access it controls isn’t publicly documented. For DIY builds, A2A is designed for agents from different companies.Source 36
How do the costs compare?
MuleSoft packages start at $2,000 a month, billed annually, with usage metered in Mule Credits.Source 19 MuleSoft lists the Agent Fabric package with no price: contact sales.Source 19 For DIY, A2A and MCP are openly licensed specifications.Source 2, Source 18 Build and running costs are not publicly documented.
How we compare
Read the full methodEvery claim on this page links to a public source. Where none answers a question, the page says so.
We re-check every fact at least every 90 days. This page was last checked .
Something wrong or out of date? Tell us and we’ll correct it.
Sources
54 public sources, each with the date we checked it. Every one opens in a new tab.
Source 2: Agent2Agent (A2A) Protocol Specification Back:abcdefghijklmnopq
Source 3: Get Started with Agent Fabric Back:abcdefghijklmno
Source 6: Agent Fabric Overview Back:abcdefghijklmnopqrstuvwxyz272829
Source 7: Designing MCP Gateway Uber's MCP Management Platform - Uber Blog Back:abcdefghij
Source 9: See Every Agent. Govern Every Agent. Control AI Costs. (mulesoft.com home page) Back:abcdefghi
Source 11: Building an MCP Ecosystem at Pinterest - Pinterest Engineering Blog Back:abcdefghij
Source 13: Integrating with Model Context Protocol (MCP) - Keycloak Back to text
Source 15: The MCP Registry - Model Context Protocol Back:abcd
Source 16: Discovering and Cataloging External Services with Scanners Back to text
Source 18: modelcontextprotocol/modelcontextprotocol LICENSE (GitHub) Back:abcd
Source 19: MuleSoft Pricing | Plans From $2,000 a Month Back:abcdefg
Source 20: Authorization - Model Context Protocol specification 2026-07-28 Back:abc
Source 23: Streamable HTTP - Model Context Protocol specification 2026-07-28 Back:ab
Source 24: Deploying Agent Network Ingress and Egress Managed Omni Gateways Back:abc
Source 26: OAuth 2.0 OBO Credential Injection Policy Back to text
Source 27: Enterprise-Managed Authorization - Model Context Protocol extensions Back to text
Source 29: Specification - Model Context Protocol 2026-07-28 Back:abcde
Source 31: MuleSoft Agent Fabric | Agent Governance and Orchestration Back to text
Source 32: Enhanced MuleSoft Experience Release Notes Back to text
Source 33: Key Changes - Model Context Protocol specification 2026-07-28 Back to text
Source 34: Exporting Telemetry Data to Third-Party Monitoring Systems Back to text
Source 35: What is AWS PrivateLink? - Amazon Virtual Private Cloud Back to text
Source 37: Building Agent Networks for Agent Fabric Back:abcd
Source 38: Transports - Model Context Protocol specification 2026-07-28 Back to text
Source 39: Securing Agent Interactions with Omni Gateway Back to text
Source 41: MCP Registry Aggregators - Model Context Protocol Back to text
Source 42: MuleSoft Cloud Offerings Service Level Agreement (SLA) for subscriptions with an Order Start Date on or before May 1, 2025 Back to text
Source 43: MuleSoft Subscription Plans - effective for Customer purchases made from Salesforce on or after June 27, 2025 Back to text
Source 46: Adding a Scanner for LangChain LangSmith Back to text
Source 47: Adding a Scanner for Microsoft Azure Copilot Back to text
Source 48: Enhanced MuleSoft Experience Overview Back to text