Gateway

Your API, safe for every AI agent.

Import your OpenAPI file. Claude, Cursor and any MCP client connect to one address. Reads are answered, and every change waits for a yes before it runs, exactly once.

Free plan: 1 API as an MCP server. No card needed.

YOUR APIONE ADDRESSYOUR AGENTSopenapi.yamlGET/paymentsPOST/paymentsGET/invoicesDEL/invoicesSiliqun RotorMCP GATEWAYDecideConfirm changesCall onceClaudeCursorAny MCPclient/mcp/p/your-project

How it works

Three steps.

01

Import your OpenAPI file

In Studio, add your OpenAPI file. Each operation becomes a tool, with its arguments checked against your own schema.

02

Connect your agent

Add one address to Claude, Cursor or any MCP client. Claude signs in with your approval; other clients use a project key.

03

Decide, then confirm

Reads are answered right away. A change is proposed first and runs only when the person says yes, exactly once.

What your users see

Nothing changes until someone says yes.

The agent proposes the call with its arguments. The person confirms. Gateway calls your API once, with an idempotency key, so a retry never runs the call twice.

Claude · payments-api connectorSchedule payment P-1 for 50 EURNeeds your yesProposed callPOST /payments{"payment":"P-1","amount":50,"currency":"EUR"}ConfirmCancelYesDone. Payment P-1 scheduled, 50 EUR.1 call · Idempotency-Key set · retry-safe

Features

What you get

An exact decision first

Every request is matched to one of your operations, or the agent is asked for what is missing, or it is refused with the reason.

Changes wait for a yes

Writes and deletes are proposed, never run directly. The person sees the call and its arguments first.

Exactly once

Every confirmed call carries an idempotency key. A retried confirm returns the same result instead of calling again.

Your key stays hidden

Your API's credential is stored encrypted, can be replaced but never read back, and is never shown to the agent.

Sign in from Claude

Claude on the web, Claude Desktop and Claude Code add Gateway as a custom connector and sign in with your approval.

Only your API's host

On our hosted engine, calls go only to the public https server your API description names. No redirects, no private networks.

Plans

Gateway on each plan

Free
1 API as an MCP server
Pro
3 APIs
Team
Unlimited APIs

Decisions on your own engine are never counted. See pricing

Questions

Before you start

Which agents can connect?

Any client that speaks MCP over HTTP. Claude on the web, Claude Desktop and Claude Code sign in; Cursor and others use one of your project's keys.

Can an agent call my API without a person?

Reads, yes, after their arguments pass your schema. Anything that changes data is proposed and waits for confirm.

Can I run it on my own servers?

Yes. The engine is free under Apache-2.0, including commercial use. On your own network it can also reach private hosts you allow.

Your API, safe for every AI agent.

Your API as an MCP server that AI agents can use safely.

Start free