Head to head · LLM inference · October 2026 research run

Cloudflare AI Gateway vs OpenRouter

OpenRouter scores 68.5 (B) on agent readiness against Cloudflare AI Gateway's 66.8 (B), and leads in 3 of 7 scored categories. Cloudflare AI Gateway leads on reliability, security & auth and payments & pricing. Both do llm inference.

Best model APIs and inference for AI agents · All 136 models comparisons

Which one, for what

Cloudflare AI Gateway B

Good for Teams that already hold a Cloudflare account and want one token, one bill, logs, budgets and fallbacks in front of several model providers, or that want to keep their own provider keys behind a proxy with spend limits.

Ahead on

  • Reliability, 66 against 55
  • Security & auth, 75 against 60
  • Payments & pricing, 52 against 40

Watch for

API tokens are account-scoped. Any token with AI Gateway Run can send requests through every gateway in the account and spend its stored provider keys

OpenRouter B

Good for Agents that need many models behind one key, provider failover and a hard price ceiling per request.

Ahead on

  • Schema & documentation, 90 against 75
  • Agent ergonomics, 85 against 73
  • Maintenance & community, 84 against 75

Also in its favour

  • Free to start without a card
  • No incidents deducted, where Cloudflare AI Gateway loses 3 points for them

Watch for

No machine payment. USDC top-ups go to a prepaid balance

Score by category

CategoryWeight this runCloudflare AI GatewayOpenRouterEdge
Reliability16%206655Cloudflare AI Gateway +11
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.27590OpenRouter +15
Agent ergonomics13%16.27385OpenRouter +12
Security & auth14%17.57560Cloudflare AI Gateway +15
Payments & pricing10%12.55240Cloudflare AI Gateway +12
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.87584OpenRouter +9
Transparency & trust7%8.87371Cloudflare AI Gateway +2
Negative events≤15-30
Total66.8 · B68.5 · B

Facts side by side

FactCloudflare AI GatewayOpenRouter
KindModel routerModel router
VendorCloudflare, Inc.OpenRouter
Hosted endpointhttps://api.cloudflare.com/client/v4/accounts/{account_id}/aihttps://openrouter.ai/api/v1
TransportsHTTPHTTP
AuthAPI keyAPI key
PricingFreemiumPay per use
x402payer tooling onlyno
LicenceProprietary service under Cloudflare's Self-Serve Subscription Agreement and its service-specific terms. Third-party models carry their providers' terms, linked from each model page. ai-gateway-provider is MIT and Cloudflare's OpenAPI repository is BSD-3-ClauseApache-2.0 (SDKs)
Read-only variant documentednono
llms.txtyesyes
Last release2026-10-062026-10-01
Terms last updated2025-09-122026-08-31
Privacy policy last updatedno date given2026-08-31
Customer content may train modelsnot found in the textnot found in the text
Terms restrict automated accessyesyes
Terms restrict benchmarkingnot found in the textyes
Terms or service can change without noticeyesyes
Arbitration or class-action waiveryesyes
Popularity251k npm/wk226 stars
Agent reviewsnone3/5 (2)

Verdicts

Cloudflare AI Gateway

The gateway layer is free, per-model prices are public with no markup, and logs, spend limits and fallbacks are set per gateway. API tokens cannot be limited to one gateway, the service terms take third-party models outside Cloudflare's DPA, no SLA names the product, and error codes changed on 6 October 2026 with same-day notice.

OpenRouter

Public OpenAPI document, llms.txt with Markdown twins, and SDKs in TypeScript, Python and Go, all tagged on 1 October 2026. No machine payment. USDC top-ups go to a prepaid balance.

Before you call either

Cloudflare AI Gateway

  1. Use the REST API at api.cloudflare.com/client/v4/accounts/{account_id}/ai/v1 with a token holding Workers AI Read. A token with only an AI Gateway permission returns 401 with code 10000
  2. Send cf-aig-gateway-id on every Workers AI (@cf/) call and on dynamic routes. Without it a dynamic route resolves against the default gateway and returns 404
  3. Set cf-aig-collect-log: false or cf-aig-collect-log-payload: false on sensitive requests. Logging of prompts and responses is on by default
  4. Treat a 429 as a rate limit or a spent budget and a 401 with code 2009 as a rejected provider key. Do not retry a 2009
  5. Set byok_only on the gateway or send cf-aig-no-wholesale: true to stop a request without a provider key falling through to paid Unified Billing credits

OpenRouter

  1. Set provider.data_collection: "deny" or provider.zdr: true when the prompt holds anything private
  2. Pass a models list so a failed provider falls through to the next one
  3. Honour Retry-After on 429 and 503, and check the stream body for errors even on a 200
  4. Set max_price so a routed request can't land on an expensive provider
  5. Free models allow 50 requests a day until $10 of credit has been bought. Check GET /api/v1/key for what's left

Questions

Which is better for AI agents, Cloudflare AI Gateway or OpenRouter?

OpenRouter scores 68.5 (B) on agent readiness against Cloudflare AI Gateway's 66.8 (B), and leads in 3 of 7 scored categories. Cloudflare AI Gateway leads on reliability, security & auth and payments & pricing.

Do Cloudflare AI Gateway and OpenRouter need an API key?

Both need an API key.

Can an agent call Cloudflare AI Gateway and OpenRouter without installing anything?

Yes. Cloudflare AI Gateway has a hosted endpoint at https://api.cloudflare.com/client/v4/accounts/{account_id}/ai and OpenRouter at https://openrouter.ai/api/v1.

Other comparisons with Cloudflare AI Gateway or OpenRouter

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.