Orange gradient background on the left side of the MCP Gateway hero
Turquoise gradient background on the right side of the MCP Gateway hero

MCP Gateway

The MCP Gateway for enterprise AI

Connect AI agents to tools without giving up control. Govern every Model Context Protocol (MCP) connection with access controls, policies and a complete audit trail.

Secure by design

European sovereign

One decision point for models and tools

Tool sprawl

Every new tool is a door into your systems

Connect a tool once, and every agent that can reach it gets full read and write access.

No department boundaries

Marketing, engineering, and finance route through the same unmanaged tools, credentials, and connections.

No department boundaries

Marketing, engineering, and finance route through the same unmanaged tools, credentials, and connections.

All-or-nothing access

One connection means every agent gets read, write, and delete on that tool - not only the parts a team actually needs.

No record of any of it

Nobody holds a list of what agents can reach today, and no log of what they did yesterday.

No record of any of it

Nobody holds a list of what agents can reach today, and no log of what they did yesterday.

how we solve the problem

Every team gets the access it needs. Nothing more.

An MCP Gateway sits between your agents and your tools, deciding which ones each team can reach and what they can do there. Orq.ai scopes that per tool and per action.

Marketing can publish

Engineering can deploy

Finance can read

You decide

Diagram showing the MCP Gateway controlling access from HubSpot, SAP and GitHub to marketing, finance and engineering teams
Diagram showing the MCP Gateway controlling access from HubSpot, SAP and GitHub to marketing, finance and engineering teams

FEATURES

One governance layer for every tool your agents can reach

Set who can access what, enforce policies on every call and keep a complete record of what happened across teams, agents and MCP servers.

  • Control MCP access by team, agent and tool

    Finance shouldn’t have the same access as Engineering. Decide exactly which tools each team and agent can reach, and what they’re allowed to do once they’re there.

    MCP gateway permissions with read and write scopes set by team and tool
  • Guardrails on every tool call

    The same rules that govern model calls apply to tool calls. Block, redact, or flag anything that shouldn’t get through.

    MCP gateway guardrail settings for blocking and redacting tool-call content
  • Full attribution and audit trail

    See which agent called which tool. Every tool call lands in your audit log.

    MCP gateway audit log listing agent tool calls
  • Works with your coding agents

    Claude Code, Cursor and Codex connect once, governed the same way every time.

    Claude Code, Cursor and Codex connected through the Orq.ai MCP gateway
  • Kill switches and alerting

    Cut off a misbehaving agent’s tool access in one click. Get notified when usage looks abnormal.

    MCP gateway control for revoking agent tool access and setting usage alerts
  • Cost attribution

    See which agent, team, or tool is driving spend. It is the same FinOps view, extended to tool calls.

    MCP gateway dashboard showing AI agent and tool-call spend by team
  • Control MCP access by team, agent and tool

    Finance shouldn’t have the same access as Engineering. Decide exactly which tools each team and agent can reach, and what they’re allowed to do once they’re there.

    MCP gateway permissions with read and write scopes set by team and tool
  • Guardrails on every tool call

    The same rules that govern model calls apply to tool calls. Block, redact, or flag anything that shouldn’t get through.

    MCP gateway guardrail settings for blocking and redacting tool-call content
  • Full attribution and audit trail

    See which agent called which tool. Every tool call lands in your audit log.

    MCP gateway audit log listing agent tool calls
  • Works with your coding agents

    Claude Code, Cursor and Codex connect once, governed the same way every time.

    Claude Code, Cursor and Codex connected through the Orq.ai MCP gateway
  • Kill switches and alerting

    Cut off a misbehaving agent’s tool access in one click. Get notified when usage looks abnormal.

    MCP gateway control for revoking agent tool access and setting usage alerts
  • Cost attribution

    See which agent, team, or tool is driving spend. It is the same FinOps view, extended to tool calls.

    MCP gateway dashboard showing AI agent and tool-call spend by team
  • Control MCP access by team, agent and tool

    Finance shouldn’t have the same access as Engineering. Decide exactly which tools each team and agent can reach, and what they’re allowed to do once they’re there.

    MCP gateway permissions with read and write scopes set by team and tool
  • Guardrails on every tool call

    The same rules that govern model calls apply to tool calls. Block, redact, or flag anything that shouldn’t get through.

    MCP gateway guardrail settings for blocking and redacting tool-call content
  • Full attribution and audit trail

    See which agent called which tool. Every tool call lands in your audit log.

    MCP gateway audit log listing agent tool calls
  • Works with your coding agents

    Claude Code, Cursor and Codex connect once, governed the same way every time.

    Claude Code, Cursor and Codex connected through the Orq.ai MCP gateway
  • Kill switches and alerting

    Cut off a misbehaving agent’s tool access in one click. Get notified when usage looks abnormal.

    MCP gateway control for revoking agent tool access and setting usage alerts
  • Cost attribution

    See which agent, team, or tool is driving spend. It is the same FinOps view, extended to tool calls.

    MCP gateway dashboard showing AI agent and tool-call spend by team
  • Control MCP access by team, agent and tool

    Finance shouldn’t have the same access as Engineering. Decide exactly which tools each team and agent can reach, and what they’re allowed to do once they’re there.

    MCP gateway permissions with read and write scopes set by team and tool
  • Guardrails on every tool call

    The same rules that govern model calls apply to tool calls. Block, redact, or flag anything that shouldn’t get through.

    MCP gateway guardrail settings for blocking and redacting tool-call content
  • Full attribution and audit trail

    See which agent called which tool. Every tool call lands in your audit log.

    MCP gateway audit log listing agent tool calls
  • Works with your coding agents

    Claude Code, Cursor and Codex connect once, governed the same way every time.

    Claude Code, Cursor and Codex connected through the Orq.ai MCP gateway
  • Kill switches and alerting

    Cut off a misbehaving agent’s tool access in one click. Get notified when usage looks abnormal.

    MCP gateway control for revoking agent tool access and setting usage alerts
  • Cost attribution

    See which agent, team, or tool is driving spend. It is the same FinOps view, extended to tool calls.

    MCP gateway dashboard showing AI agent and tool-call spend by team
Turquoise gradient accent on the MCP Gateway platform banner
Orange gradient accent on the MCP Gateway platform banner

The MCP Gateway and the AI Gateway share one policy layer, one dashboard, one audit trail.

Compliance and deployment

Built for regulated industries

European jurisdiction, certified infrastructure, and deployment that matches your data posture. Designed for regulated organizations preparing for the operational requirements of the EU AI Act.

EU entity, EU cap-table

No US parent company, No CLOUD act exposure. Your vendor and your data sit under the same jurisdiction.

EU entity, EU cap-table

No US parent company, No CLOUD act exposure. Your vendor and your data sit under the same jurisdiction.

Certified

SOC 2 Type II, ISO 27001, GDPR, and HIPAA. EU AI Act enabled.

Certified

SOC 2 Type II, ISO 27001, GDPR, and HIPAA. EU AI Act enabled.

Deploy your way

Fully managed, in your own EU region, or air-gapped on your own servers with no egress and no telemetry.

Deploy your way

Fully managed, in your own EU region, or air-gapped on your own servers with no egress and no telemetry.

Evidence you can hand over

Every tool call is logged and exportable, so audit trails come out of the platform rather than out of a spreadsheet.

Evidence you can hand over

Every tool call is logged and exportable, so audit trails come out of the platform rather than out of a spreadsheet.

Skills

Skills, governed the same way

Push approved skills, including your brand voice and workflows, to the teams that need them, and update everyone at once. Distributed through the same gateway that governs your tools.

Why Orq.ai

Nothing new to run

Most MCP gateways are point solutions bolted onto your AI infrastructure. Orq.ai's MCP gateway shares policies, guardrails, and observability with our AI Gateway.

One decision point

Models and tools, governed the same way, in the same dashboard. No two separate systems to keep in sync.

One decision point

Models and tools, governed the same way, in the same dashboard. No two separate systems to keep in sync.

Built in Europe, built for sovereignty

EU entity, EU cap-table, no CLOUD Act exposure. Built and run in Europe for organizations that need sovereign AI, not another dependency outside their control.

Built in Europe, built for sovereignty

EU entity, EU cap-table, no CLOUD Act exposure. Built and run in Europe for organizations that need sovereign AI, not another dependency outside their control.

Compliant from day one

The same compliance posture that already covers your AI Gateway traffic - SOC 2 Type II, ISO 27001, GDPR, and EU AI Act ready.

Compliant from day one

The same compliance posture that already covers your AI Gateway traffic - SOC 2 Type II, ISO 27001, GDPR, and EU AI Act ready.

Trusted by teams shipping AI at scale

Afas Software logo
bunq logo
Capgemini logo
Payt logo
Moneybird logo
Vattenfall logo
Afas Software logo
bunq logo
Capgemini logo
Payt logo
Moneybird logo
Vattenfall logo
Afas Software logo
bunq logo
Capgemini logo
Payt logo
Moneybird logo
Vattenfall logo

FAQs

Frequently Asked Questions

FAQs

Frequently Asked Questions

What is an MCP Gateway?

An MCP gateway sits between your AI agents and the tools they use, giving every team a scoped set of tools with shared authentication, guardrails, and an audit trail. This avoids each agent connecting directly to raw MCP servers.

How is this different from the AI Gateway?

The AI Gateway governs which models your agents can call. The MCP gateway governs which tools they can call. Both run on the same control plane, so policies and observability stay consistent.

Can I control what each team can access?

Yes. Use a virtual MCP server per team, with read and write permissions set per tool, not just per integration.

Does this work with coding agents?

Yes. Claude Code, Cursor, Warp, Codex, and other agent harnesses connect through the same gateway as any other agent.

What’s the difference between an MCP proxy, a gateway, and a registry?

A proxy forwards traffic. A registry lists available servers. A gateway does both and enforces policy on every call: who can reach which tool, what they can do with it, and what gets logged.

How is this different from the Orq.ai MCP server?

The MCP server points inward, letting tools like Claude Code and Cursor reach your Orq.ai workspace. The MCP Gateway points outward, at the tools your agents use.

Does it support multi-tenancy?

Yes. Configure separate permissions and audit trails by team, project, or environment.

Can I self-host it?

Yes. Fully managed, in your own EU region, or air-gapped on your own infrastructure.

What compliance certifications do you hold?

SOC 2 Type II, ISO 27001, GDPR, and HIPAA, with EU AI Act support built in. Orq.ai is an EU entity with an EU cap-table.

Blue gradient background behind the MCP Gateway call to action

Bring your tools under the same control you already have over your models

MCP Gateway is in final testing. Get early access.