Aklivity Documentation
Documentation
Govern, Share, and Secure
AI Agents and APIs at Scale
One gateway for Kafka streams and AI model APIs. Enforce access policies, publish real-time data as governed products, and give every app and partner secure, observable access without custom middleware.
Editions
Zilla
Free to deploy, modify, and run under the Aklivity Community License.
- ✓ HTTP, MQTT, gRPC, SSE, WebSocket
- ✓ MCP Gateway for AI agents & LLM tools
- ✓ AsyncAPI & OpenAPI spec-driven config
- ✓ JWT guards, TLS, schema validation
- ✓ Kubernetes & Helm support
Zilla Plus
Production hardening, enterprise integrations, and Zilla Console available as an add-on.
- ✓ Everything in Zilla
- ✓ Secure public & private Kafka access
- ✓ Virtual clusters & multi-tenancy
- ✓ AWS MSK & Confluent Cloud templates
- ✓ Zilla Console add-on available
Zilla Gateway + Console
Full governance, data products, and policy enforcement on top of Zilla Plus.
- ✓ Everything in Zilla Plus
- ✓ Data product catalog & self-service
- ✓ Governed Kafka endpoints & mTLS
- ✓ Policy enforcement & audit logs
- ✓ Visual console & observability
Browse by product
Multi-protocol gateway that translates HTTP, SSE, MQTT, and gRPC to and from Kafka. Schema validation, auth, and TLS built in. No custom code required.
Governance, observability, and self-service access for Apache Kafka. Secure data streams for Kafka-native and non-Kafka consumers through one management layer.
Browse by use case
Give an AI agent one authenticated endpoint to hold a credential for, no matter how many upstream tool providers sit behind it. Add or rotate upstreams with no agent-side changes.
See every tool call an AI agent makes, dimensioned by toolkit and outcome. Metrics export to Prometheus or OTLP: no instrumentation in the agent or upstream server.
Expose a plain REST API as MCP tools with no MCP server standing between it and the gateway. Each tool is named in configuration and validated by a schema converter.
Discover, subscribe, and produce or consume streams through a governed catalog. Schema validation, auth, and rate limiting enforced at the gateway.
Direct, governed access for native Kafka clients via a dedicated hostname:port. Enforce mTLS, issue client certificates, and expose a Schema Registry, all in one config.
Expose private MSK or Confluent Cloud clusters publicly. Custom domains, TLS, and auth at the edge. No VPC peering needed.
Multi-tenant Kafka access via a single gateway. Isolated namespaces, per-tenant auth, and independent topic visibility. No extra clusters required.
CRUD on Kafka topics over HTTP. POST to produce, GET to consume, with idempotent keys and content-type negotiation included. No Kafka client needed.
Stream Kafka events to browsers in real time over Server-Sent Events. No WebSocket, no polling, no Kafka client. Just a standard HTTP connection.

