Route, secure, and observe every API call across your stack. Replace fragmented tooling with a single unified gateway — sub-millisecond latency at any scale.
| Route | Method | Upstream | p99 | Req/s | Status |
|---|---|---|---|---|---|
| /api/v2/users | GET | users-svc | 0.8ms | 3,241 | Healthy |
| /api/v2/auth/token | POST | auth-svc | 1.2ms | 1,847 | Healthy |
| /api/v2/payments | POST | pay-svc | 2.1ms | 892 | Healthy |
| /api/v2/events | POST | events-svc | 0.4ms | 8,412 | Healthy |
| /api/v2/config | GET | config-svc | 0.3ms | 524 | Healthy |
| /api/v2/webhooks | PUT | webhook-svc | 1.8ms | 167 | Degraded |
| /api/v2/search | GET | search-svc | 3.4ms | 2,103 | Healthy |
Replace your patchwork of proxies, WAFs, and rate limiters with one unified control plane.
Content-based routing, weighted load balancing, and canary deployments — all at the edge.
OAuth 2.0, JWT, mTLS, and bot protection baked into every request path.
Global edge deployment with automatic failover and zero-downtime upgrades.
Extend with JS, Go, or Rust. Transform requests, inject headers, shape responses.
Every request logged and traced. Live dashboards, distributed tracing, anomaly alerts.
Deploy to 200+ edge locations. Sub-10ms response for every user, everywhere.
From config-as-code to real-time dashboards — a visual tour of the platform.
Stop paying per-request premiums. Get everything you need in one gateway.
| Feature | Meridian | Kong | AWS API GW | Apigee |
|---|---|---|---|---|
| p99 Latency | 0.4ms | 8ms | 29ms | 15ms |
| Edge Locations | 200+ | Self-hosted | 22 regions | 5 regions |
| Config as Code | ✓ YAML + GitOps | ✓ decK | ✕ CloudFormation | ✕ UI only |
| Built-in Analytics | ✓ Full traces | ✕ Plugin | ✕ CloudWatch | ✓ Limited |
| Custom Plugins | JS, Go, Rust | Lua | Lambda only | Java |
| Multi-Cloud | ✓ Native | ✓ Manual | ✕ | ✓ Hybrid |
| Free Tier | 10M req/mo | OSS only | 1M req/mo | Trial only |
Automatic certificate rotation and pinning across all services. Zero trust from edge to origin — every connection encrypted, every identity verified.
Validate tokens before they reach your services. Block bad actors at the perimeter — sub-millisecond auth that never touches your application code.
Block, route, or rate-limit based on country, ASN, or IP range. Data residency enforcement and compliance built into the infrastructure layer.
Automatic DDoS mitigation at the edge. Configurable rate limits per endpoint, per client, per API key — with intelligent burst handling.
ML-powered bot detection that distinguishes real users from automated scrapers. WAF rules auto-update with zero-day vulnerability feeds in real-time.
Centralized key issuance, rotation, and revocation. Scoped permissions, usage analytics per key, and automatic rotation on compromise detection.
Whether you're deploying microservices or managing a monolith, Meridian adapts.
Content-based routing, load balancing, canary deployments, and circuit breaking — all configured in YAML or our visual editor.
Write edge functions in JavaScript, Go, or Rust with under 10ms cold start. Browse 150+ community plugins or build your own.
One configuration for every cloud. Deploy Meridian across AWS, GCP, Azure, and bare metal with unified management.
"We migrated from Kong to Meridian in a weekend. Our p99 latency dropped from 45ms to 2ms. The config-as-code approach made it trivial to replicate across environments."
"Meridian replaced three separate tools in our stack — API gateway, rate limiter, and observability layer. It's the single best infrastructure decision we've made this year."
"The plugin system is incredible. We wrote a custom auth middleware in Rust that runs at the edge with sub-millisecond overhead. Nothing else comes close."
One command. Global edge. Zero config files to write.