Skip to content
Comparisons

Sluis vs Portkey: the EU AI gateway compared

Sluis is an independent, EU-based gateway with residency policy, reversible pseudonymization and a sealed audit trail built in. Portkey is now part of Palo Alto Networks as Prisma AIRS AI Gateway.

Last checked
4 October 2026
Reading time
7 min
Compared with
Portkey

Verdict: For EU organisations, Sluis is the better choice because EU-only routing is enforced on every request, personal data is pseudonymized and restored on the way back, the audit chain verifies offline, and an EU vendor runs a fast Rust gateway as a managed EU-hosted service you reach by changing the base_url.

The short version

Portkey and Sluis both sit between your applications and model providers, with keys, routing, guardrails, budgets and logs. They come from different starting points. For the other gateways on the shortlist, see AI gateways for EU organisations compared.

Sluis began from the compliance question: where may this data go, what was removed first, and can we prove it later. It is built by 7Lab B.V. in Amsterdam, and the managed service is hosted in the EU. It is proprietary, all rights reserved.

Portkey began as a developer platform for production LLM apps: an MIT-licensed gateway, observability, prompt management and a large guardrail ecosystem. On 29 May 2026 Palo Alto Networks completed its acquisition of Portkey, and Portkey's own pricing page now announces that it is Prisma AIRS AI Gateway.

At a glance

SluisPortkey
Vendor7Lab B.V., AmsterdamPortkey, Inc., acquired by Palo Alto Networks (closed 29 May 2026)
LicenceProprietary, all rights reservedMIT for the open source gateway; enterprise features commercial
DeploymentManaged, EU-hosted; self-hosted Edge (enterprise licence)Cloud, open source self-host, or enterprise hybrid with the data plane in your VPC
ResidencyPer-request policy, EU-only by default, optional EU-owned-onlyRegion-pinned SaaS shards (for example EU) on the enterprise plan; hybrid keeps data in your VPC
PIIBuilt-in detectors, block, mask, log or reversible pseudonymizationPII redaction toggle on selected guardrails, including partner providers
BudgetsPer workload, with rpm, tpm and model allow-listsBudget limits on Enterprise and select Pro customers
AuditHash-chained, verifiable offline, one row per requestRequest logs; audit logs for admin activity on Enterprise
MCPGoverned through the same gate, deny-by-default grantsMCP Gateway with registry, authentication, tool provisioning and guardrails
PriceProvider list price plus 10%, or €0.50 per 1M BYOK tokensFree developer tier, Production from $49 a month, Enterprise custom
Best fit for EU organisationsSluisTeams that want an open source gateway with prompt tooling and observability

Ownership and licence

Sluis is built by 7Lab B.V. in Amsterdam, an independent EU vendor, and the managed service is hosted in the EU. It is proprietary: you get documented behaviour, a verifiable audit chain and a managed service instead of source code.

Portkey, Inc. is a San Francisco company; since May 2026 it belongs to Palo Alto Networks, a US-headquartered security company, which now sells the product as part of Prisma AIRS. That can be a plus if you already buy from Palo Alto. For sovereignty reviews it adds a layer to assess, and our CLOUD Act guide shows how. The Portkey gateway repository is MIT licensed, and its README says the enterprise gateway is merging into open source with a 2.0 release.

Deployment and residency

The Sluis managed service is hosted in the EU. Its residency engine enforces, per request, where data may go: EU-only by default, other jurisdictions only when you add them, and an EU-owned-only restriction when ownership matters as well as region. Every response discloses the route and model used. For your own servers, Sluis Edge runs the same data plane as one binary; prompts do not transit Sluis's cloud, and provider egress follows your policy. See residency.

Portkey documents three shapes. The SaaS enterprise plan runs the gateway in a region you choose, such as the EU, with region-specific data shards. The hybrid model runs the data plane in your VPC, so prompts, responses and logs stay with you while Portkey hosts the control plane. Open source self-hosting is also available. Portkey's own pricing page says the $49 Production plan is not recommended for organisations that need data residency guarantees, so residency is an enterprise conversation.

Guardrails and PII

Sluis builds data protection into the gateway. Sixty detectors cover emails, IBANs, cards, keys and national IDs, with opt-in name recognition. Each detected value becomes a stable token such as «EMAIL_1» that is restored on the response at the single client egress. Policy can also block, mask or log, and per-workload overrides are governed by owners and admins. Detection is not a guarantee that every sensitive value is found. See data protection.

Portkey has a broad guardrail library: more than 20 deterministic checks, LLM-based checks and integrations with third parties such as Aporia and Pillar Security. Access depends on the plan. Its PII redaction replaces sensitive values in requests with standard identifiers before the model sees them. Its guardrails documentation says checks evaluate the last message in the request body, so test how that fits your multi-turn flows. We did not find a documented step that restores originals in the response.

Budgets, routing and MCP

Sluis gives each workload requests per minute, tokens per minute, a model allow-list and a total, daily or monthly budget, with an organisation cap above, all in one console. Past the limit the call returns 429 or 402 before dispatch. Routing follows residency policy and managed aliases; within one provider it spreads calls across several keys by weight, with retries and circuit breaking, and weighted or latency-based balancing across models and deployments is available on request for enterprise contracts. See budgets and limits.

For MCP, both govern tool calls. In Sluis, every tool call clears the same Inspect, Route, Seal and Meter gate, and grants are per key and deny-by-default. Portkey's MCP Gateway adds a registry, OAuth, tool provisioning and guardrails.

Portkey is the more mature routing toolkit: configs with retries, fallbacks, load balancing and conditional routing, plus caching, including semantic caching. Budget limits are available on Enterprise and selected Pro customers.

Audit

Sluis writes every call to a hash-chained ledger that can be verified offline, one row per request, with optional encrypted bodies under a retention period. Sluis is ISO 27001 certified.

Portkey's request logs feed its observability product, with retention set by plan. Its audit logs, which track administrative activity such as key and config changes, are an Enterprise feature. Portkey lists SOC 2, ISO 27001, GDPR and HIPAA on its trust portal.

Performance and pricing

Sluis has no platform subscription, no seat fee and no free tier. Managed usage costs list price plus 10%; with your own keys the fee is €0.50 per 1M tokens; payment-method surcharges apply. See pricing.

Sluis is written in Rust for predictable latency and memory safety. In our internal benchmark, on identical hardware with one shared mock upstream at 256 connections, the gateway handled 3,678 requests per second with the full security gate on, outperforming Bifrost (3,148) and LiteLLM (298), and the gate adds about 1 ms at the median. These figures are relative, on dev hardware, and measured internally; we did not benchmark Portkey. See performance.

Portkey is free for developers up to 10k recorded logs a month, $49 a month for Production, then custom.

Who might still pick Portkey

  • You want an open source gateway under MIT that you can modify.
  • Prompt management, evaluation and deep request observability matter as much as governance.
  • You need advanced routing: fallbacks, load balancing, conditional routes and semantic caching.
  • You are a Palo Alto Networks customer and want Prisma AIRS in the same estate.

Our verdict

Sluis wins for EU organisations. Data security: per-request EU-only routing, optional EU-owned-only providers, reversible pseudonymization and an offline-verifiable chain, with ISO 27001 certification and an EU vendor. Clarity: one console with workloads, budgets and model allow-lists, audit grouped per request, one bill with no platform subscription. Ease of use: OpenAI and Anthropic compatible, so you change the base_url; managed and EU-hosted, with Sluis Edge if you need your own servers. Performance: a Rust gateway that kept its lead over Bifrost and LiteLLM in our internal benchmark with the security gate on. The same gateway also powers Sluis Workspace for employees. See pricing.

FAQ

Is Portkey still independent?

No. Palo Alto Networks completed the acquisition on 29 May 2026, and Portkey's site now presents the product as Prisma AIRS AI Gateway. Check current terms with the vendor.

Does Portkey offer EU data residency?

Its documentation describes region-pinned SaaS for enterprise customers, including EU shards, and a hybrid model that keeps data in your VPC. Confirm availability for your plan in writing.

Is Sluis open source like the Portkey gateway?

No. Sluis is proprietary and all rights are reserved. The Portkey gateway repository is MIT licensed.

Can Sluis replace Portkey for prompt management?

Sluis covers gateway governance, Skills and Knowledge inside Sluis Workspace. Portkey ships a dedicated prompt management studio; a comparable prompt management studio is available on request for enterprise contracts.

Do both support Claude Code and other agents?

Portkey lists a Claude Code gateway use case. Sluis exposes the native Anthropic Messages API and purpose-isolated agent keys for Claude Code, Codex and Cursor, with the Agent Harness exception that region is recorded rather than enforced there.

Sources

All comparisonsNext comparisonSluis vs Kong AI Gateway: the EU comparison

Not sure what fits?

Tell us your requirements and we show you how Sluis covers them.

Talk to our team