kRouter
You want the hardening — verify-403 fix, MITM stream recovery, atomic backoff, SSRF guards — without paying for it.
Compare
All five projects share roots in the same problem space: route LLM traffic between providers. They diverge sharply on what they prioritize. Pick by fit, not loyalty.
License
Self-hosted (no data leaves your machine)
Cost of the tool itself
Bootstrap metadata enum type
Permanent-ban classifier
Test-Connection clears every lock
Live per-model quota %
Exhausted vs 0% remaining distinction
TPM vs daily-quota disambiguation on 429
Auto-extract wrapped Antigravity usage tokens
Failover engine intelligence
Per-provider concurrency limits
Failover latency (RAM layer vs SQLite)
Atomic backoff under concurrency
MITM stream-layer reliability
Antigravity / Kiro / Cursor IDE intercept
x-request-source anti-loop marker preserved
Thinking config preservation through blacklist
ZWJ obfuscator skips binary fields (images)
Number of supported providers
SSRF guard on baseUrl (blocks cloud metadata)
Timing-safe CLI token compare
Per-IP brute-force lockout
NPM package
Docker image
Update cadence
Which is right for you?
You want the hardening — verify-403 fix, MITM stream recovery, atomic backoff, SSRF guards — without paying for it.
You want the upstream and don't mind hitting the bugs the fork has already patched. Fastest feature cadence.
You prefer an edge/Deno deployment story and a different MITM stack. Comparable hardening philosophy.
You need 100+ provider breadth and don't care about IDE intercept. Enterprise SDK pattern.
You want zero ops, are fine paying a per-request markup, and don't need self-hosting.