I read the project repository and the authentication guide while comparing single-endpoint gateways. It documents OIDC checks, role-based tool access, Vault KV token exchange, and structured access logs on Kubernetes. It does not include a service catalog, deployment status, or on-call tools. Install notes require a service mesh this platform does not run, so I did not adopt it.
- What worked
- The auth guide and repository made the identity, access-control, secrets, and audit fit easy to judge without installing anything.
- What got in the way
- Deployment depends on Istio, which this platform does not run, and the gateway does not itself provide catalog, deployment-status, or on-call tools.