# TrueFoundry Docs > TrueFoundry documentation — enterprise-grade AI Gateway combining LLM, MCP, and Agent Gateways to connect, monitor, and govern agentic AI applications across providers from a unified control plane. - [AI Gateway (226 pages)](https://www.truefoundry.com/_llms/ai-gateway.md): Documentation for AI Gateway. ## Agent Platform ### Agent Harness - [Agent Harness](https://www.truefoundry.com/docs/agent-platform/agent-harness/overview.md): TrueFoundry's agent harness is TrueForge, embedded unchanged in the platform, with hosting and deep AI Gateway integration on top. - [What TrueFoundry Adds on Top of TrueForge](https://www.truefoundry.com/docs/agent-platform/agent-harness/what-truefoundry-adds.md): TrueFoundry hosts TrueForge as a managed service and wires it directly into the AI Gateway, MCP Gateway, and Skills Registry. - [Observability](https://www.truefoundry.com/docs/agent-platform/agent-harness/observability.md): Inspect every agent session with cost, tokens, turns, tool calls, and a turn-by-turn transcript in one place. ### Agent Governance - [Why Agent Governance](https://www.truefoundry.com/docs/agent-platform/agent-governance/overview.md): Why AI agents break the enterprise access model, the risks that appear the moment agents call other agents and tools, and the questions governance must answer. - [Agent Governance Key Concepts](https://www.truefoundry.com/docs/agent-platform/agent-governance/key-concepts.md): Core agent governance concepts: actors on the call path, agent identity, delegation vs. impersonation, token exchange, ID-JAG, access control, and guardrails. - [The Agent Governance Blueprint](https://www.truefoundry.com/docs/agent-platform/agent-governance/governance-blueprint.md): The ideal end-to-end model for governing every agent: discover, register and own, authenticate, authorize and scope every hop, then audit and respond. #### Implementing on TrueFoundry - [Implementing Agent Governance with TrueFoundry](https://www.truefoundry.com/docs/agent-platform/agent-governance/truefoundry-implementation.md): How each pillar of the agent governance blueprint maps to TrueFoundry features — what to configure today, and which capabilities are coming soon. - [Agent Registry Overview](https://www.truefoundry.com/docs/agent-platform/agent-governance/agent-registry.md): The system of record for every agent in your organization — what a registry entry carries, and the full walkthrough for registering an agent. - [Agent and its Identity with TrueFoundry](https://www.truefoundry.com/docs/ai-gateway/agents/agent-identity.md): How agent registration associates an identity with each agent, backed by TrueFoundry or your identity provider, and how to pass and govern it in your code. - [Guardrails for Agents](https://www.truefoundry.com/docs/agent-platform/agent-governance/agent-guardrails.md): Inspecting the content of every agent hop — prompt injection, PII, secrets, and unsafe tool calls — and how to apply guardrails to agent traffic on TrueFoundry. - [Agent Observability](https://www.truefoundry.com/docs/agent-platform/agent-governance/agent-observability.md): Metrics, traces, and the audit trail for every registered agent — what exists today, and the complete observability blueprint governance requires. ##### Microsoft Agent Platforms - [Govern Microsoft Foundry agents calling MCP servers](https://www.truefoundry.com/docs/agent-platform/agent-governance/truefoundry-implementation/microsoft-foundry-agents.md): Route Microsoft Foundry agents through the TrueFoundry MCP Gateway so every tool call carries a verifiable Entra agent or end-user identity. - [Govern Microsoft Copilot Studio agents calling MCP servers](https://www.truefoundry.com/docs/agent-platform/agent-governance/truefoundry-implementation/copilot-studio-agents.md): Route Copilot Studio agents through the TrueFoundry MCP Gateway so every tool call carries a verifiable identity — the signed-in user, the agent, or both. ##### AWS Agent Platforms - [Govern AgentCore Agents calling MCP servers](https://www.truefoundry.com/docs/agent-platform/agent-governance/truefoundry-implementation/agentcore-agents.md): Route AWS Bedrock AgentCore agents through the TrueFoundry gateway so every MCP tool call carries a verifiable identity — the agent's, the end user's, or both. #### Identity Provider Scenarios - [TrueFoundry as the Identity Broker](https://www.truefoundry.com/docs/agent-platform/agent-governance/scenarios/truefoundry-identity-broker.md): Governing agents when TrueFoundry issues agent identities and brokers all access — no agent-capable identity provider required. - [Agent Governance with Okta](https://www.truefoundry.com/docs/agent-platform/agent-governance/scenarios/okta.md): Govern agents with Okta identities using Cross App Access (ID-JAG), On-Behalf-Of token exchange, and Okta for AI Agents through the TrueFoundry gateway. - [Agent Governance with Microsoft Entra](https://www.truefoundry.com/docs/agent-platform/agent-governance/scenarios/microsoft-entra.md): Govern agents with identities in Microsoft Entra ID using Entra Agent ID and the agent-aware On-Behalf-Of flow through the TrueFoundry gateway. - [Agent Governance with SPIFFE and SPIRE](https://www.truefoundry.com/docs/agent-platform/agent-governance/scenarios/spiffe.md): Govern agents with SPIFFE workload identity: SPIRE attests the agent runtime and issues short-lived SVIDs that TrueFoundry validates like IdP tokens. ## Platform ### Platform - [TrueFoundry Overview](https://www.truefoundry.com/docs/platform/overview.md): TrueFoundry enables developer productivity and governance by making AI deployments easier and providing an AI Gateway to access models, MCP servers and agents. - [Setup For CLI](https://www.truefoundry.com/docs/setup-cli.md): Install and configure the TrueFoundry CLI for managing deployments, experiments, and platform resources. - [Repositories](https://www.truefoundry.com/docs/platform/repositories.md): Understand TrueFoundry repositories, what assets they store, how blob storage backs them, and how repository access controls work. - [Setup GitOps](https://www.truefoundry.com/docs/setup-gitops-using-truefoundry.md): Enable GitOps with TrueFoundry—store deployment configuration in Git and sync with a single CLI command. - [Audit Logging](https://www.truefoundry.com/docs/platform/audit-logging.md): Track and monitor all platform activities with comprehensive audit logs for security, compliance, and troubleshooting. - [Interact with TrueFoundry using AI](https://www.truefoundry.com/docs/interact-with-tfy-using-ai.md): Manage your TrueFoundry platform through natural language using AI agents. - [Support](https://www.truefoundry.com/docs/platform/support.md): How to reach the TrueFoundry support team — Ask TFY, Slack/Teams, and the in-product Support Portal — and how tickets are tracked and prioritised. #### Architecture - [TrueFoundry Architecture](https://www.truefoundry.com/docs/platform/architecture.md): TrueFoundry provides a split-plane architecture to decouple compute, gateway and control-plane and can be deployed on your own infrastructure. - [TrueFoundry Control Plane](https://www.truefoundry.com/docs/platform/control-plane-architecture.md): Architecture of the TrueFoundry Control Plane which is the brain of the TrueFoundry platform. - [TrueFoundry AI Gateway Plane Architecture](https://www.truefoundry.com/docs/platform/gateway-plane-architecture.md): Architecture of the TrueFoundry AI Gateway, designed for high availability, low latency, and scalable LLM integration in production environments. - [TrueFoundry Compute Plane Architecture](https://www.truefoundry.com/docs/platform/compute-plane-architecture.md): Architecture of the TrueFoundry Compute Plane which handles all the models, services, jobs, and pipelines deployed by the users. #### Identity and Access Management - [Identity and Access Management Overview](https://www.truefoundry.com/docs/platform/user-team-account-management.md): A high level introduction to TrueFoundry's tenants, users, teams, virtual accounts, SSO, provisioning, identity providers, and access control. - [Manage Users](https://www.truefoundry.com/docs/platform/user-management.md): Detailed guide to how to add, manage and delete users in TrueFoundry. - [Manage Teams](https://www.truefoundry.com/docs/platform/team-management.md): Detailed guide to how to add, manage and delete teams in TrueFoundry. - [Manage Virtual Accounts](https://www.truefoundry.com/docs/platform/virtual-account-management.md): Detailed guide to how to add, manage and delete Virtual Accounts in TrueFoundry. - [API Keys](https://www.truefoundry.com/docs/generating-truefoundry-api-keys.md): Create and use TrueFoundry API keys — Personal Access Tokens (PATs) for users and Virtual Account tokens (VATs) for applications. - [Identity Providers](https://www.truefoundry.com/docs/platform/identity-providers.md): Configure external JWT identity providers, and map tokens to TrueFoundry users, teams, or virtual accounts. - [Manage User Roles & Permissions](https://www.truefoundry.com/docs/platform/manage-user-roles-and-permissions.md): Grant users, teams, virtual accounts, and agents the access they need in TrueFoundry. - [Delete the organization account](https://www.truefoundry.com/docs/platform/tenant-deletion.md): Request deletion of your TrueFoundry organization account, understand the 7-day grace period, and cancel deletion by reactivating the account. #### SSO & SCIM Provisioning - [SSO & SCIM Overview](https://www.truefoundry.com/docs/platform/sso/overview.md): Enable single sign-on (SAML or OIDC) and automatic user provisioning (SCIM) for TrueFoundry with your identity provider. - [SAML with a Custom Identity Provider](https://www.truefoundry.com/docs/platform/sso/custom-saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and any standards-compliant SAML 2.0 Identity Provider. - [OIDC with a Custom Identity Provider](https://www.truefoundry.com/docs/platform/sso/custom-oidc.md): Configure OpenID Connect single sign-on between TrueFoundry and any standards-compliant OIDC Identity Provider. - [External SSO (OIDC/SAML)](https://www.truefoundry.com/docs/deploy-control-plane-with-external-oauth.md): Deploy the TrueFoundry Control Plane without TrueFoundry Auth Server using any external OIDC or SAML identity providers for authentication. ##### Microsoft Entra ID - [SAML with Microsoft Entra ID](https://www.truefoundry.com/docs/platform/sso/entra/saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and Microsoft Entra ID (formerly Azure AD). - [OIDC with Microsoft Entra ID](https://www.truefoundry.com/docs/platform/sso/entra/oidc.md): Configure OpenID Connect single sign-on between TrueFoundry and Microsoft Entra ID (formerly Azure AD). - [SCIM with Microsoft Entra ID](https://www.truefoundry.com/docs/platform/sso/entra/scim.md): Automatically provision users and groups from Microsoft Entra ID (formerly Azure AD) into TrueFoundry using SCIM 2.0. ##### Okta - [SAML with Okta](https://www.truefoundry.com/docs/platform/sso/okta/saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and Okta. - [SSO: OIDC with Okta](https://www.truefoundry.com/docs/platform/sso/okta/oidc.md): Configure OpenID Connect single sign-on between TrueFoundry and Okta. - [SSO: Okta OIN](https://www.truefoundry.com/docs/platform/sso/okta/oin.md): Configure OpenID Connect SSO between TrueFoundry and Okta using the Okta Integration Network. - [SCIM with Okta](https://www.truefoundry.com/docs/platform/sso/okta/scim.md): Automatically provision users and groups from Okta into TrueFoundry using SCIM 2.0. ##### Google Workspace - [SAML with Google Workspace](https://www.truefoundry.com/docs/platform/sso/google/saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and Google Workspace using a custom SAML app. ##### JumpCloud - [SAML with JumpCloud](https://www.truefoundry.com/docs/platform/sso/jumpcloud/saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and JumpCloud using a Custom SAML Application. - [SCIM with JumpCloud](https://www.truefoundry.com/docs/platform/sso/jumpcloud/scim.md): Automatically provision users and groups from JumpCloud into TrueFoundry using SCIM 2.0. ##### OneLogin - [SAML with OneLogin](https://www.truefoundry.com/docs/platform/sso/onelogin/saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and OneLogin using the SAML Custom Connector (Advanced). - [SCIM with OneLogin](https://www.truefoundry.com/docs/platform/sso/onelogin/scim.md): Automatically provision users and push groups from OneLogin into TrueFoundry using SCIM 2.0. ##### Auth0 - [OIDC with Auth0](https://www.truefoundry.com/docs/platform/sso/auth0/oidc.md): Configure OpenID Connect single sign-on between TrueFoundry and Auth0. - [SAML with Auth0](https://www.truefoundry.com/docs/platform/sso/auth0/saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and Auth0 using the SAML2 Web App addon. ##### Keycloak - [SSO: OIDC with Keycloak](https://www.truefoundry.com/docs/platform/sso/keycloak/oidc.md): Configure OpenID Connect single sign-on between TrueFoundry and a Keycloak realm. ##### Microsoft AD FS - [SAML with Microsoft AD FS](https://www.truefoundry.com/docs/platform/sso/adfs/saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and an on-premise Microsoft Active Directory Federation Services (AD FS) deployment. ##### PingOne - [SAML with PingOne](https://www.truefoundry.com/docs/platform/sso/pingone/saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and Ping Identity, covering both PingOne (cloud) and PingFederate (hybrid/on-prem). ##### Rippling - [SAML with Rippling](https://www.truefoundry.com/docs/platform/sso/rippling/saml.md): Configure SAML 2.0 single sign-on between TrueFoundry and Rippling using a Rippling Custom App. #### Integrations - [Integrations](https://www.truefoundry.com/docs/integrations-overview.md): Overview of all supported integrations in the TrueFoundry platform. - [AWS Integration](https://www.truefoundry.com/docs/integration-provider-aws.md): Integrate AWS services with TrueFoundry. Configure access and resources. - [GCP Integration](https://www.truefoundry.com/docs/integration-provider-gcp.md): Integrate GCP services into your TrueFoundry environment. - [Azure Integration](https://www.truefoundry.com/docs/integration-provider-azure.md): Connect Azure services to TrueFoundry with secure configurations. - [Github](https://www.truefoundry.com/docs/github-integration-set-up.md): Create a GitHub App and configure the integration with TrueFoundry for repository access and CI/CD. - [Gitlab](https://www.truefoundry.com/docs/gitlab-integration-set-up.md): Create a GitLab application and configure the integration with TrueFoundry for repository access and CI/CD. - [Bitbucket](https://www.truefoundry.com/docs/bitbucket-integration-set-up.md): Create a Bitbucket OAuth Consumer app and configure the integration with TrueFoundry for repository access. - [Bitbucket Integration using PAT](https://www.truefoundry.com/docs/bitbucket-data-center-pat-integration.md): Connect Bitbucket Data Center to TrueFoundry using a Personal Access Token for repository access and deployments. - [Azure Repos](https://www.truefoundry.com/docs/azure-repos-integration-set-up.md): Follow this step to enable Azure Repos integrations. - [PagerDuty](https://www.truefoundry.com/docs/pagerduty-integration.md): Set up PagerDuty as a notification channel for TrueFoundry alerts and incident management. - [MS Teams](https://www.truefoundry.com/docs/ms-teams-integration.md): Set up Microsoft Teams as a notification channel for TrueFoundry alerts and notifications. - [Slack](https://www.truefoundry.com/docs/slack-bot-integration.md): Set up a Slack Bot integration with TrueFoundry to receive deployment alerts and platform notifications. - [Email Integration](https://www.truefoundry.com/docs/email-integration.md): Set up email integrations for alerts and notifications in TrueFoundry. - [HashiCorp Vault](https://www.truefoundry.com/docs/hashicorp.md): Integrate HashiCorp tools for secrets and infrastructure management. #### Installation Guides - [Installation and Deployment Overview](https://www.truefoundry.com/docs/platform/deployment-overview.md): Description of the different deployment options for TrueFoundry. - [Deploy Gateway Plane](https://www.truefoundry.com/docs/platform/deploy-gateway-plane.md): Installation guide of deploying the AI Gateway plane on your own infrastructure. ##### Deploy Compute Plane - [Deploy Compute Plane](https://www.truefoundry.com/docs/infrastructure/deploy-compute-plane.md): Connect Kubernetes Cluster in your cloud account to TrueFoundry Control Plane. ###### Installation Guides - [AWS Compute Plane Setup](https://www.truefoundry.com/docs/infrastructure/aws-compute-plane-setup.md): This page provides an overview of the architecture, requirements and steps to install the TrueFoundry compute plane cluster in AWS. - [GCP Compute Plane Setup](https://www.truefoundry.com/docs/infrastructure/gcp-compute-plane-setup.md): This page provides an overview of the architecture, requirements and steps to install the TrueFoundry compute plane cluster in GCP. - [Azure Compute Plane Setup](https://www.truefoundry.com/docs/infrastructure/azure-compute-plane-setup.md): This page provides an overview of the architecture, requirements and steps to install the TrueFoundry compute plane cluster in Azure. - [Generic](https://www.truefoundry.com/docs/infrastructure/generic-compute-plane-setup.md): This page provides an overview of the architecture, requirements and steps to install the TrueFoundry compute plane cluster in your generic cluster. ###### Advanced Configuration - [LoadBalancer/Ingress](https://www.truefoundry.com/docs/loadbalancers.md): Set up load balancers to distribute traffic efficiently. - [TFY Agent](https://www.truefoundry.com/docs/tfy-agent.md): Learn how the TFY Agent connects compute-plane clusters to the TrueFoundry control plane via secure WebSocket. - [Custom CA Certificate Injection](https://www.truefoundry.com/docs/infrastructure/custom-ca-certificate-injection.md): Configure TrueFoundry to trust TLS certificates issued by an internal or private Certificate Authority across the control plane, compute plane, and workloads. - [Cluster migration with Velero](https://www.truefoundry.com/docs/cluster-migration-with-velero.md): Move a TrueFoundry-connected Kubernetes cluster to a new cluster using Velero backups. - [Infra Set Up For Workflows](https://www.truefoundry.com/docs/infra-set-up-for-workflows.md): Infrastructure setup guide for running workflows reliably at scale. - [Cost Monitoring](https://www.truefoundry.com/docs/cost-monitoring.md): Step-by-step guide for cost monitoring, explaining configuration, best practices, and real-world usage on TrueFoundry. ##### Deploy Control Plane and Gateway Plane - [Deploy AI Gateway (Control Plane)](https://www.truefoundry.com/docs/platform/deploy-control-plane-and-gateway-plane.md): Learn how to deploy TrueFoundry's AI Gateway on your own infrastructure with detailed compute requirements and installation instructions. - [Deploy AI Gateway (Control Plane)](https://www.truefoundry.com/docs/platform/deploy-control-plane-and-gateway-plane.md): Learn how to deploy TrueFoundry's AI Gateway on your own infrastructure with detailed compute requirements and installation instructions. - [Deploy AI Gateway FAQs](https://www.truefoundry.com/docs/platform/deploy-control-plane-faq.md): Frequently asked questions for deploying TrueFoundry control plane and AI Gateway, including advanced configuration. ###### Installation Guides - [Install on AWS](https://www.truefoundry.com/docs/platform/deploy-control-plane-install-aws.md): Install TrueFoundry control plane and AI Gateway on AWS with S3 and IAM. - [Install on GCP](https://www.truefoundry.com/docs/platform/deploy-control-plane-install-gcp.md): Install TrueFoundry control plane and AI Gateway on GCP with GCS. - [Install on Azure](https://www.truefoundry.com/docs/platform/deploy-control-plane-install-azure.md): Install TrueFoundry control plane and AI Gateway on Azure Blob Storage. - [Install on OpenShift](https://www.truefoundry.com/docs/platform/deploy-control-plane-install-openshift.md): Install TrueFoundry control plane and AI Gateway on OpenShift clusters with restricted SCCs. - [Install on-prem](https://www.truefoundry.com/docs/platform/deploy-control-plane-install-onprem.md): Install TrueFoundry with Minio or S3-compatible storage and self-hosted options. ##### Deploy Control Plane and Compute Plane - [Deploy Control Plane and Compute Plane](https://www.truefoundry.com/docs/deploy-control-and-compute-plane.md): Deploy TrueFoundry Control Plane and Compute Plane in your own infrastructure. ###### Installation Guides - [AWS Control Plane Setup](https://www.truefoundry.com/docs/aws-control-plane.md): This page provides an architecture overview, requirements and steps to setup a TrueFoundry control plane cluster in AWS. - [GCP Control Plane Setup](https://www.truefoundry.com/docs/gcp-control-plane.md): Provision TrueFoundry control plane infrastructure on Google Cloud Platform using OpenTofu or Terraform. - [Azure Control Plane Setup](https://www.truefoundry.com/docs/azure-control-plane.md): Provisioning Control Plane Infrastructure on Azure. - [Deploy Generic Control Plane](https://www.truefoundry.com/docs/generic-control-plane.md): Learn how to deploy TrueFoundry's Control Plane on your generic Kubernetes cluster with detailed compute requirements and installation instructions. - [Deploy on OpenShift / ROSA](https://www.truefoundry.com/docs/openshift-control-plane.md): Deploy the TrueFoundry Control Plane and Compute Plane on Red Hat OpenShift (OCP) and Red Hat OpenShift Service on AWS (ROSA) clusters. ###### Advanced Configuration - [Customize Build Workflow](https://www.truefoundry.com/docs/customize-build-workflow.md): Inject custom logic into TrueFoundry's image build pipeline for services, jobs, and workflows. Run scripts before, during, or after the build and push steps. - [Customizing CI/CD Templates](https://www.truefoundry.com/docs/customizing-cicd-templates.md): Learn how to customize CI/CD templates on TrueFoundry for faster, consistent deployments. - [Customizing Workbench Images](https://www.truefoundry.com/docs/customizing-workbench-images.md): Learn how to customize workbench images on TrueFoundry to use your own private registry images for Jupyter and SSH Server environments. #### Control Plane Management - [Control Plane Monitoring](https://www.truefoundry.com/docs/platform/controlplane-monitoring.md): Monitor your self-hosted TrueFoundry control plane using Prometheus metrics and Grafana dashboards. - [Manage Multi-Tenancy on the Control Plane](https://www.truefoundry.com/docs/platform/controlplane-multitenant.md): Enable multi-tenant mode on a self-hosted TrueFoundry control plane and manage tenants from the admin dashboard. - [Releases and Upgrades](https://www.truefoundry.com/docs/platform/control-plane-upgrade.md): Release tracks, upgrade workflow, and versioning policy for self-hosted TrueFoundry control planes. #### Security - [SaaS security](https://www.truefoundry.com/docs/platform/saas-security.md): How TrueFoundry secures managed SaaS — architecture overview, shared responsibility, and a security checklist for your tenant. - [Self-hosted security](https://www.truefoundry.com/docs/platform/onprem-security.md): Deploy and harden a self-hosted TrueFoundry control plane and AI Gateway — architecture, Helm chart security settings, encryption, and edge protection. #### Reliability - [Disaster Recovery](https://www.truefoundry.com/docs/platform/disaster-recovery.md): How TrueFoundry recovers from regional failures across the AI Gateway and the control plane, including database failover, using multi-region health checks. - [AI Deployment (108 pages)](https://www.truefoundry.com/_llms/ai-deployment.md): Documentation for AI Deployment. - [API Reference (194 pages)](https://www.truefoundry.com/_llms/api-reference.md): Documentation for API Reference. - [Integrations (106 pages)](https://www.truefoundry.com/_llms/integrations.md): Documentation for Integrations. ## Changelog ### - [Changelog](https://www.truefoundry.com/docs/changelog.md): Release notes for TrueFoundry, covering AI Gateway, AI Engineering, and platform updates with per-version chart upgrade instructions. #### Announcements - [Perplexity Models Move to the Agent API](https://www.truefoundry.com/docs/change-announcements/perplexity-agent-api-migration.md): Perplexity retires the Sonar chat-completions API on 27 September 2026. AI Gateway now uses the Agent API with no changes to your model IDs or requests. - [Plan-Based Feature Gating — v0.174.0](https://www.truefoundry.com/docs/change-announcements/plan-based-feature-gating-v0.174.0.md): From 22 September 2026 in v0.174.0, TrueFoundry enforces plan-based feature gating for non-paying tenants. Paying customers are unaffected. - [Agent Builder Moving to Trueforge & Agent APIs Deprecated — v0.172](https://www.truefoundry.com/docs/change-announcements/agents-moving-to-trueforge.md): In v0.172, the TrueFoundry agent builder moves to the Trueforge portal and the older Agent APIs are deprecated. Migrate to Trueforge APIs by 15th Oct, 2026. - [Removing Collaborators from Resources — v0.172.0](https://www.truefoundry.com/docs/change-announcements/removing-collaborators-from-resources.md): Collaborators are moving off resource manifests and permissions off virtual account manifests, so a resource is no longer coupled to its authorization. - [Deprecation of MCP tool_settings — 26th October, 2026](https://www.truefoundry.com/docs/change-announcements/deprecation-of-mcp-tool-settings.md): The tool_settings manifest field on Remote, Stdio, and TrueFoundry-managed MCP servers is deprecated in favour of tool_policy and tool_metadata. - [Deprecation of truefoundry < 0.17.0; Repositories APIs moved from /api/ml to /api/svc prefix](https://www.truefoundry.com/docs/change-announcements/deprecation-of-truefoundry-below-0.17-and-api-ml.md): Upgrade to truefoundry 0.17.x or truefoundry-sdk 0.4.x on control plane 0.157+. Repositories APIs move from /api/ml to /api/svc, removed in 0.188.x. - [Minimum Python Version Raised to 3.10 — truefoundry v0.17.0](https://www.truefoundry.com/docs/change-announcements/python-3.10-minimum-truefoundry-cli-v0.17.0.md): The truefoundry PyPI package requires Python 3.10 or later from v0.17.0. Python 3.8 and 3.9 are no longer supported. - [Budget Limiting V2 — v0.158.0](https://www.truefoundry.com/docs/change-announcements/budget-limiting-v2-v0.158.0.md): Budget Limiting V2 introduces independent rules, tenant- and team-scoped budgets, multi-period and lifetime limits, and per-entity overrides in v0.158.0. - [Deprecation of MCP Servers APIs — 30th September, 2026](https://www.truefoundry.com/docs/change-announcements/deprecation-of-mcp-servers-v1-apis.md): The /v1/mcp-servers and /v1/mcp-user-auth control-plane APIs are deprecated in favour of /v1/mcp during the transition period. - [Deprecation of Images and Plots in Job Runs — v0.156.0](https://www.truefoundry.com/docs/change-announcements/deprecation-of-images-and-plots-in-job-runs-v0.156.0.md): Image and plot logging is removed in control plane v0.156.0 and truefoundry Python v0.17.0. Existing data is migrated to artifacts automatically. - [Moving to External Secrets Operator for Secrets Management — v0.151.5](https://www.truefoundry.com/docs/change-announcements/moving-to-eso-for-secret-management-v0.151.5.md): TrueFoundry now uses External Secrets Operator (ESO) to sync deployment secrets and image pull credentials on your compute plane. - [MCP DCR client_id & Redirect URL Validation — v0.148](https://www.truefoundry.com/docs/change-announcements/mcp-dcr-client-id-validation-v0.148.md): MCP OAuth now validates client_id and redirect URLs on every request. Clients caching credentials must re-register after the v0.148 upgrade. - [Deprecation of Routing Config](https://www.truefoundry.com/docs/change-announcements/deprecation-of-routing-config.md): The global Routing Config is deprecated in favour of Virtual Models. Existing configurations continue to work during the transition period. - [Identity and Access Revamp — v0.143](https://www.truefoundry.com/docs/change-announcements/identity-and-access-revamp-v0.143.md): SSO form simplified, dedicated user provisioning settings, and External Identity replaced by Identity Providers in v0.143. - [AI Gateway Metrics Rename — v0.136](https://www.truefoundry.com/docs/change-announcements/refactoring-of-ai-gateway-metrics.md): Metric names in AI Gateway are being renamed. A dual-write transition period lets you migrate dashboards and alerts without downtime. - [Deprecation of MCP Servers in Prompts](https://www.truefoundry.com/docs/change-announcements/deprecation-of-mcp-servers-in-prompts.md): MCP servers can no longer be attached to new prompts starting 28th April 2026. Existing prompts with MCP servers will continue to work until 30th May 2026. - [Deprecation of Common Tools in Playground and Settings — v0.135](https://www.truefoundry.com/docs/change-announcements/deprecation-of-common-tools-v0-135-0.md): Built-in common tools are deprecated from Playground and Settings in v0.135.0 and fully removed after 15 May 2026. - [x-tfy-routing-config Header Removal — v0.133](https://www.truefoundry.com/docs/change-announcements/routing-config-header-removal-v0.133.md): The x-tfy-routing-config request header is retired from AI Gateway in v0.133. Migrate routing logic to Virtual Models. - [Simplified GitOps CI/CD with tfy apply — v0.132](https://www.truefoundry.com/docs/change-announcements/simplified-gitops-cicd-v0.132.md): From v0.132, use a single tfy apply command to replace complex per-file CI/CD scripts for GitOps workflows. - [Legacy MCP OAuth Routes Removal — v0.134](https://www.truefoundry.com/docs/change-announcements/legacy-mcp-oauth-routes-removal.md): Legacy unscoped MCP OAuth routes are being removed in favor of scoped OAuth Protected Resource Metadata endpoints (RFC 9728). - [MCP Gateway URL and Transport Changes — v0.130](https://www.truefoundry.com/docs/change-announcements/mcp-gateway-url-transport-v0.130.md): v0.130 introduces smarter MCP Gateway URLs with OAuth chaining and a breaking change in transport protocol handling. - [Gemini CLI Model Registration Requirement — v0.118](https://www.truefoundry.com/docs/change-announcements/gemini-cli-model-registration-v0.118.md): From v0.118.1, all Gemini CLI models must be registered in the TrueFoundry AI Gateway for cost calculation and attribution. - [Guardrails YAML Schema Change — v0.116](https://www.truefoundry.com/docs/change-announcements/guardrails-yaml-schema-change-v0.116.md): MCP Guardrails feature launched in v0.116 introduces breaking changes to the guardrails YAML schema for GitOps users. - [MCP Server Groups Removal — v0.112](https://www.truefoundry.com/docs/change-announcements/mcp-server-groups-removal-v0.112.md): MCP Server Groups are removed from v0.112. MCP Servers are now standalone, top-level resources with simplified management. ## OpenAPI Specs - [gateway-openapi](/gateway-openapi.json) - [openapi](/openapi.json) > The links below point to documentation indexes. Follow each `/_llms/` index recursively until you reach documentation pages. ## Indexes - [AI Gateway (226 pages)](https://www.truefoundry.com/_llms/ai-gateway.md): Documentation for AI Gateway. - [AI Deployment (108 pages)](https://www.truefoundry.com/_llms/ai-deployment.md): Documentation for AI Deployment. - [API Reference (194 pages)](https://www.truefoundry.com/_llms/api-reference.md): Documentation for API Reference. - [Integrations (106 pages)](https://www.truefoundry.com/_llms/integrations.md): Documentation for Integrations. This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.