Systems | Development | Analytics | API | Testing

PII Sanitization with Kong

Using sensitive user data for analytics, development, or training AI models introduces significant security risks like data breaches and costly PII (Personally Identifiable Information) leakage. These incidents can lead to heavy fines and a critical loss of customer trust. Watch this demo to see how the Kong AI Gateway automatically finds and sanitizes PII in real-time before requests ever reach your upstream services or Large Language Models (LLMs).

How to Achieve True Event API Productization with Kong Event Gateway

If you're building distributed applications or working in cloud native development, you know that robust connectivity and API governance are the foundations for speed and scale. However, this also holds true in the realm of event streaming. Many top companies now depend on Apache Kafka and Event-Driven Architecture (EDA) for resilience and real-time capabilities.

Federated Deployments with Control Plane Groups

In this blog post, we'll talk about the significant challenge of managing and governing a growing number of APIs across multiple teams in an organization — and how Control Plane Groups are a clear solution to avoid the chaos of inconsistent policies and operational bottlenecks. Scaling your API infrastructure is tough. Managing a sprawling landscape of APIs, especially across multiple teams, can feel like an impossible task.

Kong Konnect Automations 201: APIOps in Action - Automating the API Lifecycle with Kong Konnect

Take the next step in your API platform journey by mastering APIOps automation with Kong Konnect. This hands-on workshop builds on the foundational concepts introduced in Kong Konnect Automations: Introduction to API Platform-as-a-Service Concepts and Delivery Methods, shifting the focus from platform setup to end-to-end API lifecycle automation.

Building a First-Class Kubernetes Experience in Kong Konnect

This is the second post in a series about reasons to attend API Summit 2025. Check out the previous post here. To unlock Kubernetes’ full potential, many enterprises are relying on three key building blocks available in Kong Konnect today: Together, these components extend Kubernetes from being just a container orchestration platform. They lay the foundation for Kubernetes to support the exposure, governance, and operation of APIs — and the AI workflows that increasingly rely on those APIs.

Kong Mesh 2.12: SPIFFE/SPIRE Support and Consistent XDS Resource Names

We're very excited to announce Kong Mesh 2.12 to the world! Kong Mesh 2.12 delivers two very important features: SPIFFE / SPIRE support, which provides enterprise-class workload identity and trust models for your mesh, as well as a consistent Kuma Resource Identifier (KRI) naming convention for resources in the Mesh. Read on to learn more!

Multi-Cloud API and AI Infra Gets Smarter: Managed Redis for Kong DCGW

Modern enterprises are embracing multi-cloud strategies to avoid vendor lock-in, optimize costs, and ensure resilience. Yet managing API infrastructure (which also happens to be AI infrastructure) across multiple cloud providers while maintaining performance and simplicity remains a significant challenge.

Kong Named Across Eight Categories in 2025 Gartner Hype Cycle Reports

Third-party recognition is always a significant milestone, but being included across multiple categories by a leading research firm like Gartner? That's definitely worth celebrating. Kong has been featured in eight different categories across six Gartner hype cycles for 2025*— our most comprehensive inclusion to date. This recognition spans the entire gamut of API platform capabilities: from API observability to vertical-specific healthcare solutions.

API Management as a Central Security Hub

While many organizations mistakenly believe a single tool can solve all their API security woes, the truth is far more complex. This blog post will dismantle the myth of the "silver bullet" and demonstrate how a comprehensive, defense-in-depth strategy, centered around a robust API management platform, is essential for truly securing your API ecosystem.

Kong Plugins 101 | API Governance, Security & Rate Limiting Explained

Welcome to Kong Plugins 101 – your introduction to applying governance, security, and control to every API call using Kong Konnect. In this session, we cover: What Kong plugins are and how they work Applying authentication, authorization, throttling, and rate limiting Securing services with advanced governance rules Real-world demo: setting a 5 calls per minute rate limit on an HTTPBin service route How plugins can be applied at different levels – global, service, route, or consumer.

Unlocking API Analytics for Product Managers

Meet Emily. She’s an API product manager at ACME, Inc., an ecommerce company that runs on dozens of APIs. One morning, her team lead asks a simple question: “Who’s our top API consumer, and which of your APIs are causing the most issues right now?” For Emily, that’s not a simple question at all. She doesn’t have direct access to these insights. Instead, she has to reach out to the engineering team.

Developer Portal in Kong Konnect

Unlock the full potential of your APIs and accelerate development with the Kong Konnect Developer Portal. This video demonstrates a complete developer journey, from discovery to monitoring, showcasing how a powerful dev portal can foster innovation and efficiency. In this demo, you will see: This workflow highlights how a centralized developer portal is crucial for managing the entire API lifecycle, enabling teams to build, deploy, and maintain applications faster than ever.

Kong Acquires OpenMeter to Bring API and AI Monetization to the Agentic Era

Today, we’re announcing that Kong has acquired OpenMeter, the open source and SaaS leader for real-time usage metering and billing. OpenMeter’s capabilities will be integrated into Kong Konnect, enabling usage-based pricing, entitlements, and invoicing for APIs, events, and AI workloads. This is a huge milestone for Kong, and we’re excited about what this means for our customers and the future of how you build and scale revenue-generating digital products for the agentic AI era.

You Might Be Doing API-First Wrong, New Analyst Research Suggests

Ever feel like you're fighting an uphill battle with your API strategy? You're building APIs faster than ever, but somehow everything feels harder. Wasn’t API-first supposed to make all this easier? Well, you're not alone. And now industry analysts are noting it as well. New Gartner research on successful API-first integration just came out, and it validates something we've been saying for a while: many organizations are fundamentally misunderstanding what API-first actually means. The result?

Level Up Your Digital Health Platform with Kong, SMART on FHIR, Okta

The healthcare industry is buzzing about FHIR (Fast Healthcare Interoperability Resources). Pronounced “fire,” this widely adopted data standard has been revolutionizing how healthcare information is exchanged. But building a truly modern, secure, and scalable digital health platform takes more than just a data standard. Here comes SMART on FHIR, a framework that builds on FHIR to create a universal, secure, and user-friendly way for applications to access electronic health records(EHRs).

API Testing: A Guide for Beginners and Experts

Behind every smooth user experience is a maze of APIs quietly handling requests, responses, and data flows. This makes APIs critical connectors that enable applications to communicate and share data seamlessly. When these vital conduits fail, the consequences can be severe—system outages, data breaches, and frustrated users. API testing is the unsung hero ensuring your digital world runs smoothly and securely.