API details
Base API URL
All API endpoints in the reference documentation are relative to the following base URL:
Authentication
For any request you make when communicating with Merge Gateway, you will need an API key to authenticate yourself as an authorized user.
Add your API Key with a “Bearer ” prefix as a header called Authorization to authorize your Merge API requests. This header must be included in every request in this format:
You do not have to use the dashboard to get a key. The Management API mints, rotates, and revokes API keys programmatically, which is what you want if keys are provisioned per customer or checked into infrastructure-as-code.
Key endpoints
Gateway’s model-calling surface is centered around these endpoint groups:
GET /models- list models
- filter by
providerorvendor - fetch a single model by query string with
?model=<provider/model_id>
GET /vendors- list execution vendors and the models they currently serve
- fetch a single vendor with
GET /vendors/{vendor_id}
POST /responses- create an LLM response
- the response includes the
vendorthat ultimately served the request and theservice_tierthat actually served it
POST /embeddings- create embeddings, priced on input tokens
Gateway also exposes SDK-compatible surfaces under /v1/openai, /v1/anthropic, /v1/ai-sdk, and /v1/langchain, so an existing client reaches the same models with a base URL change. See Get started.
Administering the org, rather than calling models, is a separate surface: see Management API below.
Management API
API keys, projects, routing policies, and usage are administered programmatically through the Management API, on the same host. It is authenticated by a management key (Authorization: Bearer mgmt_<your_management_key>) rather than a gateway API key, so the credential that provisions keys is never one that can make model calls. Create a management key in the dashboard under API keys → Management keys.
Full reference and scopes: Management API. Walkthroughs: API keys and Projects API.
Models API shape
GET /models returns canonical model identity at the top level and vendor-specific execution metadata under vendors.
Example:
Use GET /models?model=<provider/model_id> when you want one specific model object but prefer a query parameter over a path parameter. The slash is fine there because it is part of the query parameter value.
Vendors API shape
GET /vendors returns execution hosts, not canonical model owners.
Example:
Pagination
GET /models and GET /vendors return a paged list envelope:
limit sets the page size. It defaults to 50 and caps at 500. A higher value is rejected before the request reaches the catalog:
Do not size a single request to the catalog. The catalog grows as models are added, so a limit that fits today silently starts truncating later. Page instead: send the previous response’s next_cursor back as cursor and keep going while has_more is true. The next page starts after the cursor entry, so pages never overlap, and next_cursor is null on the last page. Treat the cursor as opaque, a value to pass back rather than one to construct.
Filters do not carry across pages on their own, so repeat provider or vendor on every request in the loop alongside cursor. Fetching one model with ?model=<provider/model_id> returns a bare model object rather than a list envelope, so it has no has_more or next_cursor.
The Management API paginates separately and caps its list endpoints at 100 per page: GET /v1/keys takes offset and limit and reports has_more, and GET /v1/projects takes cursor and limit.
Responses
POST /responses returns the canonical model that served the request and a top-level vendor field for the execution host that actually handled it.
Request parameters
Beyond the message input, the request accepts these optional fields:
Served tier and billing
The response echoes a top-level service_tier: the tier that actually served the request and the rate you were billed at. On a throttle fallback this differs from the tier you sent (e.g. you requested flex but were served and billed at standard).
See Service tiers for the full flow, supported vendor routes, and fallback behavior.
Per-call cost
Every response carries usage.cost: the provider cost in USD that Gateway computed for that call, from the tokens above and the pricing of the route that actually served the request. No request parameter is needed.
usage.cost is returned on:
Three details worth knowing:
costisnull, never0, when the served route has no pricing on file. A false zero would be recorded as real spend by anything summing costs, so an unknown price is reported as unknown. Cost-tracking tools that read this field, such as Langfuse, skip a null instead of logging $0.- It is the same figure as
routing.cost_usd, which is only returned when you setinclude_routing_metadata: true. Both come from the same calculation, so a request that asks for both sees them agree. Useusage.costfor everyday cost tracking and routing metadata when you also need the policy and vendor decisions behind the call. - It is provider cost, not your invoiced amount. The two can differ, and the invoice is the authority. Billing starts from this figure and then applies your organization’s plan rate, prices BYOK requests against the model’s list price rather than what your own provider account charged, and adds server-tool charges such as web search, which never appear in
usage.cost.
Cost reflects the tier that served the request, so a flex request that fell back to standard is priced at standard. For invoiced spend, budgets, and dashboards, see Cost governance and savings.