BYOAIK (Bring Your Own AI Key) is a directory of AI tools that run on your own API key.
Goose
Block's open-source, extensible AI agent for the CLI and desktop that installs, runs, edits, and tests code with any LLM you bring.
- Category:
- Agent Frameworks
- Maintenance:
- Actively developed (last commit 2 days ago)
- Pricing:
- Open Source
- Open source:
- Yes (Apache-2.0)
- Self-hostable:
- Yes
- Local-first:
- Yes
- Platforms:
- CLI, Desktop, Self-hosted, Library/SDK, Docker
- AI providers (bring your own key):
- Anthropic, OpenAI, Google Gemini, Azure OpenAI, OpenRouter, Groq, Mistral, Perplexity, DeepSeek, xAI Grok, Ollama, Custom / OpenAI-compatible
- API key storage:
- Stored locally on device
- Key risk level:
- LOW
- Trust score:
- 85/100
Goose is an open-source AI agent from Block, built in Rust and available as a native desktop app (macOS, Linux, Windows), a full CLI, and an embeddable API. It autonomously installs dependencies, executes commands, edits files, and runs/tests code, extensible via 70+ Model Context Protocol (MCP) extensions. It is fully bring-your-own-key: running `goose configure` (CLI) or the Models tab (Desktop) prompts you to select a provider and enter your own API key. It supports 25+/50+ providers including Anthropic, OpenAI, Google Gemini, xAI Grok, Mistral, Perplexity, DeepSeek, Groq, OpenRouter, and Azure OpenAI; cloud platforms Amazon Bedrock, GCP Vertex AI, Databricks, and Snowflake; local runners like Ollama, LM Studio, and Docker Model Runner; and any custom OpenAI-/Anthropic-/Ollama-compatible endpoint with configurable base URL and headers.
Why this trust score (85/100)
Trust measures how the tool treats your API key and how much of that has been verified. It contains no popularity signal.
- Key Safety 23/25: The key is held on your own device.
- Request Routing 17/20: Requests go straight from you to the AI provider.
- Transparency 20/20: Source is public under Apache-2.0, so anyone can check how the key is handled.
- Privacy 14/15: Local-first: it works without sending your data anywhere. Can be self-hosted, so the data path stays inside infrastructure you control.
- Maintenance 10/10: Actively developed: commits within the last three months.
- Verification Confidence 1/10: Compiled from public documentation by an AI-assisted pass, not independently confirmed.
What was checked
Verification tier RESEARCH_ASSISTED, derived from the evidence below and not set by hand.
- [REPORTED · RESEARCH] This listing was compiled by an AI-assisted research pass over the tool's public website, README and documentation. No person independently confirmed it.
- [STRONG · SOURCE_SCAN] Supports a local model backend, so it can run with no cloud provider key at all. source
- [CONFIRMED · SOURCE_SCAN] Ships a container definition, so it can be self-hosted on your own infrastructure. source
- [CONFIRMED · SOURCE_SCAN] Most recent commit 2026-08-14, about 0 month(s) ago. source
How your API key is handled
Your API key is stored locally on your device. Requests are sent directly to the AI provider. Because it can be self-hosted, your key never has to touch a third-party backend.
Setup
Open settings, paste your provider API key, choose a model, and start. The key stays on your device.