BYOAIK (Bring Your Own AI Key) is a directory of AI tools that run on your own API key.
Langflow
Open-source visual builder for AI agents and RAG workflows on a node canvas.
- Category:
- Agent Frameworks
- Maintenance:
- Actively developed (last commit 5 days ago)
- Pricing:
- Open Source
- Open source:
- Yes (MIT)
- Self-hostable:
- Yes
- Local-first:
- Yes
- Platforms:
- Web, Self-hosted, Library/SDK, Docker
- AI providers (bring your own key):
- OpenAI, Anthropic, Google Gemini, Azure OpenAI, Groq, Mistral, Cohere, Ollama, Custom / OpenAI-compatible
- API key storage:
- User controls deployment
- Key risk level:
- LOW
- Trust score:
- 83/100
Langflow is an open-source, low-code visual framework for building multi-agent and RAG applications by wiring components together on a drag-and-drop node canvas. Users bring their own AI provider keys: each model/agent component has an API Key field where you paste your provider's key and pick the model, and v1.8+ added a centralized Model Providers settings pane to configure a provider and key once for the whole instance. Keys can also be stored as reusable "Credential" global variables or supplied via environment variables. It supports OpenAI, Anthropic, and Google natively in the model dropdown, local models via Ollama and LM Studio, additional providers (Azure OpenAI, Cohere, Mistral, NVIDIA, etc.) through bundles, and any OpenAI-compatible endpoint via custom components. It can be self-hosted (pip/Docker), run as a Python library/SDK, and exposes flows as APIs.
Why this trust score (83/100)
Trust measures how the tool treats your API key and how much of that has been verified. It contains no popularity signal.
- Key Safety 21/25: The key lives in a deployment you run yourself.
- Request Routing 17/20: Requests go straight from you to the AI provider.
- Transparency 20/20: Source is public under MIT, so anyone can check how the key is handled.
- Privacy 14/15: Local-first: it works without sending your data anywhere. Can be self-hosted, so the data path stays inside infrastructure you control.
- Maintenance 10/10: Actively developed: commits within the last three months.
- Verification Confidence 1/10: Compiled from public documentation by an AI-assisted pass, not independently confirmed.
What was checked
Verification tier RESEARCH_ASSISTED, derived from the evidence below and not set by hand.
- [REPORTED · RESEARCH] This listing was compiled by an AI-assisted research pass over the tool's public website, README and documentation. No person independently confirmed it.
- [STRONG · SOURCE_SCAN] Supports a local model backend, so it can run with no cloud provider key at all. source
- [CONFIRMED · SOURCE_SCAN] Most recent commit 2026-08-15, about 0 month(s) ago. source
How your API key is handled
You self-host the app, so your API key lives in your own deployment. Requests are sent directly to the AI provider. Because it can be self-hosted, your key never has to touch a third-party backend.
Setup
Deploy it (Docker/compose), add your provider API key in the admin or environment config, then select models.