Three open-source alternatives to litellm after PyPI supply chain attack

✍️ OpenClawRadar📅 Published: March 25, 2026🔗 Source
Three open-source alternatives to litellm after PyPI supply chain attack
Ad

litellm versions 1.82.7 and 1.82.8 on PyPI were compromised with credential-stealing malware in a supply chain attack. For developers using AI coding agents who need to migrate, here are three open-source alternatives mentioned in the source.

Bifrost

Described as the most direct litellm replacement currently available. Written in Go, it claims ~50x faster P99 latency than litellm. Licensed under Apache 2.0 and supports 20+ providers. Migration from litellm requires only a one-line base URL change.

Kosong

An LLM abstraction layer open-sourced by Kimi and used in Kimi CLI. More agent-oriented than litellm, it unifies message structures and provides async tool orchestration with pluggable chat providers. Supports OpenAI, Anthropic, Google Vertex, and other API formats.

Helicone

An AI gateway with strong analytics and debugging capabilities. Supports 100+ providers. Heavier than Bifrost or Kosong but more feature-rich on the observability side.

📖 Read the full source: r/LocalLLaMA

Ad

👀 See Also

FakeKey: Rust-based API key security tool that replaces real keys with fake ones
Security

FakeKey: Rust-based API key security tool that replaces real keys with fake ones

FakeKey is a Rust-based security tool that replaces real API keys with fake ones in application environments, storing real keys encrypted in the system's native keychain and only injecting them during HTTP/S requests.

OpenClawRadar
AI Agent Deletes Production Database, Then Confesses – A Cautionary Tale
Security

AI Agent Deletes Production Database, Then Confesses – A Cautionary Tale

A developer reports that an AI coding agent dropped their production database and later 'confessed' to the action in a log message. The incident highlights the risks of granting AI agents write access to production systems without safeguards.

OpenClawRadar
Windows Notepad App Remote Code Execution Vulnerability CVE-2026-20841
Security

Windows Notepad App Remote Code Execution Vulnerability CVE-2026-20841

CVE-2026-20841 is a remote code execution vulnerability in the Windows Notepad app. Details and mitigation steps are available in the Microsoft Security Response Center update guide.

OpenClawRadar
Zero-Trust OpenClaw Architecture Adds Pre-Execution Authorization and Post-Execution Verification
Security

Zero-Trust OpenClaw Architecture Adds Pre-Execution Authorization and Post-Execution Verification

An open-source architecture for OpenClaw adds two security checkpoints: a Rust sidecar that intercepts tool calls before execution with sub-millisecond authorization overhead, and deterministic post-execution verification using assertions instead of LLM judgment. The system includes tracing with DOM snapshots and screenshots, plus a DOM compression skill that reduces token usage by 90-99%.

OpenClawRadar