Gateway Settings
A gateway is the domain your users and their AI clients connect through. Gateway Settings is where you find those URLs, and where you add gateways if your organization needs more than the one it starts with.
Open Settings in the admin sidebar, then expand Gateway Settings.
Every organization has a Willow branded gateway from the start, so this section always shows at least one entry. The section header shows how many you have, for example (1 gateway).
What you can do
- Find your connect URL and run URL
- Add a gateway, including an external run service you host yourself
- Set which gateway is the default
- Rotate the auth secret, configure external KMS, or mark a gateway isolated
Your URLs
Each gateway provides two URLs:
| URL | What it is |
|---|---|
| Connect | The dashboard URL, where users sign in and manage their connections. For example https://acme.mcp-s.com. |
| Run | The MCP URL, which AI clients call to execute tools. For example https://acme.mcp-s.com/mcp. |
The subdomain comes from your organization slug, which you set in General. Select Dashboard on a gateway to open its connect URL.
Add a gateway
Select Add Gateway. The modal offers a Willow branded domain, a Custom Domain, and an External Run Service. Gateway types your organization already has are hidden, so the list shows only what you can still add.
| Type | What it does |
|---|---|
| withwillow.ai / mcp-s.com / eu.withwillow.ai | A Willow branded domain, {org}.<domain>. |
| Custom Domain | Your own domain, fronted by Willow's infrastructure. Willow gives you the DNS records to create. |
| External Run Service | Points at a run service you host yourself. This is the hybrid deployment path. |
For the full custom-domain workflow, including the CNAME record you need and what to expect while DNS propagates, follow Configure a Custom Gateway Domain.
Adding a gateway needs the org:edit scope. With only org:read you can see this section but not save changes.
External run service (hybrid)
Choosing External Run Service asks for an External Run URL and then shows a one-time Gateway Auth Secret — set that as the AUTH_SECRET on your own run deployment, because it is not shown again. Later you can Rotate Secret, Configure KMS, or mark the gateway Isolated from its card.
Your organization already has a gateway, so an external one is added alongside it and the default is left unchanged. Select Set as Default on the external gateway's card, or Willow keeps handing your users the Willow hosted run URL.
The full procedure, including the cluster side, is in Hybrid Deployment.
Default gateway
When you have more than one gateway, one is marked Default Gateway. The default is the primary MCP endpoint your users connect to. A gateway can also be set as the dashboard domain, or left as a secondary gateway that works alongside your existing domain.