Webship 1.4.1 · AI-native edge infrastructure

The AI-Native, Rust-Powered Web Server Built for Ultra-High Load

Webship combines a high-load Rust reverse proxy, HTTP/3 server, WAF, API Shield, first-party observability, and an isolated MCP control plane in one binary. Consolidate edge services, automate routine operations, and cut the server capacity required for demanding workloads.

  • HTTP/1.1
  • HTTP/2
  • HTTP/3
  • WebTransport
One auditable Rust binaryProtection without extra network hopsAI-ready isolated control plane

Model Context Protocol infrastructure built in

An AI-native web server that automates the work around every request.

Consolidate protocol termination, routing, application protection, observability, and AI-assisted operations. Fewer edge services mean fewer invoices, fewer network hops, and less configuration drift.

AI-native MCP operations

Connect Claude Code, OpenAI, or DeepSeek through the authenticated Model Context Protocol control plane. Agents can inspect health and apply validated runtime-safe configuration changes without interrupting traffic.

Security without another service bill

Built-in WAF, DDoS controls, API Shield, security headers, and per-client budgets can replace expensive external protection hops while keeping latency inside one process.

One process instead of an edge stack

Serve static assets and proxy application traffic with bounded pools, backpressure, health checks, and explicit timeouts in one compact Rust runtime.

Modern protocols without add-ons

Negotiate HTTP/1.1, HTTP/2, and HTTP/3 over TLS 1.3, with native WebTransport when applications need bidirectional transport.

Higher density, fewer servers

Use four efficient workers to serve high-load HTTP traffic, consolidate edge hosts, and reserve more of your cloud budget for application workloads.

First-party observability

Keep metrics, request IDs, access evidence, cache status, and upstream health in-house. No third-party analytics bill and no operational data leaving your infrastructure.

Two planes, one operational boundary

Let AI operate the edge without exposing the edge to AI traffic.

Public requests stay on the high-throughput data plane. AI agents use a separate, authenticated MCP listener on a dedicated private TLS port, so autonomous operations never need access to the public traffic path.

  • The MCP listener is isolated from public HTTP traffic.
  • AI agents can apply validated, runtime-safe configuration changes without downtime.
  • WAF, API Shield, and per-client budgets protect every configured host.

Public traffic plane

Internet
WebshipPublic data plane
StaticApp APIsMail

Isolated control plane

AI agentsClaude Code · OpenAI · DeepSeek
Dedicated TLS portLoopback or private network only
MCP control planeAuthenticated control surface

Rust reverse proxy benchmark and edge throughput

More throughput per server. More budget left for the product.

Webship reached 1,482,999 req/s on h2c in the published same-host comparison. Every chart uses identical hardware, worker count, and acceptance gates for Webship and its competitors.

Direct · HTTP/3 TLS

407,453 req/s

+32.9% · Bun 1.4.2
Direct · h2c

1,482,999 req/s

+12.7% · Bun 1.4.2
Comparable, reproducible evidence

Debian GNU/Linux 12 · Intel Xeon Gold 5115

5 × at least 20 seconds · September 14, 2026

Every accepted sample passed zero-error correctness gates and the published stability limits. Failed samples are never silently included.

Open the complete competitor benchmark

Webship engineering

Engineering a faster, simpler web infrastructure layer.

Practical engineering notes on high-load web delivery, Rust performance, AI-operated infrastructure, migration, and production security.

TLS Certificates in Webship: The Embedded ACME CA

See how Webship 1.4.0 issues and rotates private per-site TLS certificates with its embedded CA, how client trust works, and how embedded identities coexist with public ACME and manual certificates.

Read article

Webship: The Most RFC-Compatible Web Server in the World

Webship turns RFC requirements into explicit behavior across HTTP/1.1, HTTP/2, HTTP/3, QUIC, TLS, caching, reverse proxying, WebTransport, ACME, and the new QUERY method. Explore the complete 52-RFC standards map.

Read article

Streaming with Webship: High Throughput Without Trading Away Correctness

Learn how Webship serves and proxies large media files over HTTP/1.1, HTTP/2, and HTTP/3 using adaptive kTLS, BBR pacing, bounded buffers, and zero-error integrity gates.

Read article

Predictable licenses, not traffic tax

Put Webship under load for 14 days before you commit.

Start free, move to a predictable per-server license, and keep every request and gigabyte outside a usage-based tax.

Pro$199 / server / year

Commercial production use, updates, security patches, and unlimited requests and bandwidth.

Compare every plan
Business$499 / server / year

Priority support and configuration guidance for infrastructure your business depends on.

Start 14-Day Free Trial

Volume discounts: 5–19 servers ($179/year) | 20–99 servers ($149/year).

Corporate payments: USD/EUR fiat invoices · Web3 payments: USDT/USDC stablecoins.

webship.site

Evaluate a high-load IIS alternative on your own traffic.

Run the signed Webship binary beside your existing edge, replay production-like traffic, and compare throughput, latency, operational effort, and server cost before moving a single request.