OpenChoreo is a complete, open-source Internal Developer Platform (IDP) for Kubernetes. It provides reusable platform and developer abstractions as APIs, a Backstage-powered developer portal, built-in CI/CD, GitOps workflows, RBAC and observability. OpenChoreo is a CNCF project.
WSO2 Developer Platform for OpenChoreo is an open-source Internal Developer Platform (IDP), a CNCF Sandbox project delivered on AWS with enterprise support. It is a Kubernetes-native platform that provides a production-ready IDP for building and operating software at scale on AWS. The platform offers opinionated abstractions for developers, strong governance controls for platform teams, and AI-agent-ready interfaces for autonomous operations, backed by enterprise-grade support from WSO2.
Why OpenChoreo on AWS
Organizations often assemble in-house developer platforms using services such as Amazon EKS, AWS CodePipelines, CloudWatch, API Gateways, and Cognito (among others) with Backstage portals and scripts, resulting in high integration overhead and ongoing maintenance. OpenChoreo replaces this with a single Kubernetes-native IDP on EKS, where platform teams define standardized golden paths once using CRDs, and developers and agents consume them via portal, CLI, MCP Servers and/or GitOps. The result is a faster path to production, built-in governance, reduced operational complexity, and an AWS App Runner-like developer experience while retaining full control over AWS infrastructure.
The problem OpenChoreo solves
Developers and platform engineers have different expectations from the same platform. Developers require a streamlined, self-service experience, while platform engineers need control, governance, and visibility into the underlying infrastructure. Many internally built platforms optimize for one group at the expense of the other, forcing teams to integrate and maintain multiple systems such as developer portals, CI/CD pipelines, GitOps workflows, observability stacks, and access controls. OpenChoreo addresses this by providing a fully integrated IDP from day one, combining developer self-service with platform-level control without the need for ongoing integration overhead.
Ready to get started? Contact the WSO2 team at https://wso2.com/contact/ for a personalized demo or enterprise discussion.
Highlights
A complete Internal Developer Platform (IDP) that is ready to use from day one, with a modular architecture to integrate your existing tech stack.
Deliver a unified platform experience through a Backstage-based portal, CLI, API, and MCP servers for platform teams, developers, and AI agents.
Security and governance by design with golden paths, platform and developer abstractions, role-based access controls, resource isolation, and multi-tenancy out of the box.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
This listing is offered free of charge. Pricing has one dimension: Nodes (Units), which counts the nodes you deploy. You add nodes as your platform footprint grows, so the single dimension scales with your deployment size rather than with usage hours or feature tiers. The platform installs on any Kubernetes environment, whether public cloud, hybrid, or on-premises. Because there is no charge on this dimension, node count reflects the scope of your deployment rather than a billed amount. There are no separate tiers or add-on dimensions to select.
Top-of-mind questions for buyers
What counts as one node for the Nodes (Units) dimension?
A node is a compute unit in your Kubernetes cluster where the platform is deployed. You count each node you run the software on. As your cluster grows and you add more nodes, your node count rises to match your deployment footprint.
Does my cost change as I add or remove nodes?
This listing carries no charge on the Nodes (Units) dimension. Adding or removing nodes changes your recorded node count but does not create a software fee. Node count reflects deployment scope, not a billed amount. Underlying AWS infrastructure costs are separate and still apply.
Where can I run the platform, and does node count depend on the environment?
You can install on any Kubernetes environment: public cloud, hybrid, or on-premises. Node count reflects the nodes you deploy in whichever environment you choose. The deployment target does not change how nodes are counted for this dimension.
wso2.com+1
Helpful?
Vendor refund policy
N/A
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
Containers are lightweight, portable execution environments that wrap server application software in a filesystem that includes everything it needs to run. Container applications run on supported container runtimes and orchestration services, such as Amazon Elastic Container Service (Amazon ECS) or Amazon Elastic Kubernetes Service (Amazon EKS). Both eliminate the need for you to install and operate your own container orchestration software by managing and scheduling containers on a scalable cluster of virtual machines.
Version release notes
Initial release of WSO2 Developer Platform for OpenChoreo on AWS Marketplace.
OpenChoreo is an open-source Internal Developer Platform (IDP) for Kubernetes, originally developed by WSO2. It provides development and architecture abstractions, a Backstage-powered developer portal, application CI/CD, GitOps, and observability. OpenChoreo is a CNCF Sandbox project.
This release deploys OpenChoreo v1.0.0 onto a fully provisioned AWS environment using a single CloudFormation template that automates the entire setup:
Infrastructure provisioned:
Amazon EKS cluster (configurable version, instance type, and node count)
Amazon Cognito user pool with pre-configured admin, developer, and viewer roles
AWS Secrets Manager for secure credential management
Amazon ECR repository for application build artifacts
VPC with public/private subnets across 2 AZs, NAT gateway, and internet gateway
Elastic IPs for control plane, data plane, and observability plane
AWS Load Balancer Controller with IRSA
External Secrets Operator with IRSA
EBS CSI driver with IRSA
The bootstrap container runs as a Kubernetes job, automatically installing all OpenChoreo Helm charts including the control plane, data plane, workflow plane, and observability plane.
Supports custom domain configuration or quick-start mode using nip.io.
Requirements:
An AWS account with permissions to create the above resources
A valid email address for the initial admin user
Minimum 3 nodes (c8i-flex.xlarge recommended)
Additional details
Usage instructions
Prerequisites:
AWS account with admin-level IAM permissions
A valid email to receive the initial admin password
AdminEmail: Your email (receives a temporary Cognito password)
BaseDomain: Your domain (e.g. openchoreo.example.com) or leave empty for nip.io quick start
Adjust EKS node type, count, and RDS instance class as needed
Step 3: Acknowledge IAM resource creation and click "Create Stack"
The stack takes approximately 30-45 minutes to complete. It provisions all infrastructure and automatically runs the bootstrap container to install OpenChoreo.
Step 4: Access OpenChoreo
Once complete, go to the CloudFormation Outputs tab to find:
ConsoleURL: Your OpenChoreo developer portal
APIURL: The platform API endpoint
DNSInstructions: DNS records to create (if using a custom domain)
Sign in with your AdminEmail and the temporary password sent to your inbox.
WSO2 offers two types of support models - Basic Support and Enterprise Support.
Basic Support offers 12x5 support while Enterprise Support is 24x7 support.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
WSO2 API Manager is an industry-leading full lifecycle API management platform for building, integrating, securing, and exposing an enterprise's digital services as managed APIs in cloud, on-premises, and hybrid architectures. Fast-track your API strategy with all the capabilities needed by API designers, product managers, operations, and consumers.
WSO2 Identity Server is a powerful, modern identity and access management solution for your on-premises or cloud environment. It enables organizations to deliver exceptional, trusted digital experiences to all types of users: internal workforce, external consumers, business customers or API consumers. Preferred by customer reviewers over Okta, WSO2 Identity Server offers a more compelling technical direction, better feature updates, and superior support quality.
WSO2 Private Identity Cloud is an individual, secure SaaS instance of our AI-powered open source IAM suite, enabling secure access for every type of identity: B2C customers, B2B SaaS applications, workforce, and APIs.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.