Arize Phoenix

Arize AI

Open Source

Source-available AI observability and evaluation platform: OpenTelemetry/OpenInference tracing, evals, prompt iteration and experiments.

Curated by Tiberiu ArvaVerified

Elastic License 2.0Version 20.16.0Released 2026-09-23

Strengths

  • OpenInference instrumentation on OpenTelemetry
  • LLM, code and human-label evaluators
  • Datasets and experiments to compare app versions

Practitioner note

A strong local-first option for internal tracing and evals, and OpenInference instrumentation keeps traces portable. The ELv2 license rules out reselling Phoenix as a managed service, and certifications (SOC 2, ISO 27001) belong to Arize's commercial AX platform, not to a self-hosted Phoenix.

Warning

Arize Phoenix: Phoenix uses the Elastic License 2.0, which is source-available rather than OSI open source. It forbids offering Phoenix to third parties as a hosted or managed service and forbids circumventing license-key features. Internal self-hosting is allowed.

Governance posture

Reviewed 2026-09-30
YesData residency

Self-hosted on Docker, Kubernetes or any cloud, so the operator controls where trace data lives.

Source
YesDeployment model

Self-hosted via Docker or Kubernetes. Managed and self-hosted enterprise options are sold separately as Arize AX. (self-hosted)

Source
UnknownAudit logging

The Phoenix docs overview does not describe a native audit or access log for user actions.

N/ASOC 2

Self-hosted software. SOC 2 applies to the operator's infrastructure (Arize's own SOC 2 covers its commercial AX platform).

N/AISO 27001

Self-hosted software. ISO 27001 applies to the operator's ISMS (Arize's certification covers the company and AX, not a self-hosted Phoenix).

N/AISO 42001

Self-hosted software. ISO 42001 applies to the deploying organisation.

N/AEU AI Act

Observability and evaluation tooling, not an AI system placed on the market. Obligations rest with the deployer of the traced system. (role: not-applicable)

YesLicense risk

Elastic License 2.0: source-available and not OSI-approved. It bans offering Phoenix as a hosted or managed service and bans circumventing license keys. (high)

Source

EU AI Act obligations

Risk tier: Not applicable · as of 2026-08-23

Source-backed information mapped from Arize Phoenix's tracked risk tier — not legal advice. Obligations depend on how your organisation deploys the system; see the full obligation reference and timeline.

This record's EU AI Act risk tier is marked not applicable, so no tier-specific obligations attach. Deployers embedding it in an AI system in scope of the Act should assess that system's own tier.

Explore the category

Compare this tool against the rest of its category and the cloud platform foundation layer.