{
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-09",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "tool": {
    "slug": "countly",
    "name": "Countly",
    "vendor": "Countly Ltd",
    "vendorUrl": "https://countly.com",
    "kind": "http-api",
    "category": "product-analytics",
    "summary": "Countly is a product analytics platform sold as a managed private-cloud server (Flex), a self-hosted Enterprise edition and the open-source Countly Lite. Agents reach a Countly server through its HTTP API or the official `countly-mcp-server`.",
    "url": "https://www.anchorterminal.com/tools/countly",
    "markdownUrl": "https://www.anchorterminal.com/tools/countly.md",
    "slimMarkdownUrl": "https://www.anchorterminal.com/tools/countly.min.md",
    "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/countly.json",
    "repo": "https://github.com/Countly/countly-server",
    "license": "Countly Lite is AGPL-3.0 with added branding terms under Section 7. Enterprise plugins are proprietary. Flex is a hosted service under Countly's terms. The MCP server is MIT",
    "transports": [
      "http",
      "stdio",
      "streamable-http"
    ],
    "remoteUrl": "https://mcp.count.ly/mcp",
    "packages": [
      {
        "registry": "npm",
        "name": "countly-mcp-server"
      },
      {
        "registry": "npm",
        "name": "countly-sdk-web"
      },
      {
        "registry": "npm",
        "name": "countly-sdk-nodejs"
      }
    ],
    "auth": "api-key",
    "authNotes": "Self-serve once a server exists. A dashboard user copies an `api_key`, which has that user's full read and write access, or creates an auth token in the Token Manager or with `/i/token/create`, limited by app, endpoint pattern and lifetime. Tokens go in the `countly-token` header or the `auth_token` query parameter. The MCP server takes `COUNTLY_SERVER_URL` and `COUNTLY_AUTH_TOKEN`, or `X-Countly-Server-Url` and `X-Countly-Auth-Token` headers over HTTP. SDKs send the write-only `app_key`.",
    "pricing": "paid",
    "pricingNotes": "Flex starts at $175 a month, billed by tier on monthly active users and data points, with a 14-day trial that needs a credit card. Tier prices appear during signup. Funnels, retention and flows sit in the Intelligence add-on. Enterprise is on quotation. Countly Lite is free to self-host. API and MCP calls are not billed (https://countly.com/pricing, checked 2026-10-08).",
    "priceSummary": "$175 / mo",
    "where": "both",
    "x402": {
      "level": "no",
      "evidence": "No x402, MPP or L402 in the API reference, the MCP server README or the pricing page (checked 2026-10-08).",
      "endpoints": []
    },
    "toolCount": 209,
    "popularity": {
      "githubStars": null,
      "npmWeekly": 27579,
      "pypiWeekly": null,
      "asOf": "2026-10-08"
    },
    "docsUrl": "https://api.count.ly/",
    "llmsTxt": "https://countly.com/llms.txt",
    "capabilities": [
      "analytics.query",
      "analytics.events",
      "analytics.funnels",
      "analytics.experiments",
      "analytics.flags",
      "observability.errors"
    ],
    "tags": [
      "official",
      "hosted",
      "self-hosted",
      "open-source",
      "mcp",
      "api-key",
      "llms-txt",
      "paid",
      "trial",
      "typescript"
    ],
    "lastRelease": "2026-10-07",
    "graded": true,
    "anchor": {
      "graded": true,
      "score": 54.8,
      "grade": "C",
      "agentReady": false,
      "rank": 607,
      "ranked": true,
      "rankOf": 842,
      "categoryRank": 9,
      "methodology": "0.4",
      "run": "2026-10-01",
      "scores": {
        "ergonomics": 66,
        "maintenance": 80,
        "payments": 17,
        "reliability": 28,
        "schema": 75,
        "security": 63,
        "transparency": 70
      },
      "pending": [
        "performance",
        "tasks"
      ],
      "breakdown": [
        {
          "key": "reliability",
          "name": "Reliability",
          "weight": 16,
          "effectiveWeight": 20,
          "score": 28,
          "points": 5.6,
          "reason": "Graded on the hosted lines, for a Countly Flex server reached through its HTTP API and the official MCP server. No status page was found on countly.com, the Flex page or the docs, and status.countly.com did not resolve (0). With no page there is no readable incident history (5). The MCP server's HTTP endpoint is limited to 120 requests a minute per IP, but the Countly server's own `api_rate_limit_requests` setting ships at 0 (off), and the Flex terms reserve usage limits without numbers (8 of 15). No 429 or retry guidance and no idempotency keys were found in the API reference (0). The pricing page lists an SLA as optional on Flex and included in Enterprise, with no SLA text published (5 of 10). The API and MCP server 1.7.0 are generally available (10)."
        },
        {
          "key": "performance",
          "name": "Performance",
          "weight": 10,
          "effectiveWeight": 0,
          "pending": true,
          "points": 0,
          "reason": "Pending. Latency is measured per call by our probes, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until the first probe window closes."
        },
        {
          "key": "schema",
          "name": "Schema \u0026 documentation",
          "weight": 13,
          "effectiveWeight": 16.25,
          "score": 75,
          "points": 12.19,
          "reason": "No OpenAPI document was found on api.count.ly or in Countly/countly-server. Every MCP tool has a typed JSON Schema input (18 of 25). countly.com/llms.txt indexes 366 help articles and points automated clients to the help centre's JSON API, while api.count.ly has no llms.txt and article pages answered 403 to our reader (8). MCP tool descriptions name the endpoint, the plugin required and the tool to use instead, and API pages state permissions and behaviour (16). 82 enums across the tool sources, but the HTTP API takes JSON arrays and objects as query-string values (9). API pages carry request examples, response fields and error responses, as plain message strings (11). The API reference is versioned 24.05, 25.03 and 26.01, and the server and MCP server keep public changelogs (13)."
        },
        {
          "key": "ergonomics",
          "name": "Agent ergonomics",
          "weight": 13,
          "effectiveWeight": 16.25,
          "score": 66,
          "points": 10.73,
          "reason": "The MCP README counts 209 tools in 43 categories, far past 30 (5). Add back 8 because the server hides tools the edition, enabled plugins or user's permissions cannot run, and `COUNTLY_TOOLS_*` settings switch categories off (13). List endpoints take `iDisplayStart` and `iDisplayLength`, and MCP list tools take `skip`, `limit` and `search` (15). API errors are `{\"result\": \"message\"}` strings with HTTP status codes and no error codes. The MCP server returns failures as `isError` results that name the missing plugin or permission (12). MCP tools carry readOnlyHint, destructiveHint and idempotentHint since 1.7.0. No idempotency keys on API writes (14). MCP tools accept `app_name` in place of `app_id` and set defaults. The SDKs cover data collection, not the read API (12)."
        },
        {
          "key": "security",
          "name": "Security \u0026 auth",
          "weight": 14,
          "effectiveWeight": 17.5,
          "score": 63,
          "points": 11.03,
          "reason": "Auth tokens are scoped to apps and endpoint patterns, expire after a set lifetime, are revocable and carry create, read, update and delete permissions since 25.03.54. The dashboard `api_key` has its user's full access (26 of 30). Less 10 because `api_key` and `auth_token` are documented as query-string parameters, with the `countly-token` header as the recommended alternative (16). MCP read-only mode and per-category CRUD levels, bounded by the token's permissions. No confirmation step for destructive tools (16). Tools return event names, user properties and crash data written by end users, and no prompt-injection guidance was found. The docs suggest a self-hosted model for sensitive data (3). A system logs API records dashboard actions, and the security FAQ cites more than 30 log types (12). No security.txt. SECURITY.md gives a disclosure address and a bounty for medium severity and above, security fixes are listed in the public changelog, and the site claims ISO 27001, 27017, 27018 and SOC 2 Type II without public reports (16)."
        },
        {
          "key": "payments",
          "name": "Payments \u0026 pricing",
          "weight": 10,
          "effectiveWeight": 12.5,
          "score": 17,
          "points": 2.13,
          "reason": "No x402, MPP or L402 (0). The pricing page gives only a starting price for Flex, $175 a month, priced on monthly active users and data points, with tier prices shown during signup and Enterprise on quotation (7 of 20). The 14-day Flex trial needs a credit card. Countly Lite is free to self-host with no card, without funnels, retention, cohorts or Drill, so half credit (10). A person signs up in a browser, creates a server and makes a token in the dashboard (0)."
        },
        {
          "key": "tasks",
          "name": "Task success",
          "weight": 10,
          "effectiveWeight": 0,
          "pending": true,
          "points": 0,
          "reason": "Pending. Task success needs the category task suites run through each tool, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until then. A data provider's data-quality score is published on its listing now and becomes half of this category when it's scored."
        },
        {
          "key": "maintenance",
          "name": "Maintenance \u0026 community",
          "weight": 7,
          "effectiveWeight": 8.75,
          "score": 80,
          "points": 7,
          "reason": "`countly-mcp-server` 1.7.0 was published on 7 October 2026 and server tag 25.03.54 on 22 September 2026 (30). Four server tags (25.03.49, .50, .51, .54) and MCP 1.5.0 and 1.7.0 since 10 July 2026 (20). 821 commits on the server's default branch since 10 July 2026, a Discord community and a support portal. We could not read issue response times because the GitHub API refused us (12 of 25). SDK docs are at 26.1.x for Android, iOS, Web and Flutter, while the NodeJS SDK docs are at 24.10.x. The MCP server is not in the official MCP registry (10 of 15). CI, CodeQL and Docker workflows on the server, and test, nightly end-to-end and CodeQL workflows on the MCP server (8)."
        },
        {
          "key": "transparency",
          "name": "Transparency \u0026 trust",
          "weight": 7,
          "effectiveWeight": 8.75,
          "score": 70,
          "points": 6.13,
          "note": "editorial 64, provenance 76",
          "reason": "Countly Lite is AGPL-3.0 with added branding terms under Section 7, the MCP server is MIT, and the Enterprise plugins that hold funnels, retention, cohorts and Drill are closed (20 of 30). The terms of 25 September 2026 cover Flex and incorporate a public DPA. The privacy policy says it does not apply to data customers process and gives no retention periods. Granular data retention is chosen when a Flex server is created (20). No deprecation policy was found. The MCP README says URL token parameters will be removed in a future release, with no date (6 of 20). Sub-processors are listed per product with locations, with 30 days' notice of changes, and Flex customers choose a hosting region. MCP usage reporting to stats.count.ly is disclosed, on by default, with an opt-out (18)."
        }
      ],
      "assessment": {
        "date": "2026-10-08",
        "basis": "public evidence",
        "confidence": "medium",
        "notes": {
          "ergonomics": "The MCP README counts 209 tools in 43 categories, far past 30 (5). Add back 8 because the server hides tools the edition, enabled plugins or user's permissions cannot run, and `COUNTLY_TOOLS_*` settings switch categories off (13). List endpoints take `iDisplayStart` and `iDisplayLength`, and MCP list tools take `skip`, `limit` and `search` (15). API errors are `{\"result\": \"message\"}` strings with HTTP status codes and no error codes. The MCP server returns failures as `isError` results that name the missing plugin or permission (12). MCP tools carry readOnlyHint, destructiveHint and idempotentHint since 1.7.0. No idempotency keys on API writes (14). MCP tools accept `app_name` in place of `app_id` and set defaults. The SDKs cover data collection, not the read API (12).",
          "maintenance": "`countly-mcp-server` 1.7.0 was published on 7 October 2026 and server tag 25.03.54 on 22 September 2026 (30). Four server tags (25.03.49, .50, .51, .54) and MCP 1.5.0 and 1.7.0 since 10 July 2026 (20). 821 commits on the server's default branch since 10 July 2026, a Discord community and a support portal. We could not read issue response times because the GitHub API refused us (12 of 25). SDK docs are at 26.1.x for Android, iOS, Web and Flutter, while the NodeJS SDK docs are at 24.10.x. The MCP server is not in the official MCP registry (10 of 15). CI, CodeQL and Docker workflows on the server, and test, nightly end-to-end and CodeQL workflows on the MCP server (8).",
          "payments": "No x402, MPP or L402 (0). The pricing page gives only a starting price for Flex, $175 a month, priced on monthly active users and data points, with tier prices shown during signup and Enterprise on quotation (7 of 20). The 14-day Flex trial needs a credit card. Countly Lite is free to self-host with no card, without funnels, retention, cohorts or Drill, so half credit (10). A person signs up in a browser, creates a server and makes a token in the dashboard (0).",
          "reliability": "Graded on the hosted lines, for a Countly Flex server reached through its HTTP API and the official MCP server. No status page was found on countly.com, the Flex page or the docs, and status.countly.com did not resolve (0). With no page there is no readable incident history (5). The MCP server's HTTP endpoint is limited to 120 requests a minute per IP, but the Countly server's own `api_rate_limit_requests` setting ships at 0 (off), and the Flex terms reserve usage limits without numbers (8 of 15). No 429 or retry guidance and no idempotency keys were found in the API reference (0). The pricing page lists an SLA as optional on Flex and included in Enterprise, with no SLA text published (5 of 10). The API and MCP server 1.7.0 are generally available (10).",
          "schema": "No OpenAPI document was found on api.count.ly or in Countly/countly-server. Every MCP tool has a typed JSON Schema input (18 of 25). countly.com/llms.txt indexes 366 help articles and points automated clients to the help centre's JSON API, while api.count.ly has no llms.txt and article pages answered 403 to our reader (8). MCP tool descriptions name the endpoint, the plugin required and the tool to use instead, and API pages state permissions and behaviour (16). 82 enums across the tool sources, but the HTTP API takes JSON arrays and objects as query-string values (9). API pages carry request examples, response fields and error responses, as plain message strings (11). The API reference is versioned 24.05, 25.03 and 26.01, and the server and MCP server keep public changelogs (13).",
          "security": "Auth tokens are scoped to apps and endpoint patterns, expire after a set lifetime, are revocable and carry create, read, update and delete permissions since 25.03.54. The dashboard `api_key` has its user's full access (26 of 30). Less 10 because `api_key` and `auth_token` are documented as query-string parameters, with the `countly-token` header as the recommended alternative (16). MCP read-only mode and per-category CRUD levels, bounded by the token's permissions. No confirmation step for destructive tools (16). Tools return event names, user properties and crash data written by end users, and no prompt-injection guidance was found. The docs suggest a self-hosted model for sensitive data (3). A system logs API records dashboard actions, and the security FAQ cites more than 30 log types (12). No security.txt. SECURITY.md gives a disclosure address and a bounty for medium severity and above, security fixes are listed in the public changelog, and the site claims ISO 27001, 27017, 27018 and SOC 2 Type II without public reports (16).",
          "transparency": "Countly Lite is AGPL-3.0 with added branding terms under Section 7, the MCP server is MIT, and the Enterprise plugins that hold funnels, retention, cohorts and Drill are closed (20 of 30). The terms of 25 September 2026 cover Flex and incorporate a public DPA. The privacy policy says it does not apply to data customers process and gives no retention periods. Granular data retention is chosen when a Flex server is created (20). No deprecation policy was found. The MCP README says URL token parameters will be removed in a future release, with no date (6 of 20). Sub-processors are listed per product with locations, with 30 days' notice of changes, and Flex customers choose a hosting region. MCP usage reporting to stats.count.ly is disclosed, on by default, with an opt-out (18)."
        },
        "sources": [
          {
            "what": "pricing and plans",
            "url": "https://countly.com/pricing",
            "seen": "2026-10-08"
          },
          {
            "what": "Flex page and FAQ (trial needs a credit card)",
            "url": "https://countly.com/flex",
            "seen": "2026-10-08"
          },
          {
            "what": "llms.txt and docs index",
            "url": "https://countly.com/llms.txt",
            "seen": "2026-10-08"
          },
          {
            "what": "API overview and authentication",
            "url": "https://api.count.ly/api",
            "seen": "2026-10-08"
          },
          {
            "what": "token create endpoint",
            "url": "https://api.count.ly/api/core/token/i-token-create",
            "seen": "2026-10-08"
          },
          {
            "what": "funnel data endpoint",
            "url": "https://api.count.ly/api/funnels/funnel-data-read",
            "seen": "2026-10-08"
          },
          {
            "what": "API reference sitemap, 563 pages for 26.01",
            "url": "https://api.count.ly/sitemap.xml",
            "seen": "2026-10-08"
          },
          {
            "what": "MCP setup article, read through the help centre JSON API because the page answered 403",
            "url": "https://support.countly.com/api/v2/help_center/en-us/articles/26998738930972.json",
            "seen": "2026-10-08"
          },
          {
            "what": "security FAQ, read through the help centre JSON API",
            "url": "https://support.countly.com/api/v2/help_center/en-us/articles/360037501372.json",
            "seen": "2026-10-08"
          },
          {
            "what": "shared responsibility model, read through the help centre JSON API",
            "url": "https://support.countly.com/api/v2/help_center/en-us/articles/17230078409756.json",
            "seen": "2026-10-08"
          },
          {
            "what": "Flex setup article, read through the help centre JSON API",
            "url": "https://support.countly.com/api/v2/help_center/en-us/articles/22936597125660.json",
            "seen": "2026-10-08"
          },
          {
            "what": "MCP server repository, README, changelog and tool sources (clone)",
            "url": "https://github.com/Countly/countly-mcp-server",
            "seen": "2026-10-08"
          },
          {
            "what": "server repository, changelog, licence and SECURITY.md (clone)",
            "url": "https://github.com/Countly/countly-server",
            "seen": "2026-10-08"
          },
          {
            "what": "hosted MCP server page",
            "url": "https://mcp.count.ly/",
            "seen": "2026-10-08"
          },
          {
            "what": "countly-mcp-server on npm",
            "url": "https://registry.npmjs.org/countly-mcp-server",
            "seen": "2026-10-08"
          },
          {
            "what": "official MCP registry search, no result",
            "url": "https://registry.modelcontextprotocol.io/v0/servers?search=countly",
            "seen": "2026-10-08"
          },
          {
            "what": "terms of service with Flex supplemental terms",
            "url": "https://countly.com/legal/terms-of-service",
            "seen": "2026-10-08"
          },
          {
            "what": "privacy policy",
            "url": "https://countly.com/legal/privacy-policy",
            "seen": "2026-10-08"
          },
          {
            "what": "data processing agreement",
            "url": "https://countly.com/legal/dpa",
            "seen": "2026-10-08"
          },
          {
            "what": "sub-processor list",
            "url": "https://countly.com/legal/subprocessor-list",
            "seen": "2026-10-08"
          },
          {
            "what": "certification claims",
            "url": "https://countly.com/privacy-by-design",
            "seen": "2026-10-08"
          },
          {
            "what": "security.txt, 404",
            "url": "https://countly.com/.well-known/security.txt",
            "seen": "2026-10-08"
          },
          {
            "what": "domain registration (RDAP)",
            "url": "https://rdap.verisign.com/com/v1/domain/countly.com",
            "seen": "2026-10-08"
          }
        ],
        "openQuestions": [
          "unchecked: GitHub stars, open issues, response times and published security advisories for Countly/countly-server. The GitHub API answered with a rate limit, so we read the repositories by clone only",
          "unchecked: help centre article pages on support.countly.com, which answered 403 with a bot check. We read five articles through the help centre's public JSON API, which countly.com/llms.txt names for automated clients, and left the rest unread",
          "unchecked: Flex tier prices, limits on monthly active users and data points, and regional price differences, which appear only inside the signup flow",
          "unchecked: the domain a Flex server answers on by default. The MCP README's example is https://your-server.count.ly",
          "unchecked: the text of the Flex and Enterprise SLA, and the certification reports behind the ISO 27001, 27017, 27018 and SOC 2 Type II claims",
          "unchecked: the live `tools/list` of the MCP server, which needs a Countly server and token. The count of 209 tools is the README's",
          "The help centre says Funnels, Retention, Flows, Cohorts and Drill are built into Flex, while the pricing page places funnels, retention and flows in the Intelligence capability, a Flex add-on. We followed the pricing page and made no deduction",
          "The server changelog for 25.03.54 (22 September 2026) lists 20 security fixes, among them authorisation checks on alerts, reports and widget endpoints. No incident was found, and no deduction was made",
          "countly.com/llms.txt opens with a note addressed to LLMs and AI agents saying the file is authoritative where third-party sources disagree. We treated it as vendor material and made no deduction",
          "mcp.count.ly reported version 1.5.0 on 8 October 2026, one release behind 1.7.0, whose changelog lists five security fixes",
          "The privacy policy excludes data customers process with the Services, so the DPA is the document that covers event data",
          "The lead's interface (HTTP APIs and SDKs) was right but left out the official MCP server"
        ]
      },
      "negative": 0,
      "verdict": "Countly suits an agent working against a server its owner already runs. The official MCP server filters its 209 tools by edition, plugin and permission and has per-category read-only settings. No status page, OpenAPI document or published API rate limit was found, and the Flex trial needs a credit card.",
      "bestFor": "An agent whose owner runs Countly on its own infrastructure or a dedicated Flex server and wants analytics, crash and remote-config data through MCP with per-category permissions.",
      "strengths": [
        "Official MIT MCP server, `countly-mcp-server` 1.7.0 of 7 October 2026, with read-only, destructive and idempotent annotations on its tools",
        "`COUNTLY_TOOLS_ALL=R` makes every MCP tool read-only, and per-category settings take None, R, CR, CRU or CRUD",
        "Auth tokens can be limited to named apps and endpoint patterns, carry a lifetime in seconds and are revocable",
        "API reference at api.count.ly is versioned (24.05, 25.03, 26.01) with parameters, examples and error responses per endpoint",
        "Sub-processor list with locations and a public DPA, both updated 25 September 2026, with 30 days' notice of sub-processor changes"
      ],
      "weaknesses": [
        "No public status page or incident history was found for Flex servers or for mcp.count.ly",
        "No OpenAPI document was found, and the server's API rate limit is a setting that ships switched off with no published value for Flex",
        "The API accepts `api_key` and `auth_token` in the URL query string, and the `api_key` has its user's full read and write access",
        "Flex starts at $175 a month, its 14-day trial needs a credit card, and tier prices appear only during signup",
        "Funnels, retention, flows, cohorts and Drill need Enterprise or a paid Flex capability, and are absent from Countly Lite",
        "The MCP server reports usage to stats.count.ly by default until `ENABLE_ANALYTICS=false` is set"
      ],
      "agentNotes": [
        "Create a dedicated token in the Token Manager, limited to the apps and endpoints the task needs, and send it in the `countly-token` header, not the URL",
        "Set `COUNTLY_TOOLS_ALL=R` unless the task needs writes. The token's own permissions still apply and the stricter of the two wins",
        "Call `apps_list` first. Most tools need `app_id` or an exact `app_name`",
        "Check `get_version` for the detected edition before planning funnel, retention or cohort queries, which need Enterprise plugins",
        "Set `ENABLE_ANALYTICS=false` to stop usage reports to stats.count.ly, and prefer the stdio server to mcp.count.ly so the server URL and token stay local"
      ],
      "metrics": {
        "kind": "remote",
        "measured": false
      },
      "reviewCount": 0,
      "avgRating": 0,
      "history": [
        {
          "basis": "public evidence",
          "confidence": "medium",
          "grade": "C",
          "methodology": "0.4",
          "pending": [
            "performance",
            "tasks"
          ],
          "run": "2026-10-01",
          "runLabel": "October 2026 research run",
          "score": 54.8
        }
      ],
      "editorialScores": {
        "ergonomics": 66,
        "maintenance": 80,
        "payments": 17,
        "reliability": 28,
        "schema": 75,
        "security": 63,
        "transparency": 64
      },
      "provenanceScore": 76
    },
    "connect": {
      "install": "npx -y countly-mcp-server",
      "http": "curl -H \"countly-token: YOUR_TOKEN\" \"https://your-countly-url.com/o?app_id=APP_ID\u0026method=funneldata\u0026funnels=[%22FUNNEL_ID%22]\"",
      "claudeCode": "claude mcp add countly -e COUNTLY_SERVER_URL=https://your-countly-url.com -e COUNTLY_AUTH_TOKEN=YOUR_TOKEN -- npx -y --prefer-online countly-mcp-server@latest",
      "config": {
        "mcpServers": {
          "countly": {
            "args": [
              "-y",
              "--prefer-online",
              "countly-mcp-server@latest"
            ],
            "command": "npx",
            "env": {
              "COUNTLY_AUTH_TOKEN": "YOUR_TOKEN",
              "COUNTLY_SERVER_URL": "https://your-countly-url.com"
            }
          }
        }
      }
    },
    "letme": {
      "capability": "https://letme.dev/analytics.query",
      "tool": "https://letme.dev/countly"
    },
    "notable": [
      "`countly-mcp-server` detects Countly Lite, Enterprise or the newer Countly Platform on connection and lists only the tools that server's plugins and the user's permissions allow (https://github.com/Countly/countly-mcp-server)",
      "The MCP server is also hosted at https://mcp.count.ly/mcp, where the page reported version 1.5.0 on 8 October 2026 while npm had 1.7.0 (https://mcp.count.ly/)",
      "MCP usage reports go to stats.count.ly under the Countly server's domain by default, with tool names, outcomes and durations, and `ENABLE_ANALYTICS=false` turns them off (https://github.com/Countly/countly-mcp-server)",
      "The API reference marks Drill, Funnels, Flows, Cohorts, Formulas, Retention Segments and AB Testing as Enterprise plugins (https://api.count.ly/api)",
      "Server release 25.03.54 of 22 September 2026 lists 20 security fixes, one of which gives auth tokens explicit CRUD permissions (https://github.com/Countly/countly-server/blob/master/CHANGELOG.md)",
      "The Flex terms let Countly require an upgrade or impose usage limits when API call frequency or ingestion is far above the tier's assumptions (https://countly.com/legal/terms-of-service)",
      "countly.com/llms.txt opens with a note to LLMs and AI agents that calls the file authoritative where third-party sources disagree (https://countly.com/llms.txt)"
    ],
    "area": "business",
    "details": [
      {
        "label": "Surface graded",
        "value": "A Countly Flex server (managed, one per customer) reached through the server HTTP API documented at api.count.ly and the official `countly-mcp-server`. Countly Lite and Enterprise run the same API on the owner's infrastructure"
      },
      {
        "label": "API",
        "value": "Read endpoints under `/o` and write endpoints under `/i`, JSON responses. Reference versioned 24.05, 25.03 and 26.01, 563 pages for 26.01. No OpenAPI document found"
      },
      {
        "label": "MCP server",
        "value": "`countly-mcp-server` 1.7.0 (7 October 2026), MIT, stdio or streamable HTTP, also hosted at https://mcp.count.ly/mcp with the server URL and token in request headers. 209 tools in 43 categories, 3 resources and 8 prompts per the README"
      },
      {
        "label": "Credentials",
        "value": "`api_key` per dashboard user with that user's full access, or auth tokens limited by app, endpoint pattern, lifetime (default 1,800 seconds) and CRUD permission. Sent as a query parameter or in the `countly-token` header. `app_key` only writes data"
      },
      {
        "label": "MCP permissions",
        "value": "`COUNTLY_TOOLS_ALL` and `COUNTLY_TOOLS_\u003cCATEGORY\u003e` take NONE, R, CR, CRU or CRUD. Tools the edition, plugins or user's permissions cannot run are hidden"
      },
      {
        "label": "Rate limits",
        "value": "MCP HTTP endpoint 120 requests a minute per IP and 50 connections per IP by default. Server setting `api_rate_limit_requests` defaults to 0 (off), dashboard 500 requests in 60 seconds"
      },
      {
        "label": "Errors",
        "value": "`{\"result\": \"message\"}` with an HTTP status code. MCP failures return as `isError` results naming the missing plugin or permission"
      },
      {
        "label": "Editions",
        "value": "Flex from $175 a month with Advanced Analytics, Adaptivity and Intelligence as add-ons. Enterprise self-hosted on quotation with all three. Countly Lite free and open source"
      },
      {
        "label": "Trial",
        "value": "14 days on Flex, credit card required. A server over its tier's monthly limit is locked until the next cycle"
      },
      {
        "label": "SDKs",
        "value": "Android, iOS, Web, Flutter, React Native, Dart, HarmonyOS, C++, Java, NodeJS, Windows and Unity, for data collection"
      },
      {
        "label": "Audit",
        "value": "System logs plugin with `/o?method=systemlogs` endpoints"
      },
      {
        "label": "Certifications",
        "value": "ISO 27001, ISO 27017, ISO 27018, SOC 2 Type II and TISAX participant per countly.com/privacy-by-design. Reports not public"
      },
      {
        "label": "Status",
        "value": "No status page found"
      },
      {
        "label": "Data",
        "value": "Flex servers on Google Cloud in a region the customer chooses (EU, USA or Asia per the sub-processor list). OpenAI is a sub-processor only when the AI assistant is used"
      },
      {
        "label": "Open source",
        "value": "Countly Lite under AGPL-3.0 with added branding terms. Enterprise plugins closed. MCP server MIT"
      }
    ],
    "unitPrices": [
      {
        "item": "Flex, lowest tier",
        "unit": "month",
        "usd": 175,
        "note": "starting price, by monthly active users and data points, add-ons extra"
      }
    ],
    "provenance": {
      "legalEntity": "Countly Ltd",
      "domain": "countly.com",
      "domainRegistered": "2011-09-05",
      "endpointOnVendorDomain": true,
      "terms": "https://countly.com/legal/terms-of-service",
      "privacy": "https://countly.com/legal/privacy-policy",
      "statusPage": "",
      "changelog": "https://github.com/Countly/countly-server/blob/master/CHANGELOG.md",
      "securityTxt": "none",
      "checked": "2026-10-08",
      "notes": [
        "The terms (last updated 25 September 2026) name Countly Ltd, incorporated in England and Wales with registered number 8568329, registered at 1 Bow Churchyard, London EC4M 9DQ. They cover Flex through supplemental terms and exclude Enterprise subscriptions, which have written agreements.",
        "The privacy policy (last updated 25 September 2026) covers Countly's websites, services and accounts and says it does not apply to data customers process with the Services. The DPA at countly.com/legal/dpa covers that data.",
        "The hosted MCP server answers at mcp.count.ly and the API reference at api.count.ly, a second domain of the vendor's. Each customer's API answers on that customer's own server address.",
        "countly.com/.well-known/security.txt returns 404. SECURITY.md in the repositories gives a disclosure address at count.ly.",
        "No status page was found. status.countly.com did not resolve.",
        "RDAP for countly.com gives a registration date of 2011-09-05."
      ],
      "score": 76,
      "checks": [
        {
          "check": "Legal entity named",
          "value": "Countly Ltd",
          "points": 20,
          "max": 20,
          "state": "ok"
        },
        {
          "check": "Domain age",
          "value": "countly.com, registered 2011-09-05 (15 years)",
          "points": 15,
          "max": 15,
          "state": "ok"
        },
        {
          "check": "Endpoint on the vendor's domain",
          "value": "mcp.count.ly",
          "points": 15,
          "max": 15,
          "state": "ok"
        },
        {
          "check": "Terms of service",
          "value": "read, states 5 of the 7 things a reader expects, and has 1 clause that costs points",
          "points": 6.3,
          "max": 10,
          "state": "part"
        },
        {
          "check": "Privacy policy",
          "value": "read, states 7 of the 8 things a reader expects",
          "points": 9.3,
          "max": 10,
          "state": "part"
        },
        {
          "check": "Status page",
          "value": "not found",
          "points": 0,
          "max": 10,
          "state": "no"
        },
        {
          "check": "Changelog",
          "value": "published",
          "points": 10,
          "max": 10,
          "state": "ok"
        },
        {
          "check": "security.txt",
          "value": "not found",
          "points": 0,
          "max": 10,
          "state": "no"
        }
      ],
      "policies": [
        {
          "kind": "terms",
          "url": "https://countly.com/legal/terms-of-service",
          "state": "read",
          "readAt": "2026-10-08",
          "statedDate": "2026-09-25",
          "words": 2307,
          "points": 6.3,
          "max": 10,
          "expected": [
            {
              "key": "terms.date",
              "label": "Gives the date it was last updated",
              "found": true,
              "quote": "Last Updated: September 25, 2026",
              "says": "Last updated 2026-09-25"
            },
            {
              "key": "terms.law",
              "label": "Names the governing law or courts",
              "found": true,
              "quote": "This Agreement shall be governed by and interpreted according to the law of England and Wales and all disputes arising under the Agreement (including non-contractual disputes or claims) shall be subject to the exclusive jurisdiction of the English and Welsh courts.",
              "says": "The law of England and Wales"
            },
            {
              "key": "terms.liability",
              "label": "States a limit on its liability",
              "found": true,
              "quote": "We will not be liable to you in respect of any losses arising out of events beyond our reasonable control."
            },
            {
              "key": "terms.termination",
              "label": "Says how the agreement or account can be ended",
              "found": true,
              "quote": "We may suspend or cancel your registration with immediate effect for any reasonable purposes or if you breach these Terms."
            },
            {
              "key": "terms.changes",
              "label": "Says how changes to the terms are announced",
              "found": false
            },
            {
              "key": "terms.use",
              "label": "Lists what users may not do",
              "found": true,
              "quote": "You must not otherwise reproduce, modify, copy, distribute, or use for commercial purposes any Content without the written permission of Countly."
            },
            {
              "key": "terms.sla",
              "label": "Refers to a service level or uptime commitment",
              "found": false
            }
          ],
          "toKnow": [
            {
              "key": "terms.nonotice",
              "label": "Says the terms or the service can change without notice",
              "found": true,
              "quote": "Such revised terms will apply to the Site and Services from the date of publication. Users should check the Terms regularly to ensure familiarity with the then current version.",
              "costsPoints": true
            },
            {
              "key": "terms.cutoff",
              "label": "Says access can be ended without notice or for any reason",
              "found": true,
              "quote": "We may suspend or cancel your registration with immediate effect for any reasonable purposes or if you breach these Terms."
            }
          ],
          "notes": [
            {
              "date": "2026-10-08",
              "text": "The AI Assistant in the service uses models developed and operated by third-party providers, including OpenAI.",
              "quote": "The Services may include access to an AI-powered assistant (the “AI Assistant”) that uses models developed and operated by third-party providers, including but not limited to OpenAI, L.L.C."
            },
            {
              "date": "2026-10-08",
              "text": "The customer must not use the AI Assistant to make or automate decisions in high-risk areas unless it has put in place the measures the law requires.",
              "quote": "The Customer must not use the AI Assistant to make or automate decisions in high-risk areas (such as creditworthiness, hiring, medical diagnosis, law enforcement, or migration control) unless the Customer has implemented all risk-management, human oversight, and conformity assessment measures"
            },
            {
              "date": "2026-10-08",
              "text": "For Countly Flex, performance and availability are not guaranteed when usage materially exceeds the expected levels.",
              "quote": "Countly does not guarantee service performance or availability when actual usage materially exceeds the expected levels."
            }
          ]
        },
        {
          "kind": "privacy",
          "url": "https://countly.com/legal/privacy-policy",
          "state": "read",
          "readAt": "2026-10-08",
          "statedDate": "2026-09-25",
          "words": 1745,
          "points": 9.3,
          "max": 10,
          "expected": [
            {
              "key": "privacy.date",
              "label": "Gives the date it was last updated",
              "found": true,
              "quote": "Last Updated: September 25, 2026",
              "says": "Last updated 2026-09-25"
            },
            {
              "key": "privacy.collected",
              "label": "Says what personal data is collected",
              "found": true,
              "quote": "We may collect and receive information about users of our Services (\"users,\" \"you,\" or \"your\") from various sources, including: (i) your use of the Services;"
            },
            {
              "key": "privacy.retention",
              "label": "Says how long data is kept",
              "found": true,
              "quote": "We only retain personal information for as long as necessary to provide a service, or to improve our services in future.",
              "says": "For as long as needed, with no period named"
            },
            {
              "key": "privacy.processors",
              "label": "Says who else receives the data",
              "found": true,
              "quote": "We do not otherwise share or supply personal information to third parties."
            },
            {
              "key": "privacy.sale",
              "label": "Says whether personal data is sold or shared for advertising",
              "found": true,
              "quote": "We do not sell or rent your personal information to marketers or third parties.",
              "says": "Says it does not sell personal data"
            },
            {
              "key": "privacy.rights",
              "label": "Says what rights people have over their data",
              "found": true,
              "quote": "You have the right to opt out of data about you being used in decisions based solely on automated processing."
            },
            {
              "key": "privacy.contact",
              "label": "Gives a privacy contact",
              "found": true,
              "quote": "If you have any questions about this Privacy Policy or Countly’s data collection, use, and disclosure practices, please contact us at privacy@count.ly.",
              "says": "privacy@count.ly"
            },
            {
              "key": "privacy.transfers",
              "label": "Says where data is transferred or stored",
              "found": false
            }
          ]
        }
      ]
    },
    "pageJsonUrl": "https://www.anchorterminal.com/tools/countly.json",
    "live": {
      "slug": "countly",
      "probe": {
        "target": "https://mcp.count.ly/mcp",
        "method": "get",
        "lastAt": "2026-10-09T09:26:47.283576893Z",
        "lastOk": false,
        "lastStatus": 500,
        "lastMs": 345,
        "lastNote": "server error",
        "authRequired": false,
        "uptime24h": 0,
        "uptime30d": 0,
        "p50ms24h": 0,
        "p95ms24h": 0,
        "samples24h": 20,
        "samples30d": 20,
        "days": [
          {
            "date": "2026-10-09",
            "probes": 20,
            "ok": 0
          }
        ],
        "outages": [
          {
            "start": "2026-10-09T07:40:23.474688008Z",
            "end": "0001-01-01T00:00:00Z",
            "note": "HTTP 500 server error"
          }
        ]
      },
      "updatedAt": "2026-10-09T09:26:47.283576893Z"
    }
  }
}
