{
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "tool": {
    "slug": "launchdarkly",
    "name": "LaunchDarkly",
    "vendor": "Catamorphic, Co. (dba LaunchDarkly)",
    "vendorUrl": "https://launchdarkly.com",
    "kind": "http-api",
    "category": "product-analytics",
    "summary": "LaunchDarkly is a hosted feature flag and experimentation platform from Catamorphic, Co., with observability and AI configuration products. Agents reach it through an official hosted MCP server with OAuth and a REST API with a public OpenAPI spec.",
    "url": "https://www.anchorterminal.com/tools/launchdarkly",
    "markdownUrl": "https://www.anchorterminal.com/tools/launchdarkly.md",
    "slimMarkdownUrl": "https://www.anchorterminal.com/tools/launchdarkly.min.md",
    "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/launchdarkly.json",
    "repo": "https://github.com/launchdarkly/mcp-server",
    "license": "Proprietary service under LaunchDarkly's terms. The local MCP server is MIT and the ldcli CLI is Apache-2.0",
    "transports": [
      "http",
      "streamable-http",
      "stdio"
    ],
    "remoteUrl": "https://mcp.launchdarkly.com/mcp/launchdarkly",
    "packages": [
      {
        "registry": "npm",
        "name": "@launchdarkly/mcp-server"
      },
      {
        "registry": "npm",
        "name": "launchdarkly-api"
      },
      {
        "registry": "pypi",
        "name": "launchdarkly-api"
      },
      {
        "registry": "npm",
        "name": "@launchdarkly/node-server-sdk"
      },
      {
        "registry": "pypi",
        "name": "launchdarkly-server-sdk"
      }
    ],
    "auth": "mixed",
    "authNotes": "Self-serve. The hosted MCP server uses OAuth with PKCE and dynamic client registration, with reader, writer and observability scopes, and acts with the role of the member who approves it. The REST API, the CLI and the local MCP server take an access token in the `Authorization` header. A signed-in member creates the token with a Reader, Writer, Admin or Owner role, and it is shown once. Custom roles and inline policies need a plan with custom roles, and service tokens need Enterprise. SDK keys cannot call the REST API.",
    "pricing": "freemium",
    "pricingNotes": "The Developer plan is free with no card and no seat charge, with 5 service connections, 1,000 client-side MAU, 100,000 experimentation MAU and 5,000 AI runs a month. Foundation has a 14-day trial, then bills by usage with no platform fee. Enterprise is custom. API and MCP calls are not billed (https://launchdarkly.com/pricing/, checked 2026-10-08).",
    "priceSummary": "$10 / mo",
    "where": "both",
    "x402": {
      "level": "no",
      "evidence": "No x402, MPP or L402 in the API docs, the OpenAPI spec or the pricing page (checked 2026-10-08).",
      "endpoints": []
    },
    "toolCount": 141,
    "popularity": {
      "githubStars": null,
      "npmWeekly": 3291956,
      "pypiWeekly": 2207524,
      "asOf": "2026-10-08"
    },
    "docsUrl": "https://launchdarkly.com/docs/home/getting-started/mcp",
    "llmsTxt": "https://launchdarkly.com/docs/llms.txt",
    "openapi": "https://app.launchdarkly.com/api/v2/openapi.json",
    "capabilities": [
      "analytics.flags",
      "analytics.experiments",
      "observability.logs",
      "observability.errors"
    ],
    "tags": [
      "official",
      "hosted",
      "mcp",
      "oauth",
      "openapi",
      "llms-txt",
      "free-tier",
      "no-card",
      "eu-region",
      "status-page",
      "soc2",
      "cli",
      "typescript",
      "python"
    ],
    "lastRelease": "2026-10-06",
    "graded": true,
    "anchor": {
      "graded": true,
      "score": 69.2,
      "grade": "B",
      "agentReady": false,
      "rank": 155,
      "ranked": true,
      "rankOf": 629,
      "categoryRank": 3,
      "methodology": "0.4",
      "run": "2026-10-01",
      "scores": {
        "ergonomics": 69,
        "maintenance": 82,
        "payments": 40,
        "reliability": 64,
        "schema": 89,
        "security": 66,
        "transparency": 80
      },
      "pending": [
        "performance",
        "tasks"
      ],
      "breakdown": [
        {
          "key": "reliability",
          "name": "Reliability",
          "weight": 16,
          "effectiveWeight": 20,
          "score": 64,
          "points": 12.8,
          "reason": "Graded on the hosted service with the hosted lines. Statuspage at status.launchdarkly.com with 51 components and incident history (20). 13 incidents between 10 July and 8 October 2026. On 10 July the web application was unavailable and flag delivery failed, in two incidents from 09:16 to 11:19 PT marked critical, with a follow-up on SDK 401s open until 29 July. On 2 October elevated errors on the application and API stayed open for 18 hours 55 minutes, marked minor. One major outage, so 10 of 30. The API docs describe global, route, token and IP limits and say the numbers are not published. Limit and remaining headers report them at run time (5 of 15). 429s carry reset headers, IP limits carry `Retry-After`, and the docs ask for jitter and backoff. No idempotency keys were found, though JSON patch can test a resource version and 409 is documented as retryable (11 of 15). The SLA commits to 99.9 per cent for Enterprise support and 99.99 per cent for Premium support (10). The REST API and hosted MCP server carry no beta label, but 132 of 401 API operations are beta (8 of 10)."
        },
        {
          "key": "performance",
          "name": "Performance",
          "weight": 10,
          "effectiveWeight": 0,
          "pending": true,
          "points": 0,
          "reason": "Pending. Latency is measured per call by our probes, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until the first probe window closes."
        },
        {
          "key": "schema",
          "name": "Schema \u0026 documentation",
          "weight": 13,
          "effectiveWeight": 16.25,
          "score": 89,
          "points": 14.46,
          "reason": "OpenAPI 3.0.3 served without a login at app.launchdarkly.com/api/v2/openapi.json, with 253 paths and 401 operations (25). The hosted MCP input schemas need a sign-in and were not read. A docs index for agents at launchdarkly.com/docs/llms.txt, and docs pages answer as Markdown with .md (10). 399 of 401 operations have a description. The MCP tool descriptions on the server page average about 740 characters and state pagination, sorting, plan limits and which tool to call next (17). 169 enums across 746 schemas. JSON patch bodies and semantic patch instructions are loosely typed objects (9). 1,853 examples in the spec, 429 documented on 287 operations and 403 on 355, and an error table with a suggested fix for each status (13). Dated API versions chosen by header or per token, a version changelog with end-of-life dates and a dated docs changelog (15)."
        },
        {
          "key": "ergonomics",
          "name": "Agent ergonomics",
          "weight": 13,
          "effectiveWeight": 16.25,
          "score": 69,
          "points": 11.21,
          "reason": "The hosted MCP server lists 141 tools, far past 30 (5). The OAuth metadata names reader, writer and observability scopes, but no tool filter for the hosted server was found. The `--tool` and `--scope read` options belong to the local server, which has 20 tools, so 3 of 10 added back (8). The API has `limit` and `offset` on 61 operations, filters and sorting, summary and detailed representations and an `expand` parameter on 40 (18). Errors carry `code`, `message` and `id`, with a table of statuses and fixes (15). The server page marks 73 tools read-only, 35 destructive and 89 idempotent. There are no idempotency keys on REST writes, and JSON patch can test a version before applying (15). Generated API clients on npm (`launchdarkly-api` 20.0.0) and PyPI (24.0.0) and the `ldcli` CLI, with semantic patch needing a special content type (13)."
        },
        {
          "key": "security",
          "name": "Security \u0026 auth",
          "weight": 14,
          "effectiveWeight": 17.5,
          "score": 66,
          "points": 11.55,
          "reason": "The hosted MCP server uses OAuth with PKCE (S256), dynamic client registration, a revocation endpoint and three scopes, and an authorised app can never do more than the member who approved it. API access tokens are revocable and resettable with a Reader, Writer, Admin or Owner role. Custom roles and inline policies need a plan with custom roles, and service tokens need Enterprise. No secret in a URL query string is documented (26 of 30). Reader role and reader scope, `--scope read` and `--tool` on the local server, and approval requests for changes on Enterprise. No confirmation step for destructive hosted tools was found (14 of 20). The observability tools return logs, traces, errors and session data written by end users. No prompt-injection guidance was found in the MCP docs, which warn only that an API key in a config file may appear in a conversation (3 of 15). Change history with an API at `/api/v2/auditlog` and comments on updates, limited to 30 days on the Developer plan, and the pricing table lists audit logging under Enterprise only (11 of 15). The security page lists SOC 2 Type II, ISO 27001 and FedRAMP authorisation. security.txt returns 404, and no disclosure policy or bug bounty was found on the pages read (12 of 20)."
        },
        {
          "key": "payments",
          "name": "Payments \u0026 pricing",
          "weight": 10,
          "effectiveWeight": 12.5,
          "score": 40,
          "points": 5,
          "reason": "No x402, MPP or L402 (0). Per-unit prices are public without a login, at $10 a service connection a month, $8.33 per 1,000 client-side MAU a month billed yearly and $5 per 1,000 additional AI runs. Enterprise is custom (20). The Developer plan is free with no card (20). A person signs up in a browser and approves OAuth or creates a token (0)."
        },
        {
          "key": "tasks",
          "name": "Task success",
          "weight": 10,
          "effectiveWeight": 0,
          "pending": true,
          "points": 0,
          "reason": "Pending. Task success needs the category task suites run through each tool, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until then. A data provider's data-quality score is published on its listing now and becomes half of this category when it's scored."
        },
        {
          "key": "maintenance",
          "name": "Maintenance \u0026 community",
          "weight": 7,
          "effectiveWeight": 8.75,
          "score": 82,
          "points": 7.18,
          "reason": "The Python server SDK 9.18.1 was published on 6 October 2026, the local MCP server v0.7.0 on 5 October and the docs changelog's newest entries are 7 October (30). The docs changelog has 50 dated entries since 3 August 2026, and `ldcli` had eight releases between 28 July and 24 September (20). Public docs changelog, a support site and a Discord community named on the pricing page. We did not read how quickly GitHub issues are answered (10 of 25). Current official SDKs and generated API clients. The official MCP registry has no LaunchDarkly namespace, only two third-party entries (15). The MCP server repository has four CI workflows and Dependabot fixes merged on 18 August 2026, with three commits since 10 July, and its README says the local server is updated less often than the hosted one (7 of 10)."
        },
        {
          "key": "transparency",
          "name": "Transparency \u0026 trust",
          "weight": 7,
          "effectiveWeight": 8.75,
          "score": 80,
          "points": 7,
          "note": "editorial 74, provenance 86",
          "reason": "Closed hosted service under published terms. The SDKs and `ldcli` are Apache-2.0 and the local MCP server is MIT (17 of 30). The privacy policy (8 April 2025) excludes data processed for customers, which the DPA (1 May 2024) covers, with deletion on written request after termination. The privacy policy gives no retention periods. The terms allow use of anonymised and aggregated data, and no clause on model training was found (20 of 30). The end-of-life policy gives API and SDK versions 12 months after a new release, and the version table lists end-of-life dates. Beta resources may change without notice (17 of 20). The sub-processor list (15 May 2026) gives locations, with Anthropic, OpenAI and Speakeasy under AI services, the DPA gives 30 days' notice of new sub-processors, and EU and federal instances exist (20)."
        }
      ],
      "assessment": {
        "date": "2026-10-08",
        "basis": "public evidence",
        "confidence": "medium",
        "notes": {
          "ergonomics": "The hosted MCP server lists 141 tools, far past 30 (5). The OAuth metadata names reader, writer and observability scopes, but no tool filter for the hosted server was found. The `--tool` and `--scope read` options belong to the local server, which has 20 tools, so 3 of 10 added back (8). The API has `limit` and `offset` on 61 operations, filters and sorting, summary and detailed representations and an `expand` parameter on 40 (18). Errors carry `code`, `message` and `id`, with a table of statuses and fixes (15). The server page marks 73 tools read-only, 35 destructive and 89 idempotent. There are no idempotency keys on REST writes, and JSON patch can test a version before applying (15). Generated API clients on npm (`launchdarkly-api` 20.0.0) and PyPI (24.0.0) and the `ldcli` CLI, with semantic patch needing a special content type (13).",
          "maintenance": "The Python server SDK 9.18.1 was published on 6 October 2026, the local MCP server v0.7.0 on 5 October and the docs changelog's newest entries are 7 October (30). The docs changelog has 50 dated entries since 3 August 2026, and `ldcli` had eight releases between 28 July and 24 September (20). Public docs changelog, a support site and a Discord community named on the pricing page. We did not read how quickly GitHub issues are answered (10 of 25). Current official SDKs and generated API clients. The official MCP registry has no LaunchDarkly namespace, only two third-party entries (15). The MCP server repository has four CI workflows and Dependabot fixes merged on 18 August 2026, with three commits since 10 July, and its README says the local server is updated less often than the hosted one (7 of 10).",
          "payments": "No x402, MPP or L402 (0). Per-unit prices are public without a login, at $10 a service connection a month, $8.33 per 1,000 client-side MAU a month billed yearly and $5 per 1,000 additional AI runs. Enterprise is custom (20). The Developer plan is free with no card (20). A person signs up in a browser and approves OAuth or creates a token (0).",
          "reliability": "Graded on the hosted service with the hosted lines. Statuspage at status.launchdarkly.com with 51 components and incident history (20). 13 incidents between 10 July and 8 October 2026. On 10 July the web application was unavailable and flag delivery failed, in two incidents from 09:16 to 11:19 PT marked critical, with a follow-up on SDK 401s open until 29 July. On 2 October elevated errors on the application and API stayed open for 18 hours 55 minutes, marked minor. One major outage, so 10 of 30. The API docs describe global, route, token and IP limits and say the numbers are not published. Limit and remaining headers report them at run time (5 of 15). 429s carry reset headers, IP limits carry `Retry-After`, and the docs ask for jitter and backoff. No idempotency keys were found, though JSON patch can test a resource version and 409 is documented as retryable (11 of 15). The SLA commits to 99.9 per cent for Enterprise support and 99.99 per cent for Premium support (10). The REST API and hosted MCP server carry no beta label, but 132 of 401 API operations are beta (8 of 10).",
          "schema": "OpenAPI 3.0.3 served without a login at app.launchdarkly.com/api/v2/openapi.json, with 253 paths and 401 operations (25). The hosted MCP input schemas need a sign-in and were not read. A docs index for agents at launchdarkly.com/docs/llms.txt, and docs pages answer as Markdown with .md (10). 399 of 401 operations have a description. The MCP tool descriptions on the server page average about 740 characters and state pagination, sorting, plan limits and which tool to call next (17). 169 enums across 746 schemas. JSON patch bodies and semantic patch instructions are loosely typed objects (9). 1,853 examples in the spec, 429 documented on 287 operations and 403 on 355, and an error table with a suggested fix for each status (13). Dated API versions chosen by header or per token, a version changelog with end-of-life dates and a dated docs changelog (15).",
          "security": "The hosted MCP server uses OAuth with PKCE (S256), dynamic client registration, a revocation endpoint and three scopes, and an authorised app can never do more than the member who approved it. API access tokens are revocable and resettable with a Reader, Writer, Admin or Owner role. Custom roles and inline policies need a plan with custom roles, and service tokens need Enterprise. No secret in a URL query string is documented (26 of 30). Reader role and reader scope, `--scope read` and `--tool` on the local server, and approval requests for changes on Enterprise. No confirmation step for destructive hosted tools was found (14 of 20). The observability tools return logs, traces, errors and session data written by end users. No prompt-injection guidance was found in the MCP docs, which warn only that an API key in a config file may appear in a conversation (3 of 15). Change history with an API at `/api/v2/auditlog` and comments on updates, limited to 30 days on the Developer plan, and the pricing table lists audit logging under Enterprise only (11 of 15). The security page lists SOC 2 Type II, ISO 27001 and FedRAMP authorisation. security.txt returns 404, and no disclosure policy or bug bounty was found on the pages read (12 of 20).",
          "transparency": "Closed hosted service under published terms. The SDKs and `ldcli` are Apache-2.0 and the local MCP server is MIT (17 of 30). The privacy policy (8 April 2025) excludes data processed for customers, which the DPA (1 May 2024) covers, with deletion on written request after termination. The privacy policy gives no retention periods. The terms allow use of anonymised and aggregated data, and no clause on model training was found (20 of 30). The end-of-life policy gives API and SDK versions 12 months after a new release, and the version table lists end-of-life dates. Beta resources may change without notice (17 of 20). The sub-processor list (15 May 2026) gives locations, with Anthropic, OpenAI and Speakeasy under AI services, the DPA gives 30 days' notice of new sub-processors, and EU and federal instances exist (20)."
        },
        "sources": [
          {
            "what": "MCP server overview",
            "url": "https://launchdarkly.com/docs/home/getting-started/mcp",
            "seen": "2026-10-08"
          },
          {
            "what": "hosted MCP server setup and OAuth",
            "url": "https://launchdarkly.com/docs/home/getting-started/mcp-hosted",
            "seen": "2026-10-08"
          },
          {
            "what": "local MCP server, tokens and restrictions",
            "url": "https://launchdarkly.com/docs/home/getting-started/mcp-local",
            "seen": "2026-10-08"
          },
          {
            "what": "hosted MCP server page with the tool list and annotations",
            "url": "https://mcp.launchdarkly.com/mcp/launchdarkly",
            "seen": "2026-10-08"
          },
          {
            "what": "OAuth authorisation server metadata",
            "url": "https://mcp.launchdarkly.com/.well-known/oauth-authorization-server/mcp/launchdarkly",
            "seen": "2026-10-08"
          },
          {
            "what": "REST API overview, auth, errors, rate limits, beta and versioning",
            "url": "https://launchdarkly.com/docs/api",
            "seen": "2026-10-08"
          },
          {
            "what": "OpenAPI spec",
            "url": "https://app.launchdarkly.com/api/v2/openapi.json",
            "seen": "2026-10-08"
          },
          {
            "what": "docs index for agents",
            "url": "https://launchdarkly.com/docs/llms.txt",
            "seen": "2026-10-08"
          },
          {
            "what": "creating API access tokens",
            "url": "https://launchdarkly.com/docs/home/account/api-create",
            "seen": "2026-10-08"
          },
          {
            "what": "OAuth applications",
            "url": "https://launchdarkly.com/docs/home/infrastructure/oauth",
            "seen": "2026-10-08"
          },
          {
            "what": "change history",
            "url": "https://launchdarkly.com/docs/home/releases/change-history",
            "seen": "2026-10-08"
          },
          {
            "what": "docs changelog",
            "url": "https://launchdarkly.com/docs/home/changelog",
            "seen": "2026-10-08"
          },
          {
            "what": "pricing",
            "url": "https://launchdarkly.com/pricing/",
            "seen": "2026-10-08"
          },
          {
            "what": "status incidents",
            "url": "https://status.launchdarkly.com/api/v2/incidents.json",
            "seen": "2026-10-08"
          },
          {
            "what": "10 July 2026 incident",
            "url": "https://stspg.io/3zs2g4y0zjhs",
            "seen": "2026-10-08"
          },
          {
            "what": "terms of service, Developer and Foundation self-service",
            "url": "https://launchdarkly.com/policies/subscription-terms/",
            "seen": "2026-10-08"
          },
          {
            "what": "privacy policy",
            "url": "https://launchdarkly.com/policies/privacy/",
            "seen": "2026-10-08"
          },
          {
            "what": "data processing addendum",
            "url": "https://launchdarkly.com/policies/data-processing-addendum/",
            "seen": "2026-10-08"
          },
          {
            "what": "sub-processors",
            "url": "https://launchdarkly.com/policies/subprocessors/",
            "seen": "2026-10-08"
          },
          {
            "what": "service level agreement",
            "url": "https://launchdarkly.com/policies/service-level-agreement/",
            "seen": "2026-10-08"
          },
          {
            "what": "end-of-life policy",
            "url": "https://launchdarkly.com/policies/end-of-life-policy/",
            "seen": "2026-10-08"
          },
          {
            "what": "security page",
            "url": "https://launchdarkly.com/security/",
            "seen": "2026-10-08"
          },
          {
            "what": "local MCP server repository",
            "url": "https://github.com/launchdarkly/mcp-server",
            "seen": "2026-10-08"
          },
          {
            "what": "ldcli repository",
            "url": "https://github.com/launchdarkly/ldcli",
            "seen": "2026-10-08"
          },
          {
            "what": "official MCP registry search",
            "url": "https://registry.modelcontextprotocol.io/v0/servers?search=launchdarkly",
            "seen": "2026-10-08"
          },
          {
            "what": "@launchdarkly/mcp-server on npm",
            "url": "https://registry.npmjs.org/@launchdarkly/mcp-server/latest",
            "seen": "2026-10-08"
          },
          {
            "what": "launchdarkly-server-sdk on PyPI",
            "url": "https://pypi.org/pypi/launchdarkly-server-sdk/json",
            "seen": "2026-10-08"
          },
          {
            "what": "RDAP for launchdarkly.com",
            "url": "https://rdap.org/domain/launchdarkly.com",
            "seen": "2026-10-08"
          }
        ],
        "openQuestions": [
          "unchecked: the live `tools/list` response of the hosted MCP server, which needs an OAuth sign-in. Tool names, descriptions and annotations come from the server page, which states 141 tools, and input schemas were not read",
          "unchecked: the trust centre, which redirects to app.vanta.com and was not read, so a disclosure policy or bug bounty may exist there",
          "unchecked: GitHub star counts and issue response times, because the GitHub API answered with a rate limit",
          "unchecked: what the reader, writer and observability OAuth scopes each allow. They appear in the server metadata and are not described in the docs we read",
          "No price for experimentation above the 100,000 MAU included was found on the pricing page",
          "The pricing table lists audit logging under Enterprise only, while the docs say change history is on every plan with 30 days on Developer. We scored the docs' statement",
          "The hosted MCP endpoint is on mcp.launchdarkly.com and its response headers name Gram, a Speakeasy product. Speakeasy is on the sub-processor list",
          "The privacy policy says it does not apply to data LaunchDarkly processes for customers. The DPA covers that data and is linked in the notes",
          "The category was kept as product-analytics. LaunchDarkly covers its flags and experiments half and has no funnel, retention or cohort queries"
        ]
      },
      "negative": 0,
      "verdict": "LaunchDarkly suits agents that manage feature flags, rollouts and experiments. The hosted MCP server uses OAuth with dynamic client registration and marks its tools read-only or destructive, and the Developer plan is free without a card. The server lists 141 tools, numeric rate limits are unpublished, and the web application was unavailable for over an hour on 10 July 2026.",
      "bestFor": "An agent that creates and targets feature flags, runs rollouts and experiments, reads experiment results and cleans up stale flags.",
      "strengths": [
        "Public OpenAPI 3.0.3 spec with 401 operations, 399 of them described, with 1,853 examples and 429 documented on 287 operations",
        "Hosted MCP server with OAuth, PKCE, dynamic client registration, a revocation endpoint and reader, writer and observability scopes",
        "MCP tools cover experiment creation, iteration control and results, flag targeting, approval requests and flag removal readiness",
        "Developer plan is free with no card, unlimited seats, unlimited flags and 100,000 experimentation MAU a month",
        "Dated API versions set by header, with a written policy of 12 months' support after a new version"
      ],
      "weaknesses": [
        "The hosted MCP server lists 141 tools, and no tool filter for it was found in the reviewed documentation",
        "The API docs say the numeric rate limits are not published and may change",
        "132 of 401 API operations are beta, need `LD-API-Version: beta` and may change without notice",
        "On 10 July 2026 the web application was unavailable and flag delivery failed for part of two hours, and some SDKs needed a restart",
        "Custom roles, inline token policies, service tokens and approvals need an Enterprise plan, and the hosted MCP server is absent from the EU and federal instances"
      ],
      "agentNotes": [
        "Connect to https://mcp.launchdarkly.com/mcp/launchdarkly over streamable HTTP with OAuth. On the EU or federal instance run the local `@launchdarkly/mcp-server` with `--server-url`",
        "Authorise with a Reader role or the `reader` scope unless the task writes. A 403 after consent means the member's role lacks access",
        "Send `LD-API-Version: 20240415` on every REST call, and `LD-API-Version: beta` for beta resources, which answer 403 without it",
        "Read `X-Ratelimit-Global-Remaining`, `X-Ratelimit-Route-Remaining` and `X-Ratelimit-Reset` on each response, and wait `Retry-After` seconds on an IP limit",
        "Send `Content-Type: application/json; domain-model=launchdarkly.semanticpatch` for semantic patches, or the body is read as JSON patch and answers 400"
      ],
      "metrics": {
        "kind": "remote",
        "measured": false
      },
      "reviewCount": 0,
      "avgRating": 0,
      "history": [
        {
          "basis": "public evidence",
          "confidence": "medium",
          "grade": "B",
          "methodology": "0.4",
          "pending": [
            "performance",
            "tasks"
          ],
          "run": "2026-10-01",
          "runLabel": "October 2026 research run",
          "score": 69.2
        }
      ],
      "editorialScores": {
        "ergonomics": 69,
        "maintenance": 82,
        "payments": 40,
        "reliability": 64,
        "schema": 89,
        "security": 66,
        "transparency": 74
      },
      "provenanceScore": 86
    },
    "connect": {
      "install": "npx -y --package @launchdarkly/mcp-server -- mcp start --api-key api-xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx",
      "claudeCode": "claude mcp add --transport http \"launchdarkly\" \"https://mcp.launchdarkly.com/mcp/launchdarkly\"",
      "config": {
        "mcpServers": {
          "launchdarkly": {
            "type": "http",
            "url": "https://mcp.launchdarkly.com/mcp/launchdarkly"
          }
        }
      }
    },
    "letme": {
      "capability": "https://letme.dev/analytics.flags",
      "tool": "https://letme.dev/launchdarkly"
    },
    "notable": [
      "The hosted MCP server is at https://mcp.launchdarkly.com/mcp/launchdarkly, uses OAuth, and is not available on the EU or federal instances, where LaunchDarkly points to the local server (https://launchdarkly.com/docs/home/getting-started/mcp-hosted)",
      "The server page lists 141 tools for flags, segments, experiments, metrics, approvals, AgentControl configs and observability queries, and marks them read-only, idempotent or destructive (https://mcp.launchdarkly.com/mcp/launchdarkly)",
      "The API docs say the numeric rate limits are not published and may change, and that clients should read the `X-Ratelimit-*` headers (https://launchdarkly.com/docs/api)",
      "132 of the 401 operations in the OpenAPI spec are beta. They need `LD-API-Version: beta` and may change without notice (https://app.launchdarkly.com/api/v2/openapi.json)",
      "API versions are dated, the current one is 20240415, and the end-of-life policy gives a version 12 months after a newer one is released (https://launchdarkly.com/policies/end-of-life-policy/)",
      "On 10 July 2026 the web application was unavailable and flag delivery had an elevated failure rate, and some server-side SDKs and Relay Proxies needed a restart afterwards (https://stspg.io/3zs2g4y0zjhs)",
      "The official MCP registry has no LaunchDarkly namespace. The two entries named launchdarkly are third-party (https://registry.modelcontextprotocol.io/v0/servers?search=launchdarkly)"
    ],
    "area": "business",
    "details": [
      {
        "label": "Surface graded",
        "value": "The hosted service. The official hosted MCP server at mcp.launchdarkly.com and the REST API at app.launchdarkly.com. The local MCP server, with 20 tools, is for the EU and federal instances and was not graded"
      },
      {
        "label": "MCP server",
        "value": "https://mcp.launchdarkly.com/mcp/launchdarkly over streamable HTTP with OAuth. 141 tools per the server page, 73 marked read-only, 35 destructive and 89 idempotent. Not available on the EU or federal instances"
      },
      {
        "label": "API",
        "value": "OpenAPI 3.0.3 at https://app.launchdarkly.com/api/v2/openapi.json, readable without a login. 253 paths and 401 operations on 8 October 2026, 132 of them beta. Federal host app.launchdarkly.us, EU host app.eu.launchdarkly.com"
      },
      {
        "label": "Experiments",
        "value": "REST endpoints to list, create and update experiments and start iterations, and MCP tools `create-experiment`, `start-experiment-iteration`, `stop-experiment-iteration`, `get-experiment-results` and `get-experiment-metric-results`"
      },
      {
        "label": "Credentials",
        "value": "OAuth with PKCE (S256), dynamic client registration, revocation and scopes reader, writer and observability for MCP. Access tokens with a base role for the REST API, custom roles and inline policies on plans with custom roles, service tokens on Enterprise (200 an account by default)"
      },
      {
        "label": "Rate limits",
        "value": "Global, route, access token and IP limits on ten-second windows. The numbers are not published. Responses carry `X-Ratelimit-Global-Remaining`, `X-Ratelimit-Route-Remaining`, `X-Ratelimit-Auth-Token-Remaining` and reset times, and IP limits carry `Retry-After`"
      },
      {
        "label": "Versioning",
        "value": "`LD-API-Version` header or a version fixed per token. Current version 20240415. Version 20220603 reached end of life on 15 April 2025. Beta resources need `LD-API-Version: beta`"
      },
      {
        "label": "Errors",
        "value": "JSON with `code`, `message` and `id`. The spec documents 403 on 355 operations, 404 on 321, 400 on 298 and 429 on 287"
      },
      {
        "label": "Updates",
        "value": "JSON patch with a `test` operation on the resource version, JSON merge patch, and semantic patch with named instructions such as `turnFlagOn`. Updates take an optional comment that appears in the change history"
      },
      {
        "label": "Free tier",
        "value": "Developer plan, no card. 1 project and 3 environments, unlimited seats and flags, 5 service connections, 1,000 client-side MAU, 100,000 experimentation MAU, 5,000 AI runs, 10 million logs and 10 million traces a month"
      },
      {
        "label": "Paid",
        "value": "Foundation at $10 a service connection a month and $8.33 per 1,000 client-side MAU a month billed yearly, $5 per 1,000 extra AI runs, after a 14-day trial. Enterprise custom, with custom roles, approvals, workflows and SCIM"
      },
      {
        "label": "SDKs and CLI",
        "value": "launchdarkly-server-sdk 9.18.1 for Python (6 October 2026), @launchdarkly/node-server-sdk 9.14.4, generated API clients launchdarkly-api 20.0.0 on npm and 24.0.0 on PyPI, ldcli v3.12.0 (24 September 2026), local MCP server 0.7.0 (5 October 2026)"
      },
      {
        "label": "Audit",
        "value": "Change history with an API at /api/v2/auditlog. Limited to the last 30 days on the Developer plan, and to 30 days for account changes on Foundation"
      },
      {
        "label": "SLA",
        "value": "99.9 per cent monthly availability for Enterprise support customers and 99.99 per cent for Premium support, measured on the user interface of a production instance"
      },
      {
        "label": "Certifications",
        "value": "SOC 2 Type II, ISO 27001 and FedRAMP authorisation listed on launchdarkly.com/security, with a trust centre on Vanta that we did not read"
      },
      {
        "label": "Status",
        "value": "https://status.launchdarkly.com on Statuspage, 51 components. 13 incidents between 10 July and 8 October 2026, one marked critical"
      },
      {
        "label": "Data",
        "value": "AWS in the USA, with Germany and France for the EU instance per the sub-processor list of 15 May 2026. AI services sub-processors are Anthropic, OpenAI and Speakeasy. 30 days' notice of new sub-processors under the DPA"
      }
    ],
    "unitPrices": [
      {
        "item": "Foundation, service connection",
        "unit": "month",
        "usd": 10,
        "note": "per connection, billed yearly, first 5 included"
      },
      {
        "item": "Foundation, client-side MAU",
        "unit": "user-month",
        "usd": 0.00833,
        "note": "$8.33 per 1,000, billed yearly"
      },
      {
        "item": "Additional AI run",
        "unit": "tx",
        "usd": 0.005,
        "note": "$5 per 1,000 above 5,000 a month"
      }
    ],
    "provenance": {
      "legalEntity": "Catamorphic, Co. (dba LaunchDarkly)",
      "domain": "launchdarkly.com",
      "domainRegistered": "2014-07-15",
      "endpointOnVendorDomain": true,
      "terms": "https://launchdarkly.com/policies/subscription-terms/",
      "privacy": "https://launchdarkly.com/policies/privacy/",
      "statusPage": "https://status.launchdarkly.com",
      "changelog": "https://launchdarkly.com/docs/home/changelog",
      "securityTxt": "none",
      "checked": "2026-10-08",
      "notes": [
        "The terms of service for Developer and Foundation self-service customers (effective 8 September 2025) name Catamorphic, Co., a Delaware corporation doing business as LaunchDarkly. Enterprise customers have separate terms at https://launchdarkly.com/policies/subscription-terms-enterprise/.",
        "The privacy policy (effective 8 April 2025) says it does not apply to data LaunchDarkly processes for customers. The data processing addendum at https://launchdarkly.com/policies/data-processing-addendum/ covers that data.",
        "launchdarkly.com/.well-known/security.txt and app.launchdarkly.com/.well-known/security.txt return 404.",
        "The MCP server answers on mcp.launchdarkly.com and the API on app.launchdarkly.com. The MCP endpoint's headers name Gram, from Speakeasy, which is on the sub-processor list.",
        "RDAP for launchdarkly.com gives a registration date of 2014-07-15."
      ],
      "score": 86,
      "checks": [
        {
          "check": "Legal entity named",
          "value": "Catamorphic, Co. (dba LaunchDarkly)",
          "points": 20,
          "max": 20,
          "state": "ok"
        },
        {
          "check": "Domain age",
          "value": "launchdarkly.com, registered 2014-07-15 (12 years)",
          "points": 15,
          "max": 15,
          "state": "ok"
        },
        {
          "check": "Endpoint on the vendor's domain",
          "value": "mcp.launchdarkly.com",
          "points": 15,
          "max": 15,
          "state": "ok"
        },
        {
          "check": "Terms of service",
          "value": "read, states 6 of the 7 things a reader expects, and has 1 clause that costs points",
          "points": 7.1,
          "max": 10,
          "state": "part"
        },
        {
          "check": "Privacy policy",
          "value": "read, states 7 of the 8 things a reader expects",
          "points": 9.3,
          "max": 10,
          "state": "part"
        },
        {
          "check": "Status page",
          "value": "status.launchdarkly.com",
          "points": 10,
          "max": 10,
          "state": "ok"
        },
        {
          "check": "Changelog",
          "value": "published",
          "points": 10,
          "max": 10,
          "state": "ok"
        },
        {
          "check": "security.txt",
          "value": "not found",
          "points": 0,
          "max": 10,
          "state": "no"
        }
      ],
      "policies": [
        {
          "kind": "terms",
          "url": "https://launchdarkly.com/policies/subscription-terms/",
          "state": "read",
          "readAt": "2026-10-08",
          "statedDate": "2025-09-08",
          "words": 6252,
          "points": 7.1,
          "max": 10,
          "expected": [
            {
              "key": "terms.date",
              "label": "Gives the date it was last updated",
              "found": true,
              "quote": "Effective September 8, 2025",
              "says": "Last updated 2025-09-08"
            },
            {
              "key": "terms.law",
              "label": "Names the governing law or courts",
              "found": true,
              "quote": "This Agreement shall be governed exclusively by the internal laws of the state of California, without regard to its conflicts of laws rules.",
              "says": "The law of the State of California"
            },
            {
              "key": "terms.liability",
              "label": "States a limit on its liability",
              "found": true,
              "quote": "AND (ii) CLAIMS ARISING FROM A PARTY’S GROSS NEGLIGENCE OR WILFUL MISCONDUCT, IN NO EVENT SHALL EITHER PARTY'S AGGREGATE LIABILITY ARISING OUT OF THIS AGREEMENT, WHETHER IN CONTRACT, TORT OR UNDER ANY OTHER THEORY OF LIABILITY, EXCEED THE FEES PAID OR PAYABLE TO LAUNCHDARKLY DURING THE (12) TWELVE MONTHS PRIOR TO THE…",
              "says": "Capped at the fees paid in the 12 months before the claim"
            },
            {
              "key": "terms.termination",
              "label": "Says how the agreement or account can be ended",
              "found": true,
              "quote": "LaunchDarkly may suspend Customer’s right to access or use any portion or all of the LaunchDarkly Service immediately upon notice to you if we determine: (a) your use of the LaunchDarkly Service (i) poses a security risk to the LaunchDarkly Service or any third party, (ii) could adversely impact our systems, the Launc…"
            },
            {
              "key": "terms.changes",
              "label": "Says how changes to the terms are announced",
              "found": false
            },
            {
              "key": "terms.use",
              "label": "Lists what users may not do",
              "found": true,
              "quote": "IF YOU DO NOT AGREE TO ALL OF THE FOLLOWING, YOU MAY NOT USE OR ACCESS THE LAUNCHDARKLY SERVICE IN ANY MANNER."
            },
            {
              "key": "terms.sla",
              "label": "Refers to a service level or uptime commitment",
              "found": true,
              "quote": "TERMS OF SERVICE – Developer Tier and Foundation Self-Service Customers"
            }
          ],
          "toKnow": [
            {
              "key": "terms.benchmark",
              "label": "Restricts benchmarking or competitive use",
              "found": true,
              "quote": "(e) access the LaunchDarkly Service for the purpose of building a competitive product or service;",
              "costsPoints": true
            }
          ],
          "notes": [
            {
              "date": "2026-10-08",
              "text": "Paid subscriptions renew automatically for the same term at LaunchDarkly's then-current rates unless cancelled in the account dashboard before the next billing date.",
              "quote": "All of the subscriptions to Paid Services with a Subscription Term will automatically renew for periods equal to the initial Subscription Term, and Customer will be charged at LaunchDarkly’s then-current rates"
            },
            {
              "date": "2026-10-08",
              "text": "Thirty days after termination LaunchDarkly has no obligation to keep Customer Data and will not retain copies of it.",
              "quote": "Thirty (30) days following the termination of this Agreement LaunchDarkly will have no obligation to maintain any Customer Data and will not retain copies or records of Customer Data in its system or otherwise."
            },
            {
              "date": "2026-10-08",
              "text": "For free trial services and services supplied free of charge, LaunchDarkly excludes liability, or caps it at 1,000 US dollars where the exclusion cannot be enforced.",
              "quote": "LAUNCHDARKLY’S LIABILITY WITH RESPECT TO THE SERVICES PROVIDED DURING THE FREE TRIAL SERVICES OR WHILE SERVICES ARE PROVIDED FREE OF CHARGE SHALL NOT EXCEED $1,000.00."
            }
          ]
        },
        {
          "kind": "privacy",
          "url": "https://launchdarkly.com/policies/privacy/",
          "state": "read",
          "readAt": "2026-10-08",
          "statedDate": "2025-04-08",
          "words": 5314,
          "points": 9.3,
          "max": 10,
          "expected": [
            {
              "key": "privacy.date",
              "label": "Gives the date it was last updated",
              "found": true,
              "quote": "Effective as of April 8, 2025",
              "says": "Last updated 2025-04-08"
            },
            {
              "key": "privacy.collected",
              "label": "Says what personal data is collected",
              "found": true,
              "quote": "dba LaunchDarkly (“LaunchDarkly,” “we,” “us,” or “our”) provides this Privacy Policy (the “Privacy Policy” or “Policy”) that describes how we collect, use, and disclose your information."
            },
            {
              "key": "privacy.retention",
              "label": "Says how long data is kept",
              "found": false
            },
            {
              "key": "privacy.processors",
              "label": "Says who else receives the data",
              "found": true,
              "quote": "This Policy does not apply to information we process as a data processor or service provider on behalf of our customers."
            },
            {
              "key": "privacy.sale",
              "label": "Says whether personal data is sold or shared for advertising",
              "found": true,
              "quote": "Those parties may offer you a way to opt out of targeted advertising as described below."
            },
            {
              "key": "privacy.rights",
              "label": "Says what rights people have over their data",
              "found": true,
              "quote": "If you are a resident of Nevada, you have the right to opt-out of the sale of certain personal data to unaffiliated parties."
            },
            {
              "key": "privacy.contact",
              "label": "Gives a privacy contact",
              "found": true,
              "quote": "You can also submit a request to opt out of offline disclosures that are subject to these opt-out rights by emailing us at privacy@launchdarkly.com.",
              "says": "privacy@launchdarkly.com"
            },
            {
              "key": "privacy.transfers",
              "label": "Says where data is transferred or stored",
              "found": true,
              "quote": "DPF) (collectively, “Data Privacy Framework” or “DPF”) as described below.",
              "says": "Relies on the Data Privacy Framework"
            }
          ],
          "toKnow": [
            {
              "key": "privacy.sells",
              "label": "Says it sells personal data or shares it for advertising",
              "found": true,
              "quote": "These activities may be considered a “sales,” “sharing,” or processing for targeted advertising purposes under certain State Laws."
            }
          ],
          "notes": [
            {
              "date": "2026-10-08",
              "text": "The policy does not cover information LaunchDarkly processes on behalf of its customers as a data processor or service provider.",
              "quote": "This Policy does not apply to information we process as a data processor or service provider on behalf of our customers."
            }
          ]
        }
      ]
    },
    "pageJsonUrl": "https://www.anchorterminal.com/tools/launchdarkly.json",
    "live": {
      "slug": "launchdarkly",
      "probe": {
        "target": "https://mcp.launchdarkly.com/mcp/launchdarkly",
        "method": "get",
        "lastAt": "2026-10-08T19:08:51.4566105Z",
        "lastOk": true,
        "lastStatus": 405,
        "lastMs": 507,
        "authRequired": false,
        "uptime24h": 100,
        "uptime30d": 100,
        "p50ms24h": 451,
        "p95ms24h": 507,
        "samples24h": 19,
        "samples30d": 19,
        "days": [
          {
            "date": "2026-10-08",
            "probes": 19,
            "ok": 19
          }
        ]
      },
      "vendorStatus": {
        "page": "https://status.launchdarkly.com",
        "indicator": "none",
        "summary": "All Systems Operational",
        "checkedAt": "2026-10-08T19:06:44.832067208Z"
      },
      "pages": [
        {
          "url": "https://launchdarkly.com/docs/home/changelog",
          "kind": "changelog",
          "status": 200,
          "checkedAt": "2026-10-08T18:21:16.320328672Z",
          "changedAt": "0001-01-01T00:00:00Z",
          "fingerprint": "74204a4637a3"
        },
        {
          "url": "https://launchdarkly.com/pricing/",
          "kind": "pricing",
          "status": 200,
          "checkedAt": "2026-10-08T18:21:22.375066872Z",
          "changedAt": "0001-01-01T00:00:00Z",
          "fingerprint": "ba2803698c00"
        },
        {
          "url": "https://launchdarkly.com/policies/privacy/",
          "kind": "privacy",
          "status": 200,
          "checkedAt": "2026-10-08T18:21:18.596393493Z",
          "changedAt": "0001-01-01T00:00:00Z",
          "fingerprint": "07aaa0a5b478"
        },
        {
          "url": "https://launchdarkly.com/policies/subscription-terms/",
          "kind": "terms",
          "status": 200,
          "checkedAt": "2026-10-08T18:21:20.369550127Z",
          "changedAt": "0001-01-01T00:00:00Z",
          "fingerprint": "9ada90ccb172"
        }
      ],
      "updatedAt": "2026-10-08T19:08:51.4566105Z"
    }
  }
}
