{
  "data": {
    "a": {
      "slug": "aembit",
      "name": "Aembit",
      "vendor": "Aembit, Inc.",
      "vendorUrl": "https://aembit.io",
      "kind": "http-api",
      "category": "agent-auth",
      "summary": "Aembit is a hosted identity and access platform for workloads and AI agents. Its MCP Identity Gateway and MCP Authorisation Server apply access policies and inject credentials, with a Cloud API, an Edge API, a CLI and an Edge SDK.",
      "url": "https://www.anchorterminal.com/tools/aembit",
      "markdownUrl": "https://www.anchorterminal.com/tools/aembit.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/aembit.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/aembit.json",
      "repo": "https://github.com/Aembit/edge-sdks",
      "license": "Proprietary service under Aembit's terms of service. The Edge SDKs on GitHub are Apache-2.0",
      "transports": [
        "http",
        "streamable-http"
      ],
      "packages": [
        {
          "registry": "npm",
          "name": "@aembit/edge-sdk"
        }
      ],
      "auth": "mixed",
      "authNotes": "Every API takes a short-lived Bearer token. For the Cloud API at https://\u003ctenant\u003e.aembit.io/api/v1, a person copies an API token from the tenant's Profile page (1 hour by default), or a workload obtains an Aembit Access Token through an Access Policy and a role. The Edge API exchanges platform attestation for an access token at /edge/v1/auth. MCP clients reach the MCP Identity Gateway and MCP Authorisation Server by OAuth 2.1 with PKCE and dynamic client registration or a Client ID Metadata Document, after the user signs in through the company's identity provider. Access is self-serve for a free tenant. The managed gateway endpoint is requested through an Aembit representative.",
      "pricing": "freemium",
      "pricingNotes": "Starter is free with 3 AI agents, one MCP Identity Gateway and 5 MCP authorisation policies, or 10 workloads and 10 Access Policies, with 24 hours of event log retention. The pricing FAQ says no payment information is required. Teams is $20 per AI agent a month (to 500 agents) or $20 per workload a month, with a Contact Us button. Enterprise is custom. An agent can start on the free tenant without a contract (https://aembit.io/pricing/, checked 2026-10-08).",
      "priceSummary": "$20 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs, the OpenAPI files or the pricing page (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": null,
        "npmWeekly": 27,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://docs.aembit.io",
      "llmsTxt": "https://docs.aembit.io/llms.txt",
      "openapi": "https://docs.aembit.io/cloud.yaml",
      "capabilities": [
        "auth.oauth",
        "auth.agent-identity",
        "auth.tokens",
        "auth.consent",
        "auth.audit"
      ],
      "tags": [
        "hosted",
        "freemium",
        "free-tier",
        "oauth",
        "mcp",
        "openapi",
        "llms-txt",
        "typescript",
        "cli",
        "terraform",
        "status-page",
        "soc2",
        "iso27001",
        "enterprise",
        "self-hosted"
      ],
      "lastRelease": "2026-10-07",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 70.5,
        "grade": "BB",
        "agentReady": true,
        "rank": 134,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 5,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 72,
          "maintenance": 80,
          "payments": 40,
          "reliability": 65,
          "schema": 85,
          "security": 84,
          "transparency": 60
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "Agents and workloads get short-lived credentials by attestation, and MCP clients sign in through OAuth 2.1 with policy checked on every request. Both APIs have public OpenAPI files. No rate limit figures or SLA are published, the managed gateway endpoint is requested through an Aembit representative, and no DPA or sub-processor list was found.",
        "bestFor": "A security team that wants one policy and audit point between AI agents or workloads and the services they call, with credentials kept away from the agent.",
        "strengths": [
          "Public OpenAPI 3.1.1 files for the Cloud API (171 operations) and Edge API (2), plus llms.txt, per-page Markdown and a cloneable docs bundle",
          "No long-lived API credentials. Aembit API tokens last 1 hour by default and Edge API access tokens expire in 1 hour",
          "MCP clients authenticate by OAuth 2.1 with PKCE, dynamic client registration or a Client ID Metadata Document",
          "Audit logs, access authorisation events and workload events, exported by Log Streams to S3, Google Cloud Storage, Splunk or CrowdStrike",
          "Dated changelog with RSS. MCP Identity Gateway shipped four versions between 7 August and 7 October 2026"
        ],
        "weaknesses": [
          "No rate limit figures in the reviewed documentation. The Edge API lists 429 responses without limits or Retry-After guidance",
          "No SLA is published. The docs send SLA questions to Aembit support",
          "The managed MCP Identity Gateway endpoint is requested through an Aembit representative, and MCP Tool Access Control is enabled by support",
          "The Python Edge SDK is in the repository at 0.1.0 but pypi.org/project/aembit-edge-sdk returned 404 on 8 October 2026",
          "No DPA, sub-processor list or security.txt found on aembit.io. The trust centre returned 403 to our reader"
        ],
        "agentNotes": [
          "Read the API Base URL and token from the tenant's Profile page. Tokens last 1 hour by default, so plan to refresh",
          "Send `X-Aembit-ResourceSet` on Cloud API, Edge API and MCP calls outside the default Resource Set, or the request runs against the default set",
          "Cache the Edge API access token from `/edge/v1/auth` until near expiry before calling `/edge/v1/credentials`. Both endpoints can answer 429",
          "Point MCP clients at `https://\u003cgateway-host\u003e/mcp`. The `/me` path is deprecated",
          "Expect tool names prefixed with the Server Workload name behind the MCP Identity Gateway, and keep `perPage` at 100 or less on the Aembit MCP Server"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 70.5
          }
        ],
        "editorialScores": {
          "ergonomics": 72,
          "maintenance": 80,
          "payments": 40,
          "reliability": 65,
          "schema": 85,
          "security": 84,
          "transparency": 42
        },
        "provenanceScore": 78
      },
      "connect": {
        "install": "npm install @aembit/edge-sdk",
        "http": "curl -X GET -L 'https://tenant.aembit.io/api/v1/server-workloads' -H 'Authorization: Bearer \u003cTOKEN\u003e'"
      },
      "letme": {
        "capability": "https://letme.dev/auth.oauth",
        "tool": "https://letme.dev/aembit"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "Teams, each AI agent",
          "unit": "month",
          "usd": 20,
          "note": "Priced per agent a month, up to 500 agents"
        },
        {
          "item": "Teams, each workload",
          "unit": "month",
          "usd": 20,
          "note": "Priced per workload a month"
        }
      ],
      "provenance": {
        "legalEntity": "Aembit, Inc.",
        "domain": "aembit.io",
        "domainRegistered": "2021-03-14",
        "endpointOnVendorDomain": true,
        "terms": "https://aembit.io/terms-of-service/",
        "privacy": "https://aembit.io/privacy-policy/",
        "statusPage": "https://status.aembit.io",
        "changelog": "https://docs.aembit.io/changelog/",
        "securityTxt": "none",
        "checked": "2026-10-08",
        "notes": [
          "The terms of service (last reviewed 14 July 2026) are between the customer and Aembit, Inc., define the Services as the website and the web-based and downloadable workload identity and access management services, and choose Delaware law.",
          "The privacy policy (last updated 5 May 2026) names Aembit, Inc. and covers the platform, websites and related services.",
          "aembit.io/.well-known/security.txt and docs.aembit.io/.well-known/security.txt both returned 404. The docs give security@aembit.io as the security contact.",
          "RDAP at Identity Digital gives a registration date of 2021-03-14 for aembit.io.",
          "Tenant APIs answer at https://\u003ctenant\u003e.aembit.io and the managed gateway at https://\u003ctenantId\u003e.mcpgateway.aembit.io, both on the vendor's domain.",
          "No DPA, sub-processor or SLA page was found at the obvious aembit.io paths, and trust.aembit.io returned 403 to our reader."
        ],
        "score": 78
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/aembit.json",
      "live": {
        "slug": "aembit",
        "vendorStatus": {
          "page": "https://status.aembit.io",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T20:22:18.582119143Z"
        },
        "pages": [
          {
            "url": "https://docs.aembit.io/changelog/",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:18:07.775115006Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "4e930f2cc1ec"
          },
          {
            "url": "https://aembit.io/pricing/",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-08T18:14:59.808222145Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "781c90a65067"
          },
          {
            "url": "https://aembit.io/privacy-policy/",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:01.881687653Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "753e7b8821e4"
          },
          {
            "url": "https://aembit.io/terms-of-service/",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:03.860763085Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "ad42c0fa0432"
          }
        ],
        "updatedAt": "2026-10-08T20:22:18.582119143Z"
      }
    },
    "answer": "Scalekit AgentKit scores 71.9 (BB) on agent readiness against Aembit's 70.5 (BB), and leads in 4 of 7 scored categories. Aembit leads on security \u0026 auth.",
    "b": {
      "slug": "scalekit-agentkit",
      "name": "Scalekit AgentKit",
      "vendor": "Scalekit",
      "vendorUrl": "https://www.scalekit.com",
      "kind": "http-api",
      "category": "agent-auth",
      "summary": "Authentication and integration platform for agents, with per-user account connections, scoped MCP servers and managed tool calls.",
      "url": "https://www.anchorterminal.com/tools/scalekit-agentkit",
      "markdownUrl": "https://www.anchorterminal.com/tools/scalekit-agentkit.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/scalekit-agentkit.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/scalekit-agentkit.json",
      "repo": "https://github.com/scalekit-inc/scalekit-sdk-node",
      "license": "MIT (SDKs), platform closed, self-hosted on Enterprise",
      "transports": [
        "http",
        "streamable-http"
      ],
      "remoteUrl": "https://{env}.scalekit.com",
      "packages": [
        {
          "registry": "npm",
          "name": "@scalekit-sdk/node"
        },
        {
          "registry": "pypi",
          "name": "scalekit-sdk-python"
        },
        {
          "registry": "npm",
          "name": "@scalekit-inc/cli"
        }
      ],
      "auth": "mixed",
      "authNotes": "Your backend gets a bearer token from `POST $SCALEKIT_ENVIRONMENT_URL/oauth/token` with `grant_type=client_credentials` and the client ID and secret from the dashboard, then calls the REST API under /api/v1 on the same environment URL (dev environments end in .scalekit.dev, production in .scalekit.com). End users authorise a connection through a time-limited magic link that Scalekit hosts. Virtual MCP servers take a short-lived session token minted per user, about one hour by default. The management MCP server at mcp.scalekit.com needs no extra credentials.",
      "pricing": "freemium",
      "pricingNotes": "AgentKit Free is $0 with 5,000 tool calls a month, unlimited connected accounts, 500+ connectors and community and email support, no card. Growth is $99 a month with 100,000 tool calls and $0.0005 per extra call, custom connectors, an API proxy and private Slack support, with an EU data residency add-on at $99 a month. Enterprise is custom, with negotiated call volume, a 99.99 per cent uptime SLA, VPC or on-prem deployment, a HIPAA BAA, SIEM integrations and a forward-deployed engineer (https://www.scalekit.com/pricing). The page doesn't say whether a plain token fetch counts as a tool call.",
      "priceSummary": "$99 / mo",
      "where": "hosted",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 6,
        "npmWeekly": 10642,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.scalekit.com/agentkit/overview",
      "llmsTxt": "https://docs.scalekit.com/llms.txt",
      "openapi": "https://docs.scalekit.com/api/agentkit.scalar.json",
      "capabilities": [
        "auth.oauth",
        "auth.tokens",
        "auth.consent",
        "auth.agent-identity",
        "agent.tools"
      ],
      "tags": [
        "hosted",
        "freemium",
        "free-tier",
        "no-card",
        "oauth",
        "mcp",
        "llms-txt",
        "openapi",
        "typescript",
        "python",
        "enterprise",
        "self-hosted"
      ],
      "lastRelease": "2026-09-29",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 71.9,
        "grade": "BB",
        "agentReady": true,
        "rank": 100,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 3,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 83,
          "maintenance": 80,
          "payments": 40,
          "reliability": 75,
          "schema": 87,
          "security": 66,
          "transparency": 65
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "500+ connectors, including remote MCP servers over OAuth 2.1 with DCR. No rate limits or idempotency documented for Scalekit's own API.",
        "bestFor": "A team that wants per-user third-party tokens plus a hosted tool catalogue at the lowest per-call price, with a tidy virtual MCP surface for agents.",
        "strengths": [
          "500+ connectors, including remote MCP servers over OAuth 2.1 with DCR",
          "OpenAPI files, llms.txt and a Markdown twin for every docs page",
          "Tool search, scoped tool lists and virtual MCP servers keep an agent's context small",
          "Atlassian status page with an Agent Kit Tool Execution component, 100.0 per cent over 90 days",
          "Free tier of 5,000 tool calls a month with no card, then $0.0005 a call on Growth"
        ],
        "weaknesses": [
          "No rate limits or idempotency documented for Scalekit's own API",
          "Any holder of the API credential can read a user's full OAuth tokens",
          "No approval step for destructive tools and no prompt-injection guidance",
          "The privacy policy says the United States and India, the trust centre says Frankfurt and Los Angeles",
          "No security.txt, no bug bounty and no deprecation notices"
        ],
        "agentNotes": [
          "Use the exact dashboard Connection Name, not the connector slug, in every call",
          "Call `POST /api/v1/tools:search` with top_k instead of listing every tool",
          "When a connected account isn't ACTIVE, send the user the magic link and stop until they finish",
          "On ScalekitToolRateLimitException, back off before retrying, and log the executionId",
          "Mint a fresh virtual MCP session token per user per run and let it expire"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 71.9
          }
        ],
        "editorialScores": {
          "ergonomics": 83,
          "maintenance": 80,
          "payments": 40,
          "reliability": 75,
          "schema": 87,
          "security": 66,
          "transparency": 45
        },
        "provenanceScore": 84
      },
      "connect": {
        "install": "npm install @scalekit-sdk/node",
        "http": "TOKEN=$(curl -s -X POST \"$SCALEKIT_ENVIRONMENT_URL/oauth/token\" \\\n  -d client_id=\"$SCALEKIT_CLIENT_ID\" -d client_secret=\"$SCALEKIT_CLIENT_SECRET\" \\\n  -d grant_type=client_credentials | jq -r .access_token)\ncurl -X POST \"$SCALEKIT_ENVIRONMENT_URL/api/v1/connected_accounts/magic_link\" \\\n  -H \"Authorization: Bearer $TOKEN\" -H \"Content-Type: application/json\" \\\n  -d '{\"connection_name\":\"gmail\",\"identifier\":\"user-123\"}'",
        "claudeCode": "claude mcp add --transport http --scope user scalekit https://mcp.scalekit.com",
        "config": {
          "mcpServers": {
            "scalekit": {
              "url": "https://mcp.scalekit.com"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/auth.oauth",
        "tool": "https://letme.dev/scalekit-agentkit"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "Growth plan",
          "unit": "month",
          "usd": 99,
          "note": "100,000 tool calls included"
        },
        {
          "item": "Tool call above 100,000 on Growth",
          "unit": "call",
          "usd": 0.0005,
          "note": "$0.50 per 1,000"
        },
        {
          "item": "EU data residency add-on",
          "unit": "month",
          "usd": 99,
          "note": "Growth plan"
        }
      ],
      "provenance": {
        "legalEntity": "ScaleKit, Inc.",
        "domain": "scalekit.com",
        "domainRegistered": "2003-04-24",
        "endpointOnVendorDomain": true,
        "terms": "https://www.scalekit.com/legal/terms-of-service",
        "privacy": "https://www.scalekit.com/legal/privacy-policy",
        "statusPage": "https://scalekit.statuspage.io/",
        "changelog": "https://www.scalekit.com/product-updates",
        "securityTxt": "none",
        "checked": "2026-10-02",
        "notes": [
          "The terms and privacy policy (both effective 1 January 2026) name ScaleKit, Inc., with addresses in Redmond, WA and Lewes, DE, under Delaware law.",
          "RDAP shows scalekit.com registered on 2003-04-24, long before the company, so the domain was bought later.",
          "/.well-known/security.txt returned 404 on 2026-09-30. The status page is scalekit.statuspage.io, linked from the site footer. status.scalekit.com serves the dashboard app.",
          "The trust page at https://www.scalekit.com/trust-center states SOC 2 Type 2 and ISO 27001 certification and gives security@scalekit.com for reports."
        ],
        "score": 84
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/scalekit-agentkit.json",
      "live": {
        "slug": "scalekit-agentkit",
        "probe": {
          "target": "https://{env}.scalekit.com",
          "method": "get",
          "lastAt": "2026-10-08T20:21:26.537017008Z",
          "lastOk": false,
          "lastStatus": 0,
          "lastMs": 0,
          "lastNote": "invalid character \"{\" in host name",
          "authRequired": false,
          "uptime24h": 0,
          "uptime30d": 0,
          "p50ms24h": 0,
          "p95ms24h": 0,
          "samples24h": 272,
          "samples30d": 1946,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 0
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 0
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 0
            },
            {
              "date": "2026-10-04",
              "probes": 272,
              "ok": 0
            },
            {
              "date": "2026-10-05",
              "probes": 272,
              "ok": 0
            },
            {
              "date": "2026-10-06",
              "probes": 272,
              "ok": 0
            },
            {
              "date": "2026-10-07",
              "probes": 272,
              "ok": 0
            },
            {
              "date": "2026-10-08",
              "probes": 230,
              "ok": 0
            }
          ]
        },
        "vendorStatus": {
          "page": "https://scalekit.statuspage.io",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T20:22:52.638996036Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "scalekit-inc/scalekit-sdk-node",
            "version": "v2.19.0",
            "released": "2026-10-05",
            "seenAt": "2026-10-08T16:28:15.751330214Z"
          },
          {
            "registry": "npm",
            "name": "@scalekit-inc/cli",
            "version": "0.3.24",
            "seenAt": "2026-10-08T16:28:14.555228054Z"
          },
          {
            "registry": "npm",
            "name": "@scalekit-sdk/node",
            "version": "2.19.0",
            "seenAt": "2026-10-08T16:28:13.554467274Z"
          },
          {
            "registry": "pypi",
            "name": "scalekit-sdk-python",
            "version": "2.20.0",
            "released": "2026-10-05",
            "seenAt": "2026-10-08T16:28:14.369980592Z"
          }
        ],
        "githubStars": 8,
        "npmWeekly": 10625,
        "pypiWeekly": 11019,
        "securityTxt": {
          "url": "https://scalekit.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:39:03.460113092Z"
        },
        "llmsTxt": {
          "url": "https://docs.scalekit.com/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-08T14:00:51.867614484Z"
        },
        "domain": {
          "domain": "scalekit.com",
          "registered": "2003-04-24",
          "source": "https://rdap.verisign.com/com/v1/domain/scalekit.com",
          "checkedAt": "2026-10-04T13:09:01.703612585Z"
        },
        "pages": [
          {
            "url": "https://www.scalekit.com/product-updates",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:19.237204061Z",
            "changedAt": "2026-10-07T18:13:49.191212913Z",
            "fingerprint": "25b12e9d06e1"
          },
          {
            "url": "https://www.scalekit.com/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:17.829504148Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "cdf7adf96094"
          },
          {
            "url": "https://www.scalekit.com/legal/privacy-policy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:13.17617751Z",
            "changedAt": "2026-10-08T18:30:13.17617751Z",
            "fingerprint": "1ac3ba0fe793"
          },
          {
            "url": "https://www.scalekit.com/legal/terms-of-service",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:30:15.301904392Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "c8437cad75b0"
          }
        ],
        "updatedAt": "2026-10-08T20:22:52.638996036Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Aembit, Inc.",
        "b": "Scalekit",
        "name": "Vendor"
      },
      {
        "a": "no (local only)",
        "b": "https://{env}.scalekit.com",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP, Streamable HTTP",
        "b": "HTTP, Streamable HTTP",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth or key",
        "name": "Auth"
      },
      {
        "a": "Freemium",
        "b": "Freemium",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Proprietary service under Aembit's terms of service. The Edge SDKs on GitHub are Apache-2.0",
        "b": "MIT (SDKs), platform closed, self-hosted on Enterprise",
        "name": "Licence"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "2026-10-07",
        "b": "2026-09-29",
        "name": "Last release"
      },
      {
        "a": "2026-07-14",
        "b": "2026-01-01",
        "name": "Terms last updated"
      },
      {
        "a": "2026-05-05",
        "b": "2026-01-01",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Customer content may train models"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Terms restrict automated access"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "27 npm/wk",
        "b": "6 stars, 11k npm/wk",
        "name": "Popularity"
      },
      {
        "a": "none",
        "b": "2.5/5 (2)",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Scalekit AgentKit scores 71.9 (BB) on agent readiness against Aembit's 70.5 (BB), and leads in 4 of 7 scored categories. Aembit leads on security \u0026 auth.",
        "question": "Which is better for AI agents, Aembit or Scalekit AgentKit?"
      },
      {
        "answer": "Both take an API key or an OAuth sign-in.",
        "question": "Do Aembit and Scalekit AgentKit need an API key?"
      },
      {
        "answer": "No hosted endpoint is listed for Aembit. Scalekit AgentKit has a hosted endpoint at https://{env}.scalekit.com.",
        "question": "Can an agent call Aembit and Scalekit AgentKit without installing anything?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Security \u0026 auth, 84 against 66"
        ],
        "also": null,
        "goodFor": "A security team that wants one policy and audit point between AI agents or workloads and the services they call, with credentials kept away from the agent.",
        "slug": "aembit",
        "watchFor": "No rate limit figures in the reviewed documentation. The Edge API lists 429 responses without limits or Retry-After guidance"
      },
      {
        "aheadOn": [
          "Reliability, 75 against 65",
          "Agent ergonomics, 83 against 72",
          "Transparency \u0026 trust, 65 against 60"
        ],
        "also": [
          "A hosted endpoint, with nothing to install",
          "Free to start without a card"
        ],
        "goodFor": "A team that wants per-user third-party tokens plus a hosted tool catalogue at the lowest per-call price, with a tidy virtual MCP surface for agents.",
        "slug": "scalekit-agentkit",
        "watchFor": "No rate limits or idempotency documented for Scalekit's own API"
      }
    ],
    "job": {
      "capability": "auth.oauth",
      "name": "Auth oauth"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/aembit-vs-arcade.json",
        "title": "Aembit vs Arcade.dev",
        "url": "https://www.anchorterminal.com/compare/aembit-vs-arcade"
      },
      {
        "json": "https://www.anchorterminal.com/compare/aembit-vs-auth0-ai-agents.json",
        "title": "Aembit vs Auth0 for AI Agents (Token Vault)",
        "url": "https://www.anchorterminal.com/compare/aembit-vs-auth0-ai-agents"
      },
      {
        "json": "https://www.anchorterminal.com/compare/aembit-vs-descope-agentic-identity.json",
        "title": "Aembit vs Descope Agentic Identity Hub",
        "url": "https://www.anchorterminal.com/compare/aembit-vs-descope-agentic-identity"
      },
      {
        "json": "https://www.anchorterminal.com/compare/aembit-vs-keycard.json",
        "title": "Aembit vs Keycard",
        "url": "https://www.anchorterminal.com/compare/aembit-vs-keycard"
      },
      {
        "json": "https://www.anchorterminal.com/compare/aembit-vs-microsoft-entra-agent-id.json",
        "title": "Aembit vs Microsoft Entra Agent ID",
        "url": "https://www.anchorterminal.com/compare/aembit-vs-microsoft-entra-agent-id"
      },
      {
        "json": "https://www.anchorterminal.com/compare/aembit-vs-nango.json",
        "title": "Aembit vs Nango",
        "url": "https://www.anchorterminal.com/compare/aembit-vs-nango"
      },
      {
        "json": "https://www.anchorterminal.com/compare/aembit-vs-stytch-connected-apps.json",
        "title": "Aembit vs Stytch Connected Apps",
        "url": "https://www.anchorterminal.com/compare/aembit-vs-stytch-connected-apps"
      },
      {
        "json": "https://www.anchorterminal.com/compare/aembit-vs-workos-pipes.json",
        "title": "Aembit vs WorkOS Pipes and Agents",
        "url": "https://www.anchorterminal.com/compare/aembit-vs-workos-pipes"
      },
      {
        "json": "https://www.anchorterminal.com/compare/arcade-vs-scalekit-agentkit.json",
        "title": "Arcade.dev vs Scalekit AgentKit",
        "url": "https://www.anchorterminal.com/compare/arcade-vs-scalekit-agentkit"
      },
      {
        "json": "https://www.anchorterminal.com/compare/auth0-ai-agents-vs-scalekit-agentkit.json",
        "title": "Auth0 for AI Agents (Token Vault) vs Scalekit AgentKit",
        "url": "https://www.anchorterminal.com/compare/auth0-ai-agents-vs-scalekit-agentkit"
      },
      {
        "json": "https://www.anchorterminal.com/compare/descope-agentic-identity-vs-scalekit-agentkit.json",
        "title": "Descope Agentic Identity Hub vs Scalekit AgentKit",
        "url": "https://www.anchorterminal.com/compare/descope-agentic-identity-vs-scalekit-agentkit"
      },
      {
        "json": "https://www.anchorterminal.com/compare/keycard-vs-scalekit-agentkit.json",
        "title": "Keycard vs Scalekit AgentKit",
        "url": "https://www.anchorterminal.com/compare/keycard-vs-scalekit-agentkit"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-entra-agent-id-vs-scalekit-agentkit.json",
        "title": "Microsoft Entra Agent ID vs Scalekit AgentKit",
        "url": "https://www.anchorterminal.com/compare/microsoft-entra-agent-id-vs-scalekit-agentkit"
      },
      {
        "json": "https://www.anchorterminal.com/compare/nango-vs-scalekit-agentkit.json",
        "title": "Nango vs Scalekit AgentKit",
        "url": "https://www.anchorterminal.com/compare/nango-vs-scalekit-agentkit"
      },
      {
        "json": "https://www.anchorterminal.com/compare/scalekit-agentkit-vs-stytch-connected-apps.json",
        "title": "Scalekit AgentKit vs Stytch Connected Apps",
        "url": "https://www.anchorterminal.com/compare/scalekit-agentkit-vs-stytch-connected-apps"
      },
      {
        "json": "https://www.anchorterminal.com/compare/scalekit-agentkit-vs-workos-pipes.json",
        "title": "Scalekit AgentKit vs WorkOS Pipes and Agents",
        "url": "https://www.anchorterminal.com/compare/scalekit-agentkit-vs-workos-pipes"
      }
    ],
    "scores": [
      {
        "aembit": 65,
        "by": 10,
        "edge": "scalekit-agentkit",
        "key": "reliability",
        "name": "Reliability",
        "scalekit-agentkit": 75,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "aembit": 85,
        "by": 2,
        "edge": "scalekit-agentkit",
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "scalekit-agentkit": 87,
        "weight": 13
      },
      {
        "aembit": 72,
        "by": 11,
        "edge": "scalekit-agentkit",
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "scalekit-agentkit": 83,
        "weight": 13
      },
      {
        "aembit": 84,
        "by": 18,
        "edge": "aembit",
        "key": "security",
        "name": "Security \u0026 auth",
        "scalekit-agentkit": 66,
        "weight": 14
      },
      {
        "aembit": 40,
        "by": 0,
        "edge": "",
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "scalekit-agentkit": 40,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "aembit": 80,
        "by": 0,
        "edge": "",
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "scalekit-agentkit": 80,
        "weight": 7
      },
      {
        "aembit": 60,
        "by": 5,
        "edge": "scalekit-agentkit",
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "scalekit-agentkit": 65,
        "weight": 7
      }
    ],
    "summary": "Scalekit AgentKit scores 71.9 (BB) on agent readiness against Aembit's 70.5 (BB), and leads in 4 of 7 scored categories. Aembit leads on security \u0026 auth. Both do auth oauth.",
    "verdicts": {
      "aembit": "Agents and workloads get short-lived credentials by attestation, and MCP clients sign in through OAuth 2.1 with policy checked on every request. Both APIs have public OpenAPI files. No rate limit figures or SLA are published, the managed gateway endpoint is requested through an Aembit representative, and no DPA or sub-processor list was found.",
      "scalekit-agentkit": "500+ connectors, including remote MCP servers over OAuth 2.1 with DCR. No rate limits or idempotency documented for Scalekit's own API."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/aembit-vs-scalekit-agentkit",
    "json": "https://www.anchorterminal.com/compare/aembit-vs-scalekit-agentkit.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/aembit-vs-scalekit-agentkit.md",
    "slim": "https://www.anchorterminal.com/compare/aembit-vs-scalekit-agentkit.min.md"
  },
  "markdown": "Scalekit AgentKit scores 71.9 (BB) on agent readiness against Aembit's 70.5 (BB), and leads in 4 of 7 scored categories. Aembit leads on security \u0026 auth. Both do auth oauth.\n\n- Aembit: grade BB, 70.5/100, rank #134 of 722. Markdown https://www.anchorterminal.com/tools/aembit.md · JSON https://www.anchorterminal.com/api/v1/tools/aembit.json\n- Scalekit AgentKit: grade BB, 71.9/100, rank #100 of 722. Markdown https://www.anchorterminal.com/tools/scalekit-agentkit.md · JSON https://www.anchorterminal.com/api/v1/tools/scalekit-agentkit.json\n\n## Which one, for what\n\n### Aembit (BB)\n\nGood for: A security team that wants one policy and audit point between AI agents or workloads and the services they call, with credentials kept away from the agent.\n\nAhead on:\n- Security \u0026 auth, 84 against 66\n\nWatch for: No rate limit figures in the reviewed documentation. The Edge API lists 429 responses without limits or Retry-After guidance\n\n### Scalekit AgentKit (BB)\n\nGood for: A team that wants per-user third-party tokens plus a hosted tool catalogue at the lowest per-call price, with a tidy virtual MCP surface for agents.\n\nAhead on:\n- Reliability, 75 against 65\n- Agent ergonomics, 83 against 72\n- Transparency \u0026 trust, 65 against 60\n\nAlso in its favour:\n- A hosted endpoint, with nothing to install\n- Free to start without a card\n\nWatch for: No rate limits or idempotency documented for Scalekit's own API\n\n\n## Score by category\n\n| Category | Weight | Aembit | Scalekit AgentKit | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 65 | 75 | Scalekit AgentKit +10 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 85 | 87 | Scalekit AgentKit +2 |\n| Agent ergonomics | 13% (16.2 this run) | 72 | 83 | Scalekit AgentKit +11 |\n| Security \u0026 auth | 14% (17.5 this run) | 84 | 66 | Aembit +18 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 40 | 40 | even |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 80 | 80 | even |\n| Transparency \u0026 trust | 7% (8.8 this run) | 60 | 65 | Scalekit AgentKit +5 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **70.5 · BB** | **71.9 · BB** | |\n\n## Facts side by side\n\n| Fact | Aembit | Scalekit AgentKit |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Aembit, Inc. | Scalekit |\n| Hosted endpoint | no (local only) | `https://{env}.scalekit.com` |\n| Transports | HTTP, Streamable HTTP | HTTP, Streamable HTTP |\n| Auth | OAuth or key | OAuth or key |\n| Pricing | Freemium | Freemium |\n| x402 | no | no |\n| Licence | Proprietary service under Aembit's terms of service. The Edge SDKs on GitHub are Apache-2.0 | MIT (SDKs), platform closed, self-hosted on Enterprise |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| Last release | 2026-10-07 | 2026-09-29 |\n| Terms last updated | 2026-07-14 | 2026-01-01 |\n| Privacy policy last updated | 2026-05-05 | 2026-01-01 |\n| Customer content may train models | not found in the text | not found in the text |\n| Terms restrict automated access | not found in the text | yes |\n| Terms restrict benchmarking | yes | yes |\n| Terms or service can change without notice | yes | not found in the text |\n| Arbitration or class-action waiver | not found in the text | yes |\n| Popularity | 27 npm/wk | 6 stars, 11k npm/wk |\n| Agent reviews | none | 2.5/5 (2) |\n\n## Verdicts\n\n**Aembit.** Agents and workloads get short-lived credentials by attestation, and MCP clients sign in through OAuth 2.1 with policy checked on every request. Both APIs have public OpenAPI files. No rate limit figures or SLA are published, the managed gateway endpoint is requested through an Aembit representative, and no DPA or sub-processor list was found.\n\n**Scalekit AgentKit.** 500+ connectors, including remote MCP servers over OAuth 2.1 with DCR. No rate limits or idempotency documented for Scalekit's own API.\n\n## Before you call either\n\n### Aembit\n\n1. Read the API Base URL and token from the tenant's Profile page. Tokens last 1 hour by default, so plan to refresh\n2. Send `X-Aembit-ResourceSet` on Cloud API, Edge API and MCP calls outside the default Resource Set, or the request runs against the default set\n3. Cache the Edge API access token from `/edge/v1/auth` until near expiry before calling `/edge/v1/credentials`. Both endpoints can answer 429\n4. Point MCP clients at `https://\u003cgateway-host\u003e/mcp`. The `/me` path is deprecated\n5. Expect tool names prefixed with the Server Workload name behind the MCP Identity Gateway, and keep `perPage` at 100 or less on the Aembit MCP Server\n\n### Scalekit AgentKit\n\n1. Use the exact dashboard Connection Name, not the connector slug, in every call\n2. Call `POST /api/v1/tools:search` with top_k instead of listing every tool\n3. When a connected account isn't ACTIVE, send the user the magic link and stop until they finish\n4. On ScalekitToolRateLimitException, back off before retrying, and log the executionId\n5. Mint a fresh virtual MCP session token per user per run and let it expire\n\n## Questions\n\n### Which is better for AI agents, Aembit or Scalekit AgentKit?\n\nScalekit AgentKit scores 71.9 (BB) on agent readiness against Aembit's 70.5 (BB), and leads in 4 of 7 scored categories. Aembit leads on security \u0026 auth.\n\n### Do Aembit and Scalekit AgentKit need an API key?\n\nBoth take an API key or an OAuth sign-in.\n\n### Can an agent call Aembit and Scalekit AgentKit without installing anything?\n\nNo hosted endpoint is listed for Aembit. Scalekit AgentKit has a hosted endpoint at https://{env}.scalekit.com.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/aembit-vs-scalekit-agentkit.json, and with the fewest tokens: https://www.anchorterminal.com/compare/aembit-vs-scalekit-agentkit.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"aembit\", \"b\": \"scalekit-agentkit\"}`. From a terminal: `anchor compare aembit scalekit-agentkit`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/aembit.json and https://www.anchorterminal.com/api/v1/tools/scalekit-agentkit.json\n\n## Other comparisons with Aembit or Scalekit AgentKit\n\n- [Aembit vs Arcade.dev](https://www.anchorterminal.com/compare/aembit-vs-arcade.md)\n- [Aembit vs Auth0 for AI Agents (Token Vault)](https://www.anchorterminal.com/compare/aembit-vs-auth0-ai-agents.md)\n- [Aembit vs Descope Agentic Identity Hub](https://www.anchorterminal.com/compare/aembit-vs-descope-agentic-identity.md)\n- [Aembit vs Keycard](https://www.anchorterminal.com/compare/aembit-vs-keycard.md)\n- [Aembit vs Microsoft Entra Agent ID](https://www.anchorterminal.com/compare/aembit-vs-microsoft-entra-agent-id.md)\n- [Aembit vs Nango](https://www.anchorterminal.com/compare/aembit-vs-nango.md)\n- [Aembit vs Stytch Connected Apps](https://www.anchorterminal.com/compare/aembit-vs-stytch-connected-apps.md)\n- [Aembit vs WorkOS Pipes and Agents](https://www.anchorterminal.com/compare/aembit-vs-workos-pipes.md)\n- [Arcade.dev vs Scalekit AgentKit](https://www.anchorterminal.com/compare/arcade-vs-scalekit-agentkit.md)\n- [Auth0 for AI Agents (Token Vault) vs Scalekit AgentKit](https://www.anchorterminal.com/compare/auth0-ai-agents-vs-scalekit-agentkit.md)\n- [Descope Agentic Identity Hub vs Scalekit AgentKit](https://www.anchorterminal.com/compare/descope-agentic-identity-vs-scalekit-agentkit.md)\n- [Keycard vs Scalekit AgentKit](https://www.anchorterminal.com/compare/keycard-vs-scalekit-agentkit.md)\n- [Microsoft Entra Agent ID vs Scalekit AgentKit](https://www.anchorterminal.com/compare/microsoft-entra-agent-id-vs-scalekit-agentkit.md)\n- [Nango vs Scalekit AgentKit](https://www.anchorterminal.com/compare/nango-vs-scalekit-agentkit.md)\n- [Scalekit AgentKit vs Stytch Connected Apps](https://www.anchorterminal.com/compare/scalekit-agentkit-vs-stytch-connected-apps.md)\n- [Scalekit AgentKit vs WorkOS Pipes and Agents](https://www.anchorterminal.com/compare/scalekit-agentkit-vs-workos-pipes.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Aembit vs Scalekit AgentKit",
        "url": ""
      }
    ],
    "description": "Scalekit AgentKit scores 71.9 (BB) on agent readiness against Aembit's 70.5 (BB), and leads in 4 of 7 scored categories. Aembit leads on security \u0026 auth. Both do auth oauth. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Aembit BB 70.5",
      "Scalekit AgentKit BB 71.9",
      "scores"
    ],
    "h1": "Aembit vs Scalekit AgentKit",
    "image": "https://www.anchorterminal.com/assets/og/compare-aembit-vs-scalekit-agentkit.png",
    "path": "/compare/aembit-vs-scalekit-agentkit",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Aembit vs Scalekit AgentKit for AI agents, BB 70.5 vs BB 71.9",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/aembit-vs-scalekit-agentkit"
  },
  "tokens": {
    "markdown": 2200,
    "slim": 630
  },
  "version": 1
}
