{
  "data": {
    "a": {
      "slug": "bamboohr",
      "name": "BambooHR",
      "vendor": "Bamboo HR LLC",
      "vendorUrl": "https://www.bamboohr.com",
      "kind": "http-api",
      "category": "hr",
      "summary": "HR system of record for small and medium-sized businesses, covering employee records, time off, hiring, onboarding and performance. Agents reach it through a REST API with a public OpenAPI spec, or a hosted MCP server in beta.",
      "url": "https://www.anchorterminal.com/tools/bamboohr",
      "markdownUrl": "https://www.anchorterminal.com/tools/bamboohr.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/bamboohr.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/bamboohr.json",
      "repo": "https://github.com/BambooHR/bhr-api-php",
      "license": "Proprietary service under BambooHR's terms of service and developer terms. The official PHP SDK on GitHub is MIT",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://{companyDomain}.bamboohr.com/api/v1",
      "packages": [
        {
          "registry": "packagist",
          "name": "bamboohr/api"
        }
      ],
      "auth": "mixed",
      "authNotes": "Two routes, both self-serve. A user creates an API key from the user menu in BambooHR and sends it as the username in HTTP Basic auth, and the key carries that user's permissions. Or a developer registers an application in the free developer portal and runs an OAuth 2.0 authorisation code flow against `https://{companyDomain}.bamboohr.com/authorize.php` and `/token.php`, with scopes in read and `.write` pairs, one-hour access tokens and a refresh token when `offline_access` is requested. The MCP server takes OAuth only, needs the `mcp` scope and an admin to enable the AI Connectors app, and has no dynamic client registration. The developer terms let BambooHR require review before production access or a marketplace listing.",
      "pricing": "paid",
      "pricingNotes": "Core $10, Pro $17 and Elite $25 per employee per month, or $250, $425 and $650 a month flat for companies of 25 employees or fewer, with volume discounts that aren't quantified. No separate fee for the API or the MCP server was found, and the pricing page doesn't say which plans include the API. A free trial needs no credit card (length not stated) and the developer portal account is free, so an agent's owner can start without a contract (https://www.bamboohr.com/pricing/, checked 2026-10-07).",
      "priceSummary": "$10 / seat-mo",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the API docs, the OpenAPI spec or the pricing page (checked 2026-10-07).",
        "endpoints": []
      },
      "toolCount": 56,
      "popularity": {
        "githubStars": 34,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-07"
      },
      "docsUrl": "https://documentation.bamboohr.com",
      "llmsTxt": "https://documentation.bamboohr.com/llms.txt",
      "openapi": "https://openapi.bamboohr.io/main/latest/docs/openapi/public-openapi.yaml",
      "capabilities": [
        "hr.employees",
        "hr.time-off",
        "hr.org",
        "hr.onboarding",
        "hr.documents",
        "recruiting.applications",
        "recruiting.jobs"
      ],
      "tags": [
        "hosted",
        "paid",
        "free-trial",
        "oauth",
        "api-key",
        "mcp",
        "openapi",
        "llms-txt",
        "webhooks",
        "php",
        "status-page",
        "soc2"
      ],
      "lastRelease": "2026-08-26",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 61.7,
        "grade": "C",
        "agentReady": false,
        "rank": 357,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 3,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 61,
          "maintenance": 62,
          "payments": 35,
          "reliability": 50,
          "schema": 88,
          "security": 64,
          "transparency": 74
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-07"
        },
        "negative": 0,
        "verdict": "The REST API publishes an OpenAPI 3.1 spec with 389 operations, llms.txt and OAuth scopes with separate write variants, and every call runs with the authorising user's permissions. No rate limit numbers are published, the MCP server is in beta, and its results can omit records without saying so.",
        "bestFor": "An agent working inside one company's BambooHR account on directory lookups, time off, reports and goals, with the user's own permissions as the limit.",
        "strengths": [
          "Public OpenAPI 3.1 spec with 389 operations, plus llms.txt and a Markdown copy of every docs page",
          "OAuth 2.0 with read and `.write` scopes per data area, such as `employee:job` and `time_off:requests.write`",
          "Every API and MCP call runs with the permissions of the user who authorised it, down to field level",
          "Dated API changelog with 14 entries between 23 July and 26 August 2026",
          "Free trial with no card, and plan prices per employee published without a login"
        ],
        "weaknesses": [
          "No rate limit numbers in the reviewed documentation. The terms reserve the right to throttle",
          "The MCP server is in beta, loads 56 tools and has no dynamic client registration",
          "Restricted records and fields can be dropped from MCP and API results with no marker",
          "PHP is the only maintained official SDK. The .NET and Java SDKs are marked unmaintained",
          "No security.txt, and the SOC 2 report sits in a trust centre behind registration and an NDA"
        ],
        "agentNotes": [
          "Treat a short or empty result as what this caller may see. `list_employees` drops employees when a filter or sort field is restricted",
          "Honour `Retry-After` on 429. Rate-limited calls returned 503 before 16 September 2026, so handle both",
          "Ask for read scopes only unless the task writes. Write access needs the matching `.write` scope",
          "Request `offline_access` to receive a refresh token. Access tokens last one hour",
          "Use `list-employees` with `fields`, `filter` and cursor paging in place of the unpaginated directory endpoint"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 61.7
          }
        ],
        "editorialScores": {
          "ergonomics": 61,
          "maintenance": 62,
          "payments": 35,
          "reliability": 50,
          "schema": 88,
          "security": 64,
          "transparency": 64
        },
        "provenanceScore": 83
      },
      "connect": {
        "install": "composer require bamboohr/api",
        "http": "curl -i -u \"{API Key}:x\" \"https://{companyDomain}.bamboohr.com/api/v1/employees/directory\""
      },
      "letme": {
        "capability": "https://letme.dev/hr.employees",
        "tool": "https://letme.dev/bamboohr"
      },
      "area": "business",
      "unitPrices": [
        {
          "item": "Core plan",
          "unit": "seat-month",
          "usd": 10,
          "note": "per employee; $250 a month flat for 25 employees or fewer"
        },
        {
          "item": "Pro plan",
          "unit": "seat-month",
          "usd": 17,
          "note": "per employee; $425 a month flat for 25 employees or fewer"
        },
        {
          "item": "Elite plan",
          "unit": "seat-month",
          "usd": 25,
          "note": "per employee; $650 a month flat for 25 employees or fewer"
        }
      ],
      "provenance": {
        "legalEntity": "Bamboo HR LLC",
        "domain": "bamboohr.com",
        "domainRegistered": "2009-07-23",
        "endpointOnVendorDomain": true,
        "terms": "https://www.bamboohr.com/legal/developer-terms-of-service",
        "privacy": "https://www.bamboohr.com/legal/privacy-policy",
        "statusPage": "https://status.bamboohr.com",
        "changelog": "https://documentation.bamboohr.com/docs/past-changes-to-the-api",
        "securityTxt": "none",
        "checked": "2026-10-07",
        "notes": [
          "The developer terms (last updated February 2026) and the terms of service (last updated 18 September 2026) name Bamboo HR LLC of Draper, Utah, under Utah law.",
          "Each customer's API and MCP server answer on its own bamboohr.com subdomain. The OpenAPI spec is served from openapi.bamboohr.io.",
          "www.bamboohr.com/.well-known/security.txt and /security.txt return 404.",
          "The privacy notice is dated September 2025 and the data processing agreement was last updated 3 June 2022.",
          "RDAP for bamboohr.com gives a registration date of 2009-07-23 and Amazon Registrar, Inc. as registrar."
        ],
        "score": 83
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/bamboohr.json",
      "live": {
        "slug": "bamboohr",
        "probe": {
          "target": "https://{companyDomain}.bamboohr.com/api/v1",
          "method": "get",
          "lastAt": "2026-10-08T19:52:45.406653271Z",
          "lastOk": false,
          "lastStatus": 0,
          "lastMs": 0,
          "lastNote": "invalid character \"{\" in host name",
          "authRequired": false,
          "uptime24h": 0,
          "uptime30d": 0,
          "p50ms24h": 0,
          "p95ms24h": 0,
          "samples24h": 50,
          "samples30d": 50,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 50,
              "ok": 0
            }
          ],
          "outages": [
            {
              "start": "2026-10-08T15:28:56.936598984Z",
              "end": "0001-01-01T00:00:00Z",
              "note": "invalid character \"{\" in host name"
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.bamboohr.com",
          "indicator": "unknown",
          "summary": "no machine-readable status found",
          "checkedAt": "2026-10-08T19:38:15.905176412Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "BambooHR/bhr-api-php",
            "version": "v2.0.1",
            "released": "2025-12-09",
            "seenAt": "2026-10-08T16:01:43.024945444Z"
          }
        ],
        "githubStars": 34,
        "securityTxt": {
          "url": "https://bamboohr.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:38:37.569543491Z"
        },
        "pages": [
          {
            "url": "https://documentation.bamboohr.com/docs/past-changes-to-the-api",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:19:54.999704896Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "f7d3d57fae58"
          },
          {
            "url": "https://www.bamboohr.com/pricing/",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-08T18:26:28.829581312Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "9575868f63fe"
          },
          {
            "url": "https://www.bamboohr.com/legal/privacy-policy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:26:26.88829507Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "f0516cf3582f"
          },
          {
            "url": "https://www.bamboohr.com/legal/developer-terms-of-service",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:26:24.778039851Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "ac9c7f26d76a"
          }
        ],
        "updatedAt": "2026-10-08T19:52:45.406653271Z"
      }
    },
    "answer": "BambooHR scores 61.7 (C) on agent readiness against HiBob's 57 (C), and leads in 5 of 7 scored categories. HiBob leads on reliability.",
    "b": {
      "slug": "hibob",
      "name": "HiBob",
      "vendor": "Hi Bob Ltd.",
      "vendorUrl": "https://www.hibob.com",
      "kind": "http-api",
      "category": "hr",
      "summary": "Bob is HiBob's HR platform for employee records, time off, attendance, tasks, documents and hiring. Agents reach it through a REST API authenticated with service users, 30 webhook events and a hosted MCP server that uses OAuth.",
      "url": "https://www.anchorterminal.com/tools/hibob",
      "markdownUrl": "https://www.anchorterminal.com/tools/hibob.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/hibob.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/hibob.json",
      "license": "Proprietary service under HiBob's customer subscription terms and API Terms of Use",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://api.hibob.com/v1",
      "packages": [],
      "auth": "mixed",
      "authNotes": "Access is granted by a customer's Bob admin, with no self-serve route for outsiders. Customer-built integrations use a service user, an ID and token sent as HTTP Basic, which starts with no permissions and gains them through a permission group (product areas, fields by View, View history and Edit, and which employees). OAuth 2.0 authorisation code apps are open only to approved Marketplace and technology partners through the Developer Portal, with 28 scopes, an audience the customer chooses at install, 5-minute access tokens and 30-day refresh tokens. The hosted MCP server uses OAuth as the signed-in employee and follows that person's Bob permissions.",
      "pricing": "paid",
      "pricingNotes": "No public prices. HiBob quotes per employee by company size and chosen modules, and the pricing page asks for a demo or a custom quote. No free tier or trial was found. The API sandbox at api.sandbox.hibob.com is available only to accounts that have bought the Sandbox module, so an agent cannot start without a customer contract (https://www.hibob.com/pricing-plans, checked 2026-10-07).",
      "priceSummary": "Paid",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the developer docs, the API terms or the pricing page (checked 2026-10-07).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-07"
      },
      "docsUrl": "https://apidocs.hibob.com",
      "llmsTxt": "https://apidocs.hibob.com/llms.txt",
      "capabilities": [
        "hr.employees",
        "hr.time-off",
        "hr.org",
        "hr.onboarding",
        "hr.documents"
      ],
      "tags": [
        "hosted",
        "enterprise",
        "sales-led",
        "api-key",
        "oauth",
        "mcp",
        "llms-txt",
        "openapi",
        "webhooks",
        "sandbox",
        "status-page",
        "bug-bounty",
        "soc2"
      ],
      "lastRelease": "2026-10-07",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 57,
        "grade": "C",
        "agentReady": false,
        "rank": 484,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 5,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 47,
          "maintenance": 59,
          "payments": 0,
          "reliability": 67,
          "schema": 78,
          "security": 68,
          "transparency": 71
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-07"
        },
        "negative": 0,
        "verdict": "Service users start with no permissions and gain view or edit rights per field, and the docs are served as Markdown with an OpenAPI definition on each endpoint page. There is no public price, trial or free sandbox, so an agent needs a paying customer's admin to issue credentials. No idempotency keys or official SDKs were found.",
        "bestFor": "An agent working inside a company that already runs Bob and needs field-level control over employee data, time off requests, documents and tasks.",
        "strengths": [
          "Service users have no permissions by default, and view, edit and history rights are granted per category or field through permission groups",
          "llms.txt index and a Markdown twin of every docs page, with an OpenAPI 3.1.1 definition embedded in each endpoint page",
          "Per-endpoint rate limits are published, and 429 responses carry Retry-After and X-RateLimit headers",
          "Webhooks v2 retry with exponential backoff for up to three days, with signed requests",
          "SOC 2 Type II, ISO 27001:2022, ISO 27018:2019 and a Bugcrowd bug bounty listed on the security page"
        ],
        "weaknesses": [
          "No public price, free tier or trial. The sandbox is a purchased module",
          "People search has no pagination and returns every matching employee in one response",
          "Fields without permission or with invalid IDs are dropped from a 200 response with no warning",
          "No idempotency keys and no official SDK found in the reviewed documentation",
          "MCP setup and tool documentation sit in the help centre, which returned 403 to our reader"
        ],
        "agentNotes": [
          "Send `Authorization: Basic base64(SERVICE-USER-ID:TOKEN)` to https://api.hibob.com/v1. Ask the Bob admin to put the service user in a permission group first, because it starts with none",
          "Request only the fields needed in `fields` on POST /people/search (maximum 400). The call returns all matching employees at once, so batch by `root.id` in large companies",
          "Compare returned fields with requested ones. Missing permission or a wrong field ID yields 200 with the field omitted",
          "Stop on 401 or 403. More than 50 in 10 seconds blocks the IP for 5 minutes",
          "Back off on 429 using Retry-After. Writes such as update, create and terminate employee allow 10 calls a minute, and no idempotency key exists, so check state before retrying a write"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 57
          }
        ],
        "editorialScores": {
          "ergonomics": 47,
          "maintenance": 59,
          "payments": 0,
          "reliability": 67,
          "schema": 78,
          "security": 68,
          "transparency": 58
        },
        "provenanceScore": 83
      },
      "connect": {
        "http": "curl -X POST \"https://api.hibob.com/v1/people/search\" \\\n  -u \"$BOB_SERVICE_USER_ID:$BOB_SERVICE_USER_TOKEN\" -H \"Content-Type: application/json\" \\\n  -d '{\"fields\":[\"root.id\",\"root.email\",\"work.department\"]}'"
      },
      "letme": {
        "capability": "https://letme.dev/hr.employees",
        "tool": "https://letme.dev/hibob"
      },
      "area": "business",
      "provenance": {
        "legalEntity": "Hi Bob Ltd.",
        "domain": "hibob.com",
        "domainRegistered": "2010-02-25",
        "endpointOnVendorDomain": true,
        "terms": "https://apidocs.hibob.com/docs/api-terms-of-use",
        "privacy": "https://www.hibob.com/privacy/privacy-policy",
        "statusPage": "https://status.hibob.io",
        "changelog": "https://apidocs.hibob.com/changelog",
        "securityTxt": "unknown",
        "checked": "2026-10-07",
        "notes": [
          "The API Terms of Use name Hi Bob Ltd. and its subsidiaries. The privacy policy (updated 16 February 2026) names Hi Bob (UK) Limited, 5 New Street Square, London EC4A 3TW, and says it does not cover people who use Bob at a customer's direction.",
          "The customer subscription terms (revised January 2026) list contracting entities by region, among them Hi Bob, Inc., Hi Bob Ltd., Hi Bob (UK) Limited and Hi Bob (NL) B.V.",
          "The API answers at https://api.hibob.com/v1 and the sandbox at https://api.sandbox.hibob.com/v1. OAuth tokens are exchanged at https://auth.app.hibob.com/oauth2/v1/apps/token. The status page is on a separate domain, status.hibob.io.",
          "www.hibob.com/.well-known/security.txt returned a Cloudflare block page (403) to both of our fetchers, so its presence is unknown.",
          "RDAP for hibob.com gives a registration date of 2010-02-25.",
          "The data processing addendum page (updated September 2026) links to a pre-signed DocuSign document and does not show the terms."
        ],
        "score": 83
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/hibob.json",
      "live": {
        "slug": "hibob",
        "probe": {
          "target": "https://api.hibob.com/v1",
          "method": "get",
          "lastAt": "2026-10-08T19:52:52.447382938Z",
          "lastOk": true,
          "lastStatus": 200,
          "lastMs": 124,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 105,
          "p95ms24h": 187,
          "samples24h": 50,
          "samples30d": 50,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 50,
              "ok": 50
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.hibob.io",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T19:50:44.957986398Z"
        },
        "securityTxt": {
          "url": "https://hibob.com/.well-known/security.txt",
          "state": "unknown",
          "checkedAt": "2026-10-08T15:39:05.839381908Z"
        },
        "pages": [
          {
            "url": "https://apidocs.hibob.com/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:14.469649765Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "981f915fbe41"
          },
          {
            "url": "https://www.hibob.com/pricing-plans",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-08T18:28:16.10467361Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "ac07b0d6702c"
          },
          {
            "url": "https://www.hibob.com/privacy/privacy-policy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:28:18.345425875Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "1bf3ce3c5701"
          },
          {
            "url": "https://apidocs.hibob.com/docs/api-terms-of-use",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:16.937981436Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "d6b463c8c703"
          }
        ],
        "updatedAt": "2026-10-08T19:52:52.447382938Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Bamboo HR LLC",
        "b": "Hi Bob Ltd.",
        "name": "Vendor"
      },
      {
        "a": "https://{companyDomain}.bamboohr.com/api/v1",
        "b": "https://api.hibob.com/v1",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP",
        "b": "HTTP",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth or key",
        "name": "Auth"
      },
      {
        "a": "Paid",
        "b": "Paid",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Proprietary service under BambooHR's terms of service and developer terms. The official PHP SDK on GitHub is MIT",
        "b": "Proprietary service under HiBob's customer subscription terms and API Terms of Use",
        "name": "Licence"
      },
      {
        "a": "56",
        "b": "none",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "2026-08-26",
        "b": "2026-10-07",
        "name": "Last release"
      },
      {
        "a": "2026-02-01",
        "b": "no date given",
        "name": "Terms last updated"
      },
      {
        "a": "2025-09-01",
        "b": "no date given",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Customer content may train models"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "Terms restrict automated access"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "34 stars",
        "b": "none",
        "name": "Popularity"
      }
    ],
    "faq": [
      {
        "answer": "BambooHR scores 61.7 (C) on agent readiness against HiBob's 57 (C), and leads in 5 of 7 scored categories. HiBob leads on reliability.",
        "question": "Which is better for AI agents, BambooHR or HiBob?"
      },
      {
        "answer": "Both take an API key or an OAuth sign-in.",
        "question": "Do BambooHR and HiBob need an API key?"
      },
      {
        "answer": "Yes. BambooHR has a hosted endpoint at https://{companyDomain}.bamboohr.com/api/v1 and HiBob at https://api.hibob.com/v1.",
        "question": "Can an agent call BambooHR and HiBob without installing anything?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Schema \u0026 documentation, 88 against 78",
          "Agent ergonomics, 61 against 47",
          "Payments \u0026 pricing, 35 against 0"
        ],
        "also": null,
        "goodFor": "An agent working inside one company's BambooHR account on directory lookups, time off, reports and goals, with the user's own permissions as the limit.",
        "slug": "bamboohr",
        "watchFor": "No rate limit numbers in the reviewed documentation. The terms reserve the right to throttle"
      },
      {
        "aheadOn": [
          "Reliability, 67 against 50"
        ],
        "also": null,
        "goodFor": "An agent working inside a company that already runs Bob and needs field-level control over employee data, time off requests, documents and tasks.",
        "slug": "hibob",
        "watchFor": "No public price, free tier or trial. The sandbox is a purchased module"
      }
    ],
    "job": {
      "capability": "hr.employees",
      "name": "Hr employees"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/bamboohr-vs-deel.json",
        "title": "BambooHR vs Deel",
        "url": "https://www.anchorterminal.com/compare/bamboohr-vs-deel"
      },
      {
        "json": "https://www.anchorterminal.com/compare/bamboohr-vs-factorial.json",
        "title": "BambooHR vs Factorial",
        "url": "https://www.anchorterminal.com/compare/bamboohr-vs-factorial"
      },
      {
        "json": "https://www.anchorterminal.com/compare/bamboohr-vs-humaans.json",
        "title": "BambooHR vs Humaans",
        "url": "https://www.anchorterminal.com/compare/bamboohr-vs-humaans"
      },
      {
        "json": "https://www.anchorterminal.com/compare/bamboohr-vs-rippling.json",
        "title": "BambooHR vs Rippling",
        "url": "https://www.anchorterminal.com/compare/bamboohr-vs-rippling"
      },
      {
        "json": "https://www.anchorterminal.com/compare/bamboohr-vs-zoho-people.json",
        "title": "BambooHR vs Zoho People",
        "url": "https://www.anchorterminal.com/compare/bamboohr-vs-zoho-people"
      },
      {
        "json": "https://www.anchorterminal.com/compare/deel-vs-hibob.json",
        "title": "Deel vs HiBob",
        "url": "https://www.anchorterminal.com/compare/deel-vs-hibob"
      },
      {
        "json": "https://www.anchorterminal.com/compare/factorial-vs-hibob.json",
        "title": "Factorial vs HiBob",
        "url": "https://www.anchorterminal.com/compare/factorial-vs-hibob"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hibob-vs-humaans.json",
        "title": "HiBob vs Humaans",
        "url": "https://www.anchorterminal.com/compare/hibob-vs-humaans"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hibob-vs-rippling.json",
        "title": "HiBob vs Rippling",
        "url": "https://www.anchorterminal.com/compare/hibob-vs-rippling"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hibob-vs-zoho-people.json",
        "title": "HiBob vs Zoho People",
        "url": "https://www.anchorterminal.com/compare/hibob-vs-zoho-people"
      }
    ],
    "scores": [
      {
        "bamboohr": 50,
        "by": 17,
        "edge": "hibob",
        "hibob": 67,
        "key": "reliability",
        "name": "Reliability",
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "bamboohr": 88,
        "by": 10,
        "edge": "bamboohr",
        "hibob": 78,
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "weight": 13
      },
      {
        "bamboohr": 61,
        "by": 14,
        "edge": "bamboohr",
        "hibob": 47,
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "weight": 13
      },
      {
        "bamboohr": 64,
        "by": 4,
        "edge": "hibob",
        "hibob": 68,
        "key": "security",
        "name": "Security \u0026 auth",
        "weight": 14
      },
      {
        "bamboohr": 35,
        "by": 35,
        "edge": "bamboohr",
        "hibob": 0,
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "bamboohr": 62,
        "by": 3,
        "edge": "bamboohr",
        "hibob": 59,
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "weight": 7
      },
      {
        "bamboohr": 74,
        "by": 3,
        "edge": "bamboohr",
        "hibob": 71,
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "weight": 7
      }
    ],
    "summary": "BambooHR scores 61.7 (C) on agent readiness against HiBob's 57 (C), and leads in 5 of 7 scored categories. HiBob leads on reliability. Both do hr employees.",
    "verdicts": {
      "bamboohr": "The REST API publishes an OpenAPI 3.1 spec with 389 operations, llms.txt and OAuth scopes with separate write variants, and every call runs with the authorising user's permissions. No rate limit numbers are published, the MCP server is in beta, and its results can omit records without saying so.",
      "hibob": "Service users start with no permissions and gain view or edit rights per field, and the docs are served as Markdown with an OpenAPI definition on each endpoint page. There is no public price, trial or free sandbox, so an agent needs a paying customer's admin to issue credentials. No idempotency keys or official SDKs were found."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/bamboohr-vs-hibob",
    "json": "https://www.anchorterminal.com/compare/bamboohr-vs-hibob.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/bamboohr-vs-hibob.md",
    "slim": "https://www.anchorterminal.com/compare/bamboohr-vs-hibob.min.md"
  },
  "markdown": "BambooHR scores 61.7 (C) on agent readiness against HiBob's 57 (C), and leads in 5 of 7 scored categories. HiBob leads on reliability. Both do hr employees.\n\n- BambooHR: grade C, 61.7/100, rank #357 of 722. Markdown https://www.anchorterminal.com/tools/bamboohr.md · JSON https://www.anchorterminal.com/api/v1/tools/bamboohr.json\n- HiBob: grade C, 57/100, rank #484 of 722. Markdown https://www.anchorterminal.com/tools/hibob.md · JSON https://www.anchorterminal.com/api/v1/tools/hibob.json\n\n## Which one, for what\n\n### BambooHR (C)\n\nGood for: An agent working inside one company's BambooHR account on directory lookups, time off, reports and goals, with the user's own permissions as the limit.\n\nAhead on:\n- Schema \u0026 documentation, 88 against 78\n- Agent ergonomics, 61 against 47\n- Payments \u0026 pricing, 35 against 0\n\nWatch for: No rate limit numbers in the reviewed documentation. The terms reserve the right to throttle\n\n### HiBob (C)\n\nGood for: An agent working inside a company that already runs Bob and needs field-level control over employee data, time off requests, documents and tasks.\n\nAhead on:\n- Reliability, 67 against 50\n\nWatch for: No public price, free tier or trial. The sandbox is a purchased module\n\n\n## Score by category\n\n| Category | Weight | BambooHR | HiBob | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 50 | 67 | HiBob +17 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 88 | 78 | BambooHR +10 |\n| Agent ergonomics | 13% (16.2 this run) | 61 | 47 | BambooHR +14 |\n| Security \u0026 auth | 14% (17.5 this run) | 64 | 68 | HiBob +4 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 35 | 0 | BambooHR +35 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 62 | 59 | BambooHR +3 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 74 | 71 | BambooHR +3 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **61.7 · C** | **57 · C** | |\n\n## Facts side by side\n\n| Fact | BambooHR | HiBob |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Bamboo HR LLC | Hi Bob Ltd. |\n| Hosted endpoint | `https://{companyDomain}.bamboohr.com/api/v1` | `https://api.hibob.com/v1` |\n| Transports | HTTP | HTTP |\n| Auth | OAuth or key | OAuth or key |\n| Pricing | Paid | Paid |\n| x402 | no | no |\n| Licence | Proprietary service under BambooHR's terms of service and developer terms. The official PHP SDK on GitHub is MIT | Proprietary service under HiBob's customer subscription terms and API Terms of Use |\n| Tools exposed | 56 | none |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| Last release | 2026-08-26 | 2026-10-07 |\n| Terms last updated | 2026-02-01 | no date given |\n| Privacy policy last updated | 2025-09-01 | no date given |\n| Customer content may train models | not found in the text | not found in the text |\n| Terms restrict automated access | yes | yes |\n| Terms restrict benchmarking | yes | not found in the text |\n| Terms or service can change without notice | yes | yes |\n| Arbitration or class-action waiver | not found in the text | not found in the text |\n| Popularity | 34 stars | none |\n\n## Verdicts\n\n**BambooHR.** The REST API publishes an OpenAPI 3.1 spec with 389 operations, llms.txt and OAuth scopes with separate write variants, and every call runs with the authorising user's permissions. No rate limit numbers are published, the MCP server is in beta, and its results can omit records without saying so.\n\n**HiBob.** Service users start with no permissions and gain view or edit rights per field, and the docs are served as Markdown with an OpenAPI definition on each endpoint page. There is no public price, trial or free sandbox, so an agent needs a paying customer's admin to issue credentials. No idempotency keys or official SDKs were found.\n\n## Before you call either\n\n### BambooHR\n\n1. Treat a short or empty result as what this caller may see. `list_employees` drops employees when a filter or sort field is restricted\n2. Honour `Retry-After` on 429. Rate-limited calls returned 503 before 16 September 2026, so handle both\n3. Ask for read scopes only unless the task writes. Write access needs the matching `.write` scope\n4. Request `offline_access` to receive a refresh token. Access tokens last one hour\n5. Use `list-employees` with `fields`, `filter` and cursor paging in place of the unpaginated directory endpoint\n\n### HiBob\n\n1. Send `Authorization: Basic base64(SERVICE-USER-ID:TOKEN)` to https://api.hibob.com/v1. Ask the Bob admin to put the service user in a permission group first, because it starts with none\n2. Request only the fields needed in `fields` on POST /people/search (maximum 400). The call returns all matching employees at once, so batch by `root.id` in large companies\n3. Compare returned fields with requested ones. Missing permission or a wrong field ID yields 200 with the field omitted\n4. Stop on 401 or 403. More than 50 in 10 seconds blocks the IP for 5 minutes\n5. Back off on 429 using Retry-After. Writes such as update, create and terminate employee allow 10 calls a minute, and no idempotency key exists, so check state before retrying a write\n\n## Questions\n\n### Which is better for AI agents, BambooHR or HiBob?\n\nBambooHR scores 61.7 (C) on agent readiness against HiBob's 57 (C), and leads in 5 of 7 scored categories. HiBob leads on reliability.\n\n### Do BambooHR and HiBob need an API key?\n\nBoth take an API key or an OAuth sign-in.\n\n### Can an agent call BambooHR and HiBob without installing anything?\n\nYes. BambooHR has a hosted endpoint at https://{companyDomain}.bamboohr.com/api/v1 and HiBob at https://api.hibob.com/v1.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/bamboohr-vs-hibob.json, and with the fewest tokens: https://www.anchorterminal.com/compare/bamboohr-vs-hibob.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"bamboohr\", \"b\": \"hibob\"}`. From a terminal: `anchor compare bamboohr hibob`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/bamboohr.json and https://www.anchorterminal.com/api/v1/tools/hibob.json\n\n## Other comparisons with BambooHR or HiBob\n\n- [BambooHR vs Deel](https://www.anchorterminal.com/compare/bamboohr-vs-deel.md)\n- [BambooHR vs Factorial](https://www.anchorterminal.com/compare/bamboohr-vs-factorial.md)\n- [BambooHR vs Humaans](https://www.anchorterminal.com/compare/bamboohr-vs-humaans.md)\n- [BambooHR vs Rippling](https://www.anchorterminal.com/compare/bamboohr-vs-rippling.md)\n- [BambooHR vs Zoho People](https://www.anchorterminal.com/compare/bamboohr-vs-zoho-people.md)\n- [Deel vs HiBob](https://www.anchorterminal.com/compare/deel-vs-hibob.md)\n- [Factorial vs HiBob](https://www.anchorterminal.com/compare/factorial-vs-hibob.md)\n- [HiBob vs Humaans](https://www.anchorterminal.com/compare/hibob-vs-humaans.md)\n- [HiBob vs Rippling](https://www.anchorterminal.com/compare/hibob-vs-rippling.md)\n- [HiBob vs Zoho People](https://www.anchorterminal.com/compare/hibob-vs-zoho-people.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "BambooHR vs HiBob",
        "url": ""
      }
    ],
    "description": "BambooHR scores 61.7 (C) on agent readiness against HiBob's 57 (C), and leads in 5 of 7 scored categories. HiBob leads on reliability. Both do hr employees. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "BambooHR C 61.7",
      "HiBob C 57",
      "scores"
    ],
    "h1": "BambooHR vs HiBob",
    "image": "https://www.anchorterminal.com/assets/og/compare-bamboohr-vs-hibob.png",
    "path": "/compare/bamboohr-vs-hibob",
    "published": "2026-10-01",
    "section": "tools",
    "title": "BambooHR vs HiBob for AI agents, C 61.7 vs C 57 | Anchor Terminal",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/bamboohr-vs-hibob"
  },
  "tokens": {
    "markdown": 1950,
    "slim": 580
  },
  "version": 1
}
