{
  "data": {
    "a": {
      "slug": "bamboohr",
      "name": "BambooHR",
      "vendor": "Bamboo HR LLC",
      "vendorUrl": "https://www.bamboohr.com",
      "kind": "http-api",
      "category": "hr",
      "summary": "HR system of record for small and medium-sized businesses, covering employee records, time off, hiring, onboarding and performance. Agents reach it through a REST API with a public OpenAPI spec, or a hosted MCP server in beta.",
      "url": "https://www.anchorterminal.com/tools/bamboohr",
      "markdownUrl": "https://www.anchorterminal.com/tools/bamboohr.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/bamboohr.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/bamboohr.json",
      "repo": "https://github.com/BambooHR/bhr-api-php",
      "license": "Proprietary service under BambooHR's terms of service and developer terms. The official PHP SDK on GitHub is MIT",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://{companyDomain}.bamboohr.com/api/v1",
      "packages": [
        {
          "registry": "packagist",
          "name": "bamboohr/api"
        }
      ],
      "auth": "mixed",
      "authNotes": "Two routes, both self-serve. A user creates an API key from the user menu in BambooHR and sends it as the username in HTTP Basic auth, and the key carries that user's permissions. Or a developer registers an application in the free developer portal and runs an OAuth 2.0 authorisation code flow against `https://{companyDomain}.bamboohr.com/authorize.php` and `/token.php`, with scopes in read and `.write` pairs, one-hour access tokens and a refresh token when `offline_access` is requested. The MCP server takes OAuth only, needs the `mcp` scope and an admin to enable the AI Connectors app, and has no dynamic client registration. The developer terms let BambooHR require review before production access or a marketplace listing.",
      "pricing": "paid",
      "pricingNotes": "Core $10, Pro $17 and Elite $25 per employee per month, or $250, $425 and $650 a month flat for companies of 25 employees or fewer, with volume discounts that aren't quantified. No separate fee for the API or the MCP server was found, and the pricing page doesn't say which plans include the API. A free trial needs no credit card (length not stated) and the developer portal account is free, so an agent's owner can start without a contract (https://www.bamboohr.com/pricing/, checked 2026-10-07).",
      "priceSummary": "$10 / seat-mo",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the API docs, the OpenAPI spec or the pricing page (checked 2026-10-07).",
        "endpoints": []
      },
      "toolCount": 56,
      "popularity": {
        "githubStars": 34,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-07"
      },
      "docsUrl": "https://documentation.bamboohr.com",
      "llmsTxt": "https://documentation.bamboohr.com/llms.txt",
      "openapi": "https://openapi.bamboohr.io/main/latest/docs/openapi/public-openapi.yaml",
      "capabilities": [
        "hr.employees",
        "hr.time-off",
        "hr.org",
        "hr.onboarding",
        "hr.documents",
        "recruiting.applications",
        "recruiting.jobs"
      ],
      "tags": [
        "hosted",
        "paid",
        "free-trial",
        "oauth",
        "api-key",
        "mcp",
        "openapi",
        "llms-txt",
        "webhooks",
        "php",
        "status-page",
        "soc2"
      ],
      "lastRelease": "2026-08-26",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 61.7,
        "grade": "C",
        "agentReady": false,
        "rank": 319,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 2,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 61,
          "maintenance": 62,
          "payments": 35,
          "reliability": 50,
          "schema": 88,
          "security": 64,
          "transparency": 74
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-07"
        },
        "negative": 0,
        "verdict": "The REST API publishes an OpenAPI 3.1 spec with 389 operations, llms.txt and OAuth scopes with separate write variants, and every call runs with the authorising user's permissions. No rate limit numbers are published, the MCP server is in beta, and its results can omit records without saying so.",
        "bestFor": "An agent working inside one company's BambooHR account on directory lookups, time off, reports and goals, with the user's own permissions as the limit.",
        "strengths": [
          "Public OpenAPI 3.1 spec with 389 operations, plus llms.txt and a Markdown copy of every docs page",
          "OAuth 2.0 with read and `.write` scopes per data area, such as `employee:job` and `time_off:requests.write`",
          "Every API and MCP call runs with the permissions of the user who authorised it, down to field level",
          "Dated API changelog with 14 entries between 23 July and 26 August 2026",
          "Free trial with no card, and plan prices per employee published without a login"
        ],
        "weaknesses": [
          "No rate limit numbers in the reviewed documentation. The terms reserve the right to throttle",
          "The MCP server is in beta, loads 56 tools and has no dynamic client registration",
          "Restricted records and fields can be dropped from MCP and API results with no marker",
          "PHP is the only maintained official SDK. The .NET and Java SDKs are marked unmaintained",
          "No security.txt, and the SOC 2 report sits in a trust centre behind registration and an NDA"
        ],
        "agentNotes": [
          "Treat a short or empty result as what this caller may see. `list_employees` drops employees when a filter or sort field is restricted",
          "Honour `Retry-After` on 429. Rate-limited calls returned 503 before 16 September 2026, so handle both",
          "Ask for read scopes only unless the task writes. Write access needs the matching `.write` scope",
          "Request `offline_access` to receive a refresh token. Access tokens last one hour",
          "Use `list-employees` with `fields`, `filter` and cursor paging in place of the unpaginated directory endpoint"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 61.7
          }
        ],
        "editorialScores": {
          "ergonomics": 61,
          "maintenance": 62,
          "payments": 35,
          "reliability": 50,
          "schema": 88,
          "security": 64,
          "transparency": 64
        },
        "provenanceScore": 83
      },
      "connect": {
        "install": "composer require bamboohr/api",
        "http": "curl -i -u \"{API Key}:x\" \"https://{companyDomain}.bamboohr.com/api/v1/employees/directory\""
      },
      "letme": {
        "capability": "https://letme.dev/hr.employees",
        "tool": "https://letme.dev/bamboohr"
      },
      "area": "business",
      "unitPrices": [
        {
          "item": "Core plan",
          "unit": "seat-month",
          "usd": 10,
          "note": "per employee; $250 a month flat for 25 employees or fewer"
        },
        {
          "item": "Pro plan",
          "unit": "seat-month",
          "usd": 17,
          "note": "per employee; $425 a month flat for 25 employees or fewer"
        },
        {
          "item": "Elite plan",
          "unit": "seat-month",
          "usd": 25,
          "note": "per employee; $650 a month flat for 25 employees or fewer"
        }
      ],
      "provenance": {
        "legalEntity": "Bamboo HR LLC",
        "domain": "bamboohr.com",
        "domainRegistered": "2009-07-23",
        "endpointOnVendorDomain": true,
        "terms": "https://www.bamboohr.com/legal/developer-terms-of-service",
        "privacy": "https://www.bamboohr.com/legal/privacy-policy",
        "statusPage": "https://status.bamboohr.com",
        "changelog": "https://documentation.bamboohr.com/docs/past-changes-to-the-api",
        "securityTxt": "none",
        "checked": "2026-10-07",
        "notes": [
          "The developer terms (last updated February 2026) and the terms of service (last updated 18 September 2026) name Bamboo HR LLC of Draper, Utah, under Utah law.",
          "Each customer's API and MCP server answer on its own bamboohr.com subdomain. The OpenAPI spec is served from openapi.bamboohr.io.",
          "www.bamboohr.com/.well-known/security.txt and /security.txt return 404.",
          "The privacy notice is dated September 2025 and the data processing agreement was last updated 3 June 2022.",
          "RDAP for bamboohr.com gives a registration date of 2009-07-23 and Amazon Registrar, Inc. as registrar."
        ],
        "score": 83
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/bamboohr.json",
      "live": {
        "slug": "bamboohr",
        "probe": {
          "target": "https://{companyDomain}.bamboohr.com/api/v1",
          "method": "get",
          "lastAt": "2026-10-08T18:20:25.477008751Z",
          "lastOk": false,
          "lastStatus": 0,
          "lastMs": 0,
          "lastNote": "invalid character \"{\" in host name",
          "authRequired": false,
          "uptime24h": 0,
          "uptime30d": 0,
          "p50ms24h": 0,
          "p95ms24h": 0,
          "samples24h": 33,
          "samples30d": 33,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 33,
              "ok": 0
            }
          ],
          "outages": [
            {
              "start": "2026-10-08T15:28:56.936598984Z",
              "end": "0001-01-01T00:00:00Z",
              "note": "invalid character \"{\" in host name"
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.bamboohr.com",
          "indicator": "unknown",
          "summary": "no machine-readable status found",
          "checkedAt": "2026-10-08T17:50:23.675113949Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "BambooHR/bhr-api-php",
            "version": "v2.0.1",
            "released": "2025-12-09",
            "seenAt": "2026-10-08T16:01:43.024945444Z"
          }
        ],
        "githubStars": 34,
        "securityTxt": {
          "url": "https://bamboohr.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:38:37.569543491Z"
        },
        "pages": [
          {
            "url": "https://documentation.bamboohr.com/docs/past-changes-to-the-api",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:19:54.999704896Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "f7d3d57fae58"
          }
        ],
        "updatedAt": "2026-10-08T18:20:25.477008751Z"
      }
    },
    "answer": "BambooHR and Rippling score within a point of each other on agent readiness, 61.7 (C) and 60.8 (C). Rippling leads on reliability, agent ergonomics, security \u0026 auth and maintenance \u0026 community.",
    "b": {
      "slug": "rippling",
      "name": "Rippling",
      "vendor": "People Center, Inc. dba Rippling",
      "vendorUrl": "https://www.rippling.com",
      "kind": "http-api",
      "category": "hr",
      "summary": "Rippling is a workforce platform for HR, payroll, IT and spend. Its REST Platform API v2 reads and writes worker, time off and organisation data with scoped Bearer tokens. A first-party MCP server runs as the signed-in employee.",
      "url": "https://www.anchorterminal.com/tools/rippling",
      "markdownUrl": "https://www.anchorterminal.com/tools/rippling.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/rippling.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/rippling.json",
      "license": "Proprietary service under Rippling's customer terms and Developer Terms of Use. The JavaScript SDK on npm is Apache-2.0",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://rest.ripplingapis.com",
      "packages": [
        {
          "registry": "npm",
          "name": "@rippling/rippling-sdk"
        }
      ],
      "auth": "mixed",
      "authNotes": "A Rippling customer creates API tokens in Tools \u003e Developer \u003e API Tokens and sends them as `Authorization: Bearer` to https://rest.ripplingapis.com. A token's access is the overlap of its chosen scopes (162 listed, most split into read and read-write) and its owner's permission profile. It is shown once, can't change owner, and is revoked when the owner is terminated or after 30 days unused. App Shop partners must use OAuth 2.0 (authorisation code with refresh, one token per customer company) and get a partner account only after applying and being approved. The Rippling MCP signs in as the employee, after an admin assigns tools in MCP Gateway.",
      "pricing": "paid",
      "pricingNotes": "No public prices. rippling.com/pricing says most products are billed per employee per month and asks for a quote, with no free tier or trial found. Reference pages name the package an endpoint needs, such as API Tier 1, with no price shown. Partners pay nothing to use the API or list in the App Shop, but must apply, and their customers need the Identity \u0026 Access Management package. Approved partners get a test company, and the API can create sandboxes. Rippling MCP tool calls need a Rippling AI trial or subscription (checked 2026-10-07).",
      "priceSummary": "Paid",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in llms.txt, the REST API essentials pages or the pricing page (checked 2026-10-07).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": null,
        "npmWeekly": 3633,
        "pypiWeekly": null,
        "asOf": "2026-10-07"
      },
      "docsUrl": "https://developer.rippling.com/documentation/rest-api",
      "llmsTxt": "https://developer.rippling.com/llms.txt",
      "capabilities": [
        "hr.employees",
        "hr.time-off",
        "hr.org",
        "hr.onboarding",
        "hr.documents",
        "recruiting.candidates"
      ],
      "tags": [
        "hosted",
        "enterprise",
        "api-key",
        "oauth",
        "mcp",
        "llms-txt",
        "typescript",
        "webhooks",
        "sales-led",
        "status-page",
        "soc2",
        "iso27001"
      ],
      "lastRelease": "2026-10-07",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 60.8,
        "grade": "C",
        "agentReady": false,
        "rank": 341,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 3,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 75,
          "maintenance": 74,
          "payments": 5,
          "reliability": 62,
          "schema": 73,
          "security": 90,
          "transparency": 51
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-07"
        },
        "negative": -3,
        "negativeNotes": [
          "2026-05-21 and 2026-06-17. The changelog labels 14 changes breaking since October 2025, among them `draft_hire_id` removed from POST /draft-hires/ responses on 21 May 2026 and `candidate_id` made required on GET /candidate-applications/ on 17 June 2026, while the reference still shows a single version, 2024-08-01. The versioning page says a breaking change requires a version update. Each change is documented on the day, so the smallest deduction applies (https://developer.rippling.com/documentation/rest-api/essentials/changelog)."
        ],
        "verdict": "API tokens carry any of 162 scopes and can never see more than their owner, and hires and worker changes land as drafts for a person to review. There is no public price, trial or self-serve signup, and status.rippling.com shows five incidents marked critical between 16 July and 29 September 2026.",
        "bestFor": "An agent working for a company already on Rippling that needs scoped reads of people, organisation and time off data, and writes that wait for human review.",
        "strengths": [
          "API tokens are limited to chosen scopes (162 listed) and to the owner's permission profile, and are revoked after 30 days unused",
          "Hires and worker changes are created as drafts for review in Rippling, and leave requests follow the normal approval flow",
          "Dated changelog with 141 entries since 6 August 2025, 46 of them between 9 July and 28 September 2026, each labelled breaking or not",
          "llms.txt with integration guidance for agents, cursor pagination, filter, expand and order_by on list endpoints",
          "SOC 1 and SOC 2 Type II, ISO 27001, ISO 27018, ISO 42001 and CSA STAR Level 2 listed, with a paid vulnerability reporting programme"
        ],
        "weaknesses": [
          "No public price, free tier or trial. rippling.com/pricing is a quote form, and endpoints name a paid package such as API Tier 1",
          "Five incidents marked critical and three marked major on status.rippling.com between 16 July and 29 September 2026",
          "The changelog labels 14 changes breaking since October 2025 while the reference still shows one version, 2024-08-01",
          "No downloadable OpenAPI file found, and the documentation site renders only with JavaScript",
          "One official SDK, JavaScript at 0.2.0-alpha.106, and the documented @rippling/rippling-sdk-mcp package returned 404 on npm"
        ],
        "agentNotes": [
          "Call https://rest.ripplingapis.com with a Bearer token and pin `Rippling-Api-Version`. Use V1 at api.rippling.com only for resources that exist nowhere else",
          "Treat a null field as possibly hidden. Check `__meta.redacted_fields`, the token's scopes and whether `expand` was sent",
          "Follow `next_link` until it is null. The default page is 50 records and a `limit` above 100 returns 400",
          "Stay under 300 requests per IP in any 10 seconds. Going over rejects every request for the next 10 seconds",
          "Send an `Idempotency-Key` on POST /hires/ and POST /draft-transitions/, then poll the request until it reaches a final status"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 60.8
          }
        ],
        "editorialScores": {
          "ergonomics": 75,
          "maintenance": 74,
          "payments": 5,
          "reliability": 62,
          "schema": 73,
          "security": 90,
          "transparency": 33
        },
        "provenanceScore": 69
      },
      "connect": {
        "install": "npm install @rippling/rippling-sdk",
        "http": "curl -X GET 'https://rest.ripplingapis.com/companies/' \\\n  -H 'Accept: application/json' \\\n  -H 'Authorization: Bearer YOUR_API_TOKEN'"
      },
      "letme": {
        "capability": "https://letme.dev/hr.employees",
        "tool": "https://letme.dev/rippling"
      },
      "area": "business",
      "provenance": {
        "legalEntity": "People Center, Inc. dba Rippling",
        "domain": "rippling.com",
        "domainRegistered": "2002-02-25",
        "endpointOnVendorDomain": false,
        "terms": "https://app.rippling.com/legal",
        "privacy": "https://app.rippling.com/legal/privacy",
        "statusPage": "https://status.rippling.com",
        "changelog": "https://developer.rippling.com/documentation/rest-api/essentials/changelog",
        "securityTxt": "none",
        "checked": "2026-10-07",
        "notes": [
          "The Vulnerability Reporting Terms and Conditions, last updated 21 August 2024, name People Center, Inc. dba Rippling and its affiliates.",
          "The v2 API answers at rest.ripplingapis.com, a separate domain from rippling.com that the vendor's llms.txt and quickstart name. V1 and the OAuth token exchange use api.rippling.com and app.rippling.com.",
          "www.rippling.com/.well-known/security.txt returns 404. Reports go through the form at rippling.com/vulnerability-reporting or to security@rippling.com.",
          "The terms, privacy notice, DPA and Developer Terms of Use sit on app.rippling.com, which returned only a JavaScript application to our reader, so their text is unread.",
          "RDAP for rippling.com gives a registration date of 2002-02-25."
        ],
        "score": 69
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/rippling.json",
      "live": {
        "slug": "rippling",
        "probe": {
          "target": "https://rest.ripplingapis.com",
          "method": "get",
          "lastAt": "2026-10-08T18:20:39.176388921Z",
          "lastOk": true,
          "lastStatus": 404,
          "lastMs": 260,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 301,
          "p95ms24h": 2545,
          "samples24h": 33,
          "samples30d": 33,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 33,
              "ok": 33
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.rippling.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T18:22:18.3293084Z"
        },
        "versions": [
          {
            "registry": "npm",
            "name": "@rippling/rippling-sdk",
            "version": "0.2.0-alpha.106",
            "seenAt": "2026-10-08T16:27:45.404049579Z"
          }
        ],
        "npmWeekly": 3633,
        "securityTxt": {
          "url": "https://rippling.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:38:49.166690021Z"
        },
        "pages": [
          {
            "url": "https://developer.rippling.com/documentation/rest-api/essentials/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:17:17.596835563Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "e3b0c44298fc"
          },
          {
            "url": "https://app.rippling.com/legal/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:21.558708711Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "8a3694d85aaa"
          },
          {
            "url": "https://app.rippling.com/legal",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:19.356857643Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "8a3694d85aaa"
          }
        ],
        "updatedAt": "2026-10-08T18:22:18.3293084Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Bamboo HR LLC",
        "b": "People Center, Inc. dba Rippling",
        "name": "Vendor"
      },
      {
        "a": "https://{companyDomain}.bamboohr.com/api/v1",
        "b": "https://rest.ripplingapis.com",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP",
        "b": "HTTP",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth or key",
        "name": "Auth"
      },
      {
        "a": "Paid",
        "b": "Paid",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Proprietary service under BambooHR's terms of service and developer terms. The official PHP SDK on GitHub is MIT",
        "b": "Proprietary service under Rippling's customer terms and Developer Terms of Use. The JavaScript SDK on npm is Apache-2.0",
        "name": "Licence"
      },
      {
        "a": "56",
        "b": "none",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "2026-08-26",
        "b": "2026-10-07",
        "name": "Last release"
      },
      {
        "a": "2026-02-01",
        "b": "couldn't be read",
        "name": "Terms last updated"
      },
      {
        "a": "2025-09-01",
        "b": "couldn't be read",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "couldn't be read",
        "name": "Customer content may train models"
      },
      {
        "a": "yes",
        "b": "couldn't be read",
        "name": "Terms restrict automated access"
      },
      {
        "a": "yes",
        "b": "couldn't be read",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "yes",
        "b": "couldn't be read",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "couldn't be read",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "34 stars",
        "b": "3.6k npm/wk",
        "name": "Popularity"
      }
    ],
    "faq": [
      {
        "answer": "BambooHR and Rippling score within a point of each other on agent readiness, 61.7 (C) and 60.8 (C). Rippling leads on reliability, agent ergonomics, security \u0026 auth and maintenance \u0026 community.",
        "question": "Which is better for AI agents, BambooHR or Rippling?"
      },
      {
        "answer": "Both take an API key or an OAuth sign-in.",
        "question": "Do BambooHR and Rippling need an API key?"
      },
      {
        "answer": "Yes. BambooHR has a hosted endpoint at https://{companyDomain}.bamboohr.com/api/v1 and Rippling at https://rest.ripplingapis.com.",
        "question": "Can an agent call BambooHR and Rippling without installing anything?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Schema \u0026 documentation, 88 against 73",
          "Payments \u0026 pricing, 35 against 5",
          "Transparency \u0026 trust, 74 against 51"
        ],
        "also": [
          "No incidents deducted, where Rippling loses 3 points for them"
        ],
        "goodFor": "An agent working inside one company's BambooHR account on directory lookups, time off, reports and goals, with the user's own permissions as the limit.",
        "slug": "bamboohr",
        "watchFor": "No rate limit numbers in the reviewed documentation. The terms reserve the right to throttle"
      },
      {
        "aheadOn": [
          "Reliability, 62 against 50",
          "Agent ergonomics, 75 against 61",
          "Security \u0026 auth, 90 against 64",
          "Maintenance \u0026 community, 74 against 62"
        ],
        "also": null,
        "goodFor": "An agent working for a company already on Rippling that needs scoped reads of people, organisation and time off data, and writes that wait for human review.",
        "slug": "rippling",
        "watchFor": "No public price, free tier or trial. rippling.com/pricing is a quote form, and endpoints name a paid package such as API Tier 1"
      }
    ],
    "job": {
      "capability": "hr.employees",
      "name": "Hr employees"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/bamboohr-vs-deel.json",
        "title": "BambooHR vs Deel",
        "url": "https://www.anchorterminal.com/compare/bamboohr-vs-deel"
      },
      {
        "json": "https://www.anchorterminal.com/compare/bamboohr-vs-hibob.json",
        "title": "BambooHR vs HiBob",
        "url": "https://www.anchorterminal.com/compare/bamboohr-vs-hibob"
      },
      {
        "json": "https://www.anchorterminal.com/compare/deel-vs-rippling.json",
        "title": "Deel vs Rippling",
        "url": "https://www.anchorterminal.com/compare/deel-vs-rippling"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hibob-vs-rippling.json",
        "title": "HiBob vs Rippling",
        "url": "https://www.anchorterminal.com/compare/hibob-vs-rippling"
      }
    ],
    "scores": [
      {
        "bamboohr": 50,
        "by": 12,
        "edge": "rippling",
        "key": "reliability",
        "name": "Reliability",
        "rippling": 62,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "bamboohr": 88,
        "by": 15,
        "edge": "bamboohr",
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "rippling": 73,
        "weight": 13
      },
      {
        "bamboohr": 61,
        "by": 14,
        "edge": "rippling",
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "rippling": 75,
        "weight": 13
      },
      {
        "bamboohr": 64,
        "by": 26,
        "edge": "rippling",
        "key": "security",
        "name": "Security \u0026 auth",
        "rippling": 90,
        "weight": 14
      },
      {
        "bamboohr": 35,
        "by": 30,
        "edge": "bamboohr",
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "rippling": 5,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "bamboohr": 62,
        "by": 12,
        "edge": "rippling",
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "rippling": 74,
        "weight": 7
      },
      {
        "bamboohr": 74,
        "by": 23,
        "edge": "bamboohr",
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "rippling": 51,
        "weight": 7
      }
    ],
    "summary": "BambooHR and Rippling score within a point of each other on agent readiness, 61.7 (C) and 60.8 (C). Rippling leads on reliability, agent ergonomics, security \u0026 auth and maintenance \u0026 community. Both do hr employees.",
    "verdicts": {
      "bamboohr": "The REST API publishes an OpenAPI 3.1 spec with 389 operations, llms.txt and OAuth scopes with separate write variants, and every call runs with the authorising user's permissions. No rate limit numbers are published, the MCP server is in beta, and its results can omit records without saying so.",
      "rippling": "API tokens carry any of 162 scopes and can never see more than their owner, and hires and worker changes land as drafts for a person to review. There is no public price, trial or self-serve signup, and status.rippling.com shows five incidents marked critical between 16 July and 29 September 2026."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/bamboohr-vs-rippling",
    "json": "https://www.anchorterminal.com/compare/bamboohr-vs-rippling.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/bamboohr-vs-rippling.md",
    "slim": "https://www.anchorterminal.com/compare/bamboohr-vs-rippling.min.md"
  },
  "markdown": "BambooHR and Rippling score within a point of each other on agent readiness, 61.7 (C) and 60.8 (C). Rippling leads on reliability, agent ergonomics, security \u0026 auth and maintenance \u0026 community. Both do hr employees.\n\n- BambooHR: grade C, 61.7/100, rank #319 of 629. Markdown https://www.anchorterminal.com/tools/bamboohr.md · JSON https://www.anchorterminal.com/api/v1/tools/bamboohr.json\n- Rippling: grade C, 60.8/100, rank #341 of 629. Markdown https://www.anchorterminal.com/tools/rippling.md · JSON https://www.anchorterminal.com/api/v1/tools/rippling.json\n\n## Which one, for what\n\n### BambooHR (C)\n\nGood for: An agent working inside one company's BambooHR account on directory lookups, time off, reports and goals, with the user's own permissions as the limit.\n\nAhead on:\n- Schema \u0026 documentation, 88 against 73\n- Payments \u0026 pricing, 35 against 5\n- Transparency \u0026 trust, 74 against 51\n\nAlso in its favour:\n- No incidents deducted, where Rippling loses 3 points for them\n\nWatch for: No rate limit numbers in the reviewed documentation. The terms reserve the right to throttle\n\n### Rippling (C)\n\nGood for: An agent working for a company already on Rippling that needs scoped reads of people, organisation and time off data, and writes that wait for human review.\n\nAhead on:\n- Reliability, 62 against 50\n- Agent ergonomics, 75 against 61\n- Security \u0026 auth, 90 against 64\n- Maintenance \u0026 community, 74 against 62\n\nWatch for: No public price, free tier or trial. rippling.com/pricing is a quote form, and endpoints name a paid package such as API Tier 1\n\n\n## Score by category\n\n| Category | Weight | BambooHR | Rippling | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 50 | 62 | Rippling +12 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 88 | 73 | BambooHR +15 |\n| Agent ergonomics | 13% (16.2 this run) | 61 | 75 | Rippling +14 |\n| Security \u0026 auth | 14% (17.5 this run) | 64 | 90 | Rippling +26 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 35 | 5 | BambooHR +30 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 62 | 74 | Rippling +12 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 74 | 51 | BambooHR +23 |\n| Negative events | ≤15 | 0 | -3 | |\n| **Total** | | **61.7 · C** | **60.8 · C** | |\n\n## Facts side by side\n\n| Fact | BambooHR | Rippling |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Bamboo HR LLC | People Center, Inc. dba Rippling |\n| Hosted endpoint | `https://{companyDomain}.bamboohr.com/api/v1` | `https://rest.ripplingapis.com` |\n| Transports | HTTP | HTTP |\n| Auth | OAuth or key | OAuth or key |\n| Pricing | Paid | Paid |\n| x402 | no | no |\n| Licence | Proprietary service under BambooHR's terms of service and developer terms. The official PHP SDK on GitHub is MIT | Proprietary service under Rippling's customer terms and Developer Terms of Use. The JavaScript SDK on npm is Apache-2.0 |\n| Tools exposed | 56 | none |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| Last release | 2026-08-26 | 2026-10-07 |\n| Terms last updated | 2026-02-01 | couldn't be read |\n| Privacy policy last updated | 2025-09-01 | couldn't be read |\n| Customer content may train models | not found in the text | couldn't be read |\n| Terms restrict automated access | yes | couldn't be read |\n| Terms restrict benchmarking | yes | couldn't be read |\n| Terms or service can change without notice | yes | couldn't be read |\n| Arbitration or class-action waiver | not found in the text | couldn't be read |\n| Popularity | 34 stars | 3.6k npm/wk |\n\n## Verdicts\n\n**BambooHR.** The REST API publishes an OpenAPI 3.1 spec with 389 operations, llms.txt and OAuth scopes with separate write variants, and every call runs with the authorising user's permissions. No rate limit numbers are published, the MCP server is in beta, and its results can omit records without saying so.\n\n**Rippling.** API tokens carry any of 162 scopes and can never see more than their owner, and hires and worker changes land as drafts for a person to review. There is no public price, trial or self-serve signup, and status.rippling.com shows five incidents marked critical between 16 July and 29 September 2026.\n\n## Before you call either\n\n### BambooHR\n\n1. Treat a short or empty result as what this caller may see. `list_employees` drops employees when a filter or sort field is restricted\n2. Honour `Retry-After` on 429. Rate-limited calls returned 503 before 16 September 2026, so handle both\n3. Ask for read scopes only unless the task writes. Write access needs the matching `.write` scope\n4. Request `offline_access` to receive a refresh token. Access tokens last one hour\n5. Use `list-employees` with `fields`, `filter` and cursor paging in place of the unpaginated directory endpoint\n\n### Rippling\n\n1. Call https://rest.ripplingapis.com with a Bearer token and pin `Rippling-Api-Version`. Use V1 at api.rippling.com only for resources that exist nowhere else\n2. Treat a null field as possibly hidden. Check `__meta.redacted_fields`, the token's scopes and whether `expand` was sent\n3. Follow `next_link` until it is null. The default page is 50 records and a `limit` above 100 returns 400\n4. Stay under 300 requests per IP in any 10 seconds. Going over rejects every request for the next 10 seconds\n5. Send an `Idempotency-Key` on POST /hires/ and POST /draft-transitions/, then poll the request until it reaches a final status\n\n## Questions\n\n### Which is better for AI agents, BambooHR or Rippling?\n\nBambooHR and Rippling score within a point of each other on agent readiness, 61.7 (C) and 60.8 (C). Rippling leads on reliability, agent ergonomics, security \u0026 auth and maintenance \u0026 community.\n\n### Do BambooHR and Rippling need an API key?\n\nBoth take an API key or an OAuth sign-in.\n\n### Can an agent call BambooHR and Rippling without installing anything?\n\nYes. BambooHR has a hosted endpoint at https://{companyDomain}.bamboohr.com/api/v1 and Rippling at https://rest.ripplingapis.com.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/bamboohr-vs-rippling.json, and with the fewest tokens: https://www.anchorterminal.com/compare/bamboohr-vs-rippling.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"bamboohr\", \"b\": \"rippling\"}`. From a terminal: `anchor compare bamboohr rippling`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/bamboohr.json and https://www.anchorterminal.com/api/v1/tools/rippling.json\n\n## Other comparisons with BambooHR or Rippling\n\n- [BambooHR vs Deel](https://www.anchorterminal.com/compare/bamboohr-vs-deel.md)\n- [BambooHR vs HiBob](https://www.anchorterminal.com/compare/bamboohr-vs-hibob.md)\n- [Deel vs Rippling](https://www.anchorterminal.com/compare/deel-vs-rippling.md)\n- [HiBob vs Rippling](https://www.anchorterminal.com/compare/hibob-vs-rippling.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "BambooHR vs Rippling",
        "url": ""
      }
    ],
    "description": "BambooHR and Rippling score within a point of each other on agent readiness, 61.7 (C) and 60.8 (C). Rippling leads on reliability, agent ergonomics, security \u0026 auth and maintenance \u0026 community. Both do hr employees. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "BambooHR C 61.7",
      "Rippling C 60.8",
      "scores"
    ],
    "h1": "BambooHR vs Rippling",
    "image": "https://www.anchorterminal.com/assets/og/compare-bamboohr-vs-rippling.png",
    "path": "/compare/bamboohr-vs-rippling",
    "published": "2026-10-01",
    "section": "tools",
    "title": "BambooHR vs Rippling for AI agents, C 61.7 vs C 60.8 | Anchor Terminal",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/bamboohr-vs-rippling"
  },
  "tokens": {
    "markdown": 1900,
    "slim": 730
  },
  "version": 1
}
