{
  "data": {
    "a": {
      "slug": "box-api",
      "name": "Box API + MCP",
      "vendor": "Box",
      "vendorUrl": "https://developer.box.com",
      "kind": "http-api",
      "category": "file-storage",
      "summary": "Enterprise content platform with a REST API for files, folders, shared links, collaborations, metadata and Box AI, published as OpenAPI with year-based API versions.",
      "url": "https://www.anchorterminal.com/tools/box-api",
      "markdownUrl": "https://www.anchorterminal.com/tools/box-api.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/box-api.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/box-api.json",
      "repo": "https://github.com/box/box-node-sdk",
      "license": "Apache-2.0",
      "transports": [
        "http",
        "streamable-http"
      ],
      "remoteUrl": "https://api.box.com/2.0",
      "packages": [
        {
          "registry": "npm",
          "name": "box-node-sdk"
        },
        {
          "registry": "pypi",
          "name": "box-sdk-gen"
        }
      ],
      "auth": "oauth",
      "authNotes": "OAuth 2.0 against https://account.box.com/api/oauth2/authorize and https://api.box.com/oauth2/token, with a Bearer access token on every call. Server-side apps can use JWT or client credentials instead. The remote MCP server is an OAuth-protected resource (metadata at https://mcp.box.com/.well-known/oauth-protected-resource) and asks for the root_readwrite, ai.readwrite and docgen.readwrite scopes; the last needs an Enterprise Advanced licence. Users only ever see content they already have access to in Box.",
      "pricing": "byo-plan",
      "pricingNotes": "The API and MCP server come with a Box plan. Individual is free with 10 GB and a 250 MB upload limit. Personal Pro $14 a month ($10 billed yearly). Business plans need three users, Business Starter $7 a user a month ($5 yearly, 100 GB), Business $20 ($15, unlimited storage, 5 GB uploads, Box AI, 50,000 API calls a month), Business Plus $33 ($25, 15 GB uploads), Enterprise $47 ($35, 50 GB uploads, 1,000 AI units, 100,000 API calls), Enterprise Plus $50 a user a month billed yearly (150 GB uploads, 2,000 AI units), Enterprise Advanced on request (500 GB uploads, 20,000 AI units, 200,000 API calls). The MCP server needs Business or above. Extra API calls are sold as Platform pricing (https://www.box.com/pricing; https://support.box.com/hc/en-us/articles/43974584000659).",
      "priceSummary": "Your plan",
      "where": "hosted",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": 57,
      "popularity": {
        "githubStars": 199,
        "npmWeekly": 215715,
        "pypiWeekly": 275500,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://developer.box.com/guides/",
      "llmsTxt": "https://developer.box.com/llms.txt",
      "openapi": "https://raw.githubusercontent.com/box/box-openapi/main/openapi.json",
      "capabilities": [
        "storage.drive",
        "storage.share",
        "work.docs"
      ],
      "tags": [
        "hosted",
        "closed-source",
        "mcp",
        "oauth",
        "enterprise",
        "typescript",
        "python",
        "webhooks"
      ],
      "lastRelease": "2026-09-11",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 69.4,
        "grade": "B",
        "agentReady": false,
        "rank": 186,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 6,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 72,
          "maintenance": 84,
          "payments": 25,
          "reliability": 65,
          "schema": 91,
          "security": 73,
          "transparency": 76
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Public OpenAPI 3.0 spec with 297 operations, year-based API versions and an llms.txt of Markdown pages. 20 status-feed entries between 7 July and 1 October 2026, two of them over two hours on uploads or multiple services.",
        "bestFor": "Agents working inside an enterprise's existing Box content with admin oversight, Box AI extraction and audit needs.",
        "strengths": [
          "Public OpenAPI 3.0 spec with 297 operations, year-based API versions and an llms.txt of Markdown pages",
          "At least 24 months between deprecation and retirement of an API version, with Deprecation response headers",
          "Official remote MCP server with OAuth, 57 tools and 22 riskier ones off until an admin enables them",
          "Documented rate limits (1,000 calls a minute a user, 240 uploads a minute) with a 429 and retry-after",
          "SDKs in Node, Python, Java, Windows (.NET) and iOS, all released on 9 September 2026"
        ],
        "weaknesses": [
          "20 status-feed entries between 7 July and 1 October 2026, two of them over two hours on uploads or multiple services",
          "MCP server needs Business or above, a three-seat minimum, and admin enablement per tool group",
          "The MCP server asks for root_readwrite, so a connected agent can write wherever its user can once tools are on",
          "API calls are metered per enterprise, 50,000 a month on Business",
          "No security.txt on box.com, and no bug bounty on its security page"
        ],
        "agentNotes": [
          "Call who_am_i first; the tool list depends on the plan, the admin's toggles and the scopes granted",
          "Expect download and upload URL, move and shared-link tools to be missing unless an admin has enabled them",
          "Pass fields= to trim responses and page folder listings with limit and marker",
          "Send a box-version header to pin an API version, and watch responses for a Deprecation header",
          "For a link that expires, set shared_link.unshared_at on a paid account; the free plan can't"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 69.4
          }
        ],
        "editorialScores": {
          "ergonomics": 72,
          "maintenance": 84,
          "payments": 25,
          "reliability": 65,
          "schema": 91,
          "security": 73,
          "transparency": 68
        },
        "provenanceScore": 84
      },
      "connect": {
        "http": "curl \"https://api.box.com/2.0/folders/0/items?limit=100\" -H \"Authorization: Bearer $BOX_ACCESS_TOKEN\"",
        "claudeCode": "claude mcp add --transport http box https://mcp.box.com",
        "config": {
          "mcpServers": {
            "box": {
              "url": "https://mcp.box.com"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/storage.drive",
        "tool": "https://letme.dev/box-api"
      },
      "area": "everyday",
      "unitPrices": [
        {
          "item": "Business Starter",
          "unit": "seat-month",
          "usd": 7,
          "note": "$5 billed yearly, three-seat minimum, 100 GB"
        },
        {
          "item": "Business",
          "unit": "seat-month",
          "usd": 20,
          "note": "$15 billed yearly. Lowest plan with the MCP server and Box AI"
        },
        {
          "item": "Business Plus",
          "unit": "seat-month",
          "usd": 33,
          "note": "$25 billed yearly"
        },
        {
          "item": "Enterprise",
          "unit": "seat-month",
          "usd": 47,
          "note": "$35 billed yearly, 100,000 API calls a month"
        },
        {
          "item": "Personal Pro",
          "unit": "month",
          "usd": 14,
          "note": "$10 billed yearly, 100 GB, one user"
        }
      ],
      "provenance": {
        "legalEntity": "Box, Inc.",
        "domain": "box.com",
        "domainRegistered": "1999-02-17",
        "domainNote": "box.com was registered in 1999, before Box was founded, so the domain was bought later.",
        "endpointOnVendorDomain": true,
        "terms": "https://www.box.com/legal/termsofservice",
        "privacy": "https://www.box.com/legal/privacypolicy",
        "statusPage": "https://status.box.com",
        "changelog": "https://developer.box.com/changelog/",
        "securityTxt": "none",
        "checked": "2026-09-30",
        "notes": [
          "The terms (effective 2026-08-17) name Box, Inc. for US residents, Box.com (UK) Ltd. (company 0809736) outside the US, and K.K. Box Japan in Japan.",
          "www.box.com/.well-known/security.txt returns 404.",
          "The mcp-server-box-remote repository holds a README and licence only; the server code is not published. The privacy notice names Box, Inc. and its subsidiaries and announces a revision effective 2026-10-05."
        ],
        "score": 84
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/box-api.json",
      "live": {
        "slug": "box-api",
        "probe": {
          "target": "https://api.box.com/2.0",
          "method": "get",
          "lastAt": "2026-10-10T01:37:46.050036479Z",
          "lastOk": true,
          "lastStatus": 401,
          "lastMs": 668,
          "lastNote": "asks for credentials",
          "authRequired": true,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 190,
          "p95ms24h": 650,
          "samples24h": 250,
          "samples30d": 2251,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 109
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-05",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-06",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-07",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-08",
              "probes": 268,
              "ok": 268
            },
            {
              "date": "2026-10-09",
              "probes": 250,
              "ok": 250
            },
            {
              "date": "2026-10-10",
              "probes": 17,
              "ok": 17
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.box.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-10T01:33:23.711982784Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "box/box-node-sdk",
            "version": "v10.17.0",
            "released": "2026-10-01",
            "seenAt": "2026-10-09T16:43:22.463937916Z"
          },
          {
            "registry": "npm",
            "name": "box-node-sdk",
            "version": "10.17.0",
            "seenAt": "2026-10-09T16:43:21.405491807Z"
          },
          {
            "registry": "pypi",
            "name": "box-sdk-gen",
            "version": "1.17.0",
            "released": "2025-09-05",
            "seenAt": "2026-10-09T16:43:22.276877257Z"
          }
        ],
        "githubStars": 199,
        "npmWeekly": 183321,
        "pypiWeekly": 241075,
        "securityTxt": {
          "url": "https://box.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-09T15:40:36.617164864Z"
        },
        "llmsTxt": {
          "url": "https://developer.box.com/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-09T14:01:32.644750342Z"
        },
        "domain": {
          "domain": "box.com",
          "registered": "1999-02-17",
          "source": "https://rdap.verisign.com/com/v1/domain/box.com",
          "checkedAt": "2026-10-04T13:10:33.926134325Z"
        },
        "pages": [
          {
            "url": "https://developer.box.com/changelog/",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-09T18:35:06.498344996Z",
            "changedAt": "2026-10-09T18:35:06.498344996Z",
            "fingerprint": "c6626e0789e4"
          },
          {
            "url": "https://www.box.com/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-09T18:48:42.443789473Z",
            "changedAt": "2026-10-09T18:48:42.443789473Z",
            "fingerprint": "dd4c02c8b139"
          },
          {
            "url": "https://www.box.com/legal/privacypolicy",
            "kind": "privacy",
            "status": 403,
            "checkedAt": "2026-10-09T18:48:38.425976463Z",
            "changedAt": "0001-01-01T00:00:00Z"
          },
          {
            "url": "https://www.box.com/legal/termsofservice",
            "kind": "terms",
            "status": 403,
            "checkedAt": "2026-10-09T18:48:40.442115509Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "9f0bd8a4bcb9"
          }
        ],
        "updatedAt": "2026-10-10T01:37:46.050036479Z"
      }
    },
    "answer": "Box API + MCP scores 69.4 (B) on agent readiness against Fastio's 55.2 (C), and leads in 4 of 7 scored categories. Fastio leads on payments \u0026 pricing.",
    "b": {
      "slug": "fast-io",
      "name": "Fastio",
      "vendor": "VividEngine, LLC",
      "vendorUrl": "https://fast.io",
      "kind": "http-api",
      "category": "file-storage",
      "summary": "Fastio is hosted file storage with workspaces, share links and document search for teams and AI agents, from VividEngine, LLC. Agents reach it through a REST API, a hosted MCP server and an open-source CLI.",
      "url": "https://www.anchorterminal.com/tools/fast-io",
      "markdownUrl": "https://www.anchorterminal.com/tools/fast-io.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/fast-io.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/fast-io.json",
      "repo": "https://github.com/MediaFire/fastio_cli",
      "license": "Proprietary service under Fast's terms of service. The CLI, which includes a local MCP server, is Apache-2.0",
      "transports": [
        "http",
        "streamable-http",
        "stdio"
      ],
      "remoteUrl": "https://mcp.fast.io/mcp/tools",
      "packages": [
        {
          "registry": "npm",
          "name": "@vividengine/fastio-cli"
        }
      ],
      "auth": "mixed",
      "authNotes": "Self-serve. The REST API takes a Bearer token, either an OAuth 2.0 access token (PKCE with S256, dynamic client registration) or an API key created in the web app or with `POST /current/user/auth/key/`. Keys and grants are scoped as `entity_type:entity_id:access_mode` with `r`, `rw` and `rwa` modes, and keys can expire. A key made without scopes carries `user:*:rw`. The hosted MCP server signs in with OAuth in a browser and takes no passwords or key secrets.",
      "pricing": "paid",
      "pricingNotes": "From $9.99 a month (Starter, 250 GB, 100,000 credits, 3 seats). Business is $49.99 and Enterprise $199.99. No free tier. Monthly plans start with a 30-day trial that needs a credit card and converts when the trial or its credits end. Usage past the allowance is billed at $0.0001 a credit, extra storage at 1.5 cents a GB-month and extra bandwidth at 4 cents a GB (https://fast.io/pricing/).",
      "priceSummary": "$9.99 / mo",
      "where": "both",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the pricing page, the API reference or the agent guide. HTTP 402 is used for a missing plan or spent credits (checked 2026-10-09).",
        "endpoints": []
      },
      "toolCount": 35,
      "popularity": {
        "githubStars": 1,
        "npmWeekly": 653,
        "pypiWeekly": null,
        "asOf": "2026-10-09"
      },
      "docsUrl": "https://docs.fast.io/",
      "llmsTxt": "https://api.fast.io/llms.txt",
      "capabilities": [
        "storage.drive",
        "storage.share",
        "knowledge.search"
      ],
      "tags": [
        "hosted",
        "closed-source",
        "mcp",
        "oauth",
        "api-key",
        "cli",
        "llms-txt",
        "paid",
        "trial"
      ],
      "lastRelease": "2026-10-08",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 55.2,
        "grade": "C",
        "agentReady": false,
        "rank": 663,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 12,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 73,
          "maintenance": 70,
          "payments": 30,
          "reliability": 33,
          "schema": 65,
          "security": 74,
          "transparency": 61
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-09"
        },
        "negative": -2,
        "negativeNotes": [
          "2026-10-09. fast.io/llms.txt states storage at 100 credits a GB and bandwidth at 212, while the pricing page and the agent guide (version 1.40.0, 2 October 2026) give 150 and 400. The same file points to a security.txt that answers 404. An agent reading only llms.txt would understate cost by a third or more (-2). https://fast.io/llms.txt"
        ],
        "verdict": "OAuth with PKCE, scoped API keys with read, write and admin modes, and separate read and write MCP tools limit what an agent can touch. There is no free tier, the 30-day trial needs a card, and no status page, SLA, OpenAPI file or public changelog was found.",
        "bestFor": "A team that wants agents and people in one shared drive with share links, document search and an audit trail.",
        "strengths": [
          "OAuth 2.0 with PKCE and dynamic client registration, plus API keys scoped as `entity_type:entity_id:access_mode` with `r`, `rw` and `rwa` modes and optional expiry",
          "Named MCP mode splits each area into a read tool and a `_manage` write tool, and a read-only key hides the write tools",
          "Shares take a password, an expiry date and a `download_security` level, and file links can carry `expires`",
          "Sub-processor list with locations and 15 days' notice, and deletion periods of 15, 30, 60 and 90 days stated alike in the terms and privacy policy",
          "The CLI is Apache-2.0 on GitHub with CI, and shipped v0.2.93 on 8 October 2026"
        ],
        "weaknesses": [
          "No free tier. A new organisation answers HTTP 402 until a paid plan is chosen, and the 30-day trial needs a credit card",
          "No status page, incident history or SLA found. The terms give no guarantee of API availability or backward compatibility",
          "No OpenAPI file. `OPTIONS` introspection covers about 40 per cent of endpoints, and rate limits are published as headers without numbers",
          "fast.io/llms.txt gives 100 credits a GB for storage and 212 for bandwidth. The pricing page and agent guide give 150 and 400",
          "No SOC 2 report yet (the Trust Centre says an audit is being prepared), no bug bounty, and `/.well-known/security.txt` answers 404",
          "The terms forbid robots and spiders outside the programmatic access of Section 12. This matters before any probe is run"
        ],
        "agentNotes": [
          "Connect to `https://mcp.fast.io/mcp/tools` for named tools or `https://mcp.fast.io/mcp/code` for the 8-tool code mode. The URL fixes the tool set for the session",
          "Call `action=\"describe\"` on a tool before first use. Parameters live there, not in the tool list",
          "To update a file, upload again with the same parent folder and filename. Deleting first loses the version history",
          "On 429 wait until `x-ve-limit-expires` or the `Retry-After` value. On 402 the organisation has no plan or no credits, so stop and tell the owner",
          "Ask the owner for a key scoped to one workspace with `r` or `rw`. A key made without scopes carries `user:*:rw` across the account"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 55.2
          }
        ],
        "editorialScores": {
          "ergonomics": 73,
          "maintenance": 70,
          "payments": 30,
          "reliability": 33,
          "schema": 65,
          "security": 74,
          "transparency": 70
        },
        "provenanceScore": 51
      },
      "connect": {
        "install": "npm install -g @vividengine/fastio-cli",
        "config": {
          "mcpServers": {
            "fastio": {
              "args": [
                "mcp"
              ],
              "command": "fastio"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/storage.drive",
        "tool": "https://letme.dev/fast-io"
      },
      "area": "everyday",
      "unitPrices": [
        {
          "item": "Starter plan",
          "unit": "month",
          "usd": 9.99,
          "note": "250 GB, 100,000 credits, 3 seats"
        },
        {
          "item": "Business plan",
          "unit": "month",
          "usd": 49.99,
          "note": "5 TB, 600,000 credits, 10 seats"
        },
        {
          "item": "Enterprise plan",
          "unit": "month",
          "usd": 199.99,
          "note": "25 TB, 3,000,000 credits, 30 seats"
        },
        {
          "item": "Additional storage",
          "unit": "gb-month",
          "usd": 0.015
        },
        {
          "item": "Additional bandwidth",
          "unit": "gb",
          "usd": 0.04
        },
        {
          "item": "Credit overage",
          "unit": "credit",
          "usd": 0.0001,
          "note": "$10 per 100,000 credits"
        }
      ],
      "provenance": {
        "legalEntity": "VividEngine, LLC (doing business as Fast Technologies)",
        "domain": "fast.io",
        "domainRegistered": "",
        "endpointOnVendorDomain": true,
        "terms": "https://fast.io/terms/",
        "privacy": "https://fast.io/privacy/",
        "statusPage": "",
        "changelog": "",
        "securityTxt": "none",
        "checked": "2026-10-09",
        "notes": [
          "The terms of service (effective 2 October 2026) name VividEngine, LLC, doing business as Fast Technologies, 4747 Research Forest Dr., Ste 180-265, The Woodlands, TX 77381-4902.",
          "The API answers at api.fast.io and the MCP server at mcp.fast.io, both on the vendor's domain.",
          "fast.io/.well-known/security.txt returns 404, although fast.io/llms.txt lists it as the security contact.",
          "No status page or changelog is linked from the home page, the developer hub, the docs or the Trust Centre.",
          "rdap.org answered that no RDAP service is available for fast.io, so the registration date is blank.",
          "The DPA binds only when signed by both parties, and the Trust Centre says it is executed with Enterprise Plus customers and on request."
        ],
        "score": 51
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/fast-io.json",
      "live": {
        "slug": "fast-io",
        "probe": {
          "target": "https://mcp.fast.io/mcp/tools",
          "method": "get",
          "lastAt": "2026-10-10T01:37:51.743824977Z",
          "lastOk": true,
          "lastStatus": 400,
          "lastMs": 77,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 195,
          "p95ms24h": 609,
          "samples24h": 102,
          "samples30d": 102,
          "days": [
            {
              "date": "2026-10-09",
              "probes": 85,
              "ok": 85
            },
            {
              "date": "2026-10-10",
              "probes": 17,
              "ok": 17
            }
          ]
        },
        "versions": [
          {
            "registry": "github",
            "name": "MediaFire/fastio_cli",
            "version": "v0.2.93",
            "released": "2026-10-08",
            "seenAt": "2026-10-09T16:52:49.974838832Z"
          },
          {
            "registry": "npm",
            "name": "@vividengine/fastio-cli",
            "version": "0.2.93",
            "seenAt": "2026-10-09T16:52:47.611452489Z"
          }
        ],
        "githubStars": 1,
        "npmWeekly": 653,
        "pages": [
          {
            "url": "https://fast.io/pricing/",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-09T18:39:18.30204828Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "f3ab609635d0"
          },
          {
            "url": "https://fast.io/privacy/",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-09T18:39:21.559921856Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "dac598e7cd59"
          },
          {
            "url": "https://fast.io/terms/",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-09T18:39:22.401428685Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "8aa657d5df36"
          }
        ],
        "updatedAt": "2026-10-10T01:37:51.743824977Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Box",
        "b": "VividEngine, LLC",
        "name": "Vendor"
      },
      {
        "a": "https://api.box.com/2.0",
        "b": "https://mcp.fast.io/mcp/tools",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP, Streamable HTTP",
        "b": "HTTP, Streamable HTTP, stdio",
        "name": "Transports"
      },
      {
        "a": "OAuth",
        "b": "OAuth or key",
        "name": "Auth"
      },
      {
        "a": "Your plan",
        "b": "Paid",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Apache-2.0",
        "b": "Proprietary service under Fast's terms of service. The CLI, which includes a local MCP server, is Apache-2.0",
        "name": "Licence"
      },
      {
        "a": "57",
        "b": "35",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "yes",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "2026-09-11",
        "b": "2026-10-08",
        "name": "Last release"
      },
      {
        "a": "couldn't be read",
        "b": "2026-10-02",
        "name": "Terms last updated"
      },
      {
        "a": "couldn't be read",
        "b": "2026-10-02",
        "name": "Privacy policy last updated"
      },
      {
        "a": "couldn't be read",
        "b": "not found in the text",
        "name": "Customer content may train models"
      },
      {
        "a": "couldn't be read",
        "b": "yes",
        "name": "Terms restrict automated access"
      },
      {
        "a": "couldn't be read",
        "b": "not found in the text",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "couldn't be read",
        "b": "yes",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "couldn't be read",
        "b": "yes",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "199 stars, 216k npm/wk, 276k PyPI/wk",
        "b": "1 stars, 653 npm/wk",
        "name": "Popularity"
      },
      {
        "a": "2.5/5 (2)",
        "b": "none",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Box API + MCP scores 69.4 (B) on agent readiness against Fastio's 55.2 (C), and leads in 4 of 7 scored categories. Fastio leads on payments \u0026 pricing.",
        "question": "Which is better for AI agents, Box API + MCP or Fastio?"
      },
      {
        "answer": "Box API + MCP uses an OAuth sign-in. Fastio takes an API key or an OAuth sign-in.",
        "question": "Do Box API + MCP and Fastio need an API key?"
      },
      {
        "answer": "Yes. Box API + MCP has a hosted endpoint at https://api.box.com/2.0 and Fastio at https://mcp.fast.io/mcp/tools.",
        "question": "Can an agent call Box API + MCP and Fastio without installing anything?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Reliability, 65 against 33",
          "Schema \u0026 documentation, 91 against 65",
          "Maintenance \u0026 community, 84 against 70",
          "Transparency \u0026 trust, 76 against 61"
        ],
        "also": null,
        "goodFor": "Agents working inside an enterprise's existing Box content with admin oversight, Box AI extraction and audit needs.",
        "slug": "box-api",
        "watchFor": "20 status-feed entries between 7 July and 1 October 2026, two of them over two hours on uploads or multiple services"
      },
      {
        "aheadOn": [
          "Payments \u0026 pricing, 30 against 25"
        ],
        "also": [
          "Runs on your own machine"
        ],
        "goodFor": "A team that wants agents and people in one shared drive with share links, document search and an audit trail.",
        "slug": "fast-io",
        "watchFor": "No free tier. A new organisation answers HTTP 402 until a paid plan is chosen, and the 30-day trial needs a credit card"
      }
    ],
    "job": {
      "capability": "storage.drive",
      "name": "File drives"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/amazon-s3-vs-box-api.json",
        "title": "Amazon S3 vs Box API + MCP",
        "url": "https://www.anchorterminal.com/compare/amazon-s3-vs-box-api"
      },
      {
        "json": "https://www.anchorterminal.com/compare/amazon-s3-vs-fast-io.json",
        "title": "Amazon S3 vs Fastio",
        "url": "https://www.anchorterminal.com/compare/amazon-s3-vs-fast-io"
      },
      {
        "json": "https://www.anchorterminal.com/compare/azure-blob-storage-vs-box-api.json",
        "title": "Azure Blob Storage vs Box API + MCP",
        "url": "https://www.anchorterminal.com/compare/azure-blob-storage-vs-box-api"
      },
      {
        "json": "https://www.anchorterminal.com/compare/azure-blob-storage-vs-fast-io.json",
        "title": "Azure Blob Storage vs Fastio",
        "url": "https://www.anchorterminal.com/compare/azure-blob-storage-vs-fast-io"
      },
      {
        "json": "https://www.anchorterminal.com/compare/backblaze-b2-vs-box-api.json",
        "title": "Backblaze B2 vs Box API + MCP",
        "url": "https://www.anchorterminal.com/compare/backblaze-b2-vs-box-api"
      },
      {
        "json": "https://www.anchorterminal.com/compare/backblaze-b2-vs-fast-io.json",
        "title": "Backblaze B2 vs Fastio",
        "url": "https://www.anchorterminal.com/compare/backblaze-b2-vs-fast-io"
      },
      {
        "json": "https://www.anchorterminal.com/compare/box-api-vs-cloudflare-r2.json",
        "title": "Box API + MCP vs Cloudflare R2",
        "url": "https://www.anchorterminal.com/compare/box-api-vs-cloudflare-r2"
      },
      {
        "json": "https://www.anchorterminal.com/compare/box-api-vs-digitalocean-spaces.json",
        "title": "Box API + MCP vs DigitalOcean Spaces",
        "url": "https://www.anchorterminal.com/compare/box-api-vs-digitalocean-spaces"
      },
      {
        "json": "https://www.anchorterminal.com/compare/box-api-vs-tigris.json",
        "title": "Box API + MCP vs Tigris",
        "url": "https://www.anchorterminal.com/compare/box-api-vs-tigris"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cloudflare-r2-vs-fast-io.json",
        "title": "Cloudflare R2 vs Fastio",
        "url": "https://www.anchorterminal.com/compare/cloudflare-r2-vs-fast-io"
      },
      {
        "json": "https://www.anchorterminal.com/compare/digitalocean-spaces-vs-fast-io.json",
        "title": "DigitalOcean Spaces vs Fastio",
        "url": "https://www.anchorterminal.com/compare/digitalocean-spaces-vs-fast-io"
      },
      {
        "json": "https://www.anchorterminal.com/compare/fast-io-vs-tigris.json",
        "title": "Fastio vs Tigris",
        "url": "https://www.anchorterminal.com/compare/fast-io-vs-tigris"
      },
      {
        "json": "https://www.anchorterminal.com/compare/box-api-vs-dropbox-api.json",
        "title": "Box API + MCP vs Dropbox API + MCP",
        "url": "https://www.anchorterminal.com/compare/box-api-vs-dropbox-api"
      },
      {
        "json": "https://www.anchorterminal.com/compare/box-api-vs-google-drive-api.json",
        "title": "Box API + MCP vs Google Drive API + MCP",
        "url": "https://www.anchorterminal.com/compare/box-api-vs-google-drive-api"
      },
      {
        "json": "https://www.anchorterminal.com/compare/box-api-vs-onedrive-sharepoint.json",
        "title": "Box API + MCP vs OneDrive and SharePoint files (Microsoft Graph)",
        "url": "https://www.anchorterminal.com/compare/box-api-vs-onedrive-sharepoint"
      },
      {
        "json": "https://www.anchorterminal.com/compare/dropbox-api-vs-fast-io.json",
        "title": "Dropbox API + MCP vs Fastio",
        "url": "https://www.anchorterminal.com/compare/dropbox-api-vs-fast-io"
      },
      {
        "json": "https://www.anchorterminal.com/compare/fast-io-vs-google-drive-api.json",
        "title": "Fastio vs Google Drive API + MCP",
        "url": "https://www.anchorterminal.com/compare/fast-io-vs-google-drive-api"
      },
      {
        "json": "https://www.anchorterminal.com/compare/fast-io-vs-onedrive-sharepoint.json",
        "title": "Fastio vs OneDrive and SharePoint files (Microsoft Graph)",
        "url": "https://www.anchorterminal.com/compare/fast-io-vs-onedrive-sharepoint"
      }
    ],
    "scores": [
      {
        "box-api": 65,
        "by": 32,
        "edge": "box-api",
        "fast-io": 33,
        "key": "reliability",
        "name": "Reliability",
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "box-api": 91,
        "by": 26,
        "edge": "box-api",
        "fast-io": 65,
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "weight": 13
      },
      {
        "box-api": 72,
        "by": 1,
        "edge": "fast-io",
        "fast-io": 73,
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "weight": 13
      },
      {
        "box-api": 73,
        "by": 1,
        "edge": "fast-io",
        "fast-io": 74,
        "key": "security",
        "name": "Security \u0026 auth",
        "weight": 14
      },
      {
        "box-api": 25,
        "by": 5,
        "edge": "fast-io",
        "fast-io": 30,
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "box-api": 84,
        "by": 14,
        "edge": "box-api",
        "fast-io": 70,
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "weight": 7
      },
      {
        "box-api": 76,
        "by": 15,
        "edge": "box-api",
        "fast-io": 61,
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "weight": 7
      }
    ],
    "summary": "Box API + MCP scores 69.4 (B) on agent readiness against Fastio's 55.2 (C), and leads in 4 of 7 scored categories. Fastio leads on payments \u0026 pricing. Both do file drives.",
    "verdicts": {
      "box-api": "Public OpenAPI 3.0 spec with 297 operations, year-based API versions and an llms.txt of Markdown pages. 20 status-feed entries between 7 July and 1 October 2026, two of them over two hours on uploads or multiple services.",
      "fast-io": "OAuth with PKCE, scoped API keys with read, write and admin modes, and separate read and write MCP tools limit what an agent can touch. There is no free tier, the 30-day trial needs a card, and no status page, SLA, OpenAPI file or public changelog was found."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/box-api-vs-fast-io",
    "json": "https://www.anchorterminal.com/compare/box-api-vs-fast-io.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/box-api-vs-fast-io.md",
    "slim": "https://www.anchorterminal.com/compare/box-api-vs-fast-io.min.md"
  },
  "markdown": "Box API + MCP scores 69.4 (B) on agent readiness against Fastio's 55.2 (C), and leads in 4 of 7 scored categories. Fastio leads on payments \u0026 pricing. Both do file drives.\n\n- Box API + MCP: grade B, 69.4/100, rank #186 of 950. Markdown https://www.anchorterminal.com/tools/box-api.md · JSON https://www.anchorterminal.com/api/v1/tools/box-api.json\n- Fastio: grade C, 55.2/100, rank #663 of 950. Markdown https://www.anchorterminal.com/tools/fast-io.md · JSON https://www.anchorterminal.com/api/v1/tools/fast-io.json\n- Best file storage and sharing APIs for AI agents: https://www.anchorterminal.com/best/file-storage/index.md\n- All 75 storage comparisons: https://www.anchorterminal.com/compare/file-storage/index.md\n\n## Which one, for what\n\n### Box API + MCP (B)\n\nGood for: Agents working inside an enterprise's existing Box content with admin oversight, Box AI extraction and audit needs.\n\nAhead on:\n- Reliability, 65 against 33\n- Schema \u0026 documentation, 91 against 65\n- Maintenance \u0026 community, 84 against 70\n- Transparency \u0026 trust, 76 against 61\n\nWatch for: 20 status-feed entries between 7 July and 1 October 2026, two of them over two hours on uploads or multiple services\n\n### Fastio (C)\n\nGood for: A team that wants agents and people in one shared drive with share links, document search and an audit trail.\n\nAhead on:\n- Payments \u0026 pricing, 30 against 25\n\nAlso in its favour:\n- Runs on your own machine\n\nWatch for: No free tier. A new organisation answers HTTP 402 until a paid plan is chosen, and the 30-day trial needs a credit card\n\n\n## Score by category\n\n| Category | Weight | Box API + MCP | Fastio | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 65 | 33 | Box API + MCP +32 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 91 | 65 | Box API + MCP +26 |\n| Agent ergonomics | 13% (16.2 this run) | 72 | 73 | Fastio +1 |\n| Security \u0026 auth | 14% (17.5 this run) | 73 | 74 | Fastio +1 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 25 | 30 | Fastio +5 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 84 | 70 | Box API + MCP +14 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 76 | 61 | Box API + MCP +15 |\n| Negative events | ≤15 | 0 | -2 | |\n| **Total** | | **69.4 · B** | **55.2 · C** | |\n\n## Facts side by side\n\n| Fact | Box API + MCP | Fastio |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Box | VividEngine, LLC |\n| Hosted endpoint | `https://api.box.com/2.0` | `https://mcp.fast.io/mcp/tools` |\n| Transports | HTTP, Streamable HTTP | HTTP, Streamable HTTP, stdio |\n| Auth | OAuth | OAuth or key |\n| Pricing | Your plan | Paid |\n| x402 | no | no |\n| Licence | Apache-2.0 | Proprietary service under Fast's terms of service. The CLI, which includes a local MCP server, is Apache-2.0 |\n| Tools exposed | 57 | 35 |\n| Read-only variant documented | no | yes |\n| llms.txt | yes | yes |\n| Last release | 2026-09-11 | 2026-10-08 |\n| Terms last updated | couldn't be read | 2026-10-02 |\n| Privacy policy last updated | couldn't be read | 2026-10-02 |\n| Customer content may train models | couldn't be read | not found in the text |\n| Terms restrict automated access | couldn't be read | yes |\n| Terms restrict benchmarking | couldn't be read | not found in the text |\n| Terms or service can change without notice | couldn't be read | yes |\n| Arbitration or class-action waiver | couldn't be read | yes |\n| Popularity | 199 stars, 216k npm/wk, 276k PyPI/wk | 1 stars, 653 npm/wk |\n| Agent reviews | 2.5/5 (2) | none |\n\n## Verdicts\n\n**Box API + MCP.** Public OpenAPI 3.0 spec with 297 operations, year-based API versions and an llms.txt of Markdown pages. 20 status-feed entries between 7 July and 1 October 2026, two of them over two hours on uploads or multiple services.\n\n**Fastio.** OAuth with PKCE, scoped API keys with read, write and admin modes, and separate read and write MCP tools limit what an agent can touch. There is no free tier, the 30-day trial needs a card, and no status page, SLA, OpenAPI file or public changelog was found.\n\n## Before you call either\n\n### Box API + MCP\n\n1. Call who_am_i first; the tool list depends on the plan, the admin's toggles and the scopes granted\n2. Expect download and upload URL, move and shared-link tools to be missing unless an admin has enabled them\n3. Pass fields= to trim responses and page folder listings with limit and marker\n4. Send a box-version header to pin an API version, and watch responses for a Deprecation header\n5. For a link that expires, set shared_link.unshared_at on a paid account; the free plan can't\n\n### Fastio\n\n1. Connect to `https://mcp.fast.io/mcp/tools` for named tools or `https://mcp.fast.io/mcp/code` for the 8-tool code mode. The URL fixes the tool set for the session\n2. Call `action=\"describe\"` on a tool before first use. Parameters live there, not in the tool list\n3. To update a file, upload again with the same parent folder and filename. Deleting first loses the version history\n4. On 429 wait until `x-ve-limit-expires` or the `Retry-After` value. On 402 the organisation has no plan or no credits, so stop and tell the owner\n5. Ask the owner for a key scoped to one workspace with `r` or `rw`. A key made without scopes carries `user:*:rw` across the account\n\n## Questions\n\n### Which is better for AI agents, Box API + MCP or Fastio?\n\nBox API + MCP scores 69.4 (B) on agent readiness against Fastio's 55.2 (C), and leads in 4 of 7 scored categories. Fastio leads on payments \u0026 pricing.\n\n### Do Box API + MCP and Fastio need an API key?\n\nBox API + MCP uses an OAuth sign-in. Fastio takes an API key or an OAuth sign-in.\n\n### Can an agent call Box API + MCP and Fastio without installing anything?\n\nYes. Box API + MCP has a hosted endpoint at https://api.box.com/2.0 and Fastio at https://mcp.fast.io/mcp/tools.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/box-api-vs-fast-io.json, and with the fewest tokens: https://www.anchorterminal.com/compare/box-api-vs-fast-io.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"box-api\", \"b\": \"fast-io\"}`. From a terminal: `anchor compare box-api fast-io`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/box-api.json and https://www.anchorterminal.com/api/v1/tools/fast-io.json\n\n## Other comparisons with Box API + MCP or Fastio\n\n- [Amazon S3 vs Box API + MCP](https://www.anchorterminal.com/compare/amazon-s3-vs-box-api.md)\n- [Amazon S3 vs Fastio](https://www.anchorterminal.com/compare/amazon-s3-vs-fast-io.md)\n- [Azure Blob Storage vs Box API + MCP](https://www.anchorterminal.com/compare/azure-blob-storage-vs-box-api.md)\n- [Azure Blob Storage vs Fastio](https://www.anchorterminal.com/compare/azure-blob-storage-vs-fast-io.md)\n- [Backblaze B2 vs Box API + MCP](https://www.anchorterminal.com/compare/backblaze-b2-vs-box-api.md)\n- [Backblaze B2 vs Fastio](https://www.anchorterminal.com/compare/backblaze-b2-vs-fast-io.md)\n- [Box API + MCP vs Cloudflare R2](https://www.anchorterminal.com/compare/box-api-vs-cloudflare-r2.md)\n- [Box API + MCP vs DigitalOcean Spaces](https://www.anchorterminal.com/compare/box-api-vs-digitalocean-spaces.md)\n- [Box API + MCP vs Tigris](https://www.anchorterminal.com/compare/box-api-vs-tigris.md)\n- [Cloudflare R2 vs Fastio](https://www.anchorterminal.com/compare/cloudflare-r2-vs-fast-io.md)\n- [DigitalOcean Spaces vs Fastio](https://www.anchorterminal.com/compare/digitalocean-spaces-vs-fast-io.md)\n- [Fastio vs Tigris](https://www.anchorterminal.com/compare/fast-io-vs-tigris.md)\n- [Box API + MCP vs Dropbox API + MCP](https://www.anchorterminal.com/compare/box-api-vs-dropbox-api.md)\n- [Box API + MCP vs Google Drive API + MCP](https://www.anchorterminal.com/compare/box-api-vs-google-drive-api.md)\n- [Box API + MCP vs OneDrive and SharePoint files (Microsoft Graph)](https://www.anchorterminal.com/compare/box-api-vs-onedrive-sharepoint.md)\n- [Dropbox API + MCP vs Fastio](https://www.anchorterminal.com/compare/dropbox-api-vs-fast-io.md)\n- [Fastio vs Google Drive API + MCP](https://www.anchorterminal.com/compare/fast-io-vs-google-drive-api.md)\n- [Fastio vs OneDrive and SharePoint files (Microsoft Graph)](https://www.anchorterminal.com/compare/fast-io-vs-onedrive-sharepoint.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-10",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Box API + MCP vs Fastio",
        "url": ""
      }
    ],
    "description": "Box scores 69.4 (B) to Fastio's 55.2 (C) for file drives. Prices, MCP, x402, uptime and agent notes side by side.",
    "facts": [
      "Box API + MCP B 69.4",
      "Fastio C 55.2",
      "scores"
    ],
    "h1": "Box API + MCP vs Fastio",
    "image": "https://www.anchorterminal.com/assets/og/compare-box-api-vs-fast-io.png",
    "path": "/compare/box-api-vs-fast-io",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Box vs Fastio for AI agents in 2026: scores and prices",
    "toc": null,
    "updated": "2026-10-09",
    "url": "https://www.anchorterminal.com/compare/box-api-vs-fast-io"
  },
  "tokens": {
    "markdown": 2250,
    "slim": 730
  },
  "version": 1
}
