# ComplyCube vs Shufti > ComplyCube scores 63.7 (B) on agent readiness against Shufti's 57.8 (C), and leads in 4 of 7 scored categories. Shufti leads on security & auth, payments & pricing and transparency & trust. Both do kyc identity. Category scores, facts, verdicts and agent notes side by side. - Canonical: https://www.anchorterminal.com/compare/complycube-vs-shufti - Markdown: https://www.anchorterminal.com/compare/complycube-vs-shufti.md (~2,250 tokens) - Slim: https://www.anchorterminal.com/compare/complycube-vs-shufti.min.md (~780 tokens, same facts, less prose, for token-sensitive contexts) - JSON: https://www.anchorterminal.com/compare/complycube-vs-shufti.json (this page as data, same URL with Accept: application/json) - Site index for agents: https://www.anchorterminal.com/llms.txt (full text: https://www.anchorterminal.com/llms-full.txt) - API: https://www.anchorterminal.com/api/v1/index.json - Updated: 2026-10-09 ComplyCube scores 63.7 (B) on agent readiness against Shufti's 57.8 (C), and leads in 4 of 7 scored categories. Shufti leads on security & auth, payments & pricing and transparency & trust. Both do kyc identity. - ComplyCube: grade B, 63.7/100, rank #343 of 842. Markdown https://www.anchorterminal.com/tools/complycube.md · JSON https://www.anchorterminal.com/api/v1/tools/complycube.json - Shufti: grade C, 57.8/100, rank #538 of 842. Markdown https://www.anchorterminal.com/tools/shufti.md · JSON https://www.anchorterminal.com/api/v1/tools/shufti.json ## Which one, for what ### ComplyCube (B) Good for: An agent that creates clients, uploads documents, starts document, identity and AML screening checks and reads results for a regulated business, with low entry cost ($99 a month) and a scripted sandbox. Ahead on: - Reliability, 84 against 65 - Schema & documentation, 78 against 58 - Agent ergonomics, 60 against 47 Watch for: One API key per environment with no scopes. The docs say keys carry many privileges ### Shufti (C) Good for: A team that wants document, face, address, AML and KYB checks behind one endpoint, a free plan for low volume, and an MCP server that hands the person a hosted verification link. Ahead on: - Security & auth, 62 against 52 - Payments & pricing, 35 against 27 - Transparency & trust, 71 against 63 Also in its favour: - Free to start without a card Watch for: No OpenAPI file or other machine-readable contract was found. The reference is prose tables plus Postman collections ## Score by category | Category | Weight | ComplyCube | Shufti | Edge | | --- | --- | --- | --- | --- | | Reliability | 16% (20 this run) | 84 | 65 | ComplyCube +19 | | Performance | 10%, pending | pending | pending | not scored in this run | | Schema & documentation | 13% (16.2 this run) | 78 | 58 | ComplyCube +20 | | Agent ergonomics | 13% (16.2 this run) | 60 | 47 | ComplyCube +13 | | Security & auth | 14% (17.5 this run) | 52 | 62 | Shufti +10 | | Payments & pricing | 10% (12.5 this run) | 27 | 35 | Shufti +8 | | Task success | 10%, pending | pending | pending | not scored in this run | | Maintenance & community | 7% (8.8 this run) | 74 | 72 | ComplyCube +2 | | Transparency & trust | 7% (8.8 this run) | 63 | 71 | Shufti +8 | | Negative events | ≤15 | 0 | 0 | | | **Total** | | **63.7 · B** | **57.8 · C** | | ## Facts side by side | Fact | ComplyCube | Shufti | | --- | --- | --- | | Kind | HTTP API | HTTP API | | Vendor | ComplyCube (Teemo Technology Ltd) | Shufti Pro Limited | | Hosted endpoint | `https://api.complycube.com` | `https://api.shuftipro.com` | | Transports | HTTP | HTTP, Streamable HTTP | | Auth | API key | OAuth or key | | Pricing | Pay per use | Freemium | | x402 | no | no | | Licence | Proprietary service under ComplyCube's terms of service. The PHP library and the web, iOS and Android SDK repositories are MIT, and `@complycube/api` on npm is MIT | Proprietary service under Shufti's Terms and Conditions. The licences of the mobile capture SDKs were not checked | | Tools exposed | none | 25 | | Read-only variant documented | no | no | | llms.txt | yes | yes | | Last release | 2026-10-06 | 2026-10-06 | | Terms last updated | no date given | | | Privacy policy last updated | no date given | 2026-09-01 | | Customer content may train models | not found in the text | yes, with an opt-out | | Terms restrict automated access | not found in the text | | | Terms restrict benchmarking | not found in the text | | | Terms or service can change without notice | not found in the text | | | Arbitration or class-action waiver | not found in the text | | | Popularity | 6.2k npm/wk, 292 PyPI/wk | 673 npm/wk | ## Verdicts **ComplyCube.** A sandbox with its own key and scripted outcomes, a public OpenAPI spec, Markdown docs and an audit log API suit an agent running verification checks. Each environment has one unscoped key, no idempotency keys were found, and the only published terms are undated and read as website terms. **Shufti.** One endpoint covers document, face, address, AML and KYB checks, with a free plan of 10 verifications a month, and a hosted MCP server adds OAuth with three scopes. No OpenAPI file, server SDK or idempotency key was found, and the status page history could not be read. ## Before you call either ### ComplyCube 1. Send the key bare in the `Authorization` header, with no Bearer prefix. Keys start `test_` or `live_` 2. Create a client first, then documents or live photos for it, then `POST /v1/checks` with the client and upload IDs 3. Stay under 10 requests a second live and 5 in the sandbox. On 429, back off exponentially with jitter, starting at 30 seconds 4. A badly formed filter returns 200 with no results, so check filter names before trusting an empty list 5. Checks are asynchronous. Subscribe to webhooks, verify the `ComplyCube-Signature` HMAC-SHA256 header, and expect duplicate and out-of-order events ### Shufti 1. POST every verification to `https://api.shuftipro.com/` with a unique `reference` of 6 to 250 characters and one object per service. Read results from `/status` with that reference 2. Register the callback domain in the back office first. An unregistered `callback_url` is rejected 3. Stay under 60 requests a minute per IP on a production account and 20 on a trial account 4. Check the `Signature` response header. Accounts created after 15 March 2023 hash the Secret Key with SHA-256 before appending it to the raw response 5. Through MCP, identity checks return a `verification_url` for the person to open. No tool accepts an image, so use the REST API for offsite proofs ## Questions ### Which is better for AI agents, ComplyCube or Shufti? ComplyCube scores 63.7 (B) on agent readiness against Shufti's 57.8 (C), and leads in 4 of 7 scored categories. Shufti leads on security & auth, payments & pricing and transparency & trust. ### Do ComplyCube and Shufti need an API key? ComplyCube needs an API key. Shufti takes an API key or an OAuth sign-in. ### Can an agent call ComplyCube and Shufti without installing anything? Yes. ComplyCube has a hosted endpoint at https://api.complycube.com and Shufti at https://api.shuftipro.com. ## For agents - This comparison as JSON: https://www.anchorterminal.com/compare/complycube-vs-shufti.json, and with the fewest tokens: https://www.anchorterminal.com/compare/complycube-vs-shufti.min.md - Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {"a": "complycube", "b": "shufti"}`. From a terminal: `anchor compare complycube shufti` - Each listing in full: https://www.anchorterminal.com/api/v1/tools/complycube.json and https://www.anchorterminal.com/api/v1/tools/shufti.json ## Other comparisons with ComplyCube or Shufti - [ComplyCube vs Didit](https://www.anchorterminal.com/compare/complycube-vs-didit.md) - [ComplyCube vs Jumio](https://www.anchorterminal.com/compare/complycube-vs-jumio.md) - [ComplyCube vs Middesk](https://www.anchorterminal.com/compare/complycube-vs-middesk.md) - [ComplyCube vs Persona](https://www.anchorterminal.com/compare/complycube-vs-persona.md) - [ComplyCube vs Socure RiskOS](https://www.anchorterminal.com/compare/complycube-vs-socure-riskos.md) - [ComplyCube vs Sumsub](https://www.anchorterminal.com/compare/complycube-vs-sumsub.md) - [ComplyCube vs Trulioo](https://www.anchorterminal.com/compare/complycube-vs-trulioo.md) - [ComplyCube vs Veriff](https://www.anchorterminal.com/compare/complycube-vs-veriff.md) - [Didit vs Shufti](https://www.anchorterminal.com/compare/didit-vs-shufti.md) - [Jumio vs Shufti](https://www.anchorterminal.com/compare/jumio-vs-shufti.md) - [Persona vs Shufti](https://www.anchorterminal.com/compare/persona-vs-shufti.md) - [Shufti vs Socure RiskOS](https://www.anchorterminal.com/compare/shufti-vs-socure-riskos.md) - [Shufti vs Sumsub](https://www.anchorterminal.com/compare/shufti-vs-sumsub.md) - [Shufti vs Trulioo](https://www.anchorterminal.com/compare/shufti-vs-trulioo.md) - [Shufti vs Veriff](https://www.anchorterminal.com/compare/shufti-vs-veriff.md) - [ComplyAdvantage vs ComplyCube](https://www.anchorterminal.com/compare/complyadvantage-vs-complycube.md) - [ComplyAdvantage vs Shufti](https://www.anchorterminal.com/compare/complyadvantage-vs-shufti.md) - [Middesk vs Shufti](https://www.anchorterminal.com/compare/middesk-vs-shufti.md)