Head to head · Cms content · October 2026 research run

Contentstack vs Directus

Directus scores 67.1 (B) on agent readiness against Contentstack's 64 (B), and leads in 5 of 7 scored categories. Contentstack leads on transparency & trust. Both do cms content.

Which one, for what

Contentstack B

Good for Teams already on Contentstack, or starting on its free plan, who want an agent to draft, localise, release and publish structured content with scoped credentials and an audit trail.

Ahead on

  • Transparency & trust, 73 against 61

Also in its favour

  • A hosted endpoint, with nothing to install
  • Runs on your own machine
  • Free to start without a card

Watch for

The MCP server's default group loads 78 tools, including nine deletes, with no readOnlyHint or destructiveHint annotations and no read-only switch

Directus B

Good for Teams that already keep content in an SQL database and want an agent to edit items, files and the data model under a named user's permissions.

Ahead on

  • Reliability, 82 against 71
  • Agent ergonomics, 73 against 67
  • Payments & pricing, 55 against 30

Watch for

Version 12 (10 June 2026) added licence enforcement. The free Core tier allows 3 Studio seats, 25 collections and 5 flows, and an instance over its limits is locked after a grace period

Score by category

CategoryWeight this runContentstackDirectusEdge
Reliability16%207182Directus +11
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.27781Directus +4
Agent ergonomics13%16.26773Directus +6
Security & auth14%17.56968Contentstack +1
Payments & pricing10%12.53055Directus +25
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88286Directus +4
Transparency & trust7%8.87361Contentstack +12
Negative events≤15-3-6
Total64 · B67.1 · B

Facts side by side

FactContentstackDirectus
KindHTTP APIHTTP API
VendorContentstack Inc.Monospace Inc. (Directus)
Hosted endpointhttps://api.contentstack.iono (local only)
TransportsHTTP, stdioHTTP, Streamable HTTP
AuthOAuth or keyOAuth or key
PricingFreemiumFreemium
x402nono
LicenceProprietary service under Contentstack's Master Agreement and Terms of Service. The OpenAPI files, the management SDKs, the CLI and the @contentstack/mcp package are MITMSCL-1.0-GPL (Monospace Sustainable Core Licence 1.0), source-available with a licence key for paid tiers, each version converting to GPL-3.0 after four years. @directus/sdk is MIT
Tools exposed20612
Read-only variant documentedyesno
llms.txtyesyes
Last release2026-09-222026-10-07
Terms last updated2022-08-01no date given
Privacy policy last updated2026-06-302026-06-09
Customer content may train modelsnot found in the textnot found in the text
Terms restrict automated accessnot found in the textnot found in the text
Terms restrict benchmarkingyesyes
Terms or service can change without noticenot found in the textnot found in the text
Arbitration or class-action waiveryesnot found in the text
Popularity44k npm/wk, 1.5k PyPI/wk38k stars, 23k npm/wk

Verdicts

Contentstack

The Content Management API has a public OpenAPI file, OAuth scopes that separate read, write and publish, read-only management tokens and a stack audit log. A free plan needs no card. The MCP server loads 78 tools by default with no annotations or read-only switch, and the limit=0 behaviour changed on 11 September 2026 without advance notice.

Directus

The built-in MCP server works under the connecting user's permissions, supports OAuth limited to the MCP endpoint and blocks deletes unless an administrator allows them. Since version 12 a licence check caps the free Core tier at 3 Studio seats, 25 collections and 5 flows, and the default tool list carries about 79 KB of instructions.

Before you call either

Contentstack

  1. Pick the base URL for the stack's region first. North America on AWS is https://api.contentstack.io, and the other six regions use contentstack.com hosts
  2. Send api_key and authorization headers on every Content Management API call. Ask for a read-only management token when the task only reads
  3. Page with limit (100 at most), skip and include_count=true. limit=0 no longer returns everything
  4. Stay under 10 reads and 10 writes a second per organisation, and one bulk request a second. Watch X-RateLimit-Remaining and back off on 429
  5. Start the MCP server with --groups cma only, and add cma-extended when the task needs audit logs or version history. Publishing and deleting need no confirmation

Directus

  1. Connect with OAuth or an Authorization: Bearer header. Don't put the token in the URL as ?access_token=, where it can be logged
  2. Use /mcp?tool_mode=registry when the client loads every tool definition. Default mode sends each tool's full instructions, about 79 KB in total
  3. Read the schema tool before writing. Item payloads are untyped objects, so field names and types come only from the data model
  4. Publish a version with POST /versions/{id}/promote over REST. The MCP items tool refuses system collections such as directus_versions
  5. Count translation and junction tables against the 25-collection Core limit before creating collections

Questions

Which is better for AI agents, Contentstack or Directus?

Directus scores 67.1 (B) on agent readiness against Contentstack's 64 (B), and leads in 5 of 7 scored categories. Contentstack leads on transparency & trust.

Do Contentstack and Directus need an API key?

Both take an API key or an OAuth sign-in.

Can an agent call Contentstack and Directus without installing anything?

Contentstack has a hosted endpoint at https://api.contentstack.io. No hosted endpoint is listed for Directus.

Other comparisons with Contentstack or Directus

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.