Head to head · Kyc identity · October 2026 research run

Didit vs Persona

Didit scores 75 (BB) on agent readiness against Persona's 69.5 (B), and leads in 5 of 7 scored categories. Persona leads on agent ergonomics and transparency & trust. Both do kyc identity.

Which one, for what

Didit BB

Good for A team that wants document, liveness, screening and business registry checks from one API with public prices and no sales step, and an agent that has to set itself up.

Ahead on

  • Reliability, 80 against 70
  • Payments & pricing, 60 against 35
  • Maintenance & community, 82 against 75

Also in its favour

  • Agent-ready, a grade of BB or better
  • Runs on your own machine
  • Free to start without a card

Watch for

Three incidents marked major on status.didit.me from 22 July to 4 September 2026, each a partial outage of the core APIs traced to the primary database

Persona B

Good for A company that already runs Persona and wants an agent to create inquiries from templates, read verification and report results, screen against watchlists and work review cases with a permission-limited key.

Ahead on

  • Agent ergonomics, 74 against 69
  • Transparency & trust, 68 against 63

Watch for

Production access needs Persona's approval and a 12-month plan from $250 a month, and API-only integration is limited to Enterprise plans

Score by category

CategoryWeight this runDiditPersonaEdge
Reliability16%208070Didit +10
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28885Didit +3
Agent ergonomics13%16.26974Persona +5
Security & auth14%17.57673Didit +3
Payments & pricing10%12.56035Didit +25
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88275Didit +7
Transparency & trust7%8.86368Persona +5
Negative events≤1500
Total75 · BB69.5 · B

Facts side by side

FactDiditPersona
KindHTTP APIHTTP API
VendorDidit Identity Spain, S.L.Persona Identities, Inc.
Hosted endpointhttps://verification.didit.mehttps://mcp.withpersona.com
TransportsHTTP, Streamable HTTP, stdioHTTP
AuthOAuth or keyAPI key
PricingPay per usePaid
x402nono
LicenceProprietary service under Didit's Business Terms and Conditions. The MCP server in didit-protocol/mcp is MITProprietary service under Persona's terms of service. The persona JavaScript client on npm is MIT
Tools exposed156190
Read-only variant documentednono
llms.txtyesyes
MCP registryme.didit/mcpnot listed
Last release2026-10-082026-09-29
Terms last updated2026-09-23couldn't be read
Privacy policy last updated2026-10-07couldn't be read
Customer content may train modelsyes, with an opt-outcouldn't be read
Terms restrict automated accessnot found in the textcouldn't be read
Terms restrict benchmarkingyescouldn't be read
Terms or service can change without noticenot found in the textcouldn't be read
Arbitration or class-action waivernot found in the textcouldn't be read
Popularity0 stars, 27k npm/wk570k npm/wk

Verdicts

Didit

A self-serve verification API with public per-check prices, key registration by API, scoped keys and a 365-day audit log. The status page shows three incidents marked major between 22 July and 4 September 2026, each a partial outage of the core APIs, and the sub-processor list isn't public.

Persona

The REST API has a public OpenAPI 3.1 file, llms.txt, API keys with per-resource permissions, idempotency keys on every POST and a 60-day sandbox trial with no card. Production needs a business review and a 12-month plan from $250 a month. The status page lists 11 incidents since 10 July 2026, including 70 minutes of timeouts across all products.

Before you call either

Didit

  1. Register with POST https://apx.didit.me/auth/v2/programmatic/register/, then verify-email with the emailed 6-character code. Use a real inbox, because reserved test domains return 500.
  2. Send the key as x-api-key to https://verification.didit.me/v3/. The JWT from registration works only on apx.didit.me.
  3. Create a workflow before POST /v3/session/. workflow_id is the only required field, and an unfinished session with the same vendor_data is returned again.
  4. Read results from webhooks and use GET /v3/session/{sessionId}/decision/ for back-fill. Every per-feature result is a plural array.
  5. The MCP server at https://mcp.didit.me/mcp takes OAuth sign-in only, never an API key. Approve didit:verification alone when the task doesn't change workflows or keys.

Persona

  1. Ask for a dedicated key limited to the permissions the task needs. A new key has every standard permission until it's limited
  2. Send Persona-Version on every call and an Idempotency-Key on every POST. A replayed key returns the first result, including a 500
  3. Treat redact calls as irreversible. They permanently delete personal data and cascade to downstream objects
  4. Stay under 300 requests a minute in production, read RateLimit-Remaining and Quota-Remaining, and back off on 429 because rejected requests still count
  5. Use fields and include to cut response size. Through MCP these parameters aren't exposed, and only 14 tools take filter

Questions

Which is better for AI agents, Didit or Persona?

Didit scores 75 (BB) on agent readiness against Persona's 69.5 (B), and leads in 5 of 7 scored categories. Persona leads on agent ergonomics and transparency & trust.

Do Didit and Persona need an API key?

Didit takes an API key or an OAuth sign-in. Persona needs an API key.

Can an agent call Didit and Persona without installing anything?

Yes. Didit has a hosted endpoint at https://verification.didit.me and Persona at https://mcp.withpersona.com.

Other comparisons with Didit or Persona

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.