Head to head · Esign send · October 2026 research run

Dropbox Sign vs PandaDoc

Dropbox Sign scores 68.9 (B) on agent readiness against PandaDoc's 63.1 (B), and leads in 6 of 7 scored categories. PandaDoc leads on payments & pricing. Both do esign send.

Which one, for what

Dropbox Sign B

Good for An agent that sends a prepared PDF or a saved template for signature from one company account and tracks it to completion by webhook or polling, with the signed PDF and audit trail at the end.

Ahead on

  • Reliability, 75 against 58
  • Maintenance & community, 85 against 77
  • Transparency & trust, 68 against 59

Watch for

No idempotency keys found in the docs or the spec, so a retried send can create a second signature request

PandaDoc B

Good for Suited to agents that prepare a proposal, quote or contract from a template, send it for signature and track it, for a team that already works in PandaDoc.

Ahead on

  • Payments & pricing, 30 against 25

Watch for

Three incidents hit document creation, sending or the API between 15 July and 6 September 2026, the longest about 3.5 hours

Score by category

CategoryWeight this runDropbox SignPandaDocEdge
Reliability16%207558Dropbox Sign +17
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28887Dropbox Sign +1
Agent ergonomics13%16.27268Dropbox Sign +4
Security & auth14%17.56561Dropbox Sign +4
Payments & pricing10%12.52530PandaDoc +5
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88577Dropbox Sign +8
Transparency & trust7%8.86859Dropbox Sign +9
Negative events≤1500
Total68.9 · B63.1 · B

Facts side by side

FactDropbox SignPandaDoc
KindHTTP APIHTTP API
VendorDropbox, Inc.PandaDoc
Hosted endpointhttps://api.hellosign.com/v3https://api.pandadoc.com/public/v1
TransportsHTTPHTTP
AuthOAuth or keyOAuth or key
PricingPaidFreemium
x402nono
LicenceProprietary service under the Dropbox Sign terms of service. The OpenAPI spec repository is Apache 2.0 and the official SDKs are MITProprietary service under PandaDoc's Master Services Agreement. The OpenAPI specification, the API client SDKs and the MCP server guide on GitHub are MIT
Read-only variant documentednono
llms.txtyesyes
MCP registrynot listedcom.pandadoc.mcp/mcp
Last release2026-09-102026-10-02
Terms last updated2025-01-07couldn't be read
Privacy policy last updated2025-01-14couldn't be read
Customer content may train modelsnot found in the textcouldn't be read
Terms restrict automated accessnot found in the textcouldn't be read
Terms restrict benchmarkingyescouldn't be read
Terms or service can change without noticeyescouldn't be read
Arbitration or class-action waiveryescouldn't be read
Popularity22 stars, 150k npm/wk50k npm/wk, 12k PyPI/wk

Verdicts

Dropbox Sign

A public OpenAPI 3.0.3 spec, llms.txt, six official SDKs and a free test mode let an agent build the whole flow before paying. Production sends need a paid plan from $900 a year, the API key has full account access, and no idempotency keys were found in the reviewed documentation.

PandaDoc

The public OpenAPI spec lists 133 operations and reached version 8.21.0 on 2 October 2026, and the hosted MCP server, with OAuth and dynamic client registration, is open to every plan including Free. The status page records three incidents affecting document creation, sending or the API between 15 July and 6 September 2026, and writes have no idempotency keys.

Before you call either

Dropbox Sign

  1. Send test_mode=true while building. Test requests are free, watermarked and not legally binding, and are limited to 10 requests a minute
  2. Don't blind-retry a send after a timeout. No idempotency key exists, so list requests by metadata or title first to check whether it was created
  3. Authenticate with HTTP Basic, the API key as username and an empty password. Keep the key out of URLs, although the docs show that form
  4. Answer every webhook with HTTP 200 and the body Hello API Event Received, and verify event_hash. Ten consecutive failures clear the callback URL
  5. Treat a 200 from cancel as queued only. Confirmation arrives later as a signature_request_canceled event

PandaDoc

  1. Wait for document.draft before sending. Creation is asynchronous and a new document stays in document.uploaded for a few seconds
  2. Match the region. Accounts on app.pandadoc.eu use api.pandadoc.eu and mcp.pandadoc.eu, and the global hosts reject them
  3. Check for an existing document before retrying a create. There's no idempotency key and each production create uses a usage credit
  4. Retry 409 after a pause and back off on 429. A sandbox key allows 10 requests a minute per endpoint
  5. Don't rely on webhooks alone. Failed deliveries aren't retried, so poll the status endpoint as a fallback

Questions

Which is better for AI agents, Dropbox Sign or PandaDoc?

Dropbox Sign scores 68.9 (B) on agent readiness against PandaDoc's 63.1 (B), and leads in 6 of 7 scored categories. PandaDoc leads on payments & pricing.

Do Dropbox Sign and PandaDoc need an API key?

Both take an API key or an OAuth sign-in.

Can an agent call Dropbox Sign and PandaDoc without installing anything?

Yes. Dropbox Sign has a hosted endpoint at https://api.hellosign.com/v3 and PandaDoc at https://api.pandadoc.com/public/v1.

Other comparisons with Dropbox Sign or PandaDoc

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.