{
  "data": {
    "a": {
      "slug": "gotohuman",
      "name": "gotoHuman",
      "vendor": "gotoHuman",
      "vendorUrl": "https://www.gotohuman.com",
      "kind": "http-api",
      "category": "human-in-the-loop",
      "summary": "Hosted review inbox for AI agents.",
      "url": "https://www.anchorterminal.com/tools/gotohuman",
      "markdownUrl": "https://www.anchorterminal.com/tools/gotohuman.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/gotohuman.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/gotohuman.json",
      "repo": "https://github.com/gotohuman/gotohuman-mcp-server",
      "license": "MIT (SDKs and MCP server)",
      "transports": [
        "http",
        "stdio"
      ],
      "remoteUrl": "https://api.gotohuman.com",
      "packages": [
        {
          "registry": "npm",
          "name": "gotohuman"
        },
        {
          "registry": "pypi",
          "name": "gotohuman"
        },
        {
          "registry": "npm",
          "name": "@gotohuman/mcp-server"
        }
      ],
      "auth": "api-key",
      "authNotes": "API key in an `x-api-key` header. The SDKs and the MCP server read `GOTOHUMAN_API_KEY`, plus an optional `GOTOHUMAN_AGENT_ID` that ties requests to an agent set up in the dashboard. Reviewers sign in to the web inbox, and Slack notifications can carry a short-lived public link instead.",
      "pricing": "freemium",
      "pricingNotes": "Free $0 a month for 1 user and up to 300 reviews a month, with the web inbox, email and Slack and a 7-day history. Team $99 a month with 6 users ($15 per extra user), review routing, the Reviews API and a 60-day history. Growth $350 a month with 20 users ($17 per extra user), several teams and a 90-day history. Business $950 a month with 50 users, 5 workspaces, audit logs and custom retention. The paid plans don't state a review cap, and there's no yearly price on the page (https://www.gotohuman.com/pricing).",
      "priceSummary": "$99 / mo",
      "where": "both",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": 3,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.gotohuman.com",
      "llmsTxt": "https://docs.gotohuman.com/llms.txt",
      "capabilities": [
        "hitl.approve",
        "hitl.ask",
        "hitl.channels",
        "hitl.audit"
      ],
      "tags": [
        "hosted",
        "freemium",
        "free-tier",
        "mcp",
        "llms-txt",
        "typescript",
        "python",
        "webhooks",
        "enterprise"
      ],
      "lastRelease": "2026-09-24",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 43.9,
        "grade": "E",
        "agentReady": false,
        "rank": 407,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 7,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 62,
          "maintenance": 64,
          "payments": 30,
          "reliability": 20,
          "schema": 49,
          "security": 44,
          "transparency": 55
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Built for agent review, with TypeScript and Python SDKs, a 3-tool MCP server, an n8n node and a Make app. No status page, published rate limits or documented error responses.",
        "strengths": [
          "Built for agent review, with TypeScript and Python SDKs, a 3-tool MCP server, an n8n node and a Make app",
          "Reviewers can edit the output before approving, and the webhook returns the edited data",
          "Web inbox, email and Slack on every plan, including the $0 one",
          "Webhooks retry up to 7 times over about 9 hours and carry an `Idempotency-Key` header",
          "Terms rule out training on customer data, and processing is mainly in the EU"
        ],
        "weaknesses": [
          "No status page, published rate limits or documented error responses",
          "No review expiry or timeout that we could find in the docs",
          "Review routing and the Reviews API start at $99 a month, audit logs at $950",
          "The API reference and the SDK guide disagree on field names and on whether `agentId` is required",
          "No security.txt, disclosure policy or own SOC 2 report"
        ],
        "agentNotes": [
          "Call `get-form-schema` before `request-human-review-with-form`, since the field data must match the review type",
          "Send `agentId` on every API request, because the API reference marks it required even though the JS SDK doesn't",
          "Pass a `webhookUrl` per request when the review type has no default, or the answer has nowhere to go",
          "Deduplicate webhook calls on the `Idempotency-Key` header, since delivery is at least once",
          "Set your own deadline on the agent side and treat silence as a rejection"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "E",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 43.9
          }
        ],
        "editorialScores": {
          "ergonomics": 62,
          "maintenance": 64,
          "payments": 30,
          "reliability": 20,
          "schema": 49,
          "security": 44,
          "transparency": 54
        },
        "provenanceScore": 55
      },
      "connect": {
        "http": "curl -X POST https://api.gotohuman.com/requestReview -H \"x-api-key: $GOTOHUMAN_API_KEY\" \\\n  -H \"Content-Type: application/json\" \\\n  -d '{\"formId\":\"YOUR_REVIEW_TEMPLATE_ID\",\"fields\":{\"draft\":\"Refund order 1042 in full?\"},\"meta\":{\"threadId\":\"t-1\"}}'",
        "config": {
          "mcpServers": {
            "gotoHuman": {
              "args": [
                "-y",
                "@gotohuman/mcp-server"
              ],
              "command": "npx",
              "env": {
                "GOTOHUMAN_API_KEY": "${GOTOHUMAN_API_KEY}"
              }
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/hitl.approve",
        "tool": "https://letme.dev/gotohuman"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "Team plan",
          "unit": "month",
          "usd": 99,
          "note": "6 users included"
        },
        {
          "item": "Team extra user",
          "unit": "seat-month",
          "usd": 15
        },
        {
          "item": "Growth plan",
          "unit": "month",
          "usd": 350,
          "note": "20 users included"
        },
        {
          "item": "Growth extra user",
          "unit": "seat-month",
          "usd": 17
        },
        {
          "item": "Business plan",
          "unit": "month",
          "usd": 950,
          "note": "50 users, 5 workspaces, audit logs"
        }
      ],
      "provenance": {
        "legalEntity": "gotoHuman UG (haftungsbeschränkt)",
        "domain": "gotohuman.com",
        "domainRegistered": "",
        "endpointOnVendorDomain": true,
        "terms": "https://docs.gotohuman.com/terms-of-service",
        "privacy": "https://www.gotohuman.com/privacy",
        "statusPage": "",
        "changelog": "",
        "securityTxt": "none",
        "checked": "2026-10-01",
        "notes": [
          "The terms (last updated 2026-02-13) name gotoHuman UG (haftungsbeschränkt), Lydia-Rabinowitsch-Str. 14, 10557 Berlin, Germany, under German law with Berlin as venue.",
          "https://www.gotohuman.com/.well-known/security.txt returned 404 on 2026-10-01.",
          "No status page or product changelog found. The n8n node publishes release notes on GitHub.",
          "We didn't check RDAP, so the domain age is blank."
        ],
        "score": 55
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/gotohuman.json",
      "live": {
        "slug": "gotohuman",
        "probe": {
          "target": "https://api.gotohuman.com",
          "method": "get",
          "lastAt": "2026-10-04T23:48:09.070706014Z",
          "lastOk": true,
          "lastStatus": 404,
          "lastMs": 55,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 50,
          "p95ms24h": 99,
          "samples24h": 272,
          "samples30d": 898,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 109
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 270,
              "ok": 270
            }
          ]
        },
        "versions": [
          {
            "registry": "npm",
            "name": "@gotohuman/mcp-server",
            "version": "0.2.2",
            "seenAt": "2026-10-04T16:29:05.156119215Z"
          },
          {
            "registry": "npm",
            "name": "gotohuman",
            "version": "0.3.6",
            "seenAt": "2026-10-04T16:29:04.586460709Z"
          },
          {
            "registry": "pypi",
            "name": "gotohuman",
            "version": "0.2.4",
            "released": "2026-06-03",
            "seenAt": "2026-10-04T16:29:04.975506279Z"
          }
        ],
        "githubStars": 52,
        "npmWeekly": 74,
        "pypiWeekly": 5,
        "securityTxt": {
          "url": "https://gotohuman.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-04T15:15:41.255049539Z"
        },
        "llmsTxt": {
          "url": "https://docs.gotohuman.com/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:17:50.969227035Z"
        },
        "domain": {
          "domain": "gotohuman.com",
          "registered": "2024-03-28",
          "source": "https://rdap.verisign.com/com/v1/domain/gotohuman.com",
          "checkedAt": "2026-10-04T13:04:49.9181988Z"
        },
        "pages": [
          {
            "url": "https://www.gotohuman.com/pricing",
            "kind": "pricing",
            "status": 304,
            "checkedAt": "2026-10-04T15:50:32.334095061Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "dc7f398aed05"
          },
          {
            "url": "https://www.gotohuman.com/privacy",
            "kind": "privacy",
            "status": 304,
            "checkedAt": "2026-10-04T15:50:34.372419331Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "e30807da51a1"
          },
          {
            "url": "https://docs.gotohuman.com/terms-of-service",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-04T15:43:39.70487297Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "eb3d36ed071e"
          }
        ],
        "updatedAt": "2026-10-04T23:48:09.070706014Z"
      }
    },
    "b": {
      "slug": "permit-mcp-gateway",
      "name": "Permit MCP Gateway",
      "vendor": "Permit.io",
      "vendorUrl": "https://www.permit.io/mcp-gateway",
      "kind": "platform",
      "category": "human-in-the-loop",
      "summary": "Hosted proxy between MCP clients and MCP servers that signs in the human behind the agent, checks each tool call against Permit.io policy and logs it.",
      "url": "https://www.anchorterminal.com/tools/permit-mcp-gateway",
      "markdownUrl": "https://www.anchorterminal.com/tools/permit-mcp-gateway.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/permit-mcp-gateway.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/permit-mcp-gateway.json",
      "transports": [
        "streamable-http"
      ],
      "remoteUrl": "https://{subdomain}.agent.security/mcp",
      "packages": [],
      "auth": "oauth",
      "authNotes": "The gateway is an OAuth 2.1 authorisation server per host. The MCP client gets a 401, reads `/.well-known/oauth-authorization-server` and opens a browser, where the user signs in with email and password, a one-time code, a passkey, Google, GitHub or Microsoft, or SAML or OIDC single sign-on, then picks the access the agent gets. Upstream OAuth (GitHub, Linear) runs through the same consent flow. Sessions expire 90 days after the last tool call.",
      "pricing": "paid",
      "pricingNotes": "Human-in-the-loop approvals are on Enterprise plans, arranged through a demo (https://docs.permit.io/permit-mcp-gateway/human-in-the-loop), and so are the customer-controlled and fully on-premises deployments. The hosted gateway is where evaluation starts, sign-up at app.agent.security. Permit's pricing page lists a free Community plan (1,000 MAU, 20 tenants, no card, 14-day audit logs, best-effort cloud uptime) and Enterprise through sales with SOC 2 Type II, HIPAA BAA and a 99.99 per cent uptime option, but no line for the MCP gateway (https://www.permit.io/pricing).",
      "priceSummary": "Paid",
      "where": "hosted",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.permit.io/permit-mcp-gateway/human-in-the-loop",
      "capabilities": [
        "hitl.approve",
        "hitl.channels",
        "hitl.audit",
        "auth.oauth",
        "auth.consent",
        "auth.agent-identity",
        "auth.audit"
      ],
      "tags": [
        "hosted",
        "self-hosted",
        "mcp",
        "oauth",
        "enterprise"
      ],
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 54.5,
        "grade": "C",
        "agentReady": false,
        "rank": 321,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 4,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 83,
          "maintenance": 43,
          "payments": 10,
          "reliability": 47,
          "schema": 53,
          "security": 80,
          "transparency": 45
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "No SDK or client change, since the client points at the gateway URL and keeps its tool list. Approvals are Enterprise only, through a demo, with no published price.",
        "strengths": [
          "No SDK or client change, since the client points at the gateway URL and keeps its tool list",
          "Fails closed, with timeouts that reject and disconnects that cancel",
          "OAuth 2.1 with consent, a trust ceiling per user and admin revocation",
          "Approval history with the outcome, deciding admin and decision time, plus every call in Permit audit logs",
          "Customer-controlled and on-premises deployments keep tool traffic inside your network"
        ],
        "weaknesses": [
          "Approvals are Enterprise only, through a demo, with no published price",
          "Only gateway admins approve, so routing to the right person needs admin seats",
          "5-minute default window, extendable 5 minutes at a time, suits live sessions more than overnight review",
          "No gateway changelog, and the product changelog on Canny stopped in May 2024",
          "Rate limits exist but aren't published, and the status page doesn't list the gateway"
        ],
        "agentNotes": [
          "Expect a waiting message before an approval-gated tool returns, and don't retry the call while it waits",
          "Read the rejection reason in the error and change approach instead of calling the same tool again",
          "Treat a timeout as a rejection and ask the user to have an admin online before a batch of destructive calls",
          "Stay connected while waiting, since dropping the connection cancels the request",
          "On a 429 with `rate_limited`, back off for a few seconds and grow the wait on each retry"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 54.5
          }
        ],
        "editorialScores": {
          "ergonomics": 83,
          "maintenance": 43,
          "payments": 10,
          "reliability": 47,
          "schema": 53,
          "security": 80,
          "transparency": 40
        },
        "provenanceScore": 50
      },
      "connect": {
        "claudeCode": "claude mcp add --transport http linear-gated \"https://YOUR-HOST.agent.security/mcp?upstream_mcp=https://mcp.linear.app/mcp\""
      },
      "letme": {
        "capability": "https://letme.dev/hitl.approve",
        "tool": "https://letme.dev/permit-mcp-gateway"
      },
      "alsoIn": [
        "agent-auth"
      ],
      "area": "agent-runtime",
      "provenance": {
        "legalEntity": "Permit Inc.",
        "domain": "permit.io",
        "domainRegistered": "",
        "endpointOnVendorDomain": false,
        "terms": "https://www.permit.io/legal/terms-and-conditions",
        "privacy": "https://www.permit.io/legal/privacy-policy",
        "statusPage": "https://permit-io.instatus.com/",
        "changelog": "",
        "securityTxt": "unknown",
        "checked": "2026-10-01",
        "notes": [
          "Gateway hosts and the admin dashboard run on agent.security (app.agent.security, \u003chost\u003e.agent.security), while policy and audit logs live on app.permit.io.",
          "The status page lists the backend, OPAL, frontend, website, PDP Deltas and PDP Data. It has no component for the gateway or agent.security.",
          "The docs changelog page says the Canny changelog has no entries after 2024-05-16 and points to SDK and PDP release notes instead.",
          "The gateway docs in permitio/docs were last changed on 2026-09-20. The human-in-the-loop page was added on 2026-05-11.",
          "The terms (updated 2026-07-01) name Permit Inc., a Delaware corporation with a registered office in Dover, Delaware. We couldn't read security.txt or RDAP on 2026-10-01."
        ],
        "score": 50
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/permit-mcp-gateway.json",
      "live": {
        "slug": "permit-mcp-gateway",
        "probe": {
          "target": "https://{subdomain}.agent.security/mcp",
          "method": "get",
          "lastAt": "2026-10-04T23:48:13.806081875Z",
          "lastOk": false,
          "lastStatus": 0,
          "lastMs": 0,
          "lastNote": "invalid character \"{\" in host name",
          "authRequired": false,
          "uptime24h": 0,
          "uptime30d": 0,
          "p50ms24h": 0,
          "p95ms24h": 0,
          "samples24h": 272,
          "samples30d": 898,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 0
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 0
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 0
            },
            {
              "date": "2026-10-04",
              "probes": 270,
              "ok": 0
            }
          ]
        },
        "vendorStatus": {
          "page": "https://permit-io.instatus.com",
          "indicator": "unknown",
          "summary": "no machine-readable status found",
          "checkedAt": "2026-10-04T21:40:22.877190474Z"
        },
        "securityTxt": {
          "url": "https://permit.io/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-04T15:16:02.774068255Z"
        },
        "domain": {
          "domain": "permit.io",
          "checkedAt": "2026-10-04T13:04:38.037359139Z"
        },
        "pages": [
          {
            "url": "https://www.permit.io/pricing",
            "kind": "pricing",
            "status": 304,
            "checkedAt": "2026-10-04T15:51:41.531863438Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "c9ed914508e4"
          },
          {
            "url": "https://www.permit.io/legal/privacy-policy",
            "kind": "privacy",
            "status": 304,
            "checkedAt": "2026-10-04T15:51:37.367686321Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "2c4815352975"
          },
          {
            "url": "https://www.permit.io/legal/terms-and-conditions",
            "kind": "terms",
            "status": 304,
            "checkedAt": "2026-10-04T15:51:39.899345922Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "7561c6093e56"
          }
        ],
        "updatedAt": "2026-10-04T23:48:13.806081875Z"
      }
    },
    "summary": "Permit MCP Gateway has a score of 54.5 (C) against gotoHuman's 43.9 (E). Both do hitl approve. The largest gap is security \u0026 auth, 36 points."
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/gotohuman-vs-permit-mcp-gateway",
    "json": "https://www.anchorterminal.com/compare/gotohuman-vs-permit-mcp-gateway.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/gotohuman-vs-permit-mcp-gateway.md",
    "slim": "https://www.anchorterminal.com/compare/gotohuman-vs-permit-mcp-gateway.min.md"
  },
  "markdown": "Permit MCP Gateway has a score of 54.5 (C) against gotoHuman's 43.9 (E). Both do hitl approve. The largest gap is security \u0026 auth, 36 points.\n\n- gotoHuman: grade E, 43.9/100, rank #407 of 452. Markdown https://www.anchorterminal.com/tools/gotohuman.md · JSON https://www.anchorterminal.com/api/v1/tools/gotohuman.json\n- Permit MCP Gateway: grade C, 54.5/100, rank #321 of 452. Markdown https://www.anchorterminal.com/tools/permit-mcp-gateway.md · JSON https://www.anchorterminal.com/api/v1/tools/permit-mcp-gateway.json\n\n## Which one, for what\n\nPick gotoHuman for payments \u0026 pricing (+20), maintenance \u0026 community (+21), transparency \u0026 trust (+10).\n\nPick Permit MCP Gateway for reliability (+27), agent ergonomics (+21), security \u0026 auth (+36).\n\n## Score by category\n\n| Category | Weight | gotoHuman | Permit MCP Gateway | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 20 | 47 | Permit MCP Gateway +27 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 49 | 53 | Permit MCP Gateway +4 |\n| Agent ergonomics | 13% (16.2 this run) | 62 | 83 | Permit MCP Gateway +21 |\n| Security \u0026 auth | 14% (17.5 this run) | 44 | 80 | Permit MCP Gateway +36 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 30 | 10 | gotoHuman +20 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 64 | 43 | gotoHuman +21 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 55 | 45 | gotoHuman +10 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **43.9 · E** | **54.5 · C** | |\n\n## Facts side by side\n\n| Fact | gotoHuman | Permit MCP Gateway |\n| --- | --- | --- |\n| Kind | HTTP API | Model platform |\n| Vendor | gotoHuman | Permit.io |\n| Hosted endpoint | `https://api.gotohuman.com` | `https://{subdomain}.agent.security/mcp` |\n| Transports | HTTP, stdio | Streamable HTTP |\n| Auth | API key | OAuth |\n| Pricing | Freemium | Paid |\n| x402 | no | no |\n| Licence | MIT (SDKs and MCP server) | none |\n| Tools exposed | 3 | none |\n| Context cost (tools/list) | n/a | n/a |\n| p95 latency | not measured yet | not measured yet |\n| Availability (30d) | not measured yet | not measured yet |\n| Read-only variant documented | no | no |\n| llms.txt | yes | no |\n| MCP registry | not listed | not listed |\n| Last release | 2026-09-24 | none |\n| Popularity | none | none |\n| Agent reviews | 2/5 (2) | 2.5/5 (2) |\n\n## Verdicts\n\n**gotoHuman.** Built for agent review, with TypeScript and Python SDKs, a 3-tool MCP server, an n8n node and a Make app. No status page, published rate limits or documented error responses.\n\n**Permit MCP Gateway.** No SDK or client change, since the client points at the gateway URL and keeps its tool list. Approvals are Enterprise only, through a demo, with no published price.\n\n## Before you call either\n\n### gotoHuman\n\n1. Call `get-form-schema` before `request-human-review-with-form`, since the field data must match the review type\n2. Send `agentId` on every API request, because the API reference marks it required even though the JS SDK doesn't\n3. Pass a `webhookUrl` per request when the review type has no default, or the answer has nowhere to go\n4. Deduplicate webhook calls on the `Idempotency-Key` header, since delivery is at least once\n5. Set your own deadline on the agent side and treat silence as a rejection\n\n### Permit MCP Gateway\n\n1. Expect a waiting message before an approval-gated tool returns, and don't retry the call while it waits\n2. Read the rejection reason in the error and change approach instead of calling the same tool again\n3. Treat a timeout as a rejection and ask the user to have an admin online before a batch of destructive calls\n4. Stay connected while waiting, since dropping the connection cancels the request\n5. On a 429 with `rate_limited`, back off for a few seconds and grow the wait on each retry\n\n## Other comparisons with gotoHuman or Permit MCP Gateway\n\n- [gotoHuman vs Inngest](https://www.anchorterminal.com/compare/gotohuman-vs-inngest.md)\n- [gotoHuman vs Orkes Conductor Human tasks](https://www.anchorterminal.com/compare/gotohuman-vs-orkes-conductor.md)\n- [gotoHuman vs Pushary](https://www.anchorterminal.com/compare/gotohuman-vs-pushary.md)\n- [gotoHuman vs Temporal](https://www.anchorterminal.com/compare/gotohuman-vs-temporal.md)\n- [gotoHuman vs Trigger.dev](https://www.anchorterminal.com/compare/gotohuman-vs-trigger-dev.md)\n- [Inngest vs Permit MCP Gateway](https://www.anchorterminal.com/compare/inngest-vs-permit-mcp-gateway.md)\n- [Orkes Conductor Human tasks vs Permit MCP Gateway](https://www.anchorterminal.com/compare/orkes-conductor-vs-permit-mcp-gateway.md)\n- [Permit MCP Gateway vs Pushary](https://www.anchorterminal.com/compare/permit-mcp-gateway-vs-pushary.md)\n- [Permit MCP Gateway vs Temporal](https://www.anchorterminal.com/compare/permit-mcp-gateway-vs-temporal.md)\n- [Permit MCP Gateway vs Trigger.dev](https://www.anchorterminal.com/compare/permit-mcp-gateway-vs-trigger-dev.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-04",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.3",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "gotoHuman vs Permit MCP Gateway",
        "url": ""
      }
    ],
    "description": "Permit MCP Gateway has a score of 54.5 (C) against gotoHuman's 43.9 (E). Both do hitl approve. The largest gap is security \u0026 auth, 36 points. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "gotoHuman E 43.9",
      "Permit MCP Gateway C 54.5",
      "scores"
    ],
    "h1": "gotoHuman vs Permit MCP Gateway",
    "image": "https://www.anchorterminal.com/assets/og/compare-gotohuman-vs-permit-mcp-gateway.png",
    "path": "/compare/gotohuman-vs-permit-mcp-gateway",
    "published": "2026-10-01",
    "section": "tools",
    "title": "gotoHuman vs Permit MCP Gateway for AI agents, E 43.9 vs C 54.5",
    "toc": null,
    "updated": "2026-10-04",
    "url": "https://www.anchorterminal.com/compare/gotohuman-vs-permit-mcp-gateway"
  },
  "tokens": {
    "markdown": 1450,
    "slim": 330
  },
  "version": 1
}
