{
  "data": {
    "a": {
      "slug": "hatchet",
      "name": "Hatchet",
      "vendor": "Hatchet Technologies, Inc.",
      "vendorUrl": "https://hatchet.run",
      "kind": "platform",
      "category": "human-in-the-loop",
      "summary": "Hatchet is an open-source (MIT) platform for durable tasks, queues and workflows, sold as Hatchet Cloud or self-hosted. A durable task can pause until an event arrives, which is its building block for human approval steps.",
      "url": "https://www.anchorterminal.com/tools/hatchet",
      "markdownUrl": "https://www.anchorterminal.com/tools/hatchet.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/hatchet.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/hatchet.json",
      "repo": "https://github.com/hatchet-dev/hatchet",
      "license": "MIT",
      "transports": [
        "http",
        "stdio"
      ],
      "remoteUrl": "https://cloud.hatchet.run",
      "packages": [
        {
          "registry": "pypi",
          "name": "hatchet-sdk"
        },
        {
          "registry": "npm",
          "name": "@hatchet-dev/typescript-sdk"
        },
        {
          "registry": "go",
          "name": "github.com/hatchet-dev/hatchet"
        }
      ],
      "auth": "api-key",
      "authNotes": "Self-serve. A person signs up at cloud.hatchet.run and creates an API token in Settings, scoped to one tenant with a configurable expiry. SDK clients, workers and the REST API send it as a Bearer token. The MCP server reads tokens from CLI profiles the user granted. Embedded mode runs a local engine with no token.",
      "pricing": "freemium",
      "pricingNotes": "Hatchet Cloud is pay as you go from $0, and the plan without a card includes 1 million runs and 1 million events a month, capped at 2,000 of each a day, so an agent's owner can start without a contract. Beyond that, $30 per million runs and $5 per million events. Enterprise is priced by sales. Self-hosting is free under MIT (https://hatchet.run/pricing).",
      "priceSummary": "$0.03 / 1k calls",
      "where": "both",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs index, the OpenAPI file or the pricing page (checked 2026-10-09).",
        "endpoints": []
      },
      "toolCount": 7,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-09"
      },
      "docsUrl": "https://docs.hatchet.run/v1/durable-event-waits",
      "llmsTxt": "https://docs.hatchet.run/llms.txt",
      "openapi": "https://github.com/hatchet-dev/hatchet/blob/main/api-contracts/openapi/openapi.yaml",
      "capabilities": [
        "hitl.approve",
        "hitl.ask",
        "agent.durable",
        "automation.workflows",
        "automation.code"
      ],
      "tags": [
        "hosted",
        "self-hosted",
        "open-source",
        "freemium",
        "free-tier",
        "mcp",
        "openapi",
        "llms-txt",
        "python",
        "typescript",
        "go",
        "durable",
        "webhooks",
        "idempotency",
        "hipaa"
      ],
      "lastRelease": "2026-10-08",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 68.3,
        "grade": "B",
        "agentReady": false,
        "rank": 225,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 4,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 82,
          "maintenance": 90,
          "payments": 40,
          "reliability": 66,
          "schema": 85,
          "security": 62,
          "transparency": 71
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-09"
        },
        "negative": -2,
        "negativeNotes": [
          "Published 4 September 2026, -2. GHSA-992g-9cr3-vm5x (CVE-2026-88978), Moderate, CVSS 3.1 AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N. The `DurableTask` worker status path looked up durable event log entries by a caller-supplied task UUID with no tenant filter, so a holder of any tenant's token who knew another tenant's task UUID could read its entries. The advisory names Hatchet Cloud as affected and calls exploitation very unlikely because the IDs are random UUIDs. Fixed in 0.106.1. It is the event log this listing is graded on, so 2 points for a fixed path. https://github.com/hatchet-dev/hatchet/security/advisories/GHSA-992g-9cr3-vm5x (read through https://api.osv.dev/v1/vulns/GHSA-992g-9cr3-vm5x)",
          "Not deducted. GHSA-hf2m-86fv-rjw5, fixed in v0.110.5 on 5 October 2026, enforced payload visibility restrictions on endpoints that had returned payload data. The OSV mirror answered 404 for it, so its severity was not read. https://github.com/hatchet-dev/hatchet/blob/main/CHANGELOG.md"
        ],
        "verdict": "A durable task waits for a keyed event without holding a worker slot, and resumes from its event log after a restart, in Python, TypeScript, Go or Ruby. Hatchet supplies only the pause and resume. It has no approver inbox, notification channel or record of who answered, and its MCP server cannot push the event.",
        "bestFor": "It suits a team already running background jobs or agent loops on Hatchet that wants an approval pause inside the same durable task, in Python, TypeScript, Go or Ruby.",
        "strengths": [
          "A durable task waiting on an event is evicted from its worker slot and resumes from the durable event log after a restart or crash",
          "Events can be filtered with a CEL expression, and a scope with a lookback window catches an answer pushed before the wait began",
          "MIT licence, self-hostable, with SDKs for Python (1.41.1), TypeScript (1.36.0), Go and Ruby (0.9.0)",
          "Pay-as-you-go cloud plan starts at $0 without a card, with 1 million runs and 1 million events a month included, per the pricing page",
          "Platform release v0.110.19 on 8 October 2026, with dated changelogs for the platform and each SDK"
        ],
        "weaknesses": [
          "No approver inbox, Slack or email channel, routing or reminder. The owner builds the request and the way the answer is pushed",
          "An event wait has no timeout of its own. A deadline needs a sleep condition in the same or group",
          "API tokens are scoped to a tenant with an expiry, with no narrower scopes, and the role and payload restrictions do not apply to them",
          "Audit logs are for Business plans and above, kept 30 days, and the documented actions do not include event pushes",
          "The seven MCP tools trigger, inspect and replay runs. None pushes an event, and none sets a read-only or destructive annotation",
          "The standard terms the cloud agreement incorporates forbid security or vulnerability tests of the product. This matters before any probe is run"
        ],
        "agentNotes": [
          "Put the approval wait in a durable task, and keep API calls, database reads and random values in child tasks, because the code between checkpoints is replayed",
          "Add a sleep condition in the same or group as the event condition to set a deadline, and treat the sleep firing first as a timeout",
          "Give the event a scope and the wait a lookback window when the answer can arrive before the wait starts. Both must be set together",
          "Filter with a CEL expression such as `input.user_id == '1234'` so one approval key cannot resume another request's task",
          "Push the answer with the SDK's event push or `POST /api/v1/tenants/{tenant}/events`. The MCP server has no tool for it",
          "Grant the MCP server one profile with `hatchet mcp auth --grant \u003cprofile\u003e`. It refuses profiles that were not granted"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 68.3
          }
        ],
        "editorialScores": {
          "ergonomics": 82,
          "maintenance": 90,
          "payments": 40,
          "reliability": 66,
          "schema": 85,
          "security": 62,
          "transparency": 69
        },
        "provenanceScore": 72
      },
      "connect": {
        "install": "pip install hatchet-sdk",
        "claudeCode": "hatchet mcp install --target claude-code",
        "config": {
          "mcpServers": {
            "hatchet": {
              "args": [
                "mcp",
                "serve"
              ],
              "command": "hatchet"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/hitl.approve",
        "tool": "https://letme.dev/hatchet"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "Task runs after the first 1 million a month",
          "unit": "1k-calls",
          "usd": 0.03,
          "note": "$30 per million runs. A failed run is billed, retries are not"
        },
        {
          "item": "Events after the first 1 million a month",
          "unit": "1k-calls",
          "usd": 0.005,
          "note": "$5 per million events"
        },
        {
          "item": "Extra user beyond 50 (card on file)",
          "unit": "seat-month",
          "usd": 10
        }
      ],
      "provenance": {
        "legalEntity": "Hatchet Technologies, Inc.",
        "domain": "hatchet.run",
        "domainRegistered": "",
        "endpointOnVendorDomain": true,
        "terms": "https://hatchet.run/policies/terms",
        "privacy": "https://hatchet.run/policies/privacy",
        "statusPage": "https://status.hatchet.run",
        "changelog": "https://docs.hatchet.run/reference/changelog",
        "securityTxt": "none",
        "checked": "2026-10-09",
        "notes": [
          "The terms page is a Common Paper Cloud Service Agreement cover page for Hatchet Technologies, Inc., last updated 17 July 2025, governed by Delaware law, incorporating Standard Terms Version 2.1 at commonpaper.com.",
          "The privacy policy was last updated 18 August 2026, covers workflow data and API usage data, and names an EU representative in Ireland.",
          "hatchet.run/.well-known/security.txt answered 404. SECURITY.md in the repository takes reports through private GitHub advisories or security@hatchet.run and says there is no bug bounty.",
          "The dashboard and API are at cloud.hatchet.run. The webhook docs show incoming webhook URLs on cloud.onhatchet.run, a second domain.",
          "status.hatchet.run runs on Better Stack with three components. Its robots.txt answered 200 with an empty body.",
          "The repository's licence file is MIT, copyright 2023 to present Hatchet Technologies Inc.",
          "The domain's registration date was not looked up."
        ],
        "score": 72
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/hatchet.json",
      "live": {
        "slug": "hatchet",
        "probe": {
          "target": "https://cloud.hatchet.run",
          "method": "get",
          "lastAt": "2026-10-10T02:07:10.931475639Z",
          "lastOk": true,
          "lastStatus": 200,
          "lastMs": 653,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 687,
          "p95ms24h": 1647,
          "samples24h": 107,
          "samples30d": 107,
          "days": [
            {
              "date": "2026-10-09",
              "probes": 85,
              "ok": 85
            },
            {
              "date": "2026-10-10",
              "probes": 22,
              "ok": 22
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.hatchet.run",
          "indicator": "unknown",
          "summary": "no machine-readable status found",
          "checkedAt": "2026-10-10T00:50:40.047363861Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "hatchet-dev/hatchet",
            "version": "v0.110.5",
            "released": "2026-10-06",
            "seenAt": "2026-10-09T16:57:30.943852136Z"
          },
          {
            "registry": "npm",
            "name": "@hatchet-dev/typescript-sdk",
            "version": "1.36.0",
            "seenAt": "2026-10-09T16:57:29.775672491Z"
          },
          {
            "registry": "pypi",
            "name": "hatchet-sdk",
            "version": "1.41.1",
            "released": "2026-09-24",
            "seenAt": "2026-10-09T16:57:29.581369924Z"
          }
        ],
        "githubStars": 8088,
        "npmWeekly": 300149,
        "pypiWeekly": 392095,
        "pages": [
          {
            "url": "https://docs.hatchet.run/reference/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-09T18:37:27.789775482Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "f6e9eec278c6"
          },
          {
            "url": "https://hatchet.run/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-09T18:40:07.756761277Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "3096d0aaa49f"
          },
          {
            "url": "https://hatchet.run/policies/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-09T18:40:03.629481363Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "1926d0170834"
          },
          {
            "url": "https://hatchet.run/policies/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-09T18:40:05.775842594Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "22e8ffadb15d"
          }
        ],
        "updatedAt": "2026-10-10T02:07:10.931475639Z"
      }
    },
    "answer": "Hatchet scores 68.3 (B) on agent readiness against Pushary's 51.4 (D), and leads in 6 of 7 scored categories.",
    "b": {
      "slug": "pushary",
      "name": "Pushary",
      "vendor": "Pushary",
      "vendorUrl": "https://pushary.com",
      "kind": "mcp",
      "category": "human-in-the-loop",
      "summary": "Hosted MCP server that lets a coding agent notify you and ask you a yes or no, multiple-choice or free-text question on your phone, Mac, Slack or browser, then wait for the answer.",
      "url": "https://www.anchorterminal.com/tools/pushary",
      "markdownUrl": "https://www.anchorterminal.com/tools/pushary.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/pushary.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/pushary.json",
      "repo": "https://github.com/Pushary/pushary-skill",
      "license": "MIT (skill, hooks and adapters)",
      "transports": [
        "streamable-http",
        "sse"
      ],
      "remoteUrl": "https://pushary.com/api/mcp/mcp",
      "packages": [
        {
          "registry": "npm",
          "name": "pushary"
        },
        {
          "registry": "pypi",
          "name": "hermes-plugin-pushary"
        }
      ],
      "auth": "api-key",
      "authNotes": "Bearer API key in the form `pk_xxx.sk_xxx`. `npx pushary@latest setup` pairs a phone by QR code and fingerprint and writes the credentials for you, so there's no key to copy. Claude Cowork connects through a connector link from the dashboard. Partner integrations enrol each customer through a scoped connection link instead of sharing the operator key.",
      "pricing": "paid",
      "pricingNotes": "Agent plan $9.99 a month with 5,000 notifications, Agent Pro $19.99 a month with unlimited notifications, budgets and up to 5 people, both after a 3-day trial that takes a card up front (https://pushary.com, https://github.com/Pushary/pushary-skill). Partner access for embedding approvals for your own users has no public price. Fees are non-refundable except where the law requires (https://pushary.com/terms). The browser demo at pushary.com/try needs no sign-up but uses polling and temporary state.",
      "priceSummary": "$9.99 / mo",
      "where": "hosted",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": 6,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://github.com/Pushary/pushary-skill",
      "registryName": "io.github.Pushary/pushary",
      "capabilities": [
        "hitl.approve",
        "hitl.ask",
        "hitl.channels",
        "hitl.audit",
        "notify.push"
      ],
      "tags": [
        "hosted",
        "mcp",
        "card-required",
        "typescript",
        "python"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 51.4,
        "grade": "D",
        "agentReady": false,
        "rank": 750,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 9,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 76,
          "maintenance": 60,
          "payments": 10,
          "reliability": 20,
          "schema": 73,
          "security": 64,
          "transparency": 63
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Six small tools with a detailed skill that says when to ask, when to notify and when to stay quiet. No free plan, and the 3-day trial takes a card up front.",
        "bestFor": "One developer running coding agents unattended who wants questions and approvals on a phone.",
        "strengths": [
          "Six small tools with a detailed skill that says when to ask, when to notify and when to stay quiet",
          "Every result says whether it was answered and what to do next (`answered`, `status`, `handoffAction`)",
          "Lock-screen approve and deny, plus a Mac app, Slack and browser",
          "Enforced gates through Claude Code and Hermes hooks, with file-scope proposals",
          "Privacy policy names every subprocessor with its location, and open questions are cached for at most ten minutes"
        ],
        "weaknesses": [
          "No free plan, and the 3-day trial takes a card up front",
          "Plain MCP clients get cooperative questions only, with no enforcement",
          "Wait times are set by the user's delivery mode, so an agent can't count on a long block",
          "No status page, SLA or service changelog, and the terms promise no uptime",
          "Partner use for your own customers has no public price"
        ],
        "agentNotes": [
          "Read `answered`, `status` and `handoffAction` on every result, and never treat a timeout as approval",
          "Expect `ask_user` to return at once with `answered: false` when the user's mode is notify-only or terminal-only",
          "Poll `wait_for_answer` once (it waits at most 55 seconds), then follow the handoff instead of looping",
          "Cancel a live question with `cancel_question` before asking the same thing in chat",
          "Group open decisions into one `select` question, since each push interrupts the user"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "D",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 51.4
          }
        ],
        "editorialScores": {
          "ergonomics": 76,
          "maintenance": 60,
          "payments": 10,
          "reliability": 20,
          "schema": 73,
          "security": 64,
          "transparency": 71
        },
        "provenanceScore": 54
      },
      "connect": {
        "install": "npx pushary@latest setup",
        "claudeCode": "claude mcp add --transport http pushary https://pushary.com/api/mcp/mcp --header \"Authorization: Bearer $PUSHARY_API_KEY\"",
        "config": {
          "mcpServers": {
            "pushary": {
              "headers": {
                "Authorization": "Bearer ${PUSHARY_API_KEY}"
              },
              "url": "https://pushary.com/api/mcp/mcp"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/hitl.approve",
        "tool": "https://letme.dev/pushary"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "Agent plan",
          "unit": "month",
          "usd": 9.99,
          "note": "5,000 notifications a month, after a 3-day trial with a card up front"
        },
        {
          "item": "Agent Pro plan",
          "unit": "month",
          "usd": 19.99,
          "note": "Unlimited notifications, budgets, up to 5 people"
        }
      ],
      "provenance": {
        "legalEntity": "RalphNex OÜ",
        "domain": "pushary.com",
        "domainRegistered": "",
        "endpointOnVendorDomain": true,
        "terms": "https://pushary.com/terms",
        "privacy": "https://pushary.com/privacy",
        "statusPage": "",
        "changelog": "",
        "securityTxt": "unknown",
        "checked": "2026-10-01",
        "notes": [
          "The terms (updated 2026-09-27) and privacy policy (updated 2026-09-28) name RalphNex OÜ, Estonian registry code 16932562, Narva mnt 7-652, 10117 Tallinn, under Estonian law.",
          "server.json names io.github.Pushary/pushary at version 1.4.1 with streamable HTTP and SSE remotes on pushary.com. A GitHub OIDC workflow added on 2026-08-15 publishes it to the MCP registry.",
          "The site footer links Security, Privacy and Terms pages. No status page or changelog link found.",
          "The repository's first commit is from 2026-03-23 and its last from 2026-10-01. Commits are syncs from a private monorepo.",
          "We couldn't read the MCP registry, RDAP or security.txt on 2026-10-01."
        ],
        "score": 54
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/pushary.json",
      "live": {
        "slug": "pushary",
        "probe": {
          "target": "https://pushary.com/api/mcp/mcp",
          "method": "mcp-initialize",
          "lastAt": "2026-10-10T02:07:21.491613166Z",
          "lastOk": true,
          "lastStatus": 200,
          "lastMs": 494,
          "lastNote": "initialize answered",
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 138,
          "p95ms24h": 723,
          "samples24h": 250,
          "samples30d": 2256,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 109
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-05",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-06",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-07",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-08",
              "probes": 268,
              "ok": 268
            },
            {
              "date": "2026-10-09",
              "probes": 250,
              "ok": 250
            },
            {
              "date": "2026-10-10",
              "probes": 22,
              "ok": 22
            }
          ]
        },
        "versions": [
          {
            "registry": "mcp-registry",
            "name": "io.github.Pushary/pushary",
            "version": "1.4.2",
            "seenAt": "2026-10-09T02:57:46.004536428Z"
          },
          {
            "registry": "npm",
            "name": "pushary",
            "version": "1.9.43",
            "seenAt": "2026-10-09T17:15:16.6514236Z"
          },
          {
            "registry": "pypi",
            "name": "hermes-plugin-pushary",
            "version": "0.7.0",
            "released": "2026-10-09",
            "seenAt": "2026-10-09T17:15:17.558901782Z"
          }
        ],
        "githubStars": 1,
        "npmWeekly": 5200,
        "pypiWeekly": 342,
        "securityTxt": {
          "url": "https://pushary.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-09T15:40:24.358082635Z"
        },
        "domain": {
          "domain": "pushary.com",
          "registered": "2025-12-24",
          "source": "https://rdap.verisign.com/com/v1/domain/pushary.com",
          "checkedAt": "2026-10-04T13:08:51.503354686Z"
        },
        "pages": [
          {
            "url": "https://pushary.com/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-09T18:44:03.407410093Z",
            "changedAt": "2026-10-04T15:47:07.587749401Z",
            "fingerprint": "f265d7a7361e"
          },
          {
            "url": "https://pushary.com/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-09T18:44:05.690057556Z",
            "changedAt": "2026-10-04T15:47:10.240295961Z",
            "fingerprint": "7b7a5acc6350"
          }
        ],
        "mcpTools": {
          "url": "https://pushary.com/api/mcp/mcp",
          "checkedAt": "2026-10-09T21:40:47.604403192Z",
          "status": "ok",
          "protocol": "2025-11-25",
          "tools": [
            {
              "name": "schedule_reminder",
              "title": "Schedule a Personal Reminder",
              "description": "Remind the authenticated user later: a timer, alarm, ping, or reminder delivered by Pushary even after the agent exits. One-time only; up to 30 days away, 25 pending per user/site. Provide body plus inMinutes or at with an explicit UTC offset. Use a unique requestId for each schedule and reuse it unchanged on retries. Use reminderId to retrieve the final outcome. Confirm the returned time and report any warning. Omit arguments to list pending reminders; use cancelReminderId to cancel a scheduled one. Never use ask_user for a reminder. Does not schedule agent work or customer campaigns. Respects stop/mute and active membership at delivery.",
              "inputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "properties": {
                  "agentName": {
                    "maxLength": 100,
                    "type": "string"
                  },
                  "at": {
                    "description": "Future ISO 8601 timestamp with explicit UTC offset or Z, at most 30 days away. Resolve the user's local time and timezone before scheduling; never guess a timezone.",
                    "format": "date-time",
                    "pattern": "^(?:(?:\\d\\d[2468][048]|\\d\\d[13579][26]|\\d\\d0[48]|[02468][048]00|[13579][26]00)-02-29|\\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\\d|30)|(?:02)-(?:0[1-9]|1\\d|2[0-8])))T(?:(?:[01]\\d|2[0-3]):[0-5]\\d:[0-5]\\d(?:\\.\\d+)?(?:Z|([+-](?:[01]\\d|2[0-3]):[0-5]\\d)))$",
                    "type": "string"
                  },
                  "body": {
                    "description": "What to remind the authenticated user about, at most 180 UTF-16 units after secret redaction (emoji may use two). Omit all fields to list their pending reminders.",
                    "maxLength": 180,
                    "minLength": 1,
                    "type": "string"
                  },
                  "cancelReminderId": {
                    "description": "Cancel this user's scheduled reminder instead of creating one. Already-dispatching reminders cannot be cancelled.",
                    "maxLength": 128,
                    "minLength": 1,
                    "type": "string"
                  },
                  "env": {
                    "const": "test",
                    "type": "string"
                  },
                  "inMinutes": {
                    "description": "Minutes from the server clock; use for timers and relative reminders.",
                    "maximum": 43200,
                    "minimum": 1,
                    "type": "integer"
                  },
                  "machineId": {
                    "maxLength": 128,
                    "type": "string"
                  },
                  "reminderId": {
                    "description": "Look up your reminder, including its final outcome and delivery status, instead of scheduling or cancelling.",
                    "maxLength": 128,
                    "minLength": 1,
                    "type": "string"
                  },
                  "requestId": {
                    "description": "Unique ID for this scheduling operation. Reuse it unchanged on retries to return the original reminder, including after it settles.",
                    "maxLength": 128,
                    "minLength": 1,
                    "type": "string"
                  },
                  "sessionId": {
                    "maxLength": 128,
                    "type": "string"
                  },
                  "title": {
                    "maxLength": 100,
                    "minLength": 1,
                    "type": "string"
                  }
                },
                "type": "object"
              },
              "annotations": {
                "destructiveHint": true,
                "idempotentHint": false,
                "openWorldHint": true,
                "readOnlyHint": false
              }
            },
            {
              "name": "send_notification",
              "title": "Send Push Notification",
              "description": "Send a one-way notification to connected devices for a requested update or a meaningful unattended result. Use ask_user when an answer is needed. Delivery follows the account policy and optional recipient filters. context adds a detail page; context.askQuestion creates a linked decision. Returns web/mobile delivery counts and a warning when no delivery channel is connected. Sends real notifications.",
              "inputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "properties": {
                  "agentName": {
                    "description": "Name of the agent sending this notification, format \"{Agent} - {project}\" (e.g. \"Claude Code - myproject\"). Shown in the notification so the user knows which session is talking. Falls back to the MCP client name if omitted.",
                    "maxLength": 100,
                    "type": "string"
                  },
                  "body": {
                    "description": "Notification body text (max 500 chars). One or two sentences the user can act on without opening anything.",
                    "maxLength": 500,
                    "minLength": 1,
                    "type": "string"
                  },
                  "context": {
                    "description": "Structured context rendered as a rich detail page when the user taps the notification. Strongly recommended for task_complete and error notifications so the user can act from their phone.",
                    "properties": {
                      "askQuestion": {
                        "description": "Embed a decision prompt on the detail page. The response includes a linkedCorrelationId; pass it to wait_for_answer to collect the answer. The embedded question expires 10 minutes after it is created.",
                        "properties": {
                          "options": {
                            "description": "The 2 to 6 choices for a select question",
                            "items": {
                              "type": "string"
                            },
                            "maxItems": 6,
                            "minItems": 2,
                            "type": "array"
                          },
                          "question": {
                            "description": "A follow-up question shown below the context (e.g. \"Retry with a different approach?\")",
                            "maxLength": 8000,
                            "minLength": 1,
                            "type": "string"
                          },
                          "type": {
                            "default": "confirm",
                            "description": "Question type: confirm (yes/no), select (pick from options), or input (free text)",
                            "enum": [
                              "confirm",
                              "select",
                              "input"
                            ],
                            "type": "string"
                          }
                        },
                        "required": [
                          "question"
                        ],
                        "type": "object"
                      },
                      "details": {
                        "description": "Bullet-point details rendered as a list",
                        "items": {
                          "type": "string"
                        },
                        "type": "array"
                      },
                      "errorFile": {
                        "description": "File path where the error occurred",
                        "type": "string"
                      },
                      "errorMessage": {
                        "description": "The error message, when type is \"error\"",
                        "type": "string"
                      },
                      "filesChanged": {
                        "description": "Paths of files that were created or modified",
                        "items": {
                          "type": "string"
                        },
                        "type": "array"
                      },
                      "nextSteps": {
                        "description": "What the user should do next, e.g. \"Review the PR\" or \"Re-run with --force\"",
                        "type": "string"
                      },
                      "summary": {
                        "description": "Short summary of what happened, shown at the top of the detail page",
                        "type": "string"
                      },
                      "type": {
                        "description": "What kind of update this is. Use \"task_complete\" when work finished, \"error\" when something failed (delivered with high urgency), \"info\" for everything else. Error severity describes this notification, not the agent session health.",
                        "enum": [
                          "task_complete",
                          "error",
                          "info"
                        ],
                        "type": "string"
                      }
                    },
                    "required": [
                      "type"
                    ],
                    "type": "object"
                  },
                  "env": {
                    "description": "Set to \"test\" from a test suite. The notification is recorded in the activity feed and nothing is delivered to a phone or browser. The X-Pushary-Env: test header does the same for every call on the connection.",
                    "enum": [
                      "test"
                    ],
                    "type": "string"
                  },
                  "externalIds": {
                    "description": "Deliver only to subscribers matching these external IDs.",
                    "items": {
                      "type": "string"
                    },
                    "type": "array"
                  },
                  "iconUrl": {
                    "description": "URL of the notification icon image",
                    "format": "uri",
                    "type": "string"
                  },
                  "imageUrl": {
                    "description": "URL of a large image shown in the notification",
                    "format": "uri",
                    "type": "string"
                  },
                  "machineId": {
                    "description": "Stable machine id of the sending agent, so two machines never collapse into one session.",
                    "maxLength": 128,
                    "type": "string"
                  },
                  "sessionId": {
                    "description": "Opaque per-session id of the sending agent, so parallel sessions are attributed separately in the activity feed.",
                    "maxLength": 128,
                    "type": "string"
                  },
                  "subscriberIds": {
                    "description": "Deliver only to these subscriber IDs. Omit all targeting fields to reach every connected device.",
                    "items": {
                      "type": "string"
                    },
                    "type": "array"
                  },
                  "tags": {
                    "description": "Deliver only to subscribers that have any of these tags.",
                    "items": {
                      "type": "string"
                    },
                    "type": "array"
                  },
                  "title": {
                    "description": "Notification title shown on the lock screen (max 100 chars). Lead with the outcome, e.g. \"Build finished\" or \"Migration failed\".",
                    "maxLength": 100,
                    "minLength": 1,
                    "type": "string"
                  },
                  "url": {
                    "description": "URL opened when the user taps the notification. Ignored if context is provided, because a context detail page URL is generated automatically.",
                    "format": "uri",
                    "type": "string"
                  }
                },
                "required": [
                  "title",
                  "body"
                ],
                "type": "object"
              },
              "outputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "additionalProperties": false,
                "properties": {
                  "attribution": {
                    "description": "Whether real session and machine identifiers were supplied. Unattributed notifications are delivered without creating a live session.",
                    "enum": [
                      "session",
                      "unattributed"
                    ],
                    "type": "string"
                  },
                  "delivery": {
                    "additionalProperties": false,
                    "description": "Per-channel outcome. The two channels are independent with no cross-fallback, so each reports its own result.",
                    "properties": {
                      "mobile": {
                        "additionalProperties": false,
                        "properties": {
                          "recipients": {
                            "description": "Phones that accepted the push.",
                            "type": "number"
                          },
                          "status": {
                            "description": "Why mobile delivery reached nobody, present only when it reached nobody.",
                            "type": "string"
                          }
                        },
                        "required": [
                          "recipients"
                        ],
                        "type": "object"
                      },
                      "web": {
                        "additionalProperties": false,
                        "properties": {
                          "recipients": {
                            "description": "Browsers that accepted the push.",
                            "type": "number"
                          },
                          "status": {
                            "description": "Why web delivery reached nobody, present only when it reached nobody.",
                            "type": "string"
                          }
                        },
                        "required": [
                          "recipients"
                        ],
                        "type": "object"
                      }
                    },
                    "required": [
                      "web",
                      "mobile"
                    ],
                    "type": "object"
                  },
                  "env": {
                    "description": "Echoed when the call was test traffic.",
                    "enum": [
                      "test"
                    ],
                    "type": "string"
                  },
                  "hint": {
                    "description": "What to do next, when there is a next step.",
                    "type": "string"
                  },
                  "linkedCorrelationId": {
                    "description": "Present only when context.askQuestion embedded a decision prompt. Pass it to wait_for_answer to collect the response.",
                    "type": "string"
                  },
                  "notificationId": {
                    "description": "Trace ID for this notification; provider acceptance does not confirm a person saw it.",
                    "format": "uuid",
                    "pattern": "^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$",
                    "type": "string"
                  },
                  "sent": {
                    "description": "Total devices reached, web plus mobile. Zero is a successful call that found nobody to deliver to, not an error.",
                    "type": "number"
                  },
                  "warning": {
                    "description": "Present only when the notification reached zero devices, naming what the user has to connect.",
                    "type": "string"
                  }
                },
                "type": "object"
              },
              "annotations": {
                "destructiveHint": true,
                "idempotentHint": false,
                "openWorldHint": true,
                "readOnlyHint": false
              }
            },
            {
              "name": "ask_user",
              "title": "Ask User a Question",
              "description": "Request an unresolved decision or missing input from the user through Pushary. Supports confirm, select and input questions. Delivery and waiting follow the account policy; a call waits at most 55 seconds and may return immediately. Returns the question state, answer when available, delivery information and handoff fields. answerUrl is optional. Use wait_for_answer to read a pending result and cancel_question to retract it. Sends a real question; it does not grant permission for other actions.",
              "inputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "properties": {
                  "action": {
                    "description": "The concrete operation about to happen, one line. Shown as the Action line. Cut to 500 chars.",
                    "minLength": 0,
                    "type": "string"
                  },
                  "actionBody": {
                    "description": "The diff (Edit/Write) or full command (Bash/apply_patch), secret-redacted and size-capped. Rendered as a collapsible detail block; never used as the push body.",
                    "maxLength": 4000,
                    "type": "string"
                  },
                  "agentName": {
                    "description": "Name of the agent asking, format \"{Agent} - {project}\" (e.g. \"Claude Code - myproject\"). Shown in the notification title so the user knows which session needs them. Falls back to the MCP client name if omitted. Cut to 100 chars.",
                    "minLength": 0,
                    "type": "string"
                  },
                  "blocker": {
                    "description": "The single gating reason the agent stopped, one line. Shown as the Blocker line. Cut to 500 chars.",
                    "minLength": 0,
                    "type": "string"
                  },
                  "callbackUrl": {
                    "description": "Webhook URL that receives a POST with the answer when the user responds, signed with the X-Pushary-Signature header. Useful when the agent process may exit before the answer arrives.",
                    "format": "uri",
                    "type": "string"
                  },
                  "context": {
                    "description": "One or two sentences about what the agent is working on, shown above the question so the user can decide without opening the terminal.",
                    "maxLength": 500,
                    "type": "string"
                  },
                  "env": {
                    "description": "Set to \"test\" from a test suite. The question is stored and returned as pending, and nothing is delivered to a phone, browser or Slack. The X-Pushary-Env: test header does the same for every call on the connection.",
                    "enum": [
                      "test"
                    ],
                    "type": "string"
                  },
                  "externalIds": {
                    "description": "Deliver only to subscribers matching these external IDs.",
                    "items": {
                      "type": "string"
                    },
                    "type": "array"
                  },
                  "intent": {
                    "description": "The user's stated task (from their last prompt), one line. Shown as the Intent line so the user can see why the agent stopped. Cut to 500 chars.",
                    "minLength": 0,
                    "type": "string"
                  },
                  "localSurfaceAvailable": {
                    "description": "MACHINE-POPULATED. false from a hook that cannot show its own approval prompt for this call, so the phone is asked every time and never spared for presence at the keyboard. Any other value is ignored. If you are a model deciding to call this tool, omit this field.",
                    "type": "boolean"
                  },
                  "machineId": {
                    "description": "Stable machine id of the asking agent, so two machines never collapse into one session.",
                    "maxLength": 128,
                    "type": "string"
                  },
                  "options": {
                    "description": "The 2 to 6 choices for a select question. Required when type is \"select\", ignored otherwise. The answered value is the chosen option string.",
                    "items": {
                      "minLength": 1,
                      "type": "string"
                    },
                    "maxItems": 6,
                    "minItems": 2,
                    "type": "array"
                  },
                  "pausedAware": {
                    "description": "MACHINE-POPULATED. true from a hook that ends a paused approval exactly as the same approval unanswered after its full wait. Any other value is ignored. If you are a model deciding to call this tool, omit this field.",
                    "type": "boolean"
                  },
                  "permissionMode": {
                    "description": "MACHINE-POPULATED. The agent runtime's own permission or approval mode for the tool call this approval gates, recorded with the decision. Any other value is ignored. If you are a model deciding to call this tool, omit this field.",
                    "maxLength": 64,
                    "type": "string"
                  },
                  "placeholder": {
                    "description": "Hint text shown inside the free-text field for input questions",
                    "maxLength": 200,
                    "type": "string"
                  },
                  "question": {
                    "description": "The complete question, up to 8000 characters. Preserve every point. Notifications show a short preview; the answer interface shows the full question.",
                    "maxLength": 8000,
                    "minLength": 1,
                    "type": "string"
                  },
                  "questionOwner": {
                    "additionalProperties": {},
                    "description": "MACHINE-POPULATED. Ownership supplied by the supported personal Codex bridge. Models must omit this field.",
                    "properties": {},
                    "type": "object"
                  },
                  "questions": {
                    "description": "ONE question, in the richer Claude-compatible shape: a header, per-option descriptions, multiSelect, and an optional write-in. Exactly one keeps already-installed clients answerable; asking several means several calls. Runtime-populated; ordinary callers should omit it and use question/type/options.",
                    "items": {
                      "properties": {
                        "allowOther": {
                          "type": "boolean"
                        },
                        "header": {
                          "maxLength": 40,
                          "type": "string"
                        },
                        "multiSelect": {
                          "type": "boolean"
                        },
                        "options": {
                          "items": {
                            "properties": {
                              "description": {
                                "maxLength": 500,
                                "type": "string"
                              },
                              "label": {
                                "maxLength": 100,
                                "minLength": 1,
                                "type": "string"
                              }
                            },
                            "required": [
                              "label"
                            ],
                            "type": "object"
                          },
                          "maxItems": 4,
                          "minItems": 2,
                          "type": "array"
                        },
                        "question": {
                          "maxLength": 8000,
                          "minLength": 1,
                          "type": "string"
                        }
                      },
                      "required": [
                        "question",
                        "multiSelect",
                        "options"
                      ],
                      "type": "object"
                    },
                    "maxItems": 1,
                    "minItems": 1,
                    "type": "array"
                  },
                  "repoKey": {
                    "description": "Stable repository identity for the working directory, e.g. \"github.com/acme/api\". Lets an approval routing rule scoped to one repository avoid governing another. Optional; omit it and only workspace-wide routing rules apply.",
                    "maxLength": 200,
                    "type": "string"
                  },
                  "requestId": {
                    "description": "MACHINE-POPULATED. The CALLER's own identifier for one logical invocation, used only when the runtime supplies no toolUseId. Mint it once, outside your retry loop, and send the same value on every attempt, so three retries of one ask become one decision. Do NOT derive it from the question text or reuse it across two deliberate asks: both collapse a real second question into the first one's answer. If you are a model deciding to call this tool, omit this field.",
                    "maxLength": 200,
                    "type": "string"
                  },
                  "scopePath": {
                    "description": "Set ONLY when this approval exists because the path falls outside the scope the user ratified via propose_scope. Approving then widens the run scope to include this exact path, so the user is not asked again for the same area.",
                    "maxLength": 200,
                    "type": "string"
                  },
                  "sessionId": {
                    "description": "Opaque per-session id of the asking agent, so parallel sessions are attributed separately.",
                    "maxLength": 128,
                    "type": "string"
                  },
                  "sessionToolAware": {
                    "description": "MACHINE-POPULATED. Set by a Pushary hook whose engine applies a session tool grant with its risky-command ceiling, so the grant is only offered where it takes effect. If you are a model deciding to call this tool, omit this field.",
                    "type": "boolean"
                  },
                  "subscriberIds": {
                    "description": "Deliver only to these subscriber IDs. Omit all targeting fields to reach every connected device.",
                    "items": {
                      "type": "string"
                    },
                    "type": "array"
                  },
                  "tags": {
                    "description": "Deliver only to subscribers that have any of these tags.",
                    "items": {
                      "type": "string"
                    },
                    "type": "array"
                  },
                  "timeoutMs": {
                    "description": "How long this call blocks, in milliseconds (max 55000). Defaults to the site policy timeout. Ordinary questions stay open until answered or cancelled. A timeout ends this poll only; follow up with wait_for_answer.",
                    "maximum": 55000,
                    "minimum": 1000,
                    "type": "integer"
                  },
                  "toolName": {
                    "description": "The tool this approval is for (e.g. \"Bash\"), so the user can choose to always-allow it.",
                    "maxLength": 100,
                    "type": "string"
                  },
                  "toolPath": {
                    "description": "MACHINE-POPULATED. Exact absolute Write file_path from the runtime, for diagnostic correlation only. Models must omit it.",
                    "format": "starts_with",
                    "maxLength": 4096,
                    "pattern": "^\\/.*",
                    "type": "string"
                  },
                  "toolTarget": {
                    "description": "Compact target of the tool call (e.g. the command head \"git push\" for Bash, or a file extension like \".ts\" for Edit/Write). Used to mine policy suggestions.",
                    "maxLength": 80,
                    "type": "string"
                  },
                  "toolUseId": {
                    "description": "MACHINE-POPULATED. The agent RUNTIME's own identifier for the tool call this approval gates, forwarded verbatim by a hook that received it. Do NOT invent, guess, derive, or reuse a value: two different questions sent under the same id collapse into one, and the second one never reaches a human. If you are a model deciding to call this tool, omit this field.",
                    "maxLength": 200,
                    "type": "string"
                  },
                  "type": {
                    "default": "confirm",
                    "description": "Question type: confirm renders yes/no buttons, select renders the options list, input renders a free-text field.",
                    "enum": [
                      "confirm",
                      "select",
                      "input"
                    ],
                    "type": "string"
                  },
                  "wait": {
                    "default": true,
                    "description": "true (default) blocks until the user answers or the timeout fires. Set false to return immediately with a pending correlationId and poll it yourself via wait_for_answer.",
                    "type": "boolean"
                  },
                  "waitEndsAt": {
                    "description": "MACHINE-POPULATED. When the agent hook stops waiting live and hands control back to the terminal. The question may remain answerable after this time. Ordinary callers should omit it.",
                    "format": "date-time",
                    "pattern": "^(?:(?:\\d\\d[2468][048]|\\d\\d[13579][26]|\\d\\d0[48]|[02468][048]00|[13579][26]00)-02-29|\\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\\d|30)|(?:02)-(?:0[1-9]|1\\d|2[0-8])))T(?:(?:[01]\\d|2[0-3]):[0-5]\\d:[0-5]\\d(?:\\.\\d+)?(?:Z))$",
                    "type": "string"
                  }
                },
                "required": [
                  "question"
                ],
                "type": "object"
              },
              "outputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "additionalProperties": false,
                "properties": {
                  "answerSource": {
                    "description": "Recorded answering surface, when known. Missing provenance is not proof of a phone answer; sandbox is simulated.",
                    "enum": [
                      "dashboard",
                      "mobile_app",
                      "mobile_background",
                      "decide_page",
                      "live_page",
                      "answer_link",
                      "inbox",
                      "slack",
                      "mac_app",
                      "sandbox"
                    ],
                    "type": "string"
                  },
                  "answerUrl": {
                    "description": "Optional signed-in dashboard page where the user can answer this question.",
                    "type": "string"
                  },
                  "answered": {
                    "description": "True once the user responded. Absent on the wait:false path, where nothing was awaited.",
                    "type": "boolean"
                  },
                  "correlationId": {
                    "description": "Id of the question that was created. Pass it to wait_for_answer to keep waiting, or to cancel_question to retract it.",
                    "type": "string"
                  },
                  "delivery": {
                    "additionalProperties": false,
                    "description": "Per-channel reach for the push carrying this question.",
                    "properties": {
                      "mobile": {
                        "description": "Phones the question reached.",
                        "type": "number"
                      },
                      "pending": {
                        "description": "True when delivery was still in flight when this returned, so the counts above are not final.",
                        "type": "boolean"
                      },
                      "web": {
                        "description": "Browsers the question reached.",
                        "type": "number"
                      }
                    },
                    "required": [
                      "web",
                      "mobile"
                    ],
                    "type": "object"
                  },
                  "deliveryMode": {
                    "description": "Effective delivery policy for this decision.",
                    "enum": [
                      "push_first",
                      "push_only",
                      "notify_only",
                      "terminal_only"
                    ],
                    "type": "string"
                  },
                  "env": {
                    "description": "Echoed when the call was test traffic.",
                    "enum": [
                      "test"
                    ],
                    "type": "string"
                  },
                  "expiresInSeconds": {
                    "description": "How long the question stays answerable.",
                    "type": "number"
                  },
                  "handoffAction": {
                    "description": "Race-safe directive for updated clients. Takes precedence over nextAction: cancel before asking in the current client, or stop the handoff.",
                    "enum": [
                      "cancel_then_ask_in_current_client",
                      "stop"
                    ],
                    "type": "string"
                  },
                  "held": {
                    "description": "Present when the question was stored but deliberately not delivered: test traffic, or a permission ask with no toolName and no sessionId.",
                    "enum": [
                      "test_traffic",
                      "unattributed"
                    ],
                    "type": "string"
                  },
                  "hint": {
                    "description": "What to do next, when there is a next step.",
                    "type": "string"
                  },
                  "mode": {
                    "description": "The site delivery mode that stopped this call from waiting.",
                    "enum": [
                      "notify_only",
                      "terminal_only"
                    ],
                    "type": "string"
                  },
                  "nextAction": {
                    "description": "Backward-compatible next step: keep waiting while pending or ask in the current client. Follow handoffAction first when present.",
                    "enum": [
                      "wait_for_answer",
                      "ask_in_current_client"
                    ],
                    "type": "string"
                  },
                  "noDevices": {
                    "description": "True when no phone, browser, or Slack channel could receive the question. Do not wait; follow handoffAction immediately.",
                    "type": "boolean"
                  },
                  "note": {
                    "description": "Free text the user added alongside their answer.",
                    "type": "string"
                  },
                  "paused": {
                    "description": "True when nothing was sent because the last approvals in this session went unanswered. Withdraw the question, then end the call as it would end unanswered.",
                    "type": "boolean"
                  },
                  "policyTimeoutMs": {
                    "description": "Policy wait window in milliseconds. Callers must also honor their host deadline.",
                    "minimum": 0,
                    "type": "number"
                  },
                  "question": {
                    "description": "The question exactly as the user saw it.",
                    "type": "string"
                  },
                  "status": {
                    "description": "The question state. Only pending is a live unanswered wait; cancelled, expired, missing, and unavailable must not be described as timeouts.",
                    "enum": [
                      "answered",
                      "pending",
                      "cancelled",
                      "expired",
                      "missing",
                      "unavailable",
                      "notified",
                      "terminal",
                      "stopped"
                    ],
                    "type": "string"
                  },
                  "suppressed": {
                    "description": "True when the PHONE push was deliberately held because a terminal on this machine is active. It says nothing about the notch, the dashboard or Slack, which are unaffected and may still be showing this question. A caller with no screen of its own should treat it as the terminal's to answer; a caller that can render the question itself should keep waiting.",
                    "type": "boolean"
                  },
                  "timedOut": {
                    "description": "True when the initial wait ended while the question was still live. Poll once with wait_for_answer, then follow handoffAction when present, otherwise nextAction.",
                    "type": "boolean"
                  },
                  "type": {
                    "description": "The question type that was rendered.",
                    "enum": [
                      "confirm",
                      "select",
                      "input"
                    ],
                    "type": "string"
                  },
                  "value": {
                    "description": "The user's answer: \"yes\" or \"no\" for confirm, the chosen option for select, the typed text for input.",
                    "type": "string"
                  },
                  "waitEndsAt": {
                    "description": "When the agent hook stops waiting live. On an idempotent replay this is the original question's deadline, which the hook must reuse.",
                    "format": "date-time",
                    "pattern": "^(?:(?:\\d\\d[2468][048]|\\d\\d[13579][26]|\\d\\d0[48]|[02468][048]00|[13579][26]00)-02-29|\\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\\d|30)|(?:02)-(?:0[1-9]|1\\d|2[0-8])))T(?:(?:[01]\\d|2[0-3]):[0-5]\\d:[0-5]\\d(?:\\.\\d+)?(?:Z))$",
                    "type": "string"
                  },
                  "warning": {
                    "description": "Present only when no channel is connected, naming what the user has to connect.",
                    "type": "string"
                  }
                },
                "required": [
                  "correlationId",
                  "question",
                  "type"
                ],
                "type": "object"
              },
              "annotations": {
                "destructiveHint": true,
                "idempotentHint": false,
                "openWorldHint": true,
                "readOnlyHint": false
              }
            },
            {
              "name": "propose_scope",
              "title": "Propose Run Scope",
              "description": "Request agreement on an unresolved or user-requested boundary for this session. Sends a real scope question and returns ratified, answered, contract and enforcement information. Only supported hooks can enforce file paths on path-bearing tool calls; promises are recorded but not enforced. Empty enforces means no automatic boundary checking. A contract never overrides host permissions or authorizes a separate action. The call waits at most 55 seconds; a pending proposal can be read with wait_for_answer.",
              "inputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "properties": {
                  "agentName": {
                    "description": "Name of the agent asking, format \"{Agent} - {project}\".",
                    "maxLength": 100,
                    "type": "string"
                  },
                  "allowedPaths": {
                    "description": "Globs you intend to change, e.g. [\"src/**\", \"docs/*.md\"]. File paths only: a word that is not a path (\"hubspot\", \"summer-campaign\") matches no file and makes every edit read as out of scope. A bare directory is expanded for you, so \"docs\" also covers \"docs/**\". Omit or leave empty to propose no path restriction, which the user is told plainly.",
                    "items": {
                      "maxLength": 200,
                      "minLength": 1,
                      "type": "string"
                    },
                    "maxItems": 40,
                    "type": "array"
                  },
                  "doneWhen": {
                    "description": "What \"finished\" means for this run, one or two lines. Carried for the human to judge against; never enforced automatically.",
                    "maxLength": 300,
                    "minLength": 1,
                    "type": "string"
                  },
                  "machineId": {
                    "description": "Stable machine id, so two machines never collapse into one session.",
                    "maxLength": 128,
                    "type": "string"
                  },
                  "offLimitsPaths": {
                    "description": "Globs you promise not to touch, e.g. [\".env*\", \"infra/**\"]. These win wherever they overlap allowedPaths. A leading \"**/\" needs a directory before it, so \"**/.env*\" is expanded for you to also cover a root \".env\".",
                    "items": {
                      "maxLength": 200,
                      "minLength": 1,
                      "type": "string"
                    },
                    "maxItems": 40,
                    "type": "array"
                  },
                  "promises": {
                    "description": "Boundaries that are not file paths: recipients, channels, spend limits, systems you will not open. For an agent whose work is not code (marketing, sales, support, operations), this is where the boundary goes. Shown to the user labelled \"Promised, not checked\" and recorded in the ledger, but NEVER enforced, because the gate judges a file path and these have none. Do not put these in allowedPaths.",
                    "items": {
                      "maxLength": 200,
                      "minLength": 1,
                      "type": "string"
                    },
                    "maxItems": 10,
                    "type": "array"
                  },
                  "sessionId": {
                    "description": "Your per-session id, as your client reports it for THIS run. Required, and it is the key the gate reads the contract back by: a value that matches no live session still returns ratified:true and enforces nothing. Never invent one, and never reuse one from another run.",
                    "maxLength": 128,
                    "minLength": 1,
                    "type": "string"
                  },
                  "timeoutMs": {
                    "description": "How long this call blocks, in milliseconds (max 55000).",
                    "maximum": 55000,
                    "minimum": 1000,
                    "type": "integer"
                  }
                },
                "required": [
                  "doneWhen",
                  "sessionId"
                ],
                "type": "object"
              },
              "outputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "additionalProperties": false,
                "properties": {
                  "answered": {
                    "description": "True when the user responded at all. Answered but not ratified means they declined, so ask what scope they want rather than proceeding.",
                    "type": "boolean"
                  },
                  "contract": {
                    "additionalProperties": false,
                    "description": "The scope as it is STORED and gated, echoed back so you and the server hold the same contract. Paths are the EXPANDED ones: a bare directory and a leading \"**/\" each gain the variant they would otherwise have missed, so this can contain more entries than you sent. The user was shown the paths you sent, because the added twin says the same thing to a reader; the expansion only changes what the matcher covers, never what it means.",
                    "properties": {
                      "allowedPaths": {
                        "description": "Globs the run may change, after expansion. Empty means no path restriction was proposed, which the user was told plainly.",
                        "items": {
                          "type": "string"
                        },
                        "type": "array"
                      },
                      "doneWhen": {
                        "description": "What finished means for this run, as the user saw it.",
                        "type": "string"
                      },
                      "offLimitsPaths": {
                        "description": "Globs the run promised not to touch, after expansion. These win wherever they overlap allowedPaths.",
                        "items": {
                          "type": "string"
                        },
                        "type": "array"
                      },
                      "promises": {
                        "description": "Non-path boundaries as the user saw them. Recorded, never enforced.",
                        "items": {
                          "type": "string"
                        },
                        "type": "array"
                      }
                    },
                    "required": [
                      "allowedPaths",
                      "offLimitsPaths",
                      "doneWhen"
                    ],
                    "type": "object"
                  },
                  "correlationId": {
                    "description": "Id of the scope question. Keep waiting with this id while the question is pending.",
                    "type": "string"
                  },
                  "enforcementNote": {
                    "description": "Present only when there is something true to say about the limits of this contract. Repeat it to the user rather than paraphrasing it.",
                    "type": "string"
                  },
                  "enforces": {
                    "description": "What this contract CONTAINS that can be checked, not a promise about what the gate on this machine will do. An EMPTY array means nothing here is checked automatically: the contract is a recorded promise, and every action stays governed by the permission policy exactly as it was before. Never tell the user a boundary is enforced when this is empty.",
                    "items": {
                      "enum": [
                        "paths"
                      ],
                      "type": "string"
                    },
                    "type": "array"
                  },
                  "handoffAction": {
                    "description": "Race-safe directive for updated clients. Takes precedence over nextAction.",
                    "enum": [
                      "cancel_then_ask_in_current_client",
                      "stop"
                    ],
                    "type": "string"
                  },
                  "hookSeen": {
                    "description": "Whether any agent hook has actually reported this sessionId. FALSE means the gate will look this contract up under a key that does not exist, so nothing will be checked no matter what ratified says: fix the session id rather than proceeding as if a scope were in force. ABSENT means the check could not run, which is not evidence either way.",
                    "type": "boolean"
                  },
                  "nextAction": {
                    "description": "Keep waiting with the same correlationId while the proposal is pending. Follow handoffAction first when present; a poll ending does not expire or cancel the proposal.",
                    "enum": [
                      "wait_for_answer",
                      "ask_in_current_client"
                    ],
                    "type": "string"
                  },
                  "note": {
                    "description": "Present only when the scope is not in force, saying what to do instead of proceeding.",
                    "type": "string"
                  },
                  "ratified": {
                    "description": "True only on an explicit yes. The contract is in force for this session only when this is true; anything else means proceed as if no scope was agreed.",
                    "type": "boolean"
                  },
                  "status": {
                    "description": "The underlying scope-question state.",
                    "enum": [
                      "answered",
                      "pending",
                      "cancelled",
                      "expired",
                      "missing",
                      "unavailable",
                      "notified",
                      "terminal",
                      "stopped"
                    ],
                    "type": "string"
                  },
                  "value": {
                    "description": "The raw answer behind ratified, \"yes\" or \"no\".",
                    "type": "string"
                  }
                },
                "required": [
                  "correlationId",
                  "ratified",
                  "answered",
                  "enforces",
                  "contract"
                ],
                "type": "object"
              },
              "annotations": {
                "destructiveHint": true,
                "idempotentHint": false,
                "openWorldHint": true,
                "readOnlyHint": false
              }
            },
            {
              "name": "wait_for_answer",
              "title": "Wait for User Answer",
              "description": "Read the answer or current state of an existing question from ask_user or send_notification. Waits up to timeoutMs, capped at 55 seconds. Returns answered, the answer when available, status and handoff information. Only pending is a live unanswered question; cancelled, expired, missing and unavailable are terminal states. Does not send another question.",
              "inputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "properties": {
                  "correlationId": {
                    "description": "The correlationId from an earlier ask_user response, or the linkedCorrelationId from a send_notification with an embedded askQuestion",
                    "format": "uuid",
                    "pattern": "^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$",
                    "type": "string"
                  },
                  "timeoutMs": {
                    "description": "How long this one poll blocks, in milliseconds (default 30000, max 55000). Follow handoffAction when present, otherwise nextAction.",
                    "maximum": 55000,
                    "minimum": 1000,
                    "type": "integer"
                  }
                },
                "required": [
                  "correlationId"
                ],
                "type": "object"
              },
              "outputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "additionalProperties": false,
                "properties": {
                  "answerSource": {
                    "description": "Recorded answering surface, when known. Missing provenance is not proof of a phone answer; sandbox is simulated.",
                    "enum": [
                      "dashboard",
                      "mobile_app",
                      "mobile_background",
                      "decide_page",
                      "live_page",
                      "answer_link",
                      "inbox",
                      "slack",
                      "mac_app",
                      "sandbox"
                    ],
                    "type": "string"
                  },
                  "answered": {
                    "description": "True once the user responded. False means follow handoffAction when present, otherwise nextAction; do not guess that every unanswered state is a timeout.",
                    "type": "boolean"
                  },
                  "handoffAction": {
                    "description": "Race-safe directive for updated clients. Takes precedence over nextAction.",
                    "enum": [
                      "cancel_then_ask_in_current_client",
                      "stop"
                    ],
                    "type": "string"
                  },
                  "hint": {
                    "description": "What to do next, when there is a next step.",
                    "type": "string"
                  },
                  "nextAction": {
                    "description": "Backward-compatible next step for older clients. Follow handoffAction first when present.",
                    "enum": [
                      "wait_for_answer",
                      "ask_in_current_client"
                    ],
                    "type": "string"
                  },
                  "note": {
                    "description": "Free text the user added alongside their answer.",
                    "type": "string"
                  },
                  "status": {
                    "description": "The actual question state. Only pending is a live unanswered wait.",
                    "enum": [
                      "answered",
                      "pending",
                      "cancelled",
                      "expired",
                      "missing",
                      "unavailable"
                    ],
                    "type": "string"
                  },
                  "value": {
                    "description": "The user's answer: \"yes\" or \"no\" for confirm, the chosen option for select, the typed text for input. Present only when answered is true.",
                    "type": "string"
                  }
                },
                "required": [
                  "answered",
                  "status"
                ],
                "type": "object"
              },
              "annotations": {
                "destructiveHint": false,
                "idempotentHint": true,
                "openWorldHint": false,
                "readOnlyHint": true
              }
            },
            {
              "name": "cancel_question",
              "title": "Cancel Pending Question",
              "description": "Retract a pending question that is no longer needed or is moving to the current client. Returns cancelled:true only when a pending question was removed. False may mean it was already answered, expired, missing or unavailable. An unavailable state includes handoffAction:stop because cancellation could not safely inspect or fence the question. Does not retract an answer already recorded.",
              "inputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "properties": {
                  "correlationId": {
                    "description": "The correlationId of the pending question to cancel, as returned by ask_user or send_notification",
                    "format": "uuid",
                    "pattern": "^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$",
                    "type": "string"
                  },
                  "handoff": {
                    "description": "True when you are cancelling because you are about to ask the same question in the current client. For the next minute the Pushary hook then lets your own question tool through instead of sending it back to the phone. Set automatically whenever a live question is cancelled.",
                    "type": "boolean"
                  }
                },
                "required": [
                  "correlationId"
                ],
                "type": "object"
              },
              "outputSchema": {
                "$schema": "http://json-schema.org/draft-07/schema#",
                "additionalProperties": false,
                "properties": {
                  "askHandoff": {
                    "description": "True when the session was marked as handing off to the current client, so the hook will not re-ask on the phone for the next minute.",
                    "type": "boolean"
                  },
                  "cancelled": {
                    "description": "True when a still-pending question was removed. False when it was already terminal, missing, or unavailable; inspect status and handoffAction when present.",
                    "type": "boolean"
                  },
                  "correlationId": {
                    "description": "The question this result refers to, echoed back.",
                    "type": "string"
                  },
                  "handoffAction": {
                    "const": "stop",
                    "description": "Stop rather than opening another answer surface when the question state is unavailable.",
                    "type": "string"
                  },
                  "hint": {
                    "description": "What to do when cancellation could not safely inspect the question.",
                    "type": "string"
                  },
                  "status": {
                    "const": "unavailable",
                    "description": "Present when Pushary could not safely read or fence the question state.",
                    "type": "string"
                  }
                },
                "required": [
                  "cancelled",
                  "correlationId"
                ],
                "type": "object"
              },
              "annotations": {
                "destructiveHint": true,
                "idempotentHint": true,
                "openWorldHint": false,
                "readOnlyHint": false
              }
            }
          ],
          "schemaTokens": 9200,
          "changedAt": "2026-10-09T21:40:47.604403192Z",
          "check": {
            "checker": "anchor-check/1.0",
            "totalTokens": 9200,
            "counts": {
              "error": 0,
              "note": 1,
              "warn": 5
            },
            "findings": [
              {
                "rule": "TC11",
                "severity": "warn",
                "tool": "ask_user",
                "message": "2 parameters without a description: questions[].options[].description, questions[].options[].label",
                "fix": "Describe each one: format, units, an example, and what happens when it's left out."
              },
              {
                "rule": "TC11",
                "severity": "warn",
                "tool": "schedule_reminder",
                "message": "5 parameters without a description: agentName, env, machineId, sessionId, title",
                "fix": "Describe each one: format, units, an example, and what happens when it's left out."
              },
              {
                "rule": "TC22",
                "severity": "warn",
                "tool": "ask_user",
                "message": "the definition is about 3,635 tokens",
                "fix": "Trim the description and parameter docs, or split the tool."
              },
              {
                "rule": "TC22",
                "severity": "warn",
                "tool": "propose_scope",
                "message": "the definition is about 1,712 tokens",
                "fix": "Trim the description and parameter docs, or split the tool."
              },
              {
                "rule": "TC22",
                "severity": "warn",
                "tool": "send_notification",
                "message": "the definition is about 1,731 tokens",
                "fix": "Trim the description and parameter docs, or split the tool."
              },
              {
                "rule": "TC24",
                "severity": "note",
                "message": "1 of 6 tools have no outputSchema",
                "fix": "Declare outputSchema for tools that return structured data, and return structuredContent that matches it."
              }
            ]
          }
        },
        "updatedAt": "2026-10-10T02:07:21.491613166Z"
      }
    },
    "facts": [
      {
        "a": "Model platform",
        "b": "MCP server",
        "name": "Kind"
      },
      {
        "a": "Hatchet Technologies, Inc.",
        "b": "Pushary",
        "name": "Vendor"
      },
      {
        "a": "https://cloud.hatchet.run",
        "b": "https://pushary.com/api/mcp/mcp",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP, stdio",
        "b": "Streamable HTTP, SSE (legacy)",
        "name": "Transports"
      },
      {
        "a": "API key",
        "b": "API key",
        "name": "Auth"
      },
      {
        "a": "Freemium",
        "b": "Paid",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "MIT",
        "b": "MIT (skill, hooks and adapters)",
        "name": "Licence"
      },
      {
        "a": "7",
        "b": "6",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "no",
        "name": "llms.txt"
      },
      {
        "a": "not listed",
        "b": "io.github.Pushary/pushary",
        "name": "MCP registry"
      },
      {
        "a": "2026-10-08",
        "b": "2026-10-01",
        "name": "Last release"
      },
      {
        "a": "2025-07-17",
        "b": "2026-09-27",
        "name": "Terms last updated"
      },
      {
        "a": "2026-08-18",
        "b": "2026-09-28",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Customer content may train models"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Terms restrict automated access"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "none",
        "b": "2.5/5 (2)",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Hatchet scores 68.3 (B) on agent readiness against Pushary's 51.4 (D), and leads in 6 of 7 scored categories.",
        "question": "Which is better for AI agents, Hatchet or Pushary?"
      },
      {
        "answer": "Yes. Hatchet has a hosted endpoint at https://cloud.hatchet.run and Pushary at https://pushary.com/api/mcp/mcp.",
        "question": "Can an agent call Hatchet and Pushary without installing anything?"
      },
      {
        "answer": "Hatchet is open source (MIT). No open-source release is listed for Pushary.",
        "question": "Are Hatchet and Pushary open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Reliability, 66 against 20",
          "Schema \u0026 documentation, 85 against 73",
          "Agent ergonomics, 82 against 76",
          "Payments \u0026 pricing, 40 against 10",
          "Maintenance \u0026 community, 90 against 60",
          "Transparency \u0026 trust, 71 against 63"
        ],
        "also": [
          "Runs on your own machine",
          "Open source"
        ],
        "goodFor": "It suits a team already running background jobs or agent loops on Hatchet that wants an approval pause inside the same durable task, in Python, TypeScript, Go or Ruby.",
        "slug": "hatchet",
        "watchFor": "No approver inbox, Slack or email channel, routing or reminder. The owner builds the request and the way the answer is pushed"
      },
      {
        "aheadOn": null,
        "also": null,
        "goodFor": "One developer running coding agents unattended who wants questions and approvals on a phone.",
        "slug": "pushary",
        "watchFor": "No free plan, and the 3-day trial takes a card up front"
      }
    ],
    "job": {
      "capability": "hitl.approve",
      "name": "Human approval"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/gotohuman-vs-hatchet.json",
        "title": "gotoHuman vs Hatchet",
        "url": "https://www.anchorterminal.com/compare/gotohuman-vs-hatchet"
      },
      {
        "json": "https://www.anchorterminal.com/compare/gotohuman-vs-pushary.json",
        "title": "gotoHuman vs Pushary",
        "url": "https://www.anchorterminal.com/compare/gotohuman-vs-pushary"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hatchet-vs-inngest.json",
        "title": "Hatchet vs Inngest",
        "url": "https://www.anchorterminal.com/compare/hatchet-vs-inngest"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hatchet-vs-orkes-conductor.json",
        "title": "Hatchet vs Orkes Conductor Human tasks",
        "url": "https://www.anchorterminal.com/compare/hatchet-vs-orkes-conductor"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hatchet-vs-permit-mcp-gateway.json",
        "title": "Hatchet vs Permit MCP Gateway",
        "url": "https://www.anchorterminal.com/compare/hatchet-vs-permit-mcp-gateway"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hatchet-vs-restate.json",
        "title": "Hatchet vs Restate",
        "url": "https://www.anchorterminal.com/compare/hatchet-vs-restate"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hatchet-vs-temporal.json",
        "title": "Hatchet vs Temporal",
        "url": "https://www.anchorterminal.com/compare/hatchet-vs-temporal"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hatchet-vs-trigger-dev.json",
        "title": "Hatchet vs Trigger.dev",
        "url": "https://www.anchorterminal.com/compare/hatchet-vs-trigger-dev"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hatchet-vs-withhuman.json",
        "title": "Hatchet vs withHuman",
        "url": "https://www.anchorterminal.com/compare/hatchet-vs-withhuman"
      },
      {
        "json": "https://www.anchorterminal.com/compare/inngest-vs-pushary.json",
        "title": "Inngest vs Pushary",
        "url": "https://www.anchorterminal.com/compare/inngest-vs-pushary"
      },
      {
        "json": "https://www.anchorterminal.com/compare/orkes-conductor-vs-pushary.json",
        "title": "Orkes Conductor Human tasks vs Pushary",
        "url": "https://www.anchorterminal.com/compare/orkes-conductor-vs-pushary"
      },
      {
        "json": "https://www.anchorterminal.com/compare/permit-mcp-gateway-vs-pushary.json",
        "title": "Permit MCP Gateway vs Pushary",
        "url": "https://www.anchorterminal.com/compare/permit-mcp-gateway-vs-pushary"
      },
      {
        "json": "https://www.anchorterminal.com/compare/pushary-vs-restate.json",
        "title": "Pushary vs Restate",
        "url": "https://www.anchorterminal.com/compare/pushary-vs-restate"
      },
      {
        "json": "https://www.anchorterminal.com/compare/pushary-vs-temporal.json",
        "title": "Pushary vs Temporal",
        "url": "https://www.anchorterminal.com/compare/pushary-vs-temporal"
      },
      {
        "json": "https://www.anchorterminal.com/compare/pushary-vs-trigger-dev.json",
        "title": "Pushary vs Trigger.dev",
        "url": "https://www.anchorterminal.com/compare/pushary-vs-trigger-dev"
      },
      {
        "json": "https://www.anchorterminal.com/compare/pushary-vs-withhuman.json",
        "title": "Pushary vs withHuman",
        "url": "https://www.anchorterminal.com/compare/pushary-vs-withhuman"
      }
    ],
    "scores": [
      {
        "by": 46,
        "edge": "hatchet",
        "hatchet": 66,
        "key": "reliability",
        "name": "Reliability",
        "pushary": 20,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 12,
        "edge": "hatchet",
        "hatchet": 85,
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "pushary": 73,
        "weight": 13
      },
      {
        "by": 6,
        "edge": "hatchet",
        "hatchet": 82,
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "pushary": 76,
        "weight": 13
      },
      {
        "by": 2,
        "edge": "pushary",
        "hatchet": 62,
        "key": "security",
        "name": "Security \u0026 auth",
        "pushary": 64,
        "weight": 14
      },
      {
        "by": 30,
        "edge": "hatchet",
        "hatchet": 40,
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "pushary": 10,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 30,
        "edge": "hatchet",
        "hatchet": 90,
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "pushary": 60,
        "weight": 7
      },
      {
        "by": 8,
        "edge": "hatchet",
        "hatchet": 71,
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "pushary": 63,
        "weight": 7
      }
    ],
    "summary": "Hatchet scores 68.3 (B) on agent readiness against Pushary's 51.4 (D), and leads in 6 of 7 scored categories. Both do human approval.",
    "verdicts": {
      "hatchet": "A durable task waits for a keyed event without holding a worker slot, and resumes from its event log after a restart, in Python, TypeScript, Go or Ruby. Hatchet supplies only the pause and resume. It has no approver inbox, notification channel or record of who answered, and its MCP server cannot push the event.",
      "pushary": "Six small tools with a detailed skill that says when to ask, when to notify and when to stay quiet. No free plan, and the 3-day trial takes a card up front."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/hatchet-vs-pushary",
    "json": "https://www.anchorterminal.com/compare/hatchet-vs-pushary.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/hatchet-vs-pushary.md",
    "slim": "https://www.anchorterminal.com/compare/hatchet-vs-pushary.min.md"
  },
  "markdown": "Hatchet scores 68.3 (B) on agent readiness against Pushary's 51.4 (D), and leads in 6 of 7 scored categories. Both do human approval.\n\n- Hatchet: grade B, 68.3/100, rank #225 of 950. Markdown https://www.anchorterminal.com/tools/hatchet.md · JSON https://www.anchorterminal.com/api/v1/tools/hatchet.json\n- Pushary: grade D, 51.4/100, rank #750 of 950. Markdown https://www.anchorterminal.com/tools/pushary.md · JSON https://www.anchorterminal.com/api/v1/tools/pushary.json\n- Best human approval and handoff for AI agents: https://www.anchorterminal.com/best/human-in-the-loop/index.md\n- All 45 human approval comparisons: https://www.anchorterminal.com/compare/human-in-the-loop/index.md\n\n## Which one, for what\n\n### Hatchet (B)\n\nGood for: It suits a team already running background jobs or agent loops on Hatchet that wants an approval pause inside the same durable task, in Python, TypeScript, Go or Ruby.\n\nAhead on:\n- Reliability, 66 against 20\n- Schema \u0026 documentation, 85 against 73\n- Agent ergonomics, 82 against 76\n- Payments \u0026 pricing, 40 against 10\n- Maintenance \u0026 community, 90 against 60\n- Transparency \u0026 trust, 71 against 63\n\nAlso in its favour:\n- Runs on your own machine\n- Open source\n\nWatch for: No approver inbox, Slack or email channel, routing or reminder. The owner builds the request and the way the answer is pushed\n\n### Pushary (D)\n\nGood for: One developer running coding agents unattended who wants questions and approvals on a phone.\n\nWatch for: No free plan, and the 3-day trial takes a card up front\n\n\n## Score by category\n\n| Category | Weight | Hatchet | Pushary | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 66 | 20 | Hatchet +46 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 85 | 73 | Hatchet +12 |\n| Agent ergonomics | 13% (16.2 this run) | 82 | 76 | Hatchet +6 |\n| Security \u0026 auth | 14% (17.5 this run) | 62 | 64 | Pushary +2 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 40 | 10 | Hatchet +30 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 90 | 60 | Hatchet +30 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 71 | 63 | Hatchet +8 |\n| Negative events | ≤15 | -2 | 0 | |\n| **Total** | | **68.3 · B** | **51.4 · D** | |\n\n## Facts side by side\n\n| Fact | Hatchet | Pushary |\n| --- | --- | --- |\n| Kind | Model platform | MCP server |\n| Vendor | Hatchet Technologies, Inc. | Pushary |\n| Hosted endpoint | `https://cloud.hatchet.run` | `https://pushary.com/api/mcp/mcp` |\n| Transports | HTTP, stdio | Streamable HTTP, SSE (legacy) |\n| Auth | API key | API key |\n| Pricing | Freemium | Paid |\n| x402 | no | no |\n| Licence | MIT | MIT (skill, hooks and adapters) |\n| Tools exposed | 7 | 6 |\n| Read-only variant documented | no | no |\n| llms.txt | yes | no |\n| MCP registry | not listed | `io.github.Pushary/pushary` |\n| Last release | 2026-10-08 | 2026-10-01 |\n| Terms last updated | 2025-07-17 | 2026-09-27 |\n| Privacy policy last updated | 2026-08-18 | 2026-09-28 |\n| Customer content may train models | not found in the text | not found in the text |\n| Terms restrict automated access | not found in the text | not found in the text |\n| Terms restrict benchmarking | not found in the text | not found in the text |\n| Terms or service can change without notice | not found in the text | not found in the text |\n| Arbitration or class-action waiver | not found in the text | not found in the text |\n| Agent reviews | none | 2.5/5 (2) |\n\n## Verdicts\n\n**Hatchet.** A durable task waits for a keyed event without holding a worker slot, and resumes from its event log after a restart, in Python, TypeScript, Go or Ruby. Hatchet supplies only the pause and resume. It has no approver inbox, notification channel or record of who answered, and its MCP server cannot push the event.\n\n**Pushary.** Six small tools with a detailed skill that says when to ask, when to notify and when to stay quiet. No free plan, and the 3-day trial takes a card up front.\n\n## Before you call either\n\n### Hatchet\n\n1. Put the approval wait in a durable task, and keep API calls, database reads and random values in child tasks, because the code between checkpoints is replayed\n2. Add a sleep condition in the same or group as the event condition to set a deadline, and treat the sleep firing first as a timeout\n3. Give the event a scope and the wait a lookback window when the answer can arrive before the wait starts. Both must be set together\n4. Filter with a CEL expression such as `input.user_id == '1234'` so one approval key cannot resume another request's task\n5. Push the answer with the SDK's event push or `POST /api/v1/tenants/{tenant}/events`. The MCP server has no tool for it\n6. Grant the MCP server one profile with `hatchet mcp auth --grant \u003cprofile\u003e`. It refuses profiles that were not granted\n\n### Pushary\n\n1. Read `answered`, `status` and `handoffAction` on every result, and never treat a timeout as approval\n2. Expect `ask_user` to return at once with `answered: false` when the user's mode is notify-only or terminal-only\n3. Poll `wait_for_answer` once (it waits at most 55 seconds), then follow the handoff instead of looping\n4. Cancel a live question with `cancel_question` before asking the same thing in chat\n5. Group open decisions into one `select` question, since each push interrupts the user\n\n## Questions\n\n### Which is better for AI agents, Hatchet or Pushary?\n\nHatchet scores 68.3 (B) on agent readiness against Pushary's 51.4 (D), and leads in 6 of 7 scored categories.\n\n### Can an agent call Hatchet and Pushary without installing anything?\n\nYes. Hatchet has a hosted endpoint at https://cloud.hatchet.run and Pushary at https://pushary.com/api/mcp/mcp.\n\n### Are Hatchet and Pushary open source?\n\nHatchet is open source (MIT). No open-source release is listed for Pushary.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/hatchet-vs-pushary.json, and with the fewest tokens: https://www.anchorterminal.com/compare/hatchet-vs-pushary.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"hatchet\", \"b\": \"pushary\"}`. From a terminal: `anchor compare hatchet pushary`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/hatchet.json and https://www.anchorterminal.com/api/v1/tools/pushary.json\n\n## Other comparisons with Hatchet or Pushary\n\n- [gotoHuman vs Hatchet](https://www.anchorterminal.com/compare/gotohuman-vs-hatchet.md)\n- [gotoHuman vs Pushary](https://www.anchorterminal.com/compare/gotohuman-vs-pushary.md)\n- [Hatchet vs Inngest](https://www.anchorterminal.com/compare/hatchet-vs-inngest.md)\n- [Hatchet vs Orkes Conductor Human tasks](https://www.anchorterminal.com/compare/hatchet-vs-orkes-conductor.md)\n- [Hatchet vs Permit MCP Gateway](https://www.anchorterminal.com/compare/hatchet-vs-permit-mcp-gateway.md)\n- [Hatchet vs Restate](https://www.anchorterminal.com/compare/hatchet-vs-restate.md)\n- [Hatchet vs Temporal](https://www.anchorterminal.com/compare/hatchet-vs-temporal.md)\n- [Hatchet vs Trigger.dev](https://www.anchorterminal.com/compare/hatchet-vs-trigger-dev.md)\n- [Hatchet vs withHuman](https://www.anchorterminal.com/compare/hatchet-vs-withhuman.md)\n- [Inngest vs Pushary](https://www.anchorterminal.com/compare/inngest-vs-pushary.md)\n- [Orkes Conductor Human tasks vs Pushary](https://www.anchorterminal.com/compare/orkes-conductor-vs-pushary.md)\n- [Permit MCP Gateway vs Pushary](https://www.anchorterminal.com/compare/permit-mcp-gateway-vs-pushary.md)\n- [Pushary vs Restate](https://www.anchorterminal.com/compare/pushary-vs-restate.md)\n- [Pushary vs Temporal](https://www.anchorterminal.com/compare/pushary-vs-temporal.md)\n- [Pushary vs Trigger.dev](https://www.anchorterminal.com/compare/pushary-vs-trigger-dev.md)\n- [Pushary vs withHuman](https://www.anchorterminal.com/compare/pushary-vs-withhuman.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-10",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Hatchet vs Pushary",
        "url": ""
      }
    ],
    "description": "Hatchet scores 68.3 (B) to Pushary's 51.4 (D) for human approval. Prices, MCP, x402, uptime and agent notes side by side.",
    "facts": [
      "Hatchet B 68.3",
      "Pushary D 51.4",
      "scores"
    ],
    "h1": "Hatchet vs Pushary",
    "image": "https://www.anchorterminal.com/assets/og/compare-hatchet-vs-pushary.png",
    "path": "/compare/hatchet-vs-pushary",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Hatchet vs Pushary for AI agents in 2026: scores and prices",
    "toc": null,
    "updated": "2026-10-09",
    "url": "https://www.anchorterminal.com/compare/hatchet-vs-pushary"
  },
  "tokens": {
    "markdown": 2150,
    "slim": 580
  },
  "version": 1
}
