{
  "data": {
    "a": {
      "slug": "hibob",
      "name": "HiBob",
      "vendor": "Hi Bob Ltd.",
      "vendorUrl": "https://www.hibob.com",
      "kind": "http-api",
      "category": "hr",
      "summary": "Bob is HiBob's HR platform for employee records, time off, attendance, tasks, documents and hiring. Agents reach it through a REST API authenticated with service users, 30 webhook events and a hosted MCP server that uses OAuth.",
      "url": "https://www.anchorterminal.com/tools/hibob",
      "markdownUrl": "https://www.anchorterminal.com/tools/hibob.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/hibob.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/hibob.json",
      "license": "Proprietary service under HiBob's customer subscription terms and API Terms of Use",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://api.hibob.com/v1",
      "packages": [],
      "auth": "mixed",
      "authNotes": "Access is granted by a customer's Bob admin, with no self-serve route for outsiders. Customer-built integrations use a service user, an ID and token sent as HTTP Basic, which starts with no permissions and gains them through a permission group (product areas, fields by View, View history and Edit, and which employees). OAuth 2.0 authorisation code apps are open only to approved Marketplace and technology partners through the Developer Portal, with 28 scopes, an audience the customer chooses at install, 5-minute access tokens and 30-day refresh tokens. The hosted MCP server uses OAuth as the signed-in employee and follows that person's Bob permissions.",
      "pricing": "paid",
      "pricingNotes": "No public prices. HiBob quotes per employee by company size and chosen modules, and the pricing page asks for a demo or a custom quote. No free tier or trial was found. The API sandbox at api.sandbox.hibob.com is available only to accounts that have bought the Sandbox module, so an agent cannot start without a customer contract (https://www.hibob.com/pricing-plans, checked 2026-10-07).",
      "priceSummary": "Paid",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the developer docs, the API terms or the pricing page (checked 2026-10-07).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-07"
      },
      "docsUrl": "https://apidocs.hibob.com",
      "llmsTxt": "https://apidocs.hibob.com/llms.txt",
      "capabilities": [
        "hr.employees",
        "hr.time-off",
        "hr.org",
        "hr.onboarding",
        "hr.documents"
      ],
      "tags": [
        "hosted",
        "enterprise",
        "sales-led",
        "api-key",
        "oauth",
        "mcp",
        "llms-txt",
        "openapi",
        "webhooks",
        "sandbox",
        "status-page",
        "bug-bounty",
        "soc2"
      ],
      "lastRelease": "2026-10-07",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 57,
        "grade": "C",
        "agentReady": false,
        "rank": 484,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 5,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 47,
          "maintenance": 59,
          "payments": 0,
          "reliability": 67,
          "schema": 78,
          "security": 68,
          "transparency": 71
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-07"
        },
        "negative": 0,
        "verdict": "Service users start with no permissions and gain view or edit rights per field, and the docs are served as Markdown with an OpenAPI definition on each endpoint page. There is no public price, trial or free sandbox, so an agent needs a paying customer's admin to issue credentials. No idempotency keys or official SDKs were found.",
        "bestFor": "An agent working inside a company that already runs Bob and needs field-level control over employee data, time off requests, documents and tasks.",
        "strengths": [
          "Service users have no permissions by default, and view, edit and history rights are granted per category or field through permission groups",
          "llms.txt index and a Markdown twin of every docs page, with an OpenAPI 3.1.1 definition embedded in each endpoint page",
          "Per-endpoint rate limits are published, and 429 responses carry Retry-After and X-RateLimit headers",
          "Webhooks v2 retry with exponential backoff for up to three days, with signed requests",
          "SOC 2 Type II, ISO 27001:2022, ISO 27018:2019 and a Bugcrowd bug bounty listed on the security page"
        ],
        "weaknesses": [
          "No public price, free tier or trial. The sandbox is a purchased module",
          "People search has no pagination and returns every matching employee in one response",
          "Fields without permission or with invalid IDs are dropped from a 200 response with no warning",
          "No idempotency keys and no official SDK found in the reviewed documentation",
          "MCP setup and tool documentation sit in the help centre, which returned 403 to our reader"
        ],
        "agentNotes": [
          "Send `Authorization: Basic base64(SERVICE-USER-ID:TOKEN)` to https://api.hibob.com/v1. Ask the Bob admin to put the service user in a permission group first, because it starts with none",
          "Request only the fields needed in `fields` on POST /people/search (maximum 400). The call returns all matching employees at once, so batch by `root.id` in large companies",
          "Compare returned fields with requested ones. Missing permission or a wrong field ID yields 200 with the field omitted",
          "Stop on 401 or 403. More than 50 in 10 seconds blocks the IP for 5 minutes",
          "Back off on 429 using Retry-After. Writes such as update, create and terminate employee allow 10 calls a minute, and no idempotency key exists, so check state before retrying a write"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 57
          }
        ],
        "editorialScores": {
          "ergonomics": 47,
          "maintenance": 59,
          "payments": 0,
          "reliability": 67,
          "schema": 78,
          "security": 68,
          "transparency": 58
        },
        "provenanceScore": 83
      },
      "connect": {
        "http": "curl -X POST \"https://api.hibob.com/v1/people/search\" \\\n  -u \"$BOB_SERVICE_USER_ID:$BOB_SERVICE_USER_TOKEN\" -H \"Content-Type: application/json\" \\\n  -d '{\"fields\":[\"root.id\",\"root.email\",\"work.department\"]}'"
      },
      "letme": {
        "capability": "https://letme.dev/hr.employees",
        "tool": "https://letme.dev/hibob"
      },
      "area": "business",
      "provenance": {
        "legalEntity": "Hi Bob Ltd.",
        "domain": "hibob.com",
        "domainRegistered": "2010-02-25",
        "endpointOnVendorDomain": true,
        "terms": "https://apidocs.hibob.com/docs/api-terms-of-use",
        "privacy": "https://www.hibob.com/privacy/privacy-policy",
        "statusPage": "https://status.hibob.io",
        "changelog": "https://apidocs.hibob.com/changelog",
        "securityTxt": "unknown",
        "checked": "2026-10-07",
        "notes": [
          "The API Terms of Use name Hi Bob Ltd. and its subsidiaries. The privacy policy (updated 16 February 2026) names Hi Bob (UK) Limited, 5 New Street Square, London EC4A 3TW, and says it does not cover people who use Bob at a customer's direction.",
          "The customer subscription terms (revised January 2026) list contracting entities by region, among them Hi Bob, Inc., Hi Bob Ltd., Hi Bob (UK) Limited and Hi Bob (NL) B.V.",
          "The API answers at https://api.hibob.com/v1 and the sandbox at https://api.sandbox.hibob.com/v1. OAuth tokens are exchanged at https://auth.app.hibob.com/oauth2/v1/apps/token. The status page is on a separate domain, status.hibob.io.",
          "www.hibob.com/.well-known/security.txt returned a Cloudflare block page (403) to both of our fetchers, so its presence is unknown.",
          "RDAP for hibob.com gives a registration date of 2010-02-25.",
          "The data processing addendum page (updated September 2026) links to a pre-signed DocuSign document and does not show the terms."
        ],
        "score": 83
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/hibob.json",
      "live": {
        "slug": "hibob",
        "probe": {
          "target": "https://api.hibob.com/v1",
          "method": "get",
          "lastAt": "2026-10-08T21:53:23.753330377Z",
          "lastOk": true,
          "lastStatus": 200,
          "lastMs": 103,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 103,
          "p95ms24h": 187,
          "samples24h": 71,
          "samples30d": 71,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 71,
              "ok": 71
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.hibob.io",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T21:57:58.311648992Z"
        },
        "securityTxt": {
          "url": "https://hibob.com/.well-known/security.txt",
          "state": "unknown",
          "checkedAt": "2026-10-08T15:39:05.839381908Z"
        },
        "pages": [
          {
            "url": "https://apidocs.hibob.com/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:14.469649765Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "981f915fbe41"
          },
          {
            "url": "https://www.hibob.com/pricing-plans",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-08T18:28:16.10467361Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "ac07b0d6702c"
          },
          {
            "url": "https://www.hibob.com/privacy/privacy-policy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:28:18.345425875Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "1bf3ce3c5701"
          },
          {
            "url": "https://apidocs.hibob.com/docs/api-terms-of-use",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:16.937981436Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "d6b463c8c703"
          }
        ],
        "updatedAt": "2026-10-08T21:57:58.311648992Z"
      }
    },
    "answer": "HiBob scores 57 (C) on agent readiness against Zoho People's 55 (C), and leads in 3 of 7 scored categories. Zoho People leads on reliability and payments \u0026 pricing.",
    "b": {
      "slug": "zoho-people",
      "name": "Zoho People",
      "vendor": "Zoho",
      "vendorUrl": "https://www.zoho.com/people/",
      "kind": "http-api",
      "category": "hr",
      "summary": "Cloud HR system from Zoho covering employee records, leave, attendance, timesheets, onboarding, performance and learning. Agents reach it through a REST API with OAuth 2.0, available on paid plans.",
      "url": "https://www.anchorterminal.com/tools/zoho-people",
      "markdownUrl": "https://www.anchorterminal.com/tools/zoho-people.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/zoho-people.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/zoho-people.json",
      "license": "Proprietary service under the Zoho Terms of Service",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://people.zoho.com/api",
      "packages": [],
      "auth": "oauth",
      "authNotes": "OAuth 2.0 only in the current docs. A person registers a client in the Zoho API console (web, mobile, JavaScript, non-browser or a self client for one organisation) and approves scopes of the form `ZOHOPEOPLE.\u003carea\u003e.\u003coperation\u003e`. The access token lasts one hour and goes in `Authorization: Zoho-oauthtoken \u003ctoken\u003e`. The refresh token lasts until revoked. Each data centre (US, EU, India, Australia, Japan, China) has its own accounts host. Registration is self-serve, with no app review or sales approval for use inside one's own organisation. The authentication page still links to a legacy authentication token page, which returns 404.",
      "pricing": "paid",
      "pricingNotes": "Paid plans only for the API. Essential HR, Professional, Premium and Enterprise cost $1.25, $2, $3 and $4.50 a user a month billed yearly ($1.50, $2.50, $3.50 and $5 monthly), with a five-user minimum. A separate United States plan set costs $3 to $8 a user a month billed yearly. The Free plan covers five users and has no API access. A 30-day trial of any paid plan is self-serve, and the account drops to Free when it ends. Prices come from the feed the pricing page loads (https://www.zoho.com/people/zohopeople-pricing.html, checked 2026-10-08).",
      "priceSummary": "$1.25 / seat-mo",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the API docs, the pricing pages or the terms (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://www.zoho.com/people/api/overview.html",
      "llmsTxt": "https://www.zoho.com/people/api/llms.txt",
      "capabilities": [
        "hr.employees",
        "hr.time-off",
        "hr.org",
        "hr.onboarding",
        "hr.documents"
      ],
      "tags": [
        "hosted",
        "closed-source",
        "paid",
        "free-trial",
        "oauth",
        "llms-txt",
        "webhooks",
        "status-page",
        "bug-bounty",
        "soc2"
      ],
      "lastRelease": "2026-08-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 55,
        "grade": "C",
        "agentReady": false,
        "rank": 523,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 6,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 48,
          "maintenance": 48,
          "payments": 30,
          "reliability": 77,
          "schema": 43,
          "security": 60,
          "transparency": 73
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "The REST API covers employee forms, leave, attendance, timesheets, files and learning, with per-endpoint rate limits and Markdown docs listed in an llms.txt. No OpenAPI spec, official SDK or dated API changelog was found, the Free plan has no API access, and several scopes come only as ALL.",
        "bestFor": "An agent working inside a company that already runs Zoho People on a paid plan, for directory reads, leave requests, attendance and timesheet entries at modest volume.",
        "strengths": [
          "OAuth 2.0 scopes name an area and an operation, such as `ZOHOPEOPLE.forms.READ` and `ZOHOPEOPLE.leave.CREATE`, with one-hour access tokens",
          "Every reference page states a per-minute threshold and a five-minute lock period, and daily call caps are published per plan",
          "An llms.txt at `/people/api/llms.txt` lists 339 reference pages, each served as Markdown",
          "Plan prices are public, from $1.25 a user a month billed yearly, with a 30-day trial of any paid plan",
          "security.txt valid to 30 June 2028, a bug bounty, SOC 2 Type 2 and ISO/IEC 27001, 27701, 27017 and 27018"
        ],
        "weaknesses": [
          "No OpenAPI spec, official SDK or dated API changelog found. The product What's New page has no API entries for 2026",
          "The Free plan has no API access. Paid plans cap calls at 5,000 to 25,000 a day",
          "Employee, attendance, time tracker, dashboard and automation scopes are listed only as ALL, with no read-only form",
          "Three URL styles coexist (unversioned form endpoints, v2 and v3), with different parameter names, paging and error formats",
          "The documented token refresh call carries the refresh token and client secret in the URL query string"
        ],
        "agentNotes": [
          "Use the accounts host and API host of the organisation's data centre. Tokens issued in one region fail in another",
          "Stay under each page's threshold, often 30 calls a minute. Exceeding it locks that endpoint for five minutes",
          "Page form records with `sIndex` and `limit`, at most 200 a call, and use `modifiedtime` to fetch only changes",
          "Look up form and field label names with `/api/forms` before writing. `inputData` takes label names, and lookup fields take record IDs",
          "Send the refresh token and client secret in the POST body, not the query string, and store the refresh token, which never expires"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 55
          }
        ],
        "editorialScores": {
          "ergonomics": 48,
          "maintenance": 48,
          "payments": 30,
          "reliability": 77,
          "schema": 43,
          "security": 60,
          "transparency": 51
        },
        "provenanceScore": 95
      },
      "connect": {
        "http": "curl --location 'https://people.zoho.com/api/forms' \\\n  --header \"Authorization: Zoho-oauthtoken $ZOHO_ACCESS_TOKEN\""
      },
      "letme": {
        "capability": "https://letme.dev/hr.employees",
        "tool": "https://letme.dev/zoho-people"
      },
      "sameCompany": [
        "zoho-books",
        "zoho-zeptomail",
        "zoho-crm",
        "zoho-recruit"
      ],
      "area": "business",
      "unitPrices": [
        {
          "item": "Essential HR",
          "unit": "seat-month",
          "usd": 1.25,
          "note": "billed yearly; $1.50 billed monthly; five-user minimum; API capped at 5,000 calls a day"
        },
        {
          "item": "Professional",
          "unit": "seat-month",
          "usd": 2,
          "note": "billed yearly; $2.50 billed monthly; API capped at 10,000 calls a day"
        },
        {
          "item": "Premium",
          "unit": "seat-month",
          "usd": 3,
          "note": "billed yearly; $3.50 billed monthly; API capped at 15,000 calls a day"
        },
        {
          "item": "Enterprise",
          "unit": "seat-month",
          "usd": 4.5,
          "note": "billed yearly; $5 billed monthly; API capped at 25,000 calls a day"
        }
      ],
      "provenance": {
        "legalEntity": "Zoho Corporation Private Limited",
        "domain": "zoho.com",
        "domainRegistered": "2004-01-16",
        "endpointOnVendorDomain": true,
        "terms": "https://www.zoho.com/terms.html",
        "privacy": "https://www.zoho.com/privacy.html",
        "statusPage": "https://status.zoho.com",
        "changelog": "https://www.zoho.com/people/whats-new.html",
        "securityTxt": "valid",
        "checked": "2026-10-08",
        "notes": [
          "The Terms of Service (last updated 2 March 2022) are the service agreement for Zoho's online services. The contracting entity depends on the customer's region, Zoho Corporation Private Limited for India and Zoho Corporation for the United States (https://www.zoho.com/legal/zoho-contracting-entities.html).",
          "The privacy policy was last updated on 22 December 2025. Its Part II covers data customers store in Zoho services. A separate Zoho People privacy notice at https://www.zoho.com/people/privacy-policy.html adds terms for facial recognition and location data in attendance.",
          "API calls go to people.zoho.com and its regional equivalents, on Zoho's own domains. OAuth runs on accounts.zoho.com.",
          "status.zoho.com redirects to us.zohostatus.com, which lists Zoho People as a component.",
          "security.txt at www.zoho.com gives a bug bounty contact, security@zohocorp.com, a policy link and an expiry of 30 June 2028.",
          "What's New is a product changelog dated by month, newest August 2026. No API changelog was found.",
          "RDAP for zoho.com gives a registration date of 2004-01-16."
        ],
        "score": 95
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/zoho-people.json",
      "live": {
        "slug": "zoho-people",
        "probe": {
          "target": "https://people.zoho.com/api",
          "method": "get",
          "lastAt": "2026-10-08T21:53:39.687130676Z",
          "lastOk": true,
          "lastStatus": 404,
          "lastMs": 430,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 430,
          "p95ms24h": 460,
          "samples24h": 28,
          "samples30d": 28,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 28,
              "ok": 28
            }
          ]
        },
        "updatedAt": "2026-10-08T21:53:39.687130676Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Hi Bob Ltd.",
        "b": "Zoho",
        "name": "Vendor"
      },
      {
        "a": "https://api.hibob.com/v1",
        "b": "https://people.zoho.com/api",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP",
        "b": "HTTP",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth",
        "name": "Auth"
      },
      {
        "a": "Paid",
        "b": "Paid",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Proprietary service under HiBob's customer subscription terms and API Terms of Use",
        "b": "Proprietary service under the Zoho Terms of Service",
        "name": "Licence"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "2026-10-07",
        "b": "2026-08-01",
        "name": "Last release"
      },
      {
        "a": "no date given",
        "b": "2022-03-02",
        "name": "Terms last updated"
      },
      {
        "a": "no date given",
        "b": "2025-12-22",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Customer content may train models"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms restrict automated access"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Arbitration or class-action waiver"
      }
    ],
    "faq": [
      {
        "answer": "HiBob scores 57 (C) on agent readiness against Zoho People's 55 (C), and leads in 3 of 7 scored categories. Zoho People leads on reliability and payments \u0026 pricing.",
        "question": "Which is better for AI agents, HiBob or Zoho People?"
      },
      {
        "answer": "HiBob takes an API key or an OAuth sign-in. Zoho People uses an OAuth sign-in.",
        "question": "Do HiBob and Zoho People need an API key?"
      },
      {
        "answer": "Yes. HiBob has a hosted endpoint at https://api.hibob.com/v1 and Zoho People at https://people.zoho.com/api.",
        "question": "Can an agent call HiBob and Zoho People without installing anything?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Schema \u0026 documentation, 78 against 43",
          "Security \u0026 auth, 68 against 60",
          "Maintenance \u0026 community, 59 against 48"
        ],
        "also": null,
        "goodFor": "An agent working inside a company that already runs Bob and needs field-level control over employee data, time off requests, documents and tasks.",
        "slug": "hibob",
        "watchFor": "No public price, free tier or trial. The sandbox is a purchased module"
      },
      {
        "aheadOn": [
          "Reliability, 77 against 67",
          "Payments \u0026 pricing, 30 against 0"
        ],
        "also": null,
        "goodFor": "An agent working inside a company that already runs Zoho People on a paid plan, for directory reads, leave requests, attendance and timesheet entries at modest volume.",
        "slug": "zoho-people",
        "watchFor": "No OpenAPI spec, official SDK or dated API changelog found. The product What's New page has no API entries for 2026"
      }
    ],
    "job": {
      "capability": "hr.employees",
      "name": "Hr employees"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/bamboohr-vs-hibob.json",
        "title": "BambooHR vs HiBob",
        "url": "https://www.anchorterminal.com/compare/bamboohr-vs-hibob"
      },
      {
        "json": "https://www.anchorterminal.com/compare/bamboohr-vs-zoho-people.json",
        "title": "BambooHR vs Zoho People",
        "url": "https://www.anchorterminal.com/compare/bamboohr-vs-zoho-people"
      },
      {
        "json": "https://www.anchorterminal.com/compare/deel-vs-hibob.json",
        "title": "Deel vs HiBob",
        "url": "https://www.anchorterminal.com/compare/deel-vs-hibob"
      },
      {
        "json": "https://www.anchorterminal.com/compare/deel-vs-zoho-people.json",
        "title": "Deel vs Zoho People",
        "url": "https://www.anchorterminal.com/compare/deel-vs-zoho-people"
      },
      {
        "json": "https://www.anchorterminal.com/compare/factorial-vs-hibob.json",
        "title": "Factorial vs HiBob",
        "url": "https://www.anchorterminal.com/compare/factorial-vs-hibob"
      },
      {
        "json": "https://www.anchorterminal.com/compare/factorial-vs-zoho-people.json",
        "title": "Factorial vs Zoho People",
        "url": "https://www.anchorterminal.com/compare/factorial-vs-zoho-people"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hibob-vs-humaans.json",
        "title": "HiBob vs Humaans",
        "url": "https://www.anchorterminal.com/compare/hibob-vs-humaans"
      },
      {
        "json": "https://www.anchorterminal.com/compare/hibob-vs-rippling.json",
        "title": "HiBob vs Rippling",
        "url": "https://www.anchorterminal.com/compare/hibob-vs-rippling"
      },
      {
        "json": "https://www.anchorterminal.com/compare/humaans-vs-zoho-people.json",
        "title": "Humaans vs Zoho People",
        "url": "https://www.anchorterminal.com/compare/humaans-vs-zoho-people"
      },
      {
        "json": "https://www.anchorterminal.com/compare/rippling-vs-zoho-people.json",
        "title": "Rippling vs Zoho People",
        "url": "https://www.anchorterminal.com/compare/rippling-vs-zoho-people"
      }
    ],
    "scores": [
      {
        "by": 10,
        "edge": "zoho-people",
        "hibob": 67,
        "key": "reliability",
        "name": "Reliability",
        "weight": 16,
        "zoho-people": 77
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 35,
        "edge": "hibob",
        "hibob": 78,
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "weight": 13,
        "zoho-people": 43
      },
      {
        "by": 1,
        "edge": "zoho-people",
        "hibob": 47,
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "weight": 13,
        "zoho-people": 48
      },
      {
        "by": 8,
        "edge": "hibob",
        "hibob": 68,
        "key": "security",
        "name": "Security \u0026 auth",
        "weight": 14,
        "zoho-people": 60
      },
      {
        "by": 30,
        "edge": "zoho-people",
        "hibob": 0,
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "weight": 10,
        "zoho-people": 30
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 11,
        "edge": "hibob",
        "hibob": 59,
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "weight": 7,
        "zoho-people": 48
      },
      {
        "by": 2,
        "edge": "zoho-people",
        "hibob": 71,
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "weight": 7,
        "zoho-people": 73
      }
    ],
    "summary": "HiBob scores 57 (C) on agent readiness against Zoho People's 55 (C), and leads in 3 of 7 scored categories. Zoho People leads on reliability and payments \u0026 pricing. Both do hr employees.",
    "verdicts": {
      "hibob": "Service users start with no permissions and gain view or edit rights per field, and the docs are served as Markdown with an OpenAPI definition on each endpoint page. There is no public price, trial or free sandbox, so an agent needs a paying customer's admin to issue credentials. No idempotency keys or official SDKs were found.",
      "zoho-people": "The REST API covers employee forms, leave, attendance, timesheets, files and learning, with per-endpoint rate limits and Markdown docs listed in an llms.txt. No OpenAPI spec, official SDK or dated API changelog was found, the Free plan has no API access, and several scopes come only as ALL."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/hibob-vs-zoho-people",
    "json": "https://www.anchorterminal.com/compare/hibob-vs-zoho-people.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/hibob-vs-zoho-people.md",
    "slim": "https://www.anchorterminal.com/compare/hibob-vs-zoho-people.min.md"
  },
  "markdown": "HiBob scores 57 (C) on agent readiness against Zoho People's 55 (C), and leads in 3 of 7 scored categories. Zoho People leads on reliability and payments \u0026 pricing. Both do hr employees.\n\n- HiBob: grade C, 57/100, rank #484 of 722. Markdown https://www.anchorterminal.com/tools/hibob.md · JSON https://www.anchorterminal.com/api/v1/tools/hibob.json\n- Zoho People: grade C, 55/100, rank #523 of 722. Markdown https://www.anchorterminal.com/tools/zoho-people.md · JSON https://www.anchorterminal.com/api/v1/tools/zoho-people.json\n\n## Which one, for what\n\n### HiBob (C)\n\nGood for: An agent working inside a company that already runs Bob and needs field-level control over employee data, time off requests, documents and tasks.\n\nAhead on:\n- Schema \u0026 documentation, 78 against 43\n- Security \u0026 auth, 68 against 60\n- Maintenance \u0026 community, 59 against 48\n\nWatch for: No public price, free tier or trial. The sandbox is a purchased module\n\n### Zoho People (C)\n\nGood for: An agent working inside a company that already runs Zoho People on a paid plan, for directory reads, leave requests, attendance and timesheet entries at modest volume.\n\nAhead on:\n- Reliability, 77 against 67\n- Payments \u0026 pricing, 30 against 0\n\nWatch for: No OpenAPI spec, official SDK or dated API changelog found. The product What's New page has no API entries for 2026\n\n\n## Score by category\n\n| Category | Weight | HiBob | Zoho People | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 67 | 77 | Zoho People +10 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 78 | 43 | HiBob +35 |\n| Agent ergonomics | 13% (16.2 this run) | 47 | 48 | Zoho People +1 |\n| Security \u0026 auth | 14% (17.5 this run) | 68 | 60 | HiBob +8 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 0 | 30 | Zoho People +30 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 59 | 48 | HiBob +11 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 71 | 73 | Zoho People +2 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **57 · C** | **55 · C** | |\n\n## Facts side by side\n\n| Fact | HiBob | Zoho People |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Hi Bob Ltd. | Zoho |\n| Hosted endpoint | `https://api.hibob.com/v1` | `https://people.zoho.com/api` |\n| Transports | HTTP | HTTP |\n| Auth | OAuth or key | OAuth |\n| Pricing | Paid | Paid |\n| x402 | no | no |\n| Licence | Proprietary service under HiBob's customer subscription terms and API Terms of Use | Proprietary service under the Zoho Terms of Service |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| Last release | 2026-10-07 | 2026-08-01 |\n| Terms last updated | no date given | 2022-03-02 |\n| Privacy policy last updated | no date given | 2025-12-22 |\n| Customer content may train models | not found in the text | yes |\n| Terms restrict automated access | yes | not found in the text |\n| Terms restrict benchmarking | not found in the text | yes |\n| Terms or service can change without notice | yes | not found in the text |\n| Arbitration or class-action waiver | not found in the text | not found in the text |\n\n## Verdicts\n\n**HiBob.** Service users start with no permissions and gain view or edit rights per field, and the docs are served as Markdown with an OpenAPI definition on each endpoint page. There is no public price, trial or free sandbox, so an agent needs a paying customer's admin to issue credentials. No idempotency keys or official SDKs were found.\n\n**Zoho People.** The REST API covers employee forms, leave, attendance, timesheets, files and learning, with per-endpoint rate limits and Markdown docs listed in an llms.txt. No OpenAPI spec, official SDK or dated API changelog was found, the Free plan has no API access, and several scopes come only as ALL.\n\n## Before you call either\n\n### HiBob\n\n1. Send `Authorization: Basic base64(SERVICE-USER-ID:TOKEN)` to https://api.hibob.com/v1. Ask the Bob admin to put the service user in a permission group first, because it starts with none\n2. Request only the fields needed in `fields` on POST /people/search (maximum 400). The call returns all matching employees at once, so batch by `root.id` in large companies\n3. Compare returned fields with requested ones. Missing permission or a wrong field ID yields 200 with the field omitted\n4. Stop on 401 or 403. More than 50 in 10 seconds blocks the IP for 5 minutes\n5. Back off on 429 using Retry-After. Writes such as update, create and terminate employee allow 10 calls a minute, and no idempotency key exists, so check state before retrying a write\n\n### Zoho People\n\n1. Use the accounts host and API host of the organisation's data centre. Tokens issued in one region fail in another\n2. Stay under each page's threshold, often 30 calls a minute. Exceeding it locks that endpoint for five minutes\n3. Page form records with `sIndex` and `limit`, at most 200 a call, and use `modifiedtime` to fetch only changes\n4. Look up form and field label names with `/api/forms` before writing. `inputData` takes label names, and lookup fields take record IDs\n5. Send the refresh token and client secret in the POST body, not the query string, and store the refresh token, which never expires\n\n## Questions\n\n### Which is better for AI agents, HiBob or Zoho People?\n\nHiBob scores 57 (C) on agent readiness against Zoho People's 55 (C), and leads in 3 of 7 scored categories. Zoho People leads on reliability and payments \u0026 pricing.\n\n### Do HiBob and Zoho People need an API key?\n\nHiBob takes an API key or an OAuth sign-in. Zoho People uses an OAuth sign-in.\n\n### Can an agent call HiBob and Zoho People without installing anything?\n\nYes. HiBob has a hosted endpoint at https://api.hibob.com/v1 and Zoho People at https://people.zoho.com/api.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/hibob-vs-zoho-people.json, and with the fewest tokens: https://www.anchorterminal.com/compare/hibob-vs-zoho-people.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"hibob\", \"b\": \"zoho-people\"}`. From a terminal: `anchor compare hibob zoho-people`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/hibob.json and https://www.anchorterminal.com/api/v1/tools/zoho-people.json\n\n## Other comparisons with HiBob or Zoho People\n\n- [BambooHR vs HiBob](https://www.anchorterminal.com/compare/bamboohr-vs-hibob.md)\n- [BambooHR vs Zoho People](https://www.anchorterminal.com/compare/bamboohr-vs-zoho-people.md)\n- [Deel vs HiBob](https://www.anchorterminal.com/compare/deel-vs-hibob.md)\n- [Deel vs Zoho People](https://www.anchorterminal.com/compare/deel-vs-zoho-people.md)\n- [Factorial vs HiBob](https://www.anchorterminal.com/compare/factorial-vs-hibob.md)\n- [Factorial vs Zoho People](https://www.anchorterminal.com/compare/factorial-vs-zoho-people.md)\n- [HiBob vs Humaans](https://www.anchorterminal.com/compare/hibob-vs-humaans.md)\n- [HiBob vs Rippling](https://www.anchorterminal.com/compare/hibob-vs-rippling.md)\n- [Humaans vs Zoho People](https://www.anchorterminal.com/compare/humaans-vs-zoho-people.md)\n- [Rippling vs Zoho People](https://www.anchorterminal.com/compare/rippling-vs-zoho-people.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "HiBob vs Zoho People",
        "url": ""
      }
    ],
    "description": "HiBob scores 57 (C) on agent readiness against Zoho People's 55 (C), and leads in 3 of 7 scored categories. Zoho People leads on reliability and payments \u0026 pricing. Both do hr employees. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "HiBob C 57",
      "Zoho People C 55",
      "scores"
    ],
    "h1": "HiBob vs Zoho People",
    "image": "https://www.anchorterminal.com/assets/og/compare-hibob-vs-zoho-people.png",
    "path": "/compare/hibob-vs-zoho-people",
    "published": "2026-10-01",
    "section": "tools",
    "title": "HiBob vs Zoho People for AI agents, C 57 vs C 55 | Anchor Terminal",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/hibob-vs-zoho-people"
  },
  "tokens": {
    "markdown": 2000,
    "slim": 630
  },
  "version": 1
}
