Head to head · Automation workflows · October 2026 research run

Kestra vs Microsoft Power Automate

Kestra scores 63.6 (B) on agent readiness against Microsoft Power Automate's 62 (B), and leads in 5 of 7 scored categories. Microsoft Power Automate leads on security & auth and transparency & trust. Both do automation workflows.

Which one, for what

Kestra B

Good for Engineering and data teams that want declarative YAML flows with scripts in any language, run on their own infrastructure.

Ahead on

  • Reliability, 89 against 63
  • Schema & documentation, 82 against 68
  • Payments & pricing, 50 against 25
  • Maintenance & community, 93 against 76

Also in its favour

  • Open source

Watch for

The open-source edition has one basic-auth username and password. API tokens, service accounts, RBAC and audit logs need Enterprise or Cloud

Microsoft Power Automate B

Good for Organisations already on Microsoft 365 and Dataverse that want an agent to inventory, deploy or adjust flows inside existing roles and solutions.

Ahead on

  • Security & auth, 61 against 41
  • Transparency & trust, 76 against 69

Also in its favour

  • No incidents deducted, where Kestra loses 7 points for them

Watch for

Flows under My flows can't be managed in code, and Microsoft calls the api.flow.microsoft.com API unsupported

Score by category

CategoryWeight this runKestraMicrosoft Power AutomateEdge
Reliability16%208963Kestra +26
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28268Kestra +14
Agent ergonomics13%16.27369Kestra +4
Security & auth14%17.54161Microsoft Power Automate +20
Payments & pricing10%12.55025Kestra +25
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.89376Kestra +17
Transparency & trust7%8.86976Microsoft Power Automate +7
Negative events≤15-70
Total63.6 · B62 · B

Facts side by side

FactKestraMicrosoft Power Automate
KindHTTP APIHTTP API
VendorKestra TechnologiesMicrosoft
Hosted endpointno (local only)no (local only)
TransportsHTTP, Streamable HTTPHTTP
AuthOAuth or keyOAuth or key
PricingFreemiumFreemium
x402nono
LicenceApache-2.0 (open-source server and SDK repository). Enterprise Edition and Kestra Cloud are commercialProprietary service under the Microsoft Product Terms for Microsoft Power Platform
Read-only variant documentedyesno
llms.txtyesno
Last release2026-10-052026-10-02
Terms last updatedno document linkedno date given
Privacy policy last updatedno document linked2026-09-01
Customer content may train modelsyes
Terms restrict automated accessnot found in the text
Terms restrict benchmarkingnot found in the text
Terms or service can change without noticenot found in the text
Arbitration or class-action waivernot found in the text
Popularity29k stars, 244 npm/wk, 170 PyPI/wk11k PyPI/wk

Verdicts

Kestra

Kestra's open-source edition has a 216-operation OpenAPI spec, Markdown docs for agents and weekly patch releases on two long-term support lines. Its only credential is one basic-auth username and password with full access, and five critical advisories were published between March and September 2026, all fixed.

Microsoft Power Automate

Cloud flows in a solution are rows an agent can read and write through the Dataverse Web API under Entra ID OAuth and security roles, with published limits and a 99.9 per cent SLA. Flows under My flows can't be managed in code, a flow's body is one hand-built JSON string, and setup needs a tenant administrator.

Before you call either

Kestra

  1. Run 2.0.5 or 1.3.42 or later. Earlier builds carry unauthenticated remote code execution advisories fixed in 1.3.38 and 2.0.3
  2. Set kestra.server.basic-auth in the config file before first start. Without it the setup page is open to anyone who reaches the port
  3. Put the tenant in the path. Open-source instances use main, as in /api/v1/main/executions/{namespace}/{id}
  4. Send flow inputs as multipart form fields, and add wait=true to get the finished execution in the same call
  5. Keep port 8081 off any shared network. The management endpoints there skip the API's basic auth

Microsoft Power Automate

  1. Filter workflows on category eq 5 for cloud flows, and add $select, because clientdata holds the whole definition
  2. Flows created through the API start with statecode 0 (off). The docs say to turn the flow on before use
  3. Put the flow in a solution first. Flows that sit only under My flows are outside the supported API
  4. On 429 wait the Retry-After seconds. Reads of flowruns count against the daily Power Platform request allowance
  5. Treat an HTTP trigger URL with sig= as a secret, and prefer the tenant or named-user trigger modes with a bearer token for https://service.flow.microsoft.com/

Questions

Which is better for AI agents, Kestra or Microsoft Power Automate?

Kestra scores 63.6 (B) on agent readiness against Microsoft Power Automate's 62 (B), and leads in 5 of 7 scored categories. Microsoft Power Automate leads on security & auth and transparency & trust.

Do Kestra and Microsoft Power Automate need an API key?

Both take an API key or an OAuth sign-in.

Can an agent call Kestra and Microsoft Power Automate without installing anything?

No hosted endpoint is listed for Kestra. No hosted endpoint is listed for Microsoft Power Automate.

Are Kestra and Microsoft Power Automate open source?

Kestra is open source (Apache-2.0 (open-source server and SDK repository). Enterprise Edition and Kestra Cloud are commercial). No open-source release is listed for Microsoft Power Automate.

Other comparisons with Kestra or Microsoft Power Automate

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.