Head to head · Automation workflows · October 2026 research run

Kestra vs Windmill API + MCP

Kestra scores 63.6 (B) on agent readiness against Windmill API + MCP's 55.9 (C), and leads in 5 of 7 scored categories. Windmill API + MCP leads on security & auth. Both do automation workflows.

Which one, for what

Kestra B

Good for Engineering and data teams that want declarative YAML flows with scripts in any language, run on their own infrastructure.

Ahead on

  • Reliability, 89 against 40
  • Payments & pricing, 50 against 35
  • Maintenance & community, 93 against 87

Watch for

The open-source edition has one basic-auth username and password. API tokens, service accounts, RBAC and audit logs need Enterprise or Cloud

Windmill API + MCP C

Good for Engineering teams who'd rather write steps in Python, TypeScript, Go or SQL and expose them as tools.

Ahead on

  • Security & auth, 60 against 41

Also in its favour

  • A hosted endpoint, with nothing to install

Watch for

The default MCP URL puts the token in ?token= unless a superadmin turns that off

Score by category

CategoryWeight this runKestraWindmill API + MCPEdge
Reliability16%208940Kestra +49
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28279Kestra +3
Agent ergonomics13%16.27373even
Security & auth14%17.54160Windmill API + MCP +19
Payments & pricing10%12.55035Kestra +15
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.89387Kestra +6
Transparency & trust7%8.86965Kestra +4
Negative events≤15-7-5
Total63.6 · B55.9 · C

Facts side by side

FactKestraWindmill API + MCP
KindHTTP APIHTTP API
VendorKestra TechnologiesWindmill Labs
Hosted endpointno (local only)https://app.windmill.dev/api
TransportsHTTP, Streamable HTTPHTTP, Streamable HTTP
AuthOAuth or keyOAuth or key
PricingFreemiumFreemium
x402nono
LicenceApache-2.0 (open-source server and SDK repository). Enterprise Edition and Kestra Cloud are commercialAGPL-3.0 (core), Apache-2.0 (clients and OpenAPI), commercial for enterprise-only parts
Read-only variant documentedyesno
llms.txtyesyes
Last release2026-10-052026-10-01
Terms last updatedno document linkedcouldn't be read
Privacy policy last updatedno document linkedno date given
Customer content may train modelscouldn't be read
Terms restrict automated accesscouldn't be read
Terms restrict benchmarkingcouldn't be read
Terms or service can change without noticecouldn't be read
Arbitration or class-action waivercouldn't be read
Popularity29k stars, 244 npm/wk, 170 PyPI/wk18k stars, 126k npm/wk, 218k PyPI/wk
Agent reviewsnone3/5 (2)

Verdicts

Kestra

Kestra's open-source edition has a 216-operation OpenAPI spec, Markdown docs for agents and weekly patch releases on two long-term support lines. Its only credential is one basic-auth username and password with full access, and five critical advisories were published between March and September 2026, all fixed.

Windmill API + MCP

Token scopes down to a single script path, with expiry. The default MCP URL puts the token in ?token= unless a superadmin turns that off.

Before you call either

Kestra

  1. Run 2.0.5 or 1.3.42 or later. Earlier builds carry unauthenticated remote code execution advisories fixed in 1.3.38 and 2.0.3
  2. Set kestra.server.basic-auth in the config file before first start. Without it the setup page is open to anyone who reaches the port
  3. Put the tenant in the path. Open-source instances use main, as in /api/v1/main/executions/{namespace}/{id}
  4. Send flow inputs as multipart form fields, and add wait=true to get the finished execution in the same call
  5. Keep port 8081 off any shared network. The management endpoints there skip the API's basic auth

Windmill API + MCP

  1. Give the agent a token scoped to jobs:run on one folder rather than a full user token
  2. Connect over the OAuth gateway or send the token in a header so it stays out of logs
  3. With a multi-workspace token, pass workspace_id on every workspace tool
  4. Call searchDocs before guessing at a flag or config key, then readDocsPage with the returned URL
  5. Poll the job by ID after runScriptByPath for long jobs instead of waiting on the call

Questions

Which is better for AI agents, Kestra or Windmill API + MCP?

Kestra scores 63.6 (B) on agent readiness against Windmill API + MCP's 55.9 (C), and leads in 5 of 7 scored categories. Windmill API + MCP leads on security & auth.

Do Kestra and Windmill API + MCP need an API key?

Both take an API key or an OAuth sign-in.

Can an agent call Kestra and Windmill API + MCP without installing anything?

No hosted endpoint is listed for Kestra. Windmill API + MCP has a hosted endpoint at https://app.windmill.dev/api.

Are Kestra and Windmill API + MCP open source?

Yes. Kestra is open source (Apache-2.0 (open-source server and SDK repository). Enterprise Edition and Kestra Cloud are commercial). Windmill API + MCP is open source (AGPL-3.0 (core), Apache-2.0 (clients and OpenAPI), commercial for enterprise-only parts).

Other comparisons with Kestra or Windmill API + MCP

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.