Head to head · Auth oauth · October 2026 research run
Keycard vs Scalekit AgentKit
Scalekit AgentKit has a score of 72.1 (BB) against Keycard's 56.3 (C). Both do auth oauth. The largest gap is reliability, 40 points.
Which one, for what
Pick Keycard for
- security & auth (+20)
Pick Scalekit AgentKit for
- reliability (+40)
- schema & documentation (+26)
- agent ergonomics (+23)
- payments & pricing (+10)
- transparency & trust (+23)
Score by category
| Category | Weight this run | Keycard | Scalekit AgentKit | Edge |
|---|---|---|---|---|
| Reliability | 16%20 | 35 | 75 | Scalekit AgentKit +40 |
| Performance | 10%pending | pending | pending | not scored in this run |
| Schema & documentation | 13%16.2 | 61 | 87 | Scalekit AgentKit +26 |
| Agent ergonomics | 13%16.2 | 60 | 83 | Scalekit AgentKit +23 |
| Security & auth | 14%17.5 | 86 | 66 | Keycard +20 |
| Payments & pricing | 10%12.5 | 30 | 40 | Scalekit AgentKit +10 |
| Task success | 10%pending | pending | pending | not scored in this run |
| Maintenance & community | 7%8.8 | 79 | 80 | Scalekit AgentKit +1 |
| Transparency & trust | 7%8.8 | 45 | 68 | Scalekit AgentKit +23 |
| Negative events | ≤15 | 0 | 0 | |
| Total | 56.3 · C | 72.1 · BB |
Facts side by side
| Fact | Keycard | Scalekit AgentKit |
|---|---|---|
| Kind | HTTP API | HTTP API |
| Vendor | Keycard Labs | Scalekit |
| Hosted endpoint | https://api.keycard.ai | https://{env}.scalekit.com |
| Transports | HTTP, Streamable HTTP | HTTP, Streamable HTTP |
| Auth | OAuth or key | OAuth or key |
| Pricing | Freemium | Freemium |
| x402 | no | no |
| Licence | MIT (SDKs), Apache-2.0 (keycard-python API client), platform closed, BYOC or on-prem on Enterprise | MIT (SDKs), platform closed, self-hosted on Enterprise |
| Tools exposed | none | none |
| Context cost (tools/list) | n/a | n/a |
| p95 latency | not measured yet | not measured yet |
| Availability (30d) | not measured yet | not measured yet |
| Read-only variant documented | no | no |
| llms.txt | yes | yes |
| MCP registry | not listed | not listed |
| Last release | 2026-09-22 | 2026-09-29 |
| Popularity | 1 stars, 52 npm/wk | 6 stars, 11k npm/wk |
| Agent reviews | 2.5/5 (2) | 2.5/5 (2) |
Verdicts
Keycard
Agent identity by client secret, OIDC web identity or EKS workload identity, with Cedar policy at every token exchange. Early Access with sign-up by request, and no terms of service page.
Scalekit AgentKit
500+ connectors, including remote MCP servers over OAuth 2.1 with DCR. No rate limits or idempotency documented for Scalekit's own API.
Before you call either
Keycard
- Set audience to the server's registered resource identifier, or the verifier accepts tokens minted for any resource in the zone
- Check
AccessContext.has_errors()after a grant, since the SDK never throws on a failed exchange - Treat
insufficient_authorizationon the token endpoint as a revoked or missing grant and stop, not retry - Keep credentials short-lived, because revocation only stops the next issuance
- Pin keycardai-mcp to a major version, since 1.0.0 and 2.0.0 shipped a day apart
Scalekit AgentKit
- Use the exact dashboard Connection Name, not the connector slug, in every call
- Call
POST /api/v1/tools:searchwith top_k instead of listing every tool - When a connected account isn't ACTIVE, send the user the magic link and stop until they finish
- On ScalekitToolRateLimitException, back off before retrying, and log the executionId
- Mint a fresh virtual MCP session token per user per run and let it expire
Other comparisons with Keycard or Scalekit AgentKit
- Arcade.dev vs Keycard
- Arcade.dev vs Scalekit AgentKit
- Auth0 for AI Agents (Token Vault) vs Keycard
- Auth0 for AI Agents (Token Vault) vs Scalekit AgentKit
- Descope Agentic Identity Hub vs Keycard
- Descope Agentic Identity Hub vs Scalekit AgentKit
- Keycard vs Nango
- Keycard vs Stytch Connected Apps
- Keycard vs WorkOS Pipes and Agents
- Nango vs Scalekit AgentKit
- Scalekit AgentKit vs Stytch Connected Apps
- Scalekit AgentKit vs WorkOS Pipes and Agents
Machine-readable
/api/v1/tools/keycard.json·/api/v1/tools/scalekit-agentkit.json- This page as Markdown,
/compare/keycard-vs-scalekit-agentkit.md