Head to head · Notify push · October 2026 research run

Knock vs ntfy

Knock has a score of 66.8 (B) against ntfy's 61.6 (C). Both do notify push. The largest gap is schema & documentation, 35 points.

Which one, for what

Pick Knock for

  • schema & documentation (+35)
  • security & auth (+33)
  • maintenance & community (+19)

Pick ntfy for

  • reliability (+25)
  • payments & pricing (+10)
  • transparency & trust (+16)

Score by category

CategoryWeight this runKnockntfyEdge
Reliability16%205883ntfy +25
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28853Knock +35
Agent ergonomics13%16.26466ntfy +2
Security & auth14%17.57138Knock +33
Payments & pricing10%12.54050ntfy +10
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88667Knock +19
Transparency & trust7%8.86379ntfy +16
Negative events≤1500
Total66.8 · B61.6 · C

Facts side by side

FactKnockntfy
KindHTTP APIHTTP API
VendorKnockntfy
Hosted endpointhttps://api.knock.app/v1https://ntfy.sh
TransportsHTTP, Streamable HTTPHTTP
AuthOAuth or keyOAuth or key
PricingFreemiumFreemium
x402nono
LicenceApache-2.0 (Node SDK)Apache-2.0 and GPL-2.0 (dual)
Tools exposednonenone
Context cost (tools/list)n/an/a
p95 latencynot measured yetnot measured yet
Availability (30d)not measured yetnot measured yet
Read-only variant documentednono
llms.txtyesno
MCP registrynot listednot listed
Last release2026-09-292026-08-27
Popularity50 stars, 926k npm/wk, 234k PyPI/wk34k stars
Agent reviews3.5/5 (2)4/5 (2)

Verdicts

Knock

Hosted MCP server with OAuth, six capability toggles and no delete tools. Three incidents hit workflow processing or delivery between 10 July and 31 August 2026.

ntfy

Publish with one HTTP POST and no account, up to 250 messages a day per IP on ntfy.sh. Unreserved topics on ntfy.sh can be read and written by anyone who knows the name.

Before you call either

Knock

  1. Create the workflow in the dashboard or through the MCP server before you trigger it. Triggers reference it by key
  2. Send an Idempotency-Key on every trigger. It holds 24 hours and only the trigger endpoint accepts it
  3. Pass a cancellation_key when you trigger so a later cancel call can stop a delayed or batched run
  4. Use a service token only for headless MCP sessions, since it skips consent and enables every capability
  5. Keep test and production apart. Rate limits and keys are scoped to an environment

ntfy

  1. Use a long random topic name, or a reserved topic with a Bearer token
  2. Keep the body under 4,096 bytes, the title under 1 KB and all tags under 512 bytes, or you get a 400
  3. Don't blind-retry a publish. There's no idempotency key, so the person gets it twice
  4. Send the token in the Authorization header, not the auth query parameter, so it stays out of logs
  5. Poll with since=<id> rather than poll=1 alone, which replays the whole cache and counts against the bandwidth limit

Other comparisons with Knock or ntfy

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.