{
  "data": {
    "a": {
      "slug": "mattermost",
      "name": "Mattermost",
      "vendor": "Mattermost, Inc.",
      "vendorUrl": "https://mattermost.com",
      "kind": "http-api",
      "category": "productivity",
      "summary": "Mattermost is an open-core team chat server from Mattermost, Inc. that its owner hosts, with channels, threads, calls and playbooks. Agents reach it through the REST API v4, bot accounts, personal access tokens, webhooks and an MCP server.",
      "url": "https://www.anchorterminal.com/tools/mattermost",
      "markdownUrl": "https://www.anchorterminal.com/tools/mattermost.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/mattermost.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/mattermost.json",
      "repo": "https://github.com/mattermost/mattermost",
      "license": "Open core. Team Edition is MIT as a compiled binary. The source is AGPL v3 or a commercial licence, with admin tools and configuration files under Apache 2.0. Enterprise Edition, which the free Entry edition runs, is under a commercial licence. The Agents plugin is Apache 2.0",
      "transports": [
        "http"
      ],
      "packages": [
        {
          "registry": "npm",
          "name": "@mattermost/client"
        },
        {
          "registry": "go",
          "name": "github.com/mattermost/mattermost/server/public"
        }
      ],
      "auth": "mixed",
      "authNotes": "Granted by the server's own admin, with no vendor approval. The API takes a Bearer token in the `Authorization` header, either a session token from `POST /api/v4/users/login` or a personal access token. Personal access tokens are off until an admin enables them and lets the account create them, have a description, no scopes and no expiry, and can be revoked or disabled. Bot accounts hold such tokens, cannot be logged into and are created by a System Admin or a plugin once bot creation is enabled. OAuth 2.0 applications are also off by default, support PKCE and optional dynamic client registration, and have no scopes. The MCP server takes OAuth or a personal access token.",
      "pricing": "freemium",
      "pricingNotes": "Self-hosted Team Edition and the Entry edition are free with no card or vendor account. Entry shows 10,000 messages of history and has community support only. Professional, Enterprise and Enterprise Advanced are annual per-seat subscriptions with no public price, and Mattermost Cloud is single-tenant and sold through sales (https://mattermost.com/pricing/). API calls are not charged, and bot accounts do not count as licensed users. An agent's owner can start on a free edition without a contract. The site's trial environment lasts one hour.",
      "priceSummary": "Freemium",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the API introduction, the OpenAPI source or the pricing page (checked 2026-10-09).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 39301,
        "npmWeekly": 7727,
        "pypiWeekly": null,
        "asOf": "2026-10-09"
      },
      "docsUrl": "https://docs.mattermost.com/api",
      "openapi": "https://github.com/mattermost/mattermost/tree/master/api/v4/source",
      "capabilities": [
        "work.chat"
      ],
      "tags": [
        "self-hosted",
        "open-source",
        "freemium",
        "sales-led",
        "pat",
        "oauth",
        "openapi",
        "mcp",
        "typescript",
        "go",
        "webhooks",
        "bug-bounty",
        "soc2"
      ],
      "lastRelease": "2026-10-08",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 65.8,
        "grade": "B",
        "agentReady": false,
        "rank": 310,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 1,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 63,
          "maintenance": 89,
          "payments": 50,
          "reliability": 83,
          "schema": 76,
          "security": 63,
          "transparency": 75
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-09"
        },
        "negative": -5,
        "negativeNotes": [
          "2025-10-28 to 2026-10-08. The v11 changelog marks 52 dot releases in twelve months as carrying security fixes. Three are rated critical, 11.0.4 on 28 October 2025 in the server and 11.0.6 and 11.1.1 on 21 November 2025 in the bundled Jira plugin, and 21 more include high-severity fixes. All were fixed in a release and announced, with details published 30 days later, so 5 points. The advisory table itself is drawn by script and was not read (https://docs.mattermost.com/product-overview/mattermost-v11-changelog)."
        ],
        "verdict": "The REST API v4 has a public OpenAPI source of about 600 operations, a dated changelog with API changes per release, and 16 server releases in 90 days. Personal access tokens have no scopes or expiry, paid editions have no public price, and 52 dot releases in twelve months carried security fixes, three of them rated critical.",
        "bestFor": "A team that runs its own chat server and wants an agent to read channels, post, search and manage members through a bot account, including in air-gapped networks.",
        "strengths": [
          "Public OpenAPI 3.0 source for API v4, every operation described, 548 of 604 stating the permission needed",
          "Sixteen server releases between 11 July and 8 October 2026, each with a dated changelog entry and an API changes list",
          "Team Edition is free under MIT as a compiled binary, and the free Entry edition needs no card or vendor account",
          "Bot accounts are separate from people, do not count as licensed users, and their tokens can be revoked or disabled",
          "Public Bugcrowd bounty, and a SOC 2 Type II report and ISO 27001:2022 certificate listed on the trust centre"
        ],
        "weaknesses": [
          "Personal access tokens have no scopes and no expiry. A token does whatever its account can do",
          "52 dot releases from 28 October 2025 to 8 October 2026 carried security fixes, three rated critical and 21 including high-severity fixes",
          "No public price for Professional, Enterprise or Enterprise Advanced, and Mattermost Cloud is sold through sales only",
          "No idempotency key on `POST /api/v4/posts`, so a retried send can post twice",
          "Rate limiting is off by default on a self-hosted server, and no llms.txt or security.txt was found"
        ],
        "agentNotes": [
          "Ask the system admin for a bot account and its token. Bot creation and personal access tokens are both off until enabled in the System Console",
          "Send `Authorization: Bearer \u003ctoken\u003e` to `https://\u003cserver\u003e/api/v4`. Use `me` in place of a user id for the token's own account",
          "Page with `page` and `per_page`. The maximum is 200, the default 60, and larger values are cut without an error",
          "Read the error `id` and `status_code`. A 501 means the server's edition or licence does not include that endpoint",
          "If the server has rate limiting on, read `X-Ratelimit-Remaining` and `X-Ratelimit-Reset`. The 429 body is the plain text `limit exceeded`"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 65.8
          }
        ],
        "editorialScores": {
          "ergonomics": 63,
          "maintenance": 89,
          "payments": 50,
          "reliability": 83,
          "schema": 76,
          "security": 63,
          "transparency": 80
        },
        "provenanceScore": 69
      },
      "connect": {
        "install": "docker run --name mattermost-preview -d --publish 8065:8065 mattermost/mattermost-preview",
        "http": "curl -X POST https://your-mattermost-server.com/api/v4/posts -H 'Authorization: Bearer \u003cTOKEN\u003e' -H 'Content-Type: application/json' -d '{\"channel_id\": \"\u003cCHANNEL_ID\u003e\", \"message\": \"Status update from API\"}'"
      },
      "letme": {
        "capability": "https://letme.dev/work.chat",
        "tool": "https://letme.dev/mattermost"
      },
      "area": "business",
      "unitPrices": [
        {
          "item": "Team Edition (self-hosted)",
          "unit": "seat-month",
          "usd": 0,
          "note": "free, MIT binary, REST API included"
        },
        {
          "item": "Entry (self-hosted)",
          "unit": "seat-month",
          "usd": 0,
          "note": "free, 10,000 messages of viewable history, community support only; paid editions have no public price"
        }
      ],
      "provenance": {
        "legalEntity": "Mattermost, Inc.",
        "domain": "mattermost.com",
        "domainRegistered": "2012-12-22",
        "endpointOnVendorDomain": false,
        "terms": "https://mattermost.com/software-services-license-agreement/",
        "privacy": "https://mattermost.com/privacy-policy/",
        "statusPage": "https://status.mattermost.com",
        "changelog": "https://docs.mattermost.com/product-overview/mattermost-v11-changelog",
        "securityTxt": "none",
        "checked": "2026-10-09",
        "notes": [
          "The Software and Services Licence Agreement (effective 12 January 2023) is a contract with Mattermost, Inc. and covers both Cloud Edition and On-Premise subscriptions. The privacy policy (effective 30 December 2024) gives the address 530 Lytton Avenue, Suite 201, Palo Alto, CA 94301.",
          "The graded API answers on the owner's own server at https://\u003cserver\u003e/api/v4, so the endpoint is not on the vendor's domain.",
          "The compiled Team Edition is under MIT and needs no agreement with the vendor. The agreement linked here governs the Enterprise Edition binary, subscriptions and the cloud.",
          "status.mattermost.com is a Statuspage site with five components (Sign-Up, Customer Portal, Cloud Workspaces, Calls, Community) and lists no incidents from August to 9 October 2026. It covers the vendor's services, not a self-hosted server.",
          "https://mattermost.com/.well-known/security.txt returns 404. SECURITY.md gives responsibledisclosure@mattermost.com, and the disclosure page links a public Bugcrowd programme.",
          "The website Terms of Use (effective 8 October 2021) and its Acceptable Use Policy were read first and do not forbid automated access. robots.txt on mattermost.com and docs.mattermost.com allows every path.",
          "The Data Processing Addendum page links a document dated 23 December 2022, which was not read.",
          "RDAP for mattermost.com gives a registration date of 2012-12-22."
        ],
        "score": 69
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/mattermost.json",
      "live": {
        "slug": "mattermost",
        "vendorStatus": {
          "page": "https://status.mattermost.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-10T02:50:27.378717241Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "mattermost/mattermost",
            "version": "v11.11.1",
            "released": "2026-09-24",
            "seenAt": "2026-10-09T17:04:27.316421252Z"
          },
          {
            "registry": "npm",
            "name": "@mattermost/client",
            "version": "11.9.0",
            "seenAt": "2026-10-09T17:04:26.706218366Z"
          }
        ],
        "githubStars": 39305,
        "npmWeekly": 7727,
        "pages": [
          {
            "url": "https://docs.mattermost.com/product-overview/mattermost-v11-changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-09T18:37:42.65234154Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "950ba2c3c535"
          },
          {
            "url": "https://mattermost.com/pricing/",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-09T18:41:51.25914555Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "e2a34bb97731"
          },
          {
            "url": "https://mattermost.com/privacy-policy/",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-09T18:41:53.36052989Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "a7313cffaf8b"
          },
          {
            "url": "https://mattermost.com/software-services-license-agreement/",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-09T18:41:55.328783558Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "0b65701c3d2f"
          }
        ],
        "updatedAt": "2026-10-10T02:50:27.378717241Z"
      }
    },
    "answer": "Mattermost scores 65.8 (B) on agent readiness against Slack MCP Server (official)'s 59.7 (C), and leads in 5 of 7 scored categories. Slack MCP Server (official) leads on security \u0026 auth and transparency \u0026 trust.",
    "b": {
      "slug": "slack-mcp",
      "name": "Slack MCP Server (official)",
      "vendor": "Slack (Salesforce)",
      "vendorUrl": "https://slack.com",
      "kind": "mcp",
      "category": "productivity",
      "summary": "Slack's hosted MCP server for searching, reading and posting workspace content, with OAuth authentication.",
      "url": "https://www.anchorterminal.com/tools/slack-mcp",
      "markdownUrl": "https://www.anchorterminal.com/tools/slack-mcp.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/slack-mcp.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/slack-mcp.json",
      "license": "proprietary",
      "transports": [
        "streamable-http"
      ],
      "remoteUrl": "https://mcp.slack.com/mcp",
      "packages": [],
      "auth": "oauth",
      "authNotes": "OAuth 2.0 confidential flow with a registered Slack app's client_id and client_secret (user tokens only, per-tool scopes; authorise at https://slack.com/oauth/v2_user/authorize, tokens from oauth.v2.user.access). No SSE and no Dynamic Client Registration. Only Marketplace-published or internal apps may use MCP, and workspace admins approve them. Slack's official plugin for Claude Code and Cursor ships Slack's own client ID, so those clients connect without the operator registering an app (https://github.com/slackapi/slack-mcp-plugin).",
      "pricing": "byo-plan",
      "pricingNotes": "No separate price published; runs against your Slack workspace with per-tool rate-limit tiers (Tier 2 20+/min, Tier 3 50+/min, Tier 4 100+/min) (https://docs.slack.dev/ai/slack-mcp-server/).",
      "priceSummary": "Your plan",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402 support in Slack docs.",
        "endpoints": []
      },
      "toolCount": 23,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-09-26"
      },
      "docsUrl": "https://docs.slack.dev/ai/slack-mcp-server/",
      "capabilities": [
        "work.chat"
      ],
      "tags": [
        "official",
        "hosted",
        "oauth",
        "closed-source",
        "restricted"
      ],
      "lastRelease": "2026-07-31",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 59.7,
        "grade": "C",
        "agentReady": false,
        "rank": 539,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 5,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 51,
          "maintenance": 58,
          "payments": 20,
          "reliability": 68,
          "schema": 57,
          "security": 79,
          "transparency": 82
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Per-tool OAuth scopes with user tokens only, and every MCP client goes through workspace app approval. Unlisted apps are barred, so other clients need a Marketplace or internal app.",
        "bestFor": "Organisations that want an agent to search, read and post in Slack under admin control and audit.",
        "strengths": [
          "Per-tool OAuth scopes with user tokens only, and every MCP client goes through workspace app approval",
          "Searching private channels and DMs needs the user's consent, public search doesn't",
          "MCP calls are logged in the audit log against a fixed app ID, and IP allowlists apply",
          "Every tool sits on a published Web API rate tier",
          "Slack's plugin connects Claude Code and Cursor with Slack's own client ID"
        ],
        "weaknesses": [
          "Unlisted apps are barred, so other clients need a Marketplace or internal app",
          "No read-only endpoint, toolsets or Dynamic Client Registration",
          "Tool schemas and error responses aren't published",
          "Not listed in the official MCP registry",
          "The SLA promises commercially reasonable efforts with no uptime figure"
        ],
        "agentNotes": [
          "Use `slack_search_public` unless the task needs private channels, the private variant asks the user for consent",
          "Read the latest messages with `slack_read_channel`, search lags by a few seconds",
          "Keep emoji, user and channel searches under 20 calls a minute, they sit on Tier 2",
          "Outside Claude Code and Cursor, register a Marketplace or internal Slack app first, there's no anonymous path"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 3.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 59.7
          }
        ],
        "editorialScores": {
          "ergonomics": 51,
          "maintenance": 58,
          "payments": 20,
          "reliability": 68,
          "schema": 57,
          "security": 79,
          "transparency": 66
        },
        "provenanceScore": 97
      },
      "connect": {
        "claudeCode": "claude mcp add --transport http slack https://mcp.slack.com/mcp  # requires a registered Slack app; OAuth on first use",
        "config": {
          "mcpServers": {
            "slack": {
              "url": "https://mcp.slack.com/mcp"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/work.chat",
        "tool": "https://letme.dev/slack-mcp"
      },
      "area": "business",
      "provenance": {
        "legalEntity": "Slack Technologies, LLC (a Salesforce company)",
        "domain": "slack.com",
        "domainRegistered": "1992-10-21",
        "domainNote": "slack.com was registered in 1992, long before Slack existed, so domain age flatters it a little.",
        "endpointOnVendorDomain": true,
        "terms": "https://slack.com/terms-of-service",
        "privacy": "https://slack.com/privacy-policy",
        "statusPage": "https://slack-status.com",
        "changelog": "https://docs.slack.dev/changelog/",
        "securityTxt": "valid",
        "checked": "2026-09-26",
        "score": 97
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/slack-mcp.json",
      "live": {
        "slug": "slack-mcp",
        "probe": {
          "target": "https://mcp.slack.com/mcp",
          "method": "mcp-initialize",
          "lastAt": "2026-10-10T02:55:10.55928024Z",
          "lastOk": true,
          "lastStatus": 401,
          "lastMs": 188,
          "lastNote": "asks for credentials",
          "authRequired": true,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 178,
          "p95ms24h": 243,
          "samples24h": 249,
          "samples30d": 3420,
          "days": [
            {
              "date": "2026-09-27",
              "probes": 132,
              "ok": 132
            },
            {
              "date": "2026-09-28",
              "probes": 285,
              "ok": 285
            },
            {
              "date": "2026-09-29",
              "probes": 286,
              "ok": 286
            },
            {
              "date": "2026-09-30",
              "probes": 286,
              "ok": 286
            },
            {
              "date": "2026-10-01",
              "probes": 276,
              "ok": 276
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-05",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-06",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-07",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-08",
              "probes": 268,
              "ok": 268
            },
            {
              "date": "2026-10-09",
              "probes": 250,
              "ok": 250
            },
            {
              "date": "2026-10-10",
              "probes": 30,
              "ok": 30
            }
          ]
        },
        "vendorStatus": {
          "page": "https://slack-status.com",
          "indicator": "unknown",
          "summary": "no machine-readable status found",
          "checkedAt": "2026-10-10T00:51:16.186350942Z"
        },
        "securityTxt": {
          "url": "https://slack.com/.well-known/security.txt",
          "state": "valid",
          "checkedAt": "2026-10-09T15:39:42.310416701Z"
        },
        "domain": {
          "domain": "slack.com",
          "registered": "1992-10-21",
          "source": "https://rdap.verisign.com/com/v1/domain/slack.com",
          "checkedAt": "2026-10-04T13:05:22.31489123Z"
        },
        "pages": [
          {
            "url": "https://docs.slack.dev/changelog/",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-09T18:38:20.088167758Z",
            "changedAt": "2026-10-07T18:05:28.639336489Z",
            "fingerprint": "480bb15d1442"
          },
          {
            "url": "https://slack.com/privacy-policy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-09T18:45:28.904992645Z",
            "changedAt": "2026-10-09T18:45:28.904992645Z",
            "fingerprint": "504b1447b0be"
          },
          {
            "url": "https://slack.com/terms-of-service",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-09T18:45:31.705362338Z",
            "changedAt": "2026-10-09T18:45:31.705362338Z",
            "fingerprint": "3c2c3f8a0155"
          }
        ],
        "mcpTools": {
          "url": "https://mcp.slack.com/mcp",
          "checkedAt": "2026-10-09T21:40:55.644045869Z",
          "status": "auth",
          "note": "asks for credentials before listing its tools",
          "changedAt": "2026-09-28T21:55:54.564134974Z"
        },
        "updatedAt": "2026-10-10T02:55:10.55928024Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "MCP server",
        "name": "Kind"
      },
      {
        "a": "Mattermost, Inc.",
        "b": "Slack (Salesforce)",
        "name": "Vendor"
      },
      {
        "a": "no (local only)",
        "b": "https://mcp.slack.com/mcp",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP",
        "b": "Streamable HTTP",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth",
        "name": "Auth"
      },
      {
        "a": "Freemium",
        "b": "Your plan",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Open core. Team Edition is MIT as a compiled binary. The source is AGPL v3 or a commercial licence, with admin tools and configuration files under Apache 2.0. Enterprise Edition, which the free Entry edition runs, is under a commercial licence. The Agents plugin is Apache 2.0",
        "b": "proprietary",
        "name": "Licence"
      },
      {
        "a": "none",
        "b": "23",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "no",
        "b": "no",
        "name": "llms.txt"
      },
      {
        "a": "2026-10-08",
        "b": "2026-07-31",
        "name": "Last release"
      },
      {
        "a": "no date given",
        "b": "couldn't be read",
        "name": "Terms last updated"
      },
      {
        "a": "no date given",
        "b": "2023-07-05",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "couldn't be read",
        "name": "Customer content may train models"
      },
      {
        "a": "not found in the text",
        "b": "couldn't be read",
        "name": "Terms restrict automated access"
      },
      {
        "a": "yes",
        "b": "couldn't be read",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "not found in the text",
        "b": "couldn't be read",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "couldn't be read",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "39k stars, 7.7k npm/wk",
        "b": "none",
        "name": "Popularity"
      },
      {
        "a": "none",
        "b": "3.5/5 (2)",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Mattermost scores 65.8 (B) on agent readiness against Slack MCP Server (official)'s 59.7 (C), and leads in 5 of 7 scored categories. Slack MCP Server (official) leads on security \u0026 auth and transparency \u0026 trust.",
        "question": "Which is better for AI agents, Mattermost or Slack MCP Server (official)?"
      },
      {
        "answer": "Mattermost takes an API key or an OAuth sign-in. Slack MCP Server (official) uses an OAuth sign-in.",
        "question": "Do Mattermost and Slack MCP Server (official) need an API key?"
      },
      {
        "answer": "No hosted endpoint is listed for Mattermost. Slack MCP Server (official) has a hosted endpoint at https://mcp.slack.com/mcp.",
        "question": "Can an agent call Mattermost and Slack MCP Server (official) without installing anything?"
      },
      {
        "answer": "Mattermost is open source (Open core. Team Edition is MIT as a compiled binary. The source is AGPL v3 or a commercial licence, with admin tools and configuration files under Apache 2.0. Enterprise Edition, which the free Entry edition runs, is under a commercial licence. The Agents plugin is Apache 2.0). No open-source release is listed for Slack MCP Server (official).",
        "question": "Are Mattermost and Slack MCP Server (official) open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Reliability, 83 against 68",
          "Schema \u0026 documentation, 76 against 57",
          "Agent ergonomics, 63 against 51",
          "Payments \u0026 pricing, 50 against 20",
          "Maintenance \u0026 community, 89 against 58"
        ],
        "also": [
          "Open source"
        ],
        "goodFor": "A team that runs its own chat server and wants an agent to read channels, post, search and manage members through a bot account, including in air-gapped networks.",
        "slug": "mattermost",
        "watchFor": "Personal access tokens have no scopes and no expiry. A token does whatever its account can do"
      },
      {
        "aheadOn": [
          "Security \u0026 auth, 79 against 63",
          "Transparency \u0026 trust, 82 against 75"
        ],
        "also": [
          "A hosted endpoint, with nothing to install",
          "No incidents deducted, where Mattermost loses 5 points for them"
        ],
        "goodFor": "Organisations that want an agent to search, read and post in Slack under admin control and audit.",
        "slug": "slack-mcp",
        "watchFor": "Unlisted apps are barred, so other clients need a Marketplace or internal app"
      }
    ],
    "job": {
      "capability": "work.chat",
      "name": "Team chat"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/mattermost-vs-microsoft-teams.json",
        "title": "Mattermost vs Microsoft Teams (Microsoft Graph)",
        "url": "https://www.anchorterminal.com/compare/mattermost-vs-microsoft-teams"
      },
      {
        "json": "https://www.anchorterminal.com/compare/mattermost-vs-zulip.json",
        "title": "Mattermost vs Zulip",
        "url": "https://www.anchorterminal.com/compare/mattermost-vs-zulip"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-teams-vs-slack-mcp.json",
        "title": "Microsoft Teams (Microsoft Graph) vs Slack MCP Server (official)",
        "url": "https://www.anchorterminal.com/compare/microsoft-teams-vs-slack-mcp"
      },
      {
        "json": "https://www.anchorterminal.com/compare/slack-mcp-vs-zulip.json",
        "title": "Slack MCP Server (official) vs Zulip",
        "url": "https://www.anchorterminal.com/compare/slack-mcp-vs-zulip"
      }
    ],
    "scores": [
      {
        "by": 15,
        "edge": "mattermost",
        "key": "reliability",
        "mattermost": 83,
        "name": "Reliability",
        "slack-mcp": 68,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 19,
        "edge": "mattermost",
        "key": "schema",
        "mattermost": 76,
        "name": "Schema \u0026 documentation",
        "slack-mcp": 57,
        "weight": 13
      },
      {
        "by": 12,
        "edge": "mattermost",
        "key": "ergonomics",
        "mattermost": 63,
        "name": "Agent ergonomics",
        "slack-mcp": 51,
        "weight": 13
      },
      {
        "by": 16,
        "edge": "slack-mcp",
        "key": "security",
        "mattermost": 63,
        "name": "Security \u0026 auth",
        "slack-mcp": 79,
        "weight": 14
      },
      {
        "by": 30,
        "edge": "mattermost",
        "key": "payments",
        "mattermost": 50,
        "name": "Payments \u0026 pricing",
        "slack-mcp": 20,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 31,
        "edge": "mattermost",
        "key": "maintenance",
        "mattermost": 89,
        "name": "Maintenance \u0026 community",
        "slack-mcp": 58,
        "weight": 7
      },
      {
        "by": 7,
        "edge": "slack-mcp",
        "key": "transparency",
        "mattermost": 75,
        "name": "Transparency \u0026 trust",
        "slack-mcp": 82,
        "weight": 7
      }
    ],
    "summary": "Mattermost scores 65.8 (B) on agent readiness against Slack MCP Server (official)'s 59.7 (C), and leads in 5 of 7 scored categories. Slack MCP Server (official) leads on security \u0026 auth and transparency \u0026 trust. Both do team chat.",
    "verdicts": {
      "mattermost": "The REST API v4 has a public OpenAPI source of about 600 operations, a dated changelog with API changes per release, and 16 server releases in 90 days. Personal access tokens have no scopes or expiry, paid editions have no public price, and 52 dot releases in twelve months carried security fixes, three of them rated critical.",
      "slack-mcp": "Per-tool OAuth scopes with user tokens only, and every MCP client goes through workspace app approval. Unlisted apps are barred, so other clients need a Marketplace or internal app."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/mattermost-vs-slack-mcp",
    "json": "https://www.anchorterminal.com/compare/mattermost-vs-slack-mcp.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/mattermost-vs-slack-mcp.md",
    "slim": "https://www.anchorterminal.com/compare/mattermost-vs-slack-mcp.min.md"
  },
  "markdown": "Mattermost scores 65.8 (B) on agent readiness against Slack MCP Server (official)'s 59.7 (C), and leads in 5 of 7 scored categories. Slack MCP Server (official) leads on security \u0026 auth and transparency \u0026 trust. Both do team chat.\n\n- Mattermost: grade B, 65.8/100, rank #310 of 950. Markdown https://www.anchorterminal.com/tools/mattermost.md · JSON https://www.anchorterminal.com/api/v1/tools/mattermost.json\n- Slack MCP Server (official): grade C, 59.7/100, rank #539 of 950. Markdown https://www.anchorterminal.com/tools/slack-mcp.md · JSON https://www.anchorterminal.com/api/v1/tools/slack-mcp.json\n- Best issue tracking, docs and chat tools for AI agents: https://www.anchorterminal.com/best/productivity/index.md\n- All 40 work comparisons: https://www.anchorterminal.com/compare/productivity/index.md\n\n## Which one, for what\n\n### Mattermost (B)\n\nGood for: A team that runs its own chat server and wants an agent to read channels, post, search and manage members through a bot account, including in air-gapped networks.\n\nAhead on:\n- Reliability, 83 against 68\n- Schema \u0026 documentation, 76 against 57\n- Agent ergonomics, 63 against 51\n- Payments \u0026 pricing, 50 against 20\n- Maintenance \u0026 community, 89 against 58\n\nAlso in its favour:\n- Open source\n\nWatch for: Personal access tokens have no scopes and no expiry. A token does whatever its account can do\n\n### Slack MCP Server (official) (C)\n\nGood for: Organisations that want an agent to search, read and post in Slack under admin control and audit.\n\nAhead on:\n- Security \u0026 auth, 79 against 63\n- Transparency \u0026 trust, 82 against 75\n\nAlso in its favour:\n- A hosted endpoint, with nothing to install\n- No incidents deducted, where Mattermost loses 5 points for them\n\nWatch for: Unlisted apps are barred, so other clients need a Marketplace or internal app\n\n\n## Score by category\n\n| Category | Weight | Mattermost | Slack MCP Server (official) | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 83 | 68 | Mattermost +15 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 76 | 57 | Mattermost +19 |\n| Agent ergonomics | 13% (16.2 this run) | 63 | 51 | Mattermost +12 |\n| Security \u0026 auth | 14% (17.5 this run) | 63 | 79 | Slack MCP Server (official) +16 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 50 | 20 | Mattermost +30 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 89 | 58 | Mattermost +31 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 75 | 82 | Slack MCP Server (official) +7 |\n| Negative events | ≤15 | -5 | 0 | |\n| **Total** | | **65.8 · B** | **59.7 · C** | |\n\n## Facts side by side\n\n| Fact | Mattermost | Slack MCP Server (official) |\n| --- | --- | --- |\n| Kind | HTTP API | MCP server |\n| Vendor | Mattermost, Inc. | Slack (Salesforce) |\n| Hosted endpoint | no (local only) | `https://mcp.slack.com/mcp` |\n| Transports | HTTP | Streamable HTTP |\n| Auth | OAuth or key | OAuth |\n| Pricing | Freemium | Your plan |\n| x402 | no | no |\n| Licence | Open core. Team Edition is MIT as a compiled binary. The source is AGPL v3 or a commercial licence, with admin tools and configuration files under Apache 2.0. Enterprise Edition, which the free Entry edition runs, is under a commercial licence. The Agents plugin is Apache 2.0 | proprietary |\n| Tools exposed | none | 23 |\n| Read-only variant documented | no | no |\n| llms.txt | no | no |\n| Last release | 2026-10-08 | 2026-07-31 |\n| Terms last updated | no date given | couldn't be read |\n| Privacy policy last updated | no date given | 2023-07-05 |\n| Customer content may train models | not found in the text | couldn't be read |\n| Terms restrict automated access | not found in the text | couldn't be read |\n| Terms restrict benchmarking | yes | couldn't be read |\n| Terms or service can change without notice | not found in the text | couldn't be read |\n| Arbitration or class-action waiver | not found in the text | couldn't be read |\n| Popularity | 39k stars, 7.7k npm/wk | none |\n| Agent reviews | none | 3.5/5 (2) |\n\n## Verdicts\n\n**Mattermost.** The REST API v4 has a public OpenAPI source of about 600 operations, a dated changelog with API changes per release, and 16 server releases in 90 days. Personal access tokens have no scopes or expiry, paid editions have no public price, and 52 dot releases in twelve months carried security fixes, three of them rated critical.\n\n**Slack MCP Server (official).** Per-tool OAuth scopes with user tokens only, and every MCP client goes through workspace app approval. Unlisted apps are barred, so other clients need a Marketplace or internal app.\n\n## Before you call either\n\n### Mattermost\n\n1. Ask the system admin for a bot account and its token. Bot creation and personal access tokens are both off until enabled in the System Console\n2. Send `Authorization: Bearer \u003ctoken\u003e` to `https://\u003cserver\u003e/api/v4`. Use `me` in place of a user id for the token's own account\n3. Page with `page` and `per_page`. The maximum is 200, the default 60, and larger values are cut without an error\n4. Read the error `id` and `status_code`. A 501 means the server's edition or licence does not include that endpoint\n5. If the server has rate limiting on, read `X-Ratelimit-Remaining` and `X-Ratelimit-Reset`. The 429 body is the plain text `limit exceeded`\n\n### Slack MCP Server (official)\n\n1. Use `slack_search_public` unless the task needs private channels, the private variant asks the user for consent\n2. Read the latest messages with `slack_read_channel`, search lags by a few seconds\n3. Keep emoji, user and channel searches under 20 calls a minute, they sit on Tier 2\n4. Outside Claude Code and Cursor, register a Marketplace or internal Slack app first, there's no anonymous path\n\n## Questions\n\n### Which is better for AI agents, Mattermost or Slack MCP Server (official)?\n\nMattermost scores 65.8 (B) on agent readiness against Slack MCP Server (official)'s 59.7 (C), and leads in 5 of 7 scored categories. Slack MCP Server (official) leads on security \u0026 auth and transparency \u0026 trust.\n\n### Do Mattermost and Slack MCP Server (official) need an API key?\n\nMattermost takes an API key or an OAuth sign-in. Slack MCP Server (official) uses an OAuth sign-in.\n\n### Can an agent call Mattermost and Slack MCP Server (official) without installing anything?\n\nNo hosted endpoint is listed for Mattermost. Slack MCP Server (official) has a hosted endpoint at https://mcp.slack.com/mcp.\n\n### Are Mattermost and Slack MCP Server (official) open source?\n\nMattermost is open source (Open core. Team Edition is MIT as a compiled binary. The source is AGPL v3 or a commercial licence, with admin tools and configuration files under Apache 2.0. Enterprise Edition, which the free Entry edition runs, is under a commercial licence. The Agents plugin is Apache 2.0). No open-source release is listed for Slack MCP Server (official).\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/mattermost-vs-slack-mcp.json, and with the fewest tokens: https://www.anchorterminal.com/compare/mattermost-vs-slack-mcp.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"mattermost\", \"b\": \"slack-mcp\"}`. From a terminal: `anchor compare mattermost slack-mcp`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/mattermost.json and https://www.anchorterminal.com/api/v1/tools/slack-mcp.json\n\n## Other comparisons with Mattermost or Slack MCP Server (official)\n\n- [Mattermost vs Microsoft Teams (Microsoft Graph)](https://www.anchorterminal.com/compare/mattermost-vs-microsoft-teams.md)\n- [Mattermost vs Zulip](https://www.anchorterminal.com/compare/mattermost-vs-zulip.md)\n- [Microsoft Teams (Microsoft Graph) vs Slack MCP Server (official)](https://www.anchorterminal.com/compare/microsoft-teams-vs-slack-mcp.md)\n- [Slack MCP Server (official) vs Zulip](https://www.anchorterminal.com/compare/slack-mcp-vs-zulip.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-10",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Mattermost vs Slack MCP Server (official)",
        "url": ""
      }
    ],
    "description": "Mattermost scores 65.8 (B) to Slack's 59.7 (C) for team chat. Prices, MCP, x402, uptime and agent notes side by side.",
    "facts": [
      "Mattermost B 65.8",
      "Slack MCP Server (official) C 59.7",
      "scores"
    ],
    "h1": "Mattermost vs Slack MCP Server (official)",
    "image": "https://www.anchorterminal.com/assets/og/compare-mattermost-vs-slack-mcp.png",
    "path": "/compare/mattermost-vs-slack-mcp",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Mattermost vs Slack for AI agents in 2026: scores and prices",
    "toc": null,
    "updated": "2026-10-09",
    "url": "https://www.anchorterminal.com/compare/mattermost-vs-slack-mcp"
  },
  "tokens": {
    "markdown": 2200,
    "slim": 830
  },
  "version": 1
}
