Head to head · Team chat · October 2026 research run

Mattermost vs Zulip

Mattermost scores 65.8 (B) on agent readiness against Zulip's 61.5 (C), and leads in 3 of 7 scored categories. Zulip leads on schema & documentation and agent ergonomics. Both do team chat.

Best issue tracking, docs and chat tools for AI agents · All 40 work comparisons

Which one, for what

Mattermost B

Good for A team that runs its own chat server and wants an agent to read channels, post, search and manage members through a bot account, including in air-gapped networks.

Ahead on

  • Security & auth, 63 against 42
  • Payments & pricing, 50 against 30
  • Maintenance & community, 89 against 77

Watch for

Personal access tokens have no scopes and no expiry. A token does whatever its account can do

Zulip C

Good for A team that already talks in Zulip and wants an agent to read channels and topics, post, react and manage users through a bot.

Ahead on

  • Schema & documentation, 82 against 76
  • Agent ergonomics, 68 against 63

Watch for

One API key per account, with no scopes, expiry or OAuth. A generic bot's key does what a normal member can do

Score by category

CategoryWeight this runMattermostZulipEdge
Reliability16%208383even
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.27682Zulip +6
Agent ergonomics13%16.26368Zulip +5
Security & auth14%17.56342Mattermost +21
Payments & pricing10%12.55030Mattermost +20
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88977Mattermost +12
Transparency & trust7%8.87576Zulip +1
Negative events≤15-5-4
Total65.8 · B61.5 · C

Facts side by side

FactMattermostZulip
KindHTTP APIHTTP API
VendorMattermost, Inc.Kandra Labs, Inc.
Hosted endpointno (local only)no (local only)
TransportsHTTPHTTP
AuthOAuth or keyAPI key
PricingFreemiumFreemium
x402nono
LicenceOpen core. Team Edition is MIT as a compiled binary. The source is AGPL v3 or a commercial licence, with admin tools and configuration files under Apache 2.0. Enterprise Edition, which the free Entry edition runs, is under a commercial licence. The Agents plugin is Apache 2.0Apache 2.0 for the server. The hosted Zulip Cloud service is under Kandra Labs' Terms of Service. The npm package zulip-js is MIT
Read-only variant documentednono
llms.txtnono
Last release2026-10-082026-09-21
Terms last updatedno date given2022-02-07
Privacy policy last updatedno date given2022-01-01
Customer content may train modelsnot found in the textnot found in the text
Terms restrict automated accessnot found in the textnot found in the text
Terms restrict benchmarkingyesnot found in the text
Terms or service can change without noticenot found in the textnot found in the text
Arbitration or class-action waivernot found in the textyes
Popularity39k stars, 7.7k npm/wk26k stars, 7.1k npm/wk, 157k PyPI/wk

Verdicts

Mattermost

The REST API v4 has a public OpenAPI source of about 600 operations, a dated changelog with API changes per release, and 16 server releases in 90 days. Personal access tokens have no scopes or expiry, paid editions have no public price, and 52 dot releases in twelve months carried security fixes, three of them rated critical.

Zulip

The REST API is the one Zulip's own apps use, with a public OpenAPI file of 166 operations, a changelog by feature level and a status page showing no incidents in 90 days. Each account has one API key with no scopes, and the server took 13 security advisories in twelve months, all fixed and published.

Before you call either

Mattermost

  1. Ask the system admin for a bot account and its token. Bot creation and personal access tokens are both off until enabled in the System Console
  2. Send Authorization: Bearer <token> to https://<server>/api/v4. Use me in place of a user id for the token's own account
  3. Page with page and per_page. The maximum is 200, the default 60, and larger values are cut without an error
  4. Read the error id and status_code. A 501 means the server's edition or licence does not include that endpoint
  5. If the server has rate limiting on, read X-Ratelimit-Remaining and X-Ratelimit-Reset. The 429 body is the plain text limit exceeded

Zulip

  1. Ask the organisation for a bot of the most limited type that fits. Use an incoming webhook bot when the task only posts messages
  2. Authenticate with HTTP Basic, the bot's email as user and its API key as password, against https://<organisation>.zulipchat.com/api/v1
  3. Read code, not msg, on errors. msg is translated into the account's language
  4. On RATE_LIMIT_HIT wait the seconds in retry-after. The default limit is 200 requests a minute per user
  5. Fetch history with GET /messages, a narrow filter, an anchor and num_before or num_after, at most 1,000 a batch as the docs recommend

Questions

Which is better for AI agents, Mattermost or Zulip?

Mattermost scores 65.8 (B) on agent readiness against Zulip's 61.5 (C), and leads in 3 of 7 scored categories. Zulip leads on schema & documentation and agent ergonomics.

Do Mattermost and Zulip need an API key?

Mattermost takes an API key or an OAuth sign-in. Zulip needs an API key.

Can an agent call Mattermost and Zulip without installing anything?

No hosted endpoint is listed for Mattermost. No hosted endpoint is listed for Zulip.

Are Mattermost and Zulip open source?

Yes. Mattermost is open source (Open core. Team Edition is MIT as a compiled binary. The source is AGPL v3 or a commercial licence, with admin tools and configuration files under Apache 2.0. Enterprise Edition, which the free Entry edition runs, is under a commercial licence. The Agents plugin is Apache 2.0). Zulip is open source (Apache 2.0 for the server. The hosted Zulip Cloud service is under Kandra Labs' Terms of Service. The npm package zulip-js is MIT).

Other comparisons with Mattermost or Zulip

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.