Head to head · Kyc identity · October 2026 research run

Middesk vs Veriff

Veriff scores 61.1 (C) on agent readiness against Middesk's 59 (C), and leads in 4 of 7 scored categories. Middesk leads on reliability and agent ergonomics. Both do kyc identity.

Which one, for what

Middesk C

Good for An agent onboarding or re-checking US businesses for a bank, lender or marketplace that already holds a Middesk contract, with registry, TIN, sanctions and lien data in one object.

Ahead on

  • Reliability, 73 against 62
  • Agent ergonomics, 56 against 43

Also in its favour

  • A hosted endpoint, with nothing to install

Watch for

No public price. Fees are set in an order form, and every docs page ends with a prompt to contact sales

Veriff C

Good for A team that needs document and selfie verification with public per-verification prices and a trial, and that can run a webhook receiver and HMAC signing.

Ahead on

  • Security & auth, 63 against 56
  • Payments & pricing, 40 against 10
  • Maintenance & community, 74 against 64
  • Transparency & trust, 67 against 61

Watch for

No server-side SDK and no MCP server. Official packages cover only browser and mobile capture

Score by category

CategoryWeight this runMiddeskVeriffEdge
Reliability16%207362Middesk +11
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28282even
Agent ergonomics13%16.25643Middesk +13
Security & auth14%17.55663Veriff +7
Payments & pricing10%12.51040Veriff +30
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.86474Veriff +10
Transparency & trust7%8.86167Veriff +6
Negative events≤1500
Total59 · C61.1 · C

Facts side by side

FactMiddeskVeriff
KindHTTP APIHTTP API
VendorMiddesk, Inc.Veriff OÜ
Hosted endpointhttps://api.middesk.com/v1no (local only)
TransportsHTTPHTTP
AuthOAuth or keyAPI key
PricingPaidPay per use
x402nono
LicenceProprietary service under Middesk's Business Verification Terms and Conditions. The Claude Code and Codex plugins on GitHub are MITProprietary service. The npm capture SDKs are ISC (@veriff/js-sdk, @veriff/incontext-sdk) and MIT (@veriff/react-native-sdk)
Tools exposed11none
Read-only variant documentednono
llms.txtyesyes
Last release2026-10-052026-10-02
Terms last updatedno date givencouldn't be read
Privacy policy last updatedno date given2026-04-16
Customer content may train modelsyesyes
Terms restrict automated accessnot found in the textcouldn't be read
Terms restrict benchmarkingyescouldn't be read
Terms or service can change without noticenot found in the textcouldn't be read
Arbitration or class-action waiveryescouldn't be read
Popularity2 stars32 stars, 110k npm/wk

Verdicts

Middesk

A public OpenAPI 3.1 contract for 87 operations, llms.txt, Markdown docs and a dated weekly changelog make the REST API readable to an agent, and OAuth has a read-only scope. Access is sales-led. No price, self-serve signup or official SDK was found, and the hosted MCP server rejects sandbox keys.

Veriff

Per-verification prices are public from $0.80, with a 15-day trial of 50 sessions and no card. Each endpoint page is Markdown with an OpenAPI 3.0 fragment. There is no server SDK, MCP server or idempotency key, most calls need an HMAC signature, and the status page shows nine incidents between 20 July and 7 October 2026.

Before you call either

Middesk

  1. Match the key to the host. mk_test keys work only at https://api-sandbox.middesk.com/v1 and mk_live keys only at https://api.middesk.com/v1
  2. Name the orders on POST /v1/businesses. Omitting them places a verification order plus every package the account runs automatically, all billed
  3. Send address_line1 and address_line2. The API ignores address_line_1 without an error
  4. A 201 means the business was created, not verified. Wait for the business.updated webhook or poll until status leaves pending
  5. Stay under 20 requests a second per account, and in sandbox wait the seconds in Retry-After after a 429 on business creation

Veriff

  1. Take the base URL from the integration's API keys page. Send X-AUTH-CLIENT on every call and store verification.id from POST /v1/sessions
  2. Sign POST and PATCH bodies, and the session ID on GET and DELETE, with HMAC-SHA256 in X-HMAC-SIGNATURE. POST /v1/sessions needs no signature
  3. Stay under 30 session creations a minute on Self-Serve, 600 on Enterprise. A 429 carries code 1004
  4. Don't blindly retry POST /v1/sessions. Each call makes a new session, which is billed on a live integration
  5. Poll GET /v1/sessions/{id}/decision until verification is not null, or accept webhooks within 5 seconds and treat duplicates as normal

Questions

Which is better for AI agents, Middesk or Veriff?

Veriff scores 61.1 (C) on agent readiness against Middesk's 59 (C), and leads in 4 of 7 scored categories. Middesk leads on reliability and agent ergonomics.

Do Middesk and Veriff need an API key?

Middesk takes an API key or an OAuth sign-in. Veriff needs an API key.

Can an agent call Middesk and Veriff without installing anything?

Middesk has a hosted endpoint at https://api.middesk.com/v1. No hosted endpoint is listed for Veriff.

Other comparisons with Middesk or Veriff

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.