{
  "data": {
    "a": {
      "slug": "n8n",
      "name": "n8n API + MCP",
      "vendor": "n8n",
      "vendorUrl": "https://n8n.io",
      "kind": "http-api",
      "category": "workflow-automation",
      "summary": "Workflow builder you can run on n8n Cloud or self-host.",
      "url": "https://www.anchorterminal.com/tools/n8n",
      "markdownUrl": "https://www.anchorterminal.com/tools/n8n.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/n8n.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/n8n.json",
      "repo": "https://github.com/n8n-io/n8n",
      "license": "Sustainable Use License (fair-code, source-available)",
      "transports": [
        "http",
        "streamable-http"
      ],
      "packages": [
        {
          "registry": "npm",
          "name": "n8n"
        }
      ],
      "auth": "mixed",
      "authNotes": "REST API takes an instance API key in the `X-N8N-API-KEY` header. Key scopes only on Enterprise. The instance MCP server at https://\u003cinstance\u003e/mcp-server/http takes OAuth (per-client grants you can revoke) or a bearer MCP token.",
      "pricing": "freemium",
      "pricingNotes": "Community Edition is free to self-host with unlimited executions. Cloud Starter €20 a month billed yearly (2,500 executions, 5 concurrent, 7-day execution logs), Pro €50 (10,000 executions, up to 50 concurrent, 30-day logs), Enterprise custom (200+ concurrent, 365 days of insights). Business €667 a month billed yearly (40,000 executions) is self-hosted only for now, with a Cloud waitlist, and extra 300,000 executions cost €4,000. Annual billing saves 17 per cent. The Cloud trial gives 1,000 executions with no card, but the API isn't available during it. An execution is one workflow run, whatever the step count (https://n8n.io/pricing/).",
      "priceSummary": "Freemium",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402 support in docs or pricing (checked 2026-09-30).",
        "endpoints": []
      },
      "toolCount": 54,
      "popularity": {
        "githubStars": 206359,
        "npmWeekly": 112869,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.n8n.io/connect/n8n-api/",
      "llmsTxt": "https://docs.n8n.io/llms.txt",
      "openapi": "https://docs.n8n.io/connect/n8n-api/api-reference",
      "capabilities": [
        "automation.workflows",
        "automation.apps",
        "automation.code",
        "automation.webhooks",
        "agent.tools"
      ],
      "tags": [
        "hosted",
        "self-hosted",
        "local",
        "freemium",
        "mcp",
        "llms-txt",
        "openapi",
        "typescript",
        "webhooks",
        "enterprise",
        "source-available"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 53.1,
        "grade": "D",
        "agentReady": false,
        "rank": 718,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 12,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 75,
          "maintenance": 80,
          "payments": 30,
          "reliability": 40,
          "schema": 92,
          "security": 70,
          "transparency": 80
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": -12,
        "negativeNotes": [
          "CVE-2025-68613 (GHSA-v98v-ff95-f3cp), code execution through workflow expressions for any authenticated user, published to NVD on 19 December 2025 (GitHub's advisory is dated 22 December) and added to CISA's Known Exploited Vulnerabilities catalogue on 11 March 2026 as exploited in the wild. Patched and documented (https://github.com/advisories/GHSA-v98v-ff95-f3cp, https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2025-68613, https://services.nvd.nist.gov/rest/json/cves/2.0?keywordSearch=n8n\u0026hasKev).",
          "CVE-2026-21858 (GHSA-v4pr-fm98-w9pg), unauthenticated file access through improper webhook handling, rated critical, published 7 January 2026, and CVE-2026-27493 (GHSA-75g8-rv7v-32f7), unauthenticated expression evaluation through the Form node, published 25 February 2026. Both patched (https://github.com/advisories?query=n8n+severity%3Acritical).",
          "24 critical advisories for the n8n package published between 8 December 2025 and 14 May 2026, counted on 2 October 2026 with the GitHub Advisory Database query cited here, most of them sandbox escapes or remote code execution, and high-severity batches still landing on 22 July, 10 September and 16 September 2026, including credential decryption without an ownership check (GHSA-9rhv-fhr8-7q5r). All handled in public with fixes, which is why this isn't the full -15 (https://github.com/advisories?query=type%3Areviewed+ecosystem%3Anpm+affects%3An8n+severity%3Acritical+published%3A2025-12-01..2026-05-31, https://github.com/n8n-io/n8n/security/advisories)."
        ],
        "verdict": "OpenAPI 3.0 spec with 208 operations, and Markdown docs plus llms.txt. 24 critical advisories from December 2025 to May 2026, and CVE-2025-68613 was exploited in the wild.",
        "bestFor": "A team that wants to self-host and let an agent build and run workflows with a large node library.",
        "strengths": [
          "OpenAPI 3.0 spec with 208 operations, and Markdown docs plus llms.txt",
          "MCP OAuth grants split into scopes such as `workflow:read` and `workflow:execute`, revocable per client",
          "Priced per workflow run whatever the step count, and free to self-host with the API on",
          "n8n@2.42.2 on 1 October 2026 and 134 tags in 90 days, with the 1.x line still patched",
          "Valid security.txt, a disclosure policy, and advisories published with CVEs"
        ],
        "weaknesses": [
          "24 critical advisories from December 2025 to May 2026, and CVE-2025-68613 was exploited in the wild",
          "No published API rate limit, 429 guidance or uptime SLA",
          "API key scopes only on Enterprise, and no API during the Cloud trial",
          "Sustainable Use License, not OSI open source, and self-hosted telemetry on by default",
          "54 MCP tools in the full set, heavy for a context window unless the grant is narrowed"
        ],
        "agentNotes": [
          "Check the instance version before trusting it. Anything older than the September 2026 patch releases carries published high-severity flaws",
          "Ask for only the OAuth scopes the job needs. `workflow:read` plus `workflow:execute` keeps the builder and delete tools out of the tool list",
          "Call `get_workflow_details` with `detailLevel` set to execution before `execute_workflow`, which returns an execution ID and doesn't wait",
          "Follow `nextCursor` until it's null when paging workflows or executions",
          "On Cloud trial accounts `/api/v1` won't answer. Use the MCP server or a paid plan"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "D",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 53.1
          }
        ],
        "editorialScores": {
          "ergonomics": 75,
          "maintenance": 80,
          "payments": 30,
          "reliability": 40,
          "schema": 92,
          "security": 70,
          "transparency": 68
        },
        "provenanceScore": 92
      },
      "connect": {
        "http": "curl \"https://$N8N_HOST/api/v1/workflows?active=true\" -H \"X-N8N-API-KEY: $N8N_API_KEY\"",
        "claudeCode": "claude mcp add --transport http n8n https://$N8N_HOST/mcp-server/http",
        "config": {
          "mcpServers": {
            "n8n": {
              "headers": {
                "Authorization": "Bearer ${N8N_MCP_TOKEN}"
              },
              "url": "https://${N8N_HOST}/mcp-server/http"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/automation.workflows",
        "tool": "https://letme.dev/n8n"
      },
      "area": "business",
      "provenance": {
        "legalEntity": "n8n GmbH",
        "domain": "n8n.io",
        "domainRegistered": "2018-12-01",
        "endpointOnVendorDomain": true,
        "terms": "https://n8n.io/legal/",
        "privacy": "https://n8n.io/legal/privacy/",
        "statusPage": "https://status.n8n.cloud",
        "changelog": "https://docs.n8n.io/changelog/release-notes",
        "securityTxt": "valid",
        "checked": "2026-09-30",
        "score": 92
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/n8n.json",
      "live": {
        "slug": "n8n",
        "vendorStatus": {
          "page": "https://status.n8n.cloud",
          "indicator": "unknown",
          "summary": "no machine-readable status found",
          "checkedAt": "2026-10-10T00:50:51.258325254Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "n8n-io/n8n",
            "version": "n8n@2.42.6",
            "released": "2026-10-09",
            "seenAt": "2026-10-09T17:07:49.346796263Z"
          },
          {
            "registry": "npm",
            "name": "n8n",
            "version": "2.42.6",
            "seenAt": "2026-10-09T17:07:48.490866956Z"
          }
        ],
        "githubStars": 206816,
        "npmWeekly": 114636,
        "securityTxt": {
          "url": "https://n8n.io/.well-known/security.txt",
          "state": "valid",
          "expires": "2027-12-31T22:59:00.000Z",
          "checkedAt": "2026-10-09T15:39:58.966646253Z"
        },
        "llmsTxt": {
          "url": "https://docs.n8n.io/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-09T14:02:26.920134102Z"
        },
        "domain": {
          "domain": "n8n.io",
          "checkedAt": "2026-10-04T13:03:43.27003987Z"
        },
        "pages": [
          {
            "url": "https://docs.n8n.io/changelog/release-notes",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-09T18:37:51.372266219Z",
            "changedAt": "2026-10-08T18:19:10.749002669Z",
            "fingerprint": "2b4607263339"
          },
          {
            "url": "https://n8n.io/pricing/",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-09T18:42:24.365367689Z",
            "changedAt": "2026-10-09T18:42:24.365367689Z",
            "fingerprint": "f063c629a7dc"
          },
          {
            "url": "https://n8n.io/legal/privacy/",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-09T18:42:22.348753652Z",
            "changedAt": "2026-10-09T18:42:22.348753652Z",
            "fingerprint": "2def10455eaa"
          },
          {
            "url": "https://n8n.io/legal/",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-09T18:42:20.160379104Z",
            "changedAt": "2026-10-09T18:42:20.160379104Z",
            "fingerprint": "c1643fe4f117"
          }
        ],
        "updatedAt": "2026-10-10T00:50:51.258325254Z"
      }
    },
    "answer": "Prismatic scores 59.1 (C) on agent readiness against n8n API + MCP's 53.1 (D), and leads in 2 of 7 scored categories. n8n API + MCP leads on schema \u0026 documentation, agent ergonomics, security \u0026 auth, payments \u0026 pricing and transparency \u0026 trust.",
    "b": {
      "slug": "prismatic",
      "name": "Prismatic",
      "vendor": "Prismatic Software Inc.",
      "vendorUrl": "https://prismatic.io",
      "kind": "http-api",
      "category": "workflow-automation",
      "summary": "Prismatic is an embedded integration platform for B2B software companies. Teams build integrations in a low-code designer or in TypeScript, deploy them to customers, and manage them through a GraphQL API, the Prism CLI and MCP servers.",
      "url": "https://www.anchorterminal.com/tools/prismatic",
      "markdownUrl": "https://www.anchorterminal.com/tools/prismatic.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/prismatic.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/prismatic.json",
      "repo": "https://github.com/prismatic-io/prism",
      "license": "Proprietary service. The Prism CLI, the Spectral and embedded SDKs, the Prism MCP dev server and the Claude Code skills on GitHub are MIT",
      "transports": [
        "http",
        "streamable-http",
        "stdio"
      ],
      "remoteUrl": "https://mcp.prismatic.io/mcp",
      "packages": [
        {
          "registry": "npm",
          "name": "@prismatic-io/prism"
        },
        {
          "registry": "npm",
          "name": "@prismatic-io/prism-mcp"
        },
        {
          "registry": "npm",
          "name": "@prismatic-io/spectral"
        },
        {
          "registry": "npm",
          "name": "@prismatic-io/embedded"
        }
      ],
      "auth": "oauth",
      "authNotes": "Access starts with a person creating an account, by free trial or contract, and logging in through the browser (`prism login`). The API takes that user's JWT as a Bearer token. `prism me:token --type refresh` prints a refresh token for headless use, exchanged at `/auth/refresh` for an access token valid for 7 days. Tokens have no scopes of their own and act with the user's role. The hosted MCP flow server uses MCP OAuth or the same Bearer token, and embedded end users get a JWT signed by the customer's backend.",
      "pricing": "paid",
      "pricingNotes": "No public prices. The pricing page lists Scale, Enterprise and Custom plans with volume per-instance pricing, each ending in a demo request. A free trial exists, and the Terms of Use set it at 30 days unless stated otherwise at signup. Whether the trial needs a card could not be read because the signup form is drawn by script. Contracts set fair use limits in gigabyte-seconds of compute per instance per month (checked 2026-10-09).",
      "priceSummary": "Paid",
      "where": "both",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs index, the API docs or the pricing page (checked 2026-10-09).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 29,
        "npmWeekly": 8416,
        "pypiWeekly": null,
        "asOf": "2026-10-09"
      },
      "docsUrl": "https://prismatic.io/docs/api/",
      "llmsTxt": "https://prismatic.io/docs/llms.txt",
      "registryName": "io.github.prismatic-io/prism-mcp",
      "capabilities": [
        "automation.workflows",
        "automation.embedded",
        "automation.apps",
        "automation.code",
        "automation.webhooks",
        "automation.auth",
        "agent.tools"
      ],
      "tags": [
        "hosted",
        "enterprise",
        "graphql",
        "mcp",
        "cli",
        "oauth",
        "llms-txt",
        "typescript",
        "sales-led",
        "status-page",
        "soc2",
        "webhooks",
        "closed-source"
      ],
      "lastRelease": "2026-10-06",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 59.1,
        "grade": "C",
        "agentReady": false,
        "rank": 561,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 6,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 63,
          "maintenance": 83,
          "payments": 0,
          "reliability": 67,
          "schema": 75,
          "security": 59,
          "transparency": 65
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-09"
        },
        "negative": 0,
        "verdict": "The GraphQL API covers 120 queries and 124 mutations with typed inputs, cursor pagination and Markdown documentation, and tokens follow seven user roles. No price is published, paid use runs under an agreement that is not public, and no API rate limit or idempotency key was found in the reviewed documentation.",
        "bestFor": "A B2B software company that wants to build integrations once, deploy them per customer and let an in-app agent call them as MCP tools.",
        "strengths": [
          "GraphQL API with 120 documented queries and 124 mutations, field selection, cursor pagination and per-query filters",
          "Every docs page has a Markdown twin, indexed by `llms.txt` at prismatic.io/docs/llms.txt",
          "Hosted MCP flow server in seven regions, with OAuth 2.0 and endpoints scoped to one integration or one instance",
          "Seven organisation roles, including a read-only guest and a third-party role limited to named integrations, components or customers",
          "Dated changelog with ten entries from 20 August to 1 October 2026, and CLI and SDK releases in the same weeks"
        ],
        "weaknesses": [
          "No prices on the pricing page. All three plans end in a demo request",
          "Paid use is governed by a separate agreement that is not published. The public terms cover the website and 30-day trials",
          "No API rate limit, `Retry-After` behaviour or idempotency key found in the reviewed documentation",
          "API tokens carry the whole role of the user who created them, and revoking one refresh token revokes all of that user's",
          "Mutation failures return HTTP 200 with an `errors` array of field and message, with no error codes"
        ],
        "agentNotes": [
          "Have a person run `prism login` once, then store the output of `prism me:token --type refresh` as `PRISM_REFRESH_TOKEN`. Access tokens last 7 days",
          "Read the `errors` array on every mutation. A failed mutation still returns HTTP 200",
          "Pass `sortBy` with `CREATED_AT` when paging. Without a sort order pages can repeat or skip records",
          "Use the regional host for the tenant, such as `app.eu-west-1.prismatic.io` and `mcp.eu-west-1.prismatic.io`",
          "Create a guest user for a read-only agent, because tokens have no scopes of their own"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 59.1
          }
        ],
        "editorialScores": {
          "ergonomics": 63,
          "maintenance": 83,
          "payments": 0,
          "reliability": 67,
          "schema": 75,
          "security": 59,
          "transparency": 40
        },
        "provenanceScore": 89
      },
      "connect": {
        "install": "npm install --global @prismatic-io/prism",
        "http": "curl https://app.prismatic.io/api --request POST --header \"Authorization: Bearer ${PRISMATIC_API_TOKEN}\" --header \"Content-Type: application/json\" --data '{\"query\": \"query { integrations { nodes { id name }}}\"}'",
        "claudeCode": "claude mcp add-json prismatic '{\"type\":\"stdio\",\"command\":\"npx\",\"args\":[\"-y\",\"mcp-remote\",\"https://mcp.prismatic.io/mcp\"]}'",
        "config": {
          "mcpServers": {
            "prism": {
              "args": [
                "-y",
                "@prismatic-io/prism-mcp",
                "."
              ],
              "command": "npx",
              "env": {
                "PRISMATIC_URL": "https://app.prismatic.io"
              },
              "type": "stdio"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/automation.workflows",
        "tool": "https://letme.dev/prismatic"
      },
      "area": "business",
      "provenance": {
        "legalEntity": "Prismatic Software Inc.",
        "domain": "prismatic.io",
        "domainRegistered": "2016-07-09",
        "endpointOnVendorDomain": true,
        "terms": "",
        "privacy": "https://prismatic.io/legal/privacy/",
        "statusPage": "https://www.prismatic-status.io",
        "changelog": "https://prismatic.io/docs/changelog/",
        "securityTxt": "valid",
        "checked": "2026-10-09",
        "notes": [
          "The Terms of Use (last updated 17 March 2023) name Prismatic Software Inc., 5013 S Louise Ave #122, Sioux Falls, SD 57108, and are governed by South Dakota law.",
          "No terms link is recorded. The Terms of Use at https://prismatic.io/legal/terms/ are website terms that also cover trial accounts, and they say non-trial use of the Services is subject to a separate agreement, which is not published.",
          "The Privacy Policy (last updated 26 June 2024) covers the website and the web application at app.prismatic.io.",
          "security.txt at https://prismatic.io/.well-known/security.txt names security@prismatic.io and a PGP key and expires on 16 June 2027.",
          "The API, the regional hosts and the MCP flow server are all on prismatic.io subdomains. The status page is on prismatic-status.io and the trust centre on trust-prismatic.io.",
          "RDAP for prismatic.io gives a registration date of 2016-07-09."
        ],
        "score": 89
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/prismatic.json",
      "live": {
        "slug": "prismatic",
        "probe": {
          "target": "https://mcp.prismatic.io/mcp",
          "method": "get",
          "lastAt": "2026-10-10T02:07:21.289248186Z",
          "lastOk": true,
          "lastStatus": 401,
          "lastMs": 301,
          "lastNote": "asks for credentials",
          "authRequired": true,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 300,
          "p95ms24h": 389,
          "samples24h": 107,
          "samples30d": 107,
          "days": [
            {
              "date": "2026-10-09",
              "probes": 85,
              "ok": 85
            },
            {
              "date": "2026-10-10",
              "probes": 22,
              "ok": 22
            }
          ]
        },
        "vendorStatus": {
          "page": "https://www.prismatic-status.io",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-10T02:06:24.908783132Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "prismatic-io/prism",
            "version": "v10.5.0",
            "released": "2026-09-30",
            "seenAt": "2026-10-09T17:14:48.08709817Z"
          },
          {
            "registry": "npm",
            "name": "@prismatic-io/embedded",
            "version": "4.14.0",
            "seenAt": "2026-10-09T17:14:46.07500175Z"
          },
          {
            "registry": "npm",
            "name": "@prismatic-io/prism",
            "version": "10.5.0",
            "seenAt": "2026-10-09T17:14:41.869797583Z"
          },
          {
            "registry": "npm",
            "name": "@prismatic-io/prism-mcp",
            "version": "1.5.0",
            "seenAt": "2026-10-09T17:14:42.93328997Z"
          },
          {
            "registry": "npm",
            "name": "@prismatic-io/spectral",
            "version": "10.34.1",
            "seenAt": "2026-10-09T17:14:44.108249111Z"
          }
        ],
        "githubStars": 29,
        "npmWeekly": 8416,
        "pages": [
          {
            "url": "https://prismatic.io/docs/changelog/",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-09T18:43:50.569023777Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "8f4fb9151364"
          },
          {
            "url": "https://prismatic.io/legal/privacy/",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-09T18:43:53.22345549Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "6521c9b1a5d9"
          }
        ],
        "updatedAt": "2026-10-10T02:07:21.289248186Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "n8n",
        "b": "Prismatic Software Inc.",
        "name": "Vendor"
      },
      {
        "a": "no (local only)",
        "b": "https://mcp.prismatic.io/mcp",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP, Streamable HTTP",
        "b": "HTTP, Streamable HTTP, stdio",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth",
        "name": "Auth"
      },
      {
        "a": "Freemium",
        "b": "Paid",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Sustainable Use License (fair-code, source-available)",
        "b": "Proprietary service. The Prism CLI, the Spectral and embedded SDKs, the Prism MCP dev server and the Claude Code skills on GitHub are MIT",
        "name": "Licence"
      },
      {
        "a": "54",
        "b": "none",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "yes",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "not listed",
        "b": "io.github.prismatic-io/prism-mcp",
        "name": "MCP registry"
      },
      {
        "a": "2026-10-01",
        "b": "2026-10-06",
        "name": "Last release"
      },
      {
        "a": "couldn't be read",
        "b": "no document linked",
        "name": "Terms last updated"
      },
      {
        "a": "2026-09-28",
        "b": "2024-06-26",
        "name": "Privacy policy last updated"
      },
      {
        "a": "couldn't be read",
        "b": "",
        "name": "Customer content may train models"
      },
      {
        "a": "couldn't be read",
        "b": "",
        "name": "Terms restrict automated access"
      },
      {
        "a": "couldn't be read",
        "b": "",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "couldn't be read",
        "b": "",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "couldn't be read",
        "b": "",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "206k stars, 113k npm/wk",
        "b": "29 stars, 8.4k npm/wk",
        "name": "Popularity"
      },
      {
        "a": "2.5/5 (2)",
        "b": "none",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Prismatic scores 59.1 (C) on agent readiness against n8n API + MCP's 53.1 (D), and leads in 2 of 7 scored categories. n8n API + MCP leads on schema \u0026 documentation, agent ergonomics, security \u0026 auth, payments \u0026 pricing and transparency \u0026 trust.",
        "question": "Which is better for AI agents, n8n API + MCP or Prismatic?"
      },
      {
        "answer": "n8n API + MCP takes an API key or an OAuth sign-in. Prismatic uses an OAuth sign-in.",
        "question": "Do n8n API + MCP and Prismatic need an API key?"
      },
      {
        "answer": "No hosted endpoint is listed for n8n API + MCP. Prismatic has a hosted endpoint at https://mcp.prismatic.io/mcp.",
        "question": "Can an agent call n8n API + MCP and Prismatic without installing anything?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Schema \u0026 documentation, 92 against 75",
          "Agent ergonomics, 75 against 63",
          "Security \u0026 auth, 70 against 59",
          "Payments \u0026 pricing, 30 against 0",
          "Transparency \u0026 trust, 80 against 65"
        ],
        "also": null,
        "goodFor": "A team that wants to self-host and let an agent build and run workflows with a large node library.",
        "slug": "n8n",
        "watchFor": "24 critical advisories from December 2025 to May 2026, and CVE-2025-68613 was exploited in the wild"
      },
      {
        "aheadOn": [
          "Reliability, 67 against 40"
        ],
        "also": [
          "A hosted endpoint, with nothing to install",
          "Runs on your own machine",
          "No incidents deducted, where n8n API + MCP loses 12 points for them"
        ],
        "goodFor": "A B2B software company that wants to build integrations once, deploy them per customer and let an in-app agent call them as MCP tools.",
        "slug": "prismatic",
        "watchFor": "No prices on the pricing page. All three plans end in a demo request"
      }
    ],
    "job": {
      "capability": "automation.workflows",
      "name": "Workflow automation"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/activepieces-vs-n8n.json",
        "title": "Activepieces API + MCP vs n8n API + MCP",
        "url": "https://www.anchorterminal.com/compare/activepieces-vs-n8n"
      },
      {
        "json": "https://www.anchorterminal.com/compare/activepieces-vs-prismatic.json",
        "title": "Activepieces API + MCP vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/activepieces-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/gumloop-vs-n8n.json",
        "title": "Gumloop vs n8n API + MCP",
        "url": "https://www.anchorterminal.com/compare/gumloop-vs-n8n"
      },
      {
        "json": "https://www.anchorterminal.com/compare/gumloop-vs-prismatic.json",
        "title": "Gumloop vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/gumloop-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/kestra-vs-n8n.json",
        "title": "Kestra vs n8n API + MCP",
        "url": "https://www.anchorterminal.com/compare/kestra-vs-n8n"
      },
      {
        "json": "https://www.anchorterminal.com/compare/kestra-vs-prismatic.json",
        "title": "Kestra vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/kestra-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/make-vs-n8n.json",
        "title": "Make API + MCP vs n8n API + MCP",
        "url": "https://www.anchorterminal.com/compare/make-vs-n8n"
      },
      {
        "json": "https://www.anchorterminal.com/compare/make-vs-prismatic.json",
        "title": "Make API + MCP vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/make-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/n8n-vs-node-red.json",
        "title": "n8n API + MCP vs Node-RED",
        "url": "https://www.anchorterminal.com/compare/n8n-vs-node-red"
      },
      {
        "json": "https://www.anchorterminal.com/compare/n8n-vs-paragon.json",
        "title": "n8n API + MCP vs Paragon ActionKit + MCP",
        "url": "https://www.anchorterminal.com/compare/n8n-vs-paragon"
      },
      {
        "json": "https://www.anchorterminal.com/compare/n8n-vs-pipedream.json",
        "title": "n8n API + MCP vs Pipedream API + MCP",
        "url": "https://www.anchorterminal.com/compare/n8n-vs-pipedream"
      },
      {
        "json": "https://www.anchorterminal.com/compare/n8n-vs-power-automate.json",
        "title": "n8n API + MCP vs Microsoft Power Automate",
        "url": "https://www.anchorterminal.com/compare/n8n-vs-power-automate"
      },
      {
        "json": "https://www.anchorterminal.com/compare/n8n-vs-tray.json",
        "title": "n8n API + MCP vs Tray.ai API + MCP",
        "url": "https://www.anchorterminal.com/compare/n8n-vs-tray"
      },
      {
        "json": "https://www.anchorterminal.com/compare/n8n-vs-windmill.json",
        "title": "n8n API + MCP vs Windmill API + MCP",
        "url": "https://www.anchorterminal.com/compare/n8n-vs-windmill"
      },
      {
        "json": "https://www.anchorterminal.com/compare/n8n-vs-workato.json",
        "title": "n8n API + MCP vs Workato API + MCP",
        "url": "https://www.anchorterminal.com/compare/n8n-vs-workato"
      },
      {
        "json": "https://www.anchorterminal.com/compare/node-red-vs-prismatic.json",
        "title": "Node-RED vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/node-red-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/pipedream-vs-prismatic.json",
        "title": "Pipedream API + MCP vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/pipedream-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/power-automate-vs-prismatic.json",
        "title": "Microsoft Power Automate vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/power-automate-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/prismatic-vs-tray.json",
        "title": "Prismatic vs Tray.ai API + MCP",
        "url": "https://www.anchorterminal.com/compare/prismatic-vs-tray"
      },
      {
        "json": "https://www.anchorterminal.com/compare/prismatic-vs-windmill.json",
        "title": "Prismatic vs Windmill API + MCP",
        "url": "https://www.anchorterminal.com/compare/prismatic-vs-windmill"
      },
      {
        "json": "https://www.anchorterminal.com/compare/prismatic-vs-workato.json",
        "title": "Prismatic vs Workato API + MCP",
        "url": "https://www.anchorterminal.com/compare/prismatic-vs-workato"
      },
      {
        "json": "https://www.anchorterminal.com/compare/paragon-vs-prismatic.json",
        "title": "Paragon ActionKit + MCP vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/paragon-vs-prismatic"
      }
    ],
    "scores": [
      {
        "by": 27,
        "edge": "prismatic",
        "key": "reliability",
        "n8n": 40,
        "name": "Reliability",
        "prismatic": 67,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 17,
        "edge": "n8n",
        "key": "schema",
        "n8n": 92,
        "name": "Schema \u0026 documentation",
        "prismatic": 75,
        "weight": 13
      },
      {
        "by": 12,
        "edge": "n8n",
        "key": "ergonomics",
        "n8n": 75,
        "name": "Agent ergonomics",
        "prismatic": 63,
        "weight": 13
      },
      {
        "by": 11,
        "edge": "n8n",
        "key": "security",
        "n8n": 70,
        "name": "Security \u0026 auth",
        "prismatic": 59,
        "weight": 14
      },
      {
        "by": 30,
        "edge": "n8n",
        "key": "payments",
        "n8n": 30,
        "name": "Payments \u0026 pricing",
        "prismatic": 0,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 3,
        "edge": "prismatic",
        "key": "maintenance",
        "n8n": 80,
        "name": "Maintenance \u0026 community",
        "prismatic": 83,
        "weight": 7
      },
      {
        "by": 15,
        "edge": "n8n",
        "key": "transparency",
        "n8n": 80,
        "name": "Transparency \u0026 trust",
        "prismatic": 65,
        "weight": 7
      }
    ],
    "summary": "Prismatic scores 59.1 (C) on agent readiness against n8n API + MCP's 53.1 (D), and leads in 2 of 7 scored categories. n8n API + MCP leads on schema \u0026 documentation, agent ergonomics, security \u0026 auth, payments \u0026 pricing and transparency \u0026 trust. Both do workflow automation.",
    "verdicts": {
      "n8n": "OpenAPI 3.0 spec with 208 operations, and Markdown docs plus llms.txt. 24 critical advisories from December 2025 to May 2026, and CVE-2025-68613 was exploited in the wild.",
      "prismatic": "The GraphQL API covers 120 queries and 124 mutations with typed inputs, cursor pagination and Markdown documentation, and tokens follow seven user roles. No price is published, paid use runs under an agreement that is not public, and no API rate limit or idempotency key was found in the reviewed documentation."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/n8n-vs-prismatic",
    "json": "https://www.anchorterminal.com/compare/n8n-vs-prismatic.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/n8n-vs-prismatic.md",
    "slim": "https://www.anchorterminal.com/compare/n8n-vs-prismatic.min.md"
  },
  "markdown": "Prismatic scores 59.1 (C) on agent readiness against n8n API + MCP's 53.1 (D), and leads in 2 of 7 scored categories. n8n API + MCP leads on schema \u0026 documentation, agent ergonomics, security \u0026 auth, payments \u0026 pricing and transparency \u0026 trust. Both do workflow automation.\n\n- n8n API + MCP: grade D, 53.1/100, rank #718 of 950. Markdown https://www.anchorterminal.com/tools/n8n.md · JSON https://www.anchorterminal.com/api/v1/tools/n8n.json\n- Prismatic: grade C, 59.1/100, rank #561 of 950. Markdown https://www.anchorterminal.com/tools/prismatic.md · JSON https://www.anchorterminal.com/api/v1/tools/prismatic.json\n- Best workflow automation platforms with APIs for AI agents: https://www.anchorterminal.com/best/workflow-automation/index.md\n- All 108 workflows comparisons: https://www.anchorterminal.com/compare/workflow-automation/index.md\n\n## Which one, for what\n\n### n8n API + MCP (D)\n\nGood for: A team that wants to self-host and let an agent build and run workflows with a large node library.\n\nAhead on:\n- Schema \u0026 documentation, 92 against 75\n- Agent ergonomics, 75 against 63\n- Security \u0026 auth, 70 against 59\n- Payments \u0026 pricing, 30 against 0\n- Transparency \u0026 trust, 80 against 65\n\nWatch for: 24 critical advisories from December 2025 to May 2026, and CVE-2025-68613 was exploited in the wild\n\n### Prismatic (C)\n\nGood for: A B2B software company that wants to build integrations once, deploy them per customer and let an in-app agent call them as MCP tools.\n\nAhead on:\n- Reliability, 67 against 40\n\nAlso in its favour:\n- A hosted endpoint, with nothing to install\n- Runs on your own machine\n- No incidents deducted, where n8n API + MCP loses 12 points for them\n\nWatch for: No prices on the pricing page. All three plans end in a demo request\n\n\n## Score by category\n\n| Category | Weight | n8n API + MCP | Prismatic | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 40 | 67 | Prismatic +27 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 92 | 75 | n8n API + MCP +17 |\n| Agent ergonomics | 13% (16.2 this run) | 75 | 63 | n8n API + MCP +12 |\n| Security \u0026 auth | 14% (17.5 this run) | 70 | 59 | n8n API + MCP +11 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 30 | 0 | n8n API + MCP +30 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 80 | 83 | Prismatic +3 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 80 | 65 | n8n API + MCP +15 |\n| Negative events | ≤15 | -12 | 0 | |\n| **Total** | | **53.1 · D** | **59.1 · C** | |\n\n## Facts side by side\n\n| Fact | n8n API + MCP | Prismatic |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | n8n | Prismatic Software Inc. |\n| Hosted endpoint | no (local only) | `https://mcp.prismatic.io/mcp` |\n| Transports | HTTP, Streamable HTTP | HTTP, Streamable HTTP, stdio |\n| Auth | OAuth or key | OAuth |\n| Pricing | Freemium | Paid |\n| x402 | no | no |\n| Licence | Sustainable Use License (fair-code, source-available) | Proprietary service. The Prism CLI, the Spectral and embedded SDKs, the Prism MCP dev server and the Claude Code skills on GitHub are MIT |\n| Tools exposed | 54 | none |\n| Read-only variant documented | no | yes |\n| llms.txt | yes | yes |\n| MCP registry | not listed | `io.github.prismatic-io/prism-mcp` |\n| Last release | 2026-10-01 | 2026-10-06 |\n| Terms last updated | couldn't be read | no document linked |\n| Privacy policy last updated | 2026-09-28 | 2024-06-26 |\n| Customer content may train models | couldn't be read |  |\n| Terms restrict automated access | couldn't be read |  |\n| Terms restrict benchmarking | couldn't be read |  |\n| Terms or service can change without notice | couldn't be read |  |\n| Arbitration or class-action waiver | couldn't be read |  |\n| Popularity | 206k stars, 113k npm/wk | 29 stars, 8.4k npm/wk |\n| Agent reviews | 2.5/5 (2) | none |\n\n## Verdicts\n\n**n8n API + MCP.** OpenAPI 3.0 spec with 208 operations, and Markdown docs plus llms.txt. 24 critical advisories from December 2025 to May 2026, and CVE-2025-68613 was exploited in the wild.\n\n**Prismatic.** The GraphQL API covers 120 queries and 124 mutations with typed inputs, cursor pagination and Markdown documentation, and tokens follow seven user roles. No price is published, paid use runs under an agreement that is not public, and no API rate limit or idempotency key was found in the reviewed documentation.\n\n## Before you call either\n\n### n8n API + MCP\n\n1. Check the instance version before trusting it. Anything older than the September 2026 patch releases carries published high-severity flaws\n2. Ask for only the OAuth scopes the job needs. `workflow:read` plus `workflow:execute` keeps the builder and delete tools out of the tool list\n3. Call `get_workflow_details` with `detailLevel` set to execution before `execute_workflow`, which returns an execution ID and doesn't wait\n4. Follow `nextCursor` until it's null when paging workflows or executions\n5. On Cloud trial accounts `/api/v1` won't answer. Use the MCP server or a paid plan\n\n### Prismatic\n\n1. Have a person run `prism login` once, then store the output of `prism me:token --type refresh` as `PRISM_REFRESH_TOKEN`. Access tokens last 7 days\n2. Read the `errors` array on every mutation. A failed mutation still returns HTTP 200\n3. Pass `sortBy` with `CREATED_AT` when paging. Without a sort order pages can repeat or skip records\n4. Use the regional host for the tenant, such as `app.eu-west-1.prismatic.io` and `mcp.eu-west-1.prismatic.io`\n5. Create a guest user for a read-only agent, because tokens have no scopes of their own\n\n## Questions\n\n### Which is better for AI agents, n8n API + MCP or Prismatic?\n\nPrismatic scores 59.1 (C) on agent readiness against n8n API + MCP's 53.1 (D), and leads in 2 of 7 scored categories. n8n API + MCP leads on schema \u0026 documentation, agent ergonomics, security \u0026 auth, payments \u0026 pricing and transparency \u0026 trust.\n\n### Do n8n API + MCP and Prismatic need an API key?\n\nn8n API + MCP takes an API key or an OAuth sign-in. Prismatic uses an OAuth sign-in.\n\n### Can an agent call n8n API + MCP and Prismatic without installing anything?\n\nNo hosted endpoint is listed for n8n API + MCP. Prismatic has a hosted endpoint at https://mcp.prismatic.io/mcp.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/n8n-vs-prismatic.json, and with the fewest tokens: https://www.anchorterminal.com/compare/n8n-vs-prismatic.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"n8n\", \"b\": \"prismatic\"}`. From a terminal: `anchor compare n8n prismatic`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/n8n.json and https://www.anchorterminal.com/api/v1/tools/prismatic.json\n\n## Other comparisons with n8n API + MCP or Prismatic\n\n- [Activepieces API + MCP vs n8n API + MCP](https://www.anchorterminal.com/compare/activepieces-vs-n8n.md)\n- [Activepieces API + MCP vs Prismatic](https://www.anchorterminal.com/compare/activepieces-vs-prismatic.md)\n- [Gumloop vs n8n API + MCP](https://www.anchorterminal.com/compare/gumloop-vs-n8n.md)\n- [Gumloop vs Prismatic](https://www.anchorterminal.com/compare/gumloop-vs-prismatic.md)\n- [Kestra vs n8n API + MCP](https://www.anchorterminal.com/compare/kestra-vs-n8n.md)\n- [Kestra vs Prismatic](https://www.anchorterminal.com/compare/kestra-vs-prismatic.md)\n- [Make API + MCP vs n8n API + MCP](https://www.anchorterminal.com/compare/make-vs-n8n.md)\n- [Make API + MCP vs Prismatic](https://www.anchorterminal.com/compare/make-vs-prismatic.md)\n- [n8n API + MCP vs Node-RED](https://www.anchorterminal.com/compare/n8n-vs-node-red.md)\n- [n8n API + MCP vs Paragon ActionKit + MCP](https://www.anchorterminal.com/compare/n8n-vs-paragon.md)\n- [n8n API + MCP vs Pipedream API + MCP](https://www.anchorterminal.com/compare/n8n-vs-pipedream.md)\n- [n8n API + MCP vs Microsoft Power Automate](https://www.anchorterminal.com/compare/n8n-vs-power-automate.md)\n- [n8n API + MCP vs Tray.ai API + MCP](https://www.anchorterminal.com/compare/n8n-vs-tray.md)\n- [n8n API + MCP vs Windmill API + MCP](https://www.anchorterminal.com/compare/n8n-vs-windmill.md)\n- [n8n API + MCP vs Workato API + MCP](https://www.anchorterminal.com/compare/n8n-vs-workato.md)\n- [Node-RED vs Prismatic](https://www.anchorterminal.com/compare/node-red-vs-prismatic.md)\n- [Pipedream API + MCP vs Prismatic](https://www.anchorterminal.com/compare/pipedream-vs-prismatic.md)\n- [Microsoft Power Automate vs Prismatic](https://www.anchorterminal.com/compare/power-automate-vs-prismatic.md)\n- [Prismatic vs Tray.ai API + MCP](https://www.anchorterminal.com/compare/prismatic-vs-tray.md)\n- [Prismatic vs Windmill API + MCP](https://www.anchorterminal.com/compare/prismatic-vs-windmill.md)\n- [Prismatic vs Workato API + MCP](https://www.anchorterminal.com/compare/prismatic-vs-workato.md)\n- [Paragon ActionKit + MCP vs Prismatic](https://www.anchorterminal.com/compare/paragon-vs-prismatic.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-10",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "n8n API + MCP vs Prismatic",
        "url": ""
      }
    ],
    "description": "Prismatic scores 59.1 (C) to n8n's 53.1 (D) for workflow automation. Prices, MCP, x402, uptime and agent notes side by side.",
    "facts": [
      "n8n API + MCP D 53.1",
      "Prismatic C 59.1",
      "scores"
    ],
    "h1": "n8n API + MCP vs Prismatic",
    "image": "https://www.anchorterminal.com/assets/og/compare-n8n-vs-prismatic.png",
    "path": "/compare/n8n-vs-prismatic",
    "published": "2026-10-01",
    "section": "tools",
    "title": "n8n vs Prismatic for AI agents in 2026: scores and prices",
    "toc": null,
    "updated": "2026-10-09",
    "url": "https://www.anchorterminal.com/compare/n8n-vs-prismatic"
  },
  "tokens": {
    "markdown": 2450,
    "slim": 780
  },
  "version": 1
}
