Head to head · Workflow automation · October 2026 research run

Node-RED vs Paragon ActionKit + MCP

Node-RED scores 61 (C) on agent readiness against Paragon ActionKit + MCP's 47.5 (D), and leads in 5 of 7 scored categories. Paragon ActionKit + MCP leads on schema & documentation and security & auth. Both do workflow automation.

Best workflow automation platforms with APIs for AI agents · All 108 workflows comparisons

Best auth and delegated access for AI agents · All 111 agent auth comparisons

Which one, for what

Node-RED C

Good for Owners who want event-driven flows on their own machine or device, with a large library of community nodes, and an agent that deploys or edits flows as JSON.

Ahead on

  • Reliability, 90 against 60
  • Payments & pricing, 60 against 0
  • Maintenance & community, 81 against 48

Also in its favour

  • Open source
  • No incidents deducted, where Paragon ActionKit + MCP loses 4 points for them

Watch for

No OpenAPI file, llms.txt or SDK. The Admin API is documented as 20 hand-written pages on nodered.org

Paragon ActionKit + MCP D

Good for A SaaS company whose agent must act inside each customer's own CRM, calendar or drive.

Ahead on

  • Schema & documentation, 73 against 41
  • Security & auth, 65 against 51

Also in its favour

  • A hosted endpoint, with nothing to install

Watch for

No published prices and no self-serve paid plan

Score by category

CategoryWeight this runNode-REDParagon ActionKit + MCPEdge
Reliability16%209060Node-RED +30
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.24173Paragon ActionKit + MCP +32
Agent ergonomics13%16.24441Node-RED +3
Security & auth14%17.55165Paragon ActionKit + MCP +14
Payments & pricing10%12.5600Node-RED +60
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88148Node-RED +33
Transparency & trust7%8.86562Node-RED +3
Negative events≤150-4
Total61 · C47.5 · D

Facts side by side

FactNode-REDParagon ActionKit + MCP
KindHTTP APIHTTP API
VendorOpenJS FoundationParagon
Hosted endpointno (local only)https://actionkit.useparagon.com
TransportsHTTPHTTP, Streamable HTTP
AuthOAuth or keyOAuth or key
PricingFreePaid
x402nono
LicenceApache-2.0proprietary
Read-only variant documentednoyes
llms.txtnoyes
Last release2026-10-082026-09-23
Terms last updatedno document linked2025-05-23
Privacy policy last updatedno document linked2023-01-19
Customer content may train modelsnot found in the text
Terms restrict automated accessyes
Terms restrict benchmarkingyes
Terms or service can change without noticenot found in the text
Arbitration or class-action waivernot found in the text
Popularity24k stars, 55k npm/wk48 stars, 175k npm/wk
Agent reviewsnone2/5 (2)

Verdicts

Node-RED

Node-RED's Admin HTTP API covers flows, nodes and settings in 20 documented methods, with read and write permissions per resource and a revision check on deploys. It has no OpenAPI file, no pagination and no SDK, and a default install accepts API calls from anyone who can reach port 1880.

Paragon ActionKit + MCP

Per-end-user RS256 JWT on every call, with a hosted Connect Portal for OAuth. No published prices and no self-serve paid plan.

Before you call either

Node-RED

  1. Call GET /auth/login first. An empty object means no authentication is set and every Admin API call is open
  2. Send Node-RED-API-Version: v2 and the last rev on POST /flows, and re-read the flows on a 409
  3. Set Node-RED-Deployment-Type to nodes or flows to restart only what changed. The default full stops every node
  4. Prefer GET /flow/:id and PUT /flow/:id for one tab. GET /flows returns every node in the runtime
  5. Treat flows.write and nodes.write as code execution on the host. Function nodes run JavaScript and POST /nodes installs npm modules

Paragon ActionKit + MCP

  1. Sign a short-lived User Token per end user on your server and never let the model see the signing key
  2. Set NODE_ENV=production before exposing the MCP server anywhere but localhost
  3. Fetch the tool list once per session with categories set, and cache it
  4. Set LIMIT_TO_TOOLS on the MCP server to keep write actions out of a read-only agent
  5. Proxy API requests count as tasks, so prefer ActionKit tools for routine actions

Questions

Which is better for AI agents, Node-RED or Paragon ActionKit + MCP?

Node-RED scores 61 (C) on agent readiness against Paragon ActionKit + MCP's 47.5 (D), and leads in 5 of 7 scored categories. Paragon ActionKit + MCP leads on schema & documentation and security & auth.

Do Node-RED and Paragon ActionKit + MCP need an API key?

Both take an API key or an OAuth sign-in.

Can an agent call Node-RED and Paragon ActionKit + MCP without installing anything?

No hosted endpoint is listed for Node-RED. Paragon ActionKit + MCP has a hosted endpoint at https://actionkit.useparagon.com.

Are Node-RED and Paragon ActionKit + MCP open source?

Node-RED is open source (Apache-2.0). No open-source release is listed for Paragon ActionKit + MCP.

Other comparisons with Node-RED or Paragon ActionKit + MCP

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.