Head to head · App automation · October 2026 research run

One vs StackOne

StackOne scores 69.1 (B) on agent readiness against One's 66.6 (B), and leads in 4 of 7 scored categories. Both do app automation.

Best agent tool access platforms · All 28 tool access comparisons

Which one, for what

One B

Good for A person or small team that wants one MCP entry with a small tool footprint across many SaaS accounts, with access set per connection and a free plan.

Also in its favour

  • Runs on your own machine

Watch for

The remote server's tools changed from four to three by 30 September 2026, and the site's changelog, last dated 13 July 2026, has no entry for it

StackOne B

Good for A company that wants one governed MCP endpoint for staff agents across business systems, and product teams embedding per-customer connections with HR, recruiting and CRM coverage.

Ahead on

  • Payments & pricing, 38 against 30
  • Transparency & trust, 69 against 63

Also in its favour

  • Free to start without a card

Watch for

Session token URLs (https://api.stackone.com/mcp?token=...) put the credential in the query string, cover one linked account and expire after one year by default

Score by category

CategoryWeight this runOneStackOneEdge
Reliability16%208280One +2
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.27778StackOne +1
Agent ergonomics13%16.27375StackOne +2
Security & auth14%17.56969even
Payments & pricing10%12.53038StackOne +8
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.88684One +2
Transparency & trust7%8.86369StackOne +6
Negative events≤15-3-2
Total66.6 · B69.1 · B

Facts side by side

FactOneStackOne
KindMCP serverMCP server
VendorOne Systems, Inc.StackOne Technologies Limited
Hosted endpointhttps://mcp.withone.ai/mcphttps://mcp.stackone.com/mcp
TransportsStreamable HTTP, stdioStreamable HTTP, HTTP
AuthOAuth or keyOAuth or key
PricingFreemiumFreemium
x402nono
LicenceProprietary hosted service under One's Terms of Service. The local MCP server package @withone/mcp is MIT. The CLI package @withone/cli has no licence field or licence file. The knowledge base is under the One Knowledge Commons Licence v1.0, which is not an OSI licenceProprietary service under StackOne's SaaS Terms and Conditions. The Agent SDKs (@stackone/ai, stackone-ai) and the Defender package (@stackone/defender) are Apache-2.0
Tools exposed3none
Read-only variant documentednono
llms.txtyesyes
MCP registryai.withone/mcpcom.stackone/mcp
Last release2026-10-062026-09-24
Terms last updated2026-03-062026-03-30
Privacy policy last updated2026-07-222023-12-01
Customer content may train modelsnot found in the textnot found in the text
Terms restrict automated accessnot found in the textnot found in the text
Terms restrict benchmarkingyesnot found in the text
Terms or service can change without noticenot found in the textnot found in the text
Arbitration or class-action waivernot found in the textnot found in the text
Popularity11 stars, 681 npm/wk30 stars, 277 npm/wk

Verdicts

One

One's remote MCP server has three tools, OAuth 2.1 sign-in with PKCE and a consent screen that sets read only, read and write, full or per-action access for each connection. A person must sign in through a browser, the SOC 2 audit is unfinished, and the site's changelog stops at 13 July 2026.

StackOne

StackOne's MCP server signs each person in with OAuth, lets them grant individual accounts and actions, and by default exposes two search and execute tools in place of the full catalogue. Session token URLs carry the credential in the query string for a year by default, and the Consumption Schedule and pricing page disagree on whether failed calls are billed.

Before you call either

One

  1. Call list_one_integrations first and read each connection's access field. When the policy is actions, run those ids directly without calling find_one_actions
  2. Send every operation a task needs in one find_one_actions call, up to 10 requests, each a platform and a short intent with no IDs, names or message text
  3. When a document comes back as a digest, call find_one_actions again with load and a section name. Don't guess parameters the digest left out
  4. After a timeout on execute_one_action, check whether the write took effect before sending it again. No idempotency key is documented
  5. A 403 for a call outside the grant won't succeed on retry. Ask the user to widen the grant in the dashboard or reconnect

StackOne

  1. Send Accept: application/json,text/event-stream on every MCP request to https://api.stackone.com/mcp, by POST only. Without it the server answers 406
  2. In search_execute mode call {provider}_search_actions first and pass the returned action_id to {provider}_execute_action. Never hardcode action ids
  3. Pass the API key as the Basic auth username with an empty password, and name the linked account in x-account-id
  4. On 429 or 408 wait the seconds given in Retry-After. StackOne has already retried a provider's 429 up to five times within a 60-second request lifetime
  5. On 412 read errorCode and details.statusReasons. AccountErrorStatus needs a person to re-authenticate the linked account

Questions

Which is better for AI agents, One or StackOne?

StackOne scores 69.1 (B) on agent readiness against One's 66.6 (B), and leads in 4 of 7 scored categories.

Do One and StackOne need an API key?

Both take an API key or an OAuth sign-in.

Can an agent call One and StackOne without installing anything?

Yes. One has a hosted endpoint at https://mcp.withone.ai/mcp and StackOne at https://mcp.stackone.com/mcp.

Other comparisons with One or StackOne

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.