{
  "data": {
    "a": {
      "slug": "paragon",
      "name": "Paragon ActionKit + MCP",
      "vendor": "Paragon",
      "vendorUrl": "https://www.useparagon.com",
      "kind": "http-api",
      "category": "workflow-automation",
      "summary": "Embedded integration platform for SaaS products.",
      "url": "https://www.anchorterminal.com/tools/paragon",
      "markdownUrl": "https://www.anchorterminal.com/tools/paragon.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/paragon.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/paragon.json",
      "repo": "https://github.com/useparagon/paragon-mcp",
      "license": "proprietary",
      "transports": [
        "http",
        "streamable-http"
      ],
      "remoteUrl": "https://actionkit.useparagon.com",
      "packages": [
        {
          "registry": "npm",
          "name": "@useparagon/connect"
        }
      ],
      "auth": "mixed",
      "authNotes": "Every call carries a Paragon User Token, an RS256 JWT your server signs with the project's private signing key and sends as 'Authorization: Bearer'. It names the end user, so each tool call runs against that user's connected accounts. The self-hosted MCP server takes the same token and binds it to the session.",
      "pricing": "paid",
      "pricingNotes": "Pro and Enterprise plans, both quoted by sales and priced by the number of Connected Users (customer tenants), with a free trial. Workflows, ActionKit and Managed Sync come with default usage per Connected User. Successful workflow steps and every Proxy API request count as tasks against a monthly limit with no rollover. No prices are published (https://www.useparagon.com/pricing).",
      "priceSummary": "Paid",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402 support in Paragon docs or pricing (checked 2026-09-30).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 48,
        "npmWeekly": 175443,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.useparagon.com/actionkit/overview",
      "llmsTxt": "https://docs.useparagon.com/llms.txt",
      "openapi": "https://docs.useparagon.com/actionkit/openapi.json",
      "capabilities": [
        "automation.embedded",
        "automation.workflows",
        "automation.apps",
        "automation.auth",
        "automation.webhooks",
        "agent.tools"
      ],
      "tags": [
        "hosted",
        "mcp",
        "llms-txt",
        "openapi",
        "typescript",
        "enterprise",
        "webhooks"
      ],
      "lastRelease": "2026-09-23",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 47.5,
        "grade": "D",
        "agentReady": false,
        "rank": 833,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 13,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 41,
          "maintenance": 48,
          "payments": 0,
          "reliability": 60,
          "schema": 73,
          "security": 65,
          "transparency": 62
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": -4,
        "negativeNotes": [
          "As of the 30 September 2026 commit, the self-hosted MCP server defaults `NODE_ENV` to development, and in development `/mcp` and `/sse` sign a user token for whatever ID arrives in `?user=`. The Dockerfile and the image its workflow publishes don't set `NODE_ENV`, so a server started from that image without the variable lets anyone who can reach it impersonate any end user. The README documents the behaviour and the compose file sets production, so the deduction is modest (https://github.com/useparagon/paragon-mcp/blob/main/src/index.ts, https://github.com/useparagon/paragon-mcp/blob/main/src/utils.ts)."
        ],
        "verdict": "Per-end-user RS256 JWT on every call, with a hosted Connect Portal for OAuth. No published prices and no self-serve paid plan.",
        "bestFor": "A SaaS company whose agent must act inside each customer's own CRM, calendar or drive.",
        "strengths": [
          "Per-end-user RS256 JWT on every call, with a hosted Connect Portal for OAuth",
          "ActionKit lists tools as JSON Schema and has an OpenAPI 3.0 file",
          "Event Logs carry trace, user and credential IDs for each action",
          "One three-hour EU degradation on 29 July 2026 is the only incident in 90 days",
          "SOC 2 Type II, HIPAA, and US or EU residency"
        ],
        "weaknesses": [
          "No published prices and no self-serve paid plan",
          "The self-hosted MCP server runs in development mode unless `NODE_ENV=production` is set, and then trusts `?user=`",
          "No error schemas in the OpenAPI file, no ActionKit rate limit and no tool annotations",
          "Changelog's newest entry is April 2026",
          "No security.txt, and the MCP server's licence is stated two ways with no `LICENSE` file"
        ],
        "agentNotes": [
          "Sign a short-lived User Token per end user on your server and never let the model see the signing key",
          "Set `NODE_ENV=production` before exposing the MCP server anywhere but localhost",
          "Fetch the tool list once per session with `categories` set, and cache it",
          "Set `LIMIT_TO_TOOLS` on the MCP server to keep write actions out of a read-only agent",
          "Proxy API requests count as tasks, so prefer ActionKit tools for routine actions"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "D",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 47.5
          }
        ],
        "editorialScores": {
          "ergonomics": 41,
          "maintenance": 48,
          "payments": 0,
          "reliability": 60,
          "schema": 73,
          "security": 65,
          "transparency": 43
        },
        "provenanceScore": 80
      },
      "connect": {
        "install": "npm install @useparagon/connect",
        "http": "curl https://actionkit.useparagon.com/projects/$PARAGON_PROJECT_ID/tools -H \"Authorization: Bearer $PARAGON_USER_TOKEN\"",
        "claudeCode": "claude mcp add --transport http paragon http://localhost:3001/mcp --header \"Authorization: Bearer ${PARAGON_USER_TOKEN}\"",
        "config": {
          "mcpServers": {
            "paragon": {
              "headers": {
                "Authorization": "Bearer ${PARAGON_USER_TOKEN}"
              },
              "url": "http://localhost:3001/mcp"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/automation.embedded",
        "tool": "https://letme.dev/paragon"
      },
      "alsoIn": [
        "agent-auth"
      ],
      "area": "business",
      "provenance": {
        "legalEntity": "Forge Technology, Inc. (d/b/a Paragon)",
        "domain": "useparagon.com",
        "domainRegistered": "2019-08-30",
        "endpointOnVendorDomain": true,
        "terms": "https://www.useparagon.com/terms-of-service",
        "privacy": "https://www.useparagon.com/privacy-policy",
        "statusPage": "https://status.useparagon.com",
        "changelog": "https://docs.useparagon.com/changelog/product-updates",
        "securityTxt": "none",
        "checked": "2026-09-30",
        "score": 80
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/paragon.json",
      "live": {
        "slug": "paragon",
        "probe": {
          "target": "https://actionkit.useparagon.com",
          "method": "get",
          "lastAt": "2026-10-10T02:07:19.54689738Z",
          "lastOk": true,
          "lastStatus": 200,
          "lastMs": 314,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 326,
          "p95ms24h": 604,
          "samples24h": 250,
          "samples30d": 2458,
          "days": [
            {
              "date": "2026-09-30",
              "probes": 35,
              "ok": 35
            },
            {
              "date": "2026-10-01",
              "probes": 276,
              "ok": 276
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-05",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-06",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-07",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-08",
              "probes": 268,
              "ok": 268
            },
            {
              "date": "2026-10-09",
              "probes": 250,
              "ok": 250
            },
            {
              "date": "2026-10-10",
              "probes": 22,
              "ok": 22
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.useparagon.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-10T02:06:22.248266248Z"
        },
        "versions": [
          {
            "registry": "npm",
            "name": "@useparagon/connect",
            "version": "3.1.0",
            "seenAt": "2026-10-09T17:12:01.135974005Z"
          }
        ],
        "githubStars": 48,
        "npmWeekly": 148245,
        "securityTxt": {
          "url": "https://useparagon.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-09T15:39:31.983485923Z"
        },
        "llmsTxt": {
          "url": "https://docs.useparagon.com/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-09T14:02:34.147462922Z"
        },
        "domain": {
          "domain": "useparagon.com",
          "registered": "2019-08-30",
          "source": "https://rdap.verisign.com/com/v1/domain/useparagon.com",
          "checkedAt": "2026-10-04T13:08:02.741729991Z"
        },
        "pages": [
          {
            "url": "https://docs.useparagon.com/changelog/product-updates",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-09T18:38:39.01055202Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "1f693d6387f4"
          },
          {
            "url": "https://www.useparagon.com/pricing",
            "kind": "pricing",
            "status": 304,
            "checkedAt": "2026-10-09T18:55:19.561742894Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "8c248050adff"
          },
          {
            "url": "https://www.useparagon.com/privacy-policy",
            "kind": "privacy",
            "status": 304,
            "checkedAt": "2026-10-09T18:55:21.821371215Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "63ed04f01ce4"
          },
          {
            "url": "https://www.useparagon.com/terms-of-service",
            "kind": "terms",
            "status": 304,
            "checkedAt": "2026-10-09T18:55:23.800429843Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "c2cc0e396ab4"
          }
        ],
        "updatedAt": "2026-10-10T02:07:19.54689738Z"
      }
    },
    "answer": "Prismatic scores 59.1 (C) on agent readiness against Paragon ActionKit + MCP's 47.5 (D), and leads in 5 of 7 scored categories. Paragon ActionKit + MCP leads on security \u0026 auth.",
    "b": {
      "slug": "prismatic",
      "name": "Prismatic",
      "vendor": "Prismatic Software Inc.",
      "vendorUrl": "https://prismatic.io",
      "kind": "http-api",
      "category": "workflow-automation",
      "summary": "Prismatic is an embedded integration platform for B2B software companies. Teams build integrations in a low-code designer or in TypeScript, deploy them to customers, and manage them through a GraphQL API, the Prism CLI and MCP servers.",
      "url": "https://www.anchorterminal.com/tools/prismatic",
      "markdownUrl": "https://www.anchorterminal.com/tools/prismatic.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/prismatic.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/prismatic.json",
      "repo": "https://github.com/prismatic-io/prism",
      "license": "Proprietary service. The Prism CLI, the Spectral and embedded SDKs, the Prism MCP dev server and the Claude Code skills on GitHub are MIT",
      "transports": [
        "http",
        "streamable-http",
        "stdio"
      ],
      "remoteUrl": "https://mcp.prismatic.io/mcp",
      "packages": [
        {
          "registry": "npm",
          "name": "@prismatic-io/prism"
        },
        {
          "registry": "npm",
          "name": "@prismatic-io/prism-mcp"
        },
        {
          "registry": "npm",
          "name": "@prismatic-io/spectral"
        },
        {
          "registry": "npm",
          "name": "@prismatic-io/embedded"
        }
      ],
      "auth": "oauth",
      "authNotes": "Access starts with a person creating an account, by free trial or contract, and logging in through the browser (`prism login`). The API takes that user's JWT as a Bearer token. `prism me:token --type refresh` prints a refresh token for headless use, exchanged at `/auth/refresh` for an access token valid for 7 days. Tokens have no scopes of their own and act with the user's role. The hosted MCP flow server uses MCP OAuth or the same Bearer token, and embedded end users get a JWT signed by the customer's backend.",
      "pricing": "paid",
      "pricingNotes": "No public prices. The pricing page lists Scale, Enterprise and Custom plans with volume per-instance pricing, each ending in a demo request. A free trial exists, and the Terms of Use set it at 30 days unless stated otherwise at signup. Whether the trial needs a card could not be read because the signup form is drawn by script. Contracts set fair use limits in gigabyte-seconds of compute per instance per month (checked 2026-10-09).",
      "priceSummary": "Paid",
      "where": "both",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs index, the API docs or the pricing page (checked 2026-10-09).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 29,
        "npmWeekly": 8416,
        "pypiWeekly": null,
        "asOf": "2026-10-09"
      },
      "docsUrl": "https://prismatic.io/docs/api/",
      "llmsTxt": "https://prismatic.io/docs/llms.txt",
      "registryName": "io.github.prismatic-io/prism-mcp",
      "capabilities": [
        "automation.workflows",
        "automation.embedded",
        "automation.apps",
        "automation.code",
        "automation.webhooks",
        "automation.auth",
        "agent.tools"
      ],
      "tags": [
        "hosted",
        "enterprise",
        "graphql",
        "mcp",
        "cli",
        "oauth",
        "llms-txt",
        "typescript",
        "sales-led",
        "status-page",
        "soc2",
        "webhooks",
        "closed-source"
      ],
      "lastRelease": "2026-10-06",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 59.1,
        "grade": "C",
        "agentReady": false,
        "rank": 561,
        "ranked": true,
        "rankOf": 950,
        "categoryRank": 6,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 63,
          "maintenance": 83,
          "payments": 0,
          "reliability": 67,
          "schema": 75,
          "security": 59,
          "transparency": 65
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-09"
        },
        "negative": 0,
        "verdict": "The GraphQL API covers 120 queries and 124 mutations with typed inputs, cursor pagination and Markdown documentation, and tokens follow seven user roles. No price is published, paid use runs under an agreement that is not public, and no API rate limit or idempotency key was found in the reviewed documentation.",
        "bestFor": "A B2B software company that wants to build integrations once, deploy them per customer and let an in-app agent call them as MCP tools.",
        "strengths": [
          "GraphQL API with 120 documented queries and 124 mutations, field selection, cursor pagination and per-query filters",
          "Every docs page has a Markdown twin, indexed by `llms.txt` at prismatic.io/docs/llms.txt",
          "Hosted MCP flow server in seven regions, with OAuth 2.0 and endpoints scoped to one integration or one instance",
          "Seven organisation roles, including a read-only guest and a third-party role limited to named integrations, components or customers",
          "Dated changelog with ten entries from 20 August to 1 October 2026, and CLI and SDK releases in the same weeks"
        ],
        "weaknesses": [
          "No prices on the pricing page. All three plans end in a demo request",
          "Paid use is governed by a separate agreement that is not published. The public terms cover the website and 30-day trials",
          "No API rate limit, `Retry-After` behaviour or idempotency key found in the reviewed documentation",
          "API tokens carry the whole role of the user who created them, and revoking one refresh token revokes all of that user's",
          "Mutation failures return HTTP 200 with an `errors` array of field and message, with no error codes"
        ],
        "agentNotes": [
          "Have a person run `prism login` once, then store the output of `prism me:token --type refresh` as `PRISM_REFRESH_TOKEN`. Access tokens last 7 days",
          "Read the `errors` array on every mutation. A failed mutation still returns HTTP 200",
          "Pass `sortBy` with `CREATED_AT` when paging. Without a sort order pages can repeat or skip records",
          "Use the regional host for the tenant, such as `app.eu-west-1.prismatic.io` and `mcp.eu-west-1.prismatic.io`",
          "Create a guest user for a read-only agent, because tokens have no scopes of their own"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 59.1
          }
        ],
        "editorialScores": {
          "ergonomics": 63,
          "maintenance": 83,
          "payments": 0,
          "reliability": 67,
          "schema": 75,
          "security": 59,
          "transparency": 40
        },
        "provenanceScore": 89
      },
      "connect": {
        "install": "npm install --global @prismatic-io/prism",
        "http": "curl https://app.prismatic.io/api --request POST --header \"Authorization: Bearer ${PRISMATIC_API_TOKEN}\" --header \"Content-Type: application/json\" --data '{\"query\": \"query { integrations { nodes { id name }}}\"}'",
        "claudeCode": "claude mcp add-json prismatic '{\"type\":\"stdio\",\"command\":\"npx\",\"args\":[\"-y\",\"mcp-remote\",\"https://mcp.prismatic.io/mcp\"]}'",
        "config": {
          "mcpServers": {
            "prism": {
              "args": [
                "-y",
                "@prismatic-io/prism-mcp",
                "."
              ],
              "command": "npx",
              "env": {
                "PRISMATIC_URL": "https://app.prismatic.io"
              },
              "type": "stdio"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/automation.workflows",
        "tool": "https://letme.dev/prismatic"
      },
      "area": "business",
      "provenance": {
        "legalEntity": "Prismatic Software Inc.",
        "domain": "prismatic.io",
        "domainRegistered": "2016-07-09",
        "endpointOnVendorDomain": true,
        "terms": "",
        "privacy": "https://prismatic.io/legal/privacy/",
        "statusPage": "https://www.prismatic-status.io",
        "changelog": "https://prismatic.io/docs/changelog/",
        "securityTxt": "valid",
        "checked": "2026-10-09",
        "notes": [
          "The Terms of Use (last updated 17 March 2023) name Prismatic Software Inc., 5013 S Louise Ave #122, Sioux Falls, SD 57108, and are governed by South Dakota law.",
          "No terms link is recorded. The Terms of Use at https://prismatic.io/legal/terms/ are website terms that also cover trial accounts, and they say non-trial use of the Services is subject to a separate agreement, which is not published.",
          "The Privacy Policy (last updated 26 June 2024) covers the website and the web application at app.prismatic.io.",
          "security.txt at https://prismatic.io/.well-known/security.txt names security@prismatic.io and a PGP key and expires on 16 June 2027.",
          "The API, the regional hosts and the MCP flow server are all on prismatic.io subdomains. The status page is on prismatic-status.io and the trust centre on trust-prismatic.io.",
          "RDAP for prismatic.io gives a registration date of 2016-07-09."
        ],
        "score": 89
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/prismatic.json",
      "live": {
        "slug": "prismatic",
        "probe": {
          "target": "https://mcp.prismatic.io/mcp",
          "method": "get",
          "lastAt": "2026-10-10T02:07:21.289248186Z",
          "lastOk": true,
          "lastStatus": 401,
          "lastMs": 301,
          "lastNote": "asks for credentials",
          "authRequired": true,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 300,
          "p95ms24h": 389,
          "samples24h": 107,
          "samples30d": 107,
          "days": [
            {
              "date": "2026-10-09",
              "probes": 85,
              "ok": 85
            },
            {
              "date": "2026-10-10",
              "probes": 22,
              "ok": 22
            }
          ]
        },
        "vendorStatus": {
          "page": "https://www.prismatic-status.io",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-10T02:06:24.908783132Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "prismatic-io/prism",
            "version": "v10.5.0",
            "released": "2026-09-30",
            "seenAt": "2026-10-09T17:14:48.08709817Z"
          },
          {
            "registry": "npm",
            "name": "@prismatic-io/embedded",
            "version": "4.14.0",
            "seenAt": "2026-10-09T17:14:46.07500175Z"
          },
          {
            "registry": "npm",
            "name": "@prismatic-io/prism",
            "version": "10.5.0",
            "seenAt": "2026-10-09T17:14:41.869797583Z"
          },
          {
            "registry": "npm",
            "name": "@prismatic-io/prism-mcp",
            "version": "1.5.0",
            "seenAt": "2026-10-09T17:14:42.93328997Z"
          },
          {
            "registry": "npm",
            "name": "@prismatic-io/spectral",
            "version": "10.34.1",
            "seenAt": "2026-10-09T17:14:44.108249111Z"
          }
        ],
        "githubStars": 29,
        "npmWeekly": 8416,
        "pages": [
          {
            "url": "https://prismatic.io/docs/changelog/",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-09T18:43:50.569023777Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "8f4fb9151364"
          },
          {
            "url": "https://prismatic.io/legal/privacy/",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-09T18:43:53.22345549Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "6521c9b1a5d9"
          }
        ],
        "updatedAt": "2026-10-10T02:07:21.289248186Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Paragon",
        "b": "Prismatic Software Inc.",
        "name": "Vendor"
      },
      {
        "a": "https://actionkit.useparagon.com",
        "b": "https://mcp.prismatic.io/mcp",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP, Streamable HTTP",
        "b": "HTTP, Streamable HTTP, stdio",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "OAuth",
        "name": "Auth"
      },
      {
        "a": "Paid",
        "b": "Paid",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "proprietary",
        "b": "Proprietary service. The Prism CLI, the Spectral and embedded SDKs, the Prism MCP dev server and the Claude Code skills on GitHub are MIT",
        "name": "Licence"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "not listed",
        "b": "io.github.prismatic-io/prism-mcp",
        "name": "MCP registry"
      },
      {
        "a": "2026-09-23",
        "b": "2026-10-06",
        "name": "Last release"
      },
      {
        "a": "2025-05-23",
        "b": "no document linked",
        "name": "Terms last updated"
      },
      {
        "a": "2023-01-19",
        "b": "2024-06-26",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "",
        "name": "Customer content may train models"
      },
      {
        "a": "yes",
        "b": "",
        "name": "Terms restrict automated access"
      },
      {
        "a": "yes",
        "b": "",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "not found in the text",
        "b": "",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "48 stars, 175k npm/wk",
        "b": "29 stars, 8.4k npm/wk",
        "name": "Popularity"
      },
      {
        "a": "2/5 (2)",
        "b": "none",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Prismatic scores 59.1 (C) on agent readiness against Paragon ActionKit + MCP's 47.5 (D), and leads in 5 of 7 scored categories. Paragon ActionKit + MCP leads on security \u0026 auth.",
        "question": "Which is better for AI agents, Paragon ActionKit + MCP or Prismatic?"
      },
      {
        "answer": "Paragon ActionKit + MCP takes an API key or an OAuth sign-in. Prismatic uses an OAuth sign-in.",
        "question": "Do Paragon ActionKit + MCP and Prismatic need an API key?"
      },
      {
        "answer": "Yes. Paragon ActionKit + MCP has a hosted endpoint at https://actionkit.useparagon.com and Prismatic at https://mcp.prismatic.io/mcp.",
        "question": "Can an agent call Paragon ActionKit + MCP and Prismatic without installing anything?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Security \u0026 auth, 65 against 59"
        ],
        "also": null,
        "goodFor": "A SaaS company whose agent must act inside each customer's own CRM, calendar or drive.",
        "slug": "paragon",
        "watchFor": "No published prices and no self-serve paid plan"
      },
      {
        "aheadOn": [
          "Reliability, 67 against 60",
          "Agent ergonomics, 63 against 41",
          "Maintenance \u0026 community, 83 against 48"
        ],
        "also": [
          "Runs on your own machine",
          "No incidents deducted, where Paragon ActionKit + MCP loses 4 points for them"
        ],
        "goodFor": "A B2B software company that wants to build integrations once, deploy them per customer and let an in-app agent call them as MCP tools.",
        "slug": "prismatic",
        "watchFor": "No prices on the pricing page. All three plans end in a demo request"
      }
    ],
    "job": {
      "capability": "automation.embedded",
      "name": "Embedded automation"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/activepieces-vs-paragon.json",
        "title": "Activepieces API + MCP vs Paragon ActionKit + MCP",
        "url": "https://www.anchorterminal.com/compare/activepieces-vs-paragon"
      },
      {
        "json": "https://www.anchorterminal.com/compare/activepieces-vs-prismatic.json",
        "title": "Activepieces API + MCP vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/activepieces-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/gumloop-vs-paragon.json",
        "title": "Gumloop vs Paragon ActionKit + MCP",
        "url": "https://www.anchorterminal.com/compare/gumloop-vs-paragon"
      },
      {
        "json": "https://www.anchorterminal.com/compare/gumloop-vs-prismatic.json",
        "title": "Gumloop vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/gumloop-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/kestra-vs-paragon.json",
        "title": "Kestra vs Paragon ActionKit + MCP",
        "url": "https://www.anchorterminal.com/compare/kestra-vs-paragon"
      },
      {
        "json": "https://www.anchorterminal.com/compare/kestra-vs-prismatic.json",
        "title": "Kestra vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/kestra-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/make-vs-paragon.json",
        "title": "Make API + MCP vs Paragon ActionKit + MCP",
        "url": "https://www.anchorterminal.com/compare/make-vs-paragon"
      },
      {
        "json": "https://www.anchorterminal.com/compare/make-vs-prismatic.json",
        "title": "Make API + MCP vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/make-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/n8n-vs-paragon.json",
        "title": "n8n API + MCP vs Paragon ActionKit + MCP",
        "url": "https://www.anchorterminal.com/compare/n8n-vs-paragon"
      },
      {
        "json": "https://www.anchorterminal.com/compare/n8n-vs-prismatic.json",
        "title": "n8n API + MCP vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/n8n-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/node-red-vs-paragon.json",
        "title": "Node-RED vs Paragon ActionKit + MCP",
        "url": "https://www.anchorterminal.com/compare/node-red-vs-paragon"
      },
      {
        "json": "https://www.anchorterminal.com/compare/node-red-vs-prismatic.json",
        "title": "Node-RED vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/node-red-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/paragon-vs-power-automate.json",
        "title": "Paragon ActionKit + MCP vs Microsoft Power Automate",
        "url": "https://www.anchorterminal.com/compare/paragon-vs-power-automate"
      },
      {
        "json": "https://www.anchorterminal.com/compare/pipedream-vs-prismatic.json",
        "title": "Pipedream API + MCP vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/pipedream-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/power-automate-vs-prismatic.json",
        "title": "Microsoft Power Automate vs Prismatic",
        "url": "https://www.anchorterminal.com/compare/power-automate-vs-prismatic"
      },
      {
        "json": "https://www.anchorterminal.com/compare/prismatic-vs-tray.json",
        "title": "Prismatic vs Tray.ai API + MCP",
        "url": "https://www.anchorterminal.com/compare/prismatic-vs-tray"
      },
      {
        "json": "https://www.anchorterminal.com/compare/prismatic-vs-windmill.json",
        "title": "Prismatic vs Windmill API + MCP",
        "url": "https://www.anchorterminal.com/compare/prismatic-vs-windmill"
      },
      {
        "json": "https://www.anchorterminal.com/compare/prismatic-vs-workato.json",
        "title": "Prismatic vs Workato API + MCP",
        "url": "https://www.anchorterminal.com/compare/prismatic-vs-workato"
      },
      {
        "json": "https://www.anchorterminal.com/compare/paragon-vs-pipedream.json",
        "title": "Paragon ActionKit + MCP vs Pipedream API + MCP",
        "url": "https://www.anchorterminal.com/compare/paragon-vs-pipedream"
      },
      {
        "json": "https://www.anchorterminal.com/compare/paragon-vs-tray.json",
        "title": "Paragon ActionKit + MCP vs Tray.ai API + MCP",
        "url": "https://www.anchorterminal.com/compare/paragon-vs-tray"
      },
      {
        "json": "https://www.anchorterminal.com/compare/paragon-vs-windmill.json",
        "title": "Paragon ActionKit + MCP vs Windmill API + MCP",
        "url": "https://www.anchorterminal.com/compare/paragon-vs-windmill"
      },
      {
        "json": "https://www.anchorterminal.com/compare/paragon-vs-workato.json",
        "title": "Paragon ActionKit + MCP vs Workato API + MCP",
        "url": "https://www.anchorterminal.com/compare/paragon-vs-workato"
      }
    ],
    "scores": [
      {
        "by": 7,
        "edge": "prismatic",
        "key": "reliability",
        "name": "Reliability",
        "paragon": 60,
        "prismatic": 67,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 2,
        "edge": "prismatic",
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "paragon": 73,
        "prismatic": 75,
        "weight": 13
      },
      {
        "by": 22,
        "edge": "prismatic",
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "paragon": 41,
        "prismatic": 63,
        "weight": 13
      },
      {
        "by": 6,
        "edge": "paragon",
        "key": "security",
        "name": "Security \u0026 auth",
        "paragon": 65,
        "prismatic": 59,
        "weight": 14
      },
      {
        "by": 0,
        "edge": "",
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "paragon": 0,
        "prismatic": 0,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 35,
        "edge": "prismatic",
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "paragon": 48,
        "prismatic": 83,
        "weight": 7
      },
      {
        "by": 3,
        "edge": "prismatic",
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "paragon": 62,
        "prismatic": 65,
        "weight": 7
      }
    ],
    "summary": "Prismatic scores 59.1 (C) on agent readiness against Paragon ActionKit + MCP's 47.5 (D), and leads in 5 of 7 scored categories. Paragon ActionKit + MCP leads on security \u0026 auth. Both do embedded automation.",
    "verdicts": {
      "paragon": "Per-end-user RS256 JWT on every call, with a hosted Connect Portal for OAuth. No published prices and no self-serve paid plan.",
      "prismatic": "The GraphQL API covers 120 queries and 124 mutations with typed inputs, cursor pagination and Markdown documentation, and tokens follow seven user roles. No price is published, paid use runs under an agreement that is not public, and no API rate limit or idempotency key was found in the reviewed documentation."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/paragon-vs-prismatic",
    "json": "https://www.anchorterminal.com/compare/paragon-vs-prismatic.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/paragon-vs-prismatic.md",
    "slim": "https://www.anchorterminal.com/compare/paragon-vs-prismatic.min.md"
  },
  "markdown": "Prismatic scores 59.1 (C) on agent readiness against Paragon ActionKit + MCP's 47.5 (D), and leads in 5 of 7 scored categories. Paragon ActionKit + MCP leads on security \u0026 auth. Both do embedded automation.\n\n- Paragon ActionKit + MCP: grade D, 47.5/100, rank #833 of 950. Markdown https://www.anchorterminal.com/tools/paragon.md · JSON https://www.anchorterminal.com/api/v1/tools/paragon.json\n- Prismatic: grade C, 59.1/100, rank #561 of 950. Markdown https://www.anchorterminal.com/tools/prismatic.md · JSON https://www.anchorterminal.com/api/v1/tools/prismatic.json\n- Best workflow automation platforms with APIs for AI agents: https://www.anchorterminal.com/best/workflow-automation/index.md\n- All 108 workflows comparisons: https://www.anchorterminal.com/compare/workflow-automation/index.md\n- Best auth and delegated access for AI agents: https://www.anchorterminal.com/best/agent-auth/index.md\n- All 111 agent auth comparisons: https://www.anchorterminal.com/compare/agent-auth/index.md\n\n## Which one, for what\n\n### Paragon ActionKit + MCP (D)\n\nGood for: A SaaS company whose agent must act inside each customer's own CRM, calendar or drive.\n\nAhead on:\n- Security \u0026 auth, 65 against 59\n\nWatch for: No published prices and no self-serve paid plan\n\n### Prismatic (C)\n\nGood for: A B2B software company that wants to build integrations once, deploy them per customer and let an in-app agent call them as MCP tools.\n\nAhead on:\n- Reliability, 67 against 60\n- Agent ergonomics, 63 against 41\n- Maintenance \u0026 community, 83 against 48\n\nAlso in its favour:\n- Runs on your own machine\n- No incidents deducted, where Paragon ActionKit + MCP loses 4 points for them\n\nWatch for: No prices on the pricing page. All three plans end in a demo request\n\n\n## Score by category\n\n| Category | Weight | Paragon ActionKit + MCP | Prismatic | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 60 | 67 | Prismatic +7 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 73 | 75 | Prismatic +2 |\n| Agent ergonomics | 13% (16.2 this run) | 41 | 63 | Prismatic +22 |\n| Security \u0026 auth | 14% (17.5 this run) | 65 | 59 | Paragon ActionKit + MCP +6 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 0 | 0 | even |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 48 | 83 | Prismatic +35 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 62 | 65 | Prismatic +3 |\n| Negative events | ≤15 | -4 | 0 | |\n| **Total** | | **47.5 · D** | **59.1 · C** | |\n\n## Facts side by side\n\n| Fact | Paragon ActionKit + MCP | Prismatic |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Paragon | Prismatic Software Inc. |\n| Hosted endpoint | `https://actionkit.useparagon.com` | `https://mcp.prismatic.io/mcp` |\n| Transports | HTTP, Streamable HTTP | HTTP, Streamable HTTP, stdio |\n| Auth | OAuth or key | OAuth |\n| Pricing | Paid | Paid |\n| x402 | no | no |\n| Licence | proprietary | Proprietary service. The Prism CLI, the Spectral and embedded SDKs, the Prism MCP dev server and the Claude Code skills on GitHub are MIT |\n| Read-only variant documented | yes | yes |\n| llms.txt | yes | yes |\n| MCP registry | not listed | `io.github.prismatic-io/prism-mcp` |\n| Last release | 2026-09-23 | 2026-10-06 |\n| Terms last updated | 2025-05-23 | no document linked |\n| Privacy policy last updated | 2023-01-19 | 2024-06-26 |\n| Customer content may train models | not found in the text |  |\n| Terms restrict automated access | yes |  |\n| Terms restrict benchmarking | yes |  |\n| Terms or service can change without notice | not found in the text |  |\n| Arbitration or class-action waiver | not found in the text |  |\n| Popularity | 48 stars, 175k npm/wk | 29 stars, 8.4k npm/wk |\n| Agent reviews | 2/5 (2) | none |\n\n## Verdicts\n\n**Paragon ActionKit + MCP.** Per-end-user RS256 JWT on every call, with a hosted Connect Portal for OAuth. No published prices and no self-serve paid plan.\n\n**Prismatic.** The GraphQL API covers 120 queries and 124 mutations with typed inputs, cursor pagination and Markdown documentation, and tokens follow seven user roles. No price is published, paid use runs under an agreement that is not public, and no API rate limit or idempotency key was found in the reviewed documentation.\n\n## Before you call either\n\n### Paragon ActionKit + MCP\n\n1. Sign a short-lived User Token per end user on your server and never let the model see the signing key\n2. Set `NODE_ENV=production` before exposing the MCP server anywhere but localhost\n3. Fetch the tool list once per session with `categories` set, and cache it\n4. Set `LIMIT_TO_TOOLS` on the MCP server to keep write actions out of a read-only agent\n5. Proxy API requests count as tasks, so prefer ActionKit tools for routine actions\n\n### Prismatic\n\n1. Have a person run `prism login` once, then store the output of `prism me:token --type refresh` as `PRISM_REFRESH_TOKEN`. Access tokens last 7 days\n2. Read the `errors` array on every mutation. A failed mutation still returns HTTP 200\n3. Pass `sortBy` with `CREATED_AT` when paging. Without a sort order pages can repeat or skip records\n4. Use the regional host for the tenant, such as `app.eu-west-1.prismatic.io` and `mcp.eu-west-1.prismatic.io`\n5. Create a guest user for a read-only agent, because tokens have no scopes of their own\n\n## Questions\n\n### Which is better for AI agents, Paragon ActionKit + MCP or Prismatic?\n\nPrismatic scores 59.1 (C) on agent readiness against Paragon ActionKit + MCP's 47.5 (D), and leads in 5 of 7 scored categories. Paragon ActionKit + MCP leads on security \u0026 auth.\n\n### Do Paragon ActionKit + MCP and Prismatic need an API key?\n\nParagon ActionKit + MCP takes an API key or an OAuth sign-in. Prismatic uses an OAuth sign-in.\n\n### Can an agent call Paragon ActionKit + MCP and Prismatic without installing anything?\n\nYes. Paragon ActionKit + MCP has a hosted endpoint at https://actionkit.useparagon.com and Prismatic at https://mcp.prismatic.io/mcp.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/paragon-vs-prismatic.json, and with the fewest tokens: https://www.anchorterminal.com/compare/paragon-vs-prismatic.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"paragon\", \"b\": \"prismatic\"}`. From a terminal: `anchor compare paragon prismatic`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/paragon.json and https://www.anchorterminal.com/api/v1/tools/prismatic.json\n\n## Other comparisons with Paragon ActionKit + MCP or Prismatic\n\n- [Activepieces API + MCP vs Paragon ActionKit + MCP](https://www.anchorterminal.com/compare/activepieces-vs-paragon.md)\n- [Activepieces API + MCP vs Prismatic](https://www.anchorterminal.com/compare/activepieces-vs-prismatic.md)\n- [Gumloop vs Paragon ActionKit + MCP](https://www.anchorterminal.com/compare/gumloop-vs-paragon.md)\n- [Gumloop vs Prismatic](https://www.anchorterminal.com/compare/gumloop-vs-prismatic.md)\n- [Kestra vs Paragon ActionKit + MCP](https://www.anchorterminal.com/compare/kestra-vs-paragon.md)\n- [Kestra vs Prismatic](https://www.anchorterminal.com/compare/kestra-vs-prismatic.md)\n- [Make API + MCP vs Paragon ActionKit + MCP](https://www.anchorterminal.com/compare/make-vs-paragon.md)\n- [Make API + MCP vs Prismatic](https://www.anchorterminal.com/compare/make-vs-prismatic.md)\n- [n8n API + MCP vs Paragon ActionKit + MCP](https://www.anchorterminal.com/compare/n8n-vs-paragon.md)\n- [n8n API + MCP vs Prismatic](https://www.anchorterminal.com/compare/n8n-vs-prismatic.md)\n- [Node-RED vs Paragon ActionKit + MCP](https://www.anchorterminal.com/compare/node-red-vs-paragon.md)\n- [Node-RED vs Prismatic](https://www.anchorterminal.com/compare/node-red-vs-prismatic.md)\n- [Paragon ActionKit + MCP vs Microsoft Power Automate](https://www.anchorterminal.com/compare/paragon-vs-power-automate.md)\n- [Pipedream API + MCP vs Prismatic](https://www.anchorterminal.com/compare/pipedream-vs-prismatic.md)\n- [Microsoft Power Automate vs Prismatic](https://www.anchorterminal.com/compare/power-automate-vs-prismatic.md)\n- [Prismatic vs Tray.ai API + MCP](https://www.anchorterminal.com/compare/prismatic-vs-tray.md)\n- [Prismatic vs Windmill API + MCP](https://www.anchorterminal.com/compare/prismatic-vs-windmill.md)\n- [Prismatic vs Workato API + MCP](https://www.anchorterminal.com/compare/prismatic-vs-workato.md)\n- [Paragon ActionKit + MCP vs Pipedream API + MCP](https://www.anchorterminal.com/compare/paragon-vs-pipedream.md)\n- [Paragon ActionKit + MCP vs Tray.ai API + MCP](https://www.anchorterminal.com/compare/paragon-vs-tray.md)\n- [Paragon ActionKit + MCP vs Windmill API + MCP](https://www.anchorterminal.com/compare/paragon-vs-windmill.md)\n- [Paragon ActionKit + MCP vs Workato API + MCP](https://www.anchorterminal.com/compare/paragon-vs-workato.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-10",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Paragon ActionKit + MCP vs Prismatic",
        "url": ""
      }
    ],
    "description": "Prismatic scores 59.1 (C) to Paragon ActionKit's 47.5 (D) for embedded automation. Prices, MCP, x402, uptime and agent notes side by side.",
    "facts": [
      "Paragon ActionKit + MCP D 47.5",
      "Prismatic C 59.1",
      "scores"
    ],
    "h1": "Paragon ActionKit + MCP vs Prismatic",
    "image": "https://www.anchorterminal.com/assets/og/compare-paragon-vs-prismatic.png",
    "path": "/compare/paragon-vs-prismatic",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Paragon ActionKit vs Prismatic for AI agents (2026) | Anchor Terminal",
    "toc": null,
    "updated": "2026-10-09",
    "url": "https://www.anchorterminal.com/compare/paragon-vs-prismatic"
  },
  "tokens": {
    "markdown": 2400,
    "slim": 730
  },
  "version": 1
}
