# Payload vs WordPress > WordPress scores 64.8 (B) on agent readiness against Payload's 55.2 (C), and leads in 5 of 7 scored categories. Payload leads on schema & documentation. Both do cms content. Category scores, facts, verdicts and agent notes side by side. - Canonical: https://www.anchorterminal.com/compare/payload-vs-wordpress - Markdown: https://www.anchorterminal.com/compare/payload-vs-wordpress.md (~2,200 tokens) - Slim: https://www.anchorterminal.com/compare/payload-vs-wordpress.min.md (~580 tokens, same facts, less prose, for token-sensitive contexts) - JSON: https://www.anchorterminal.com/compare/payload-vs-wordpress.json (this page as data, same URL with Accept: application/json) - Site index for agents: https://www.anchorterminal.com/llms.txt (full text: https://www.anchorterminal.com/llms-full.txt) - API: https://www.anchorterminal.com/api/v1/index.json - Updated: 2026-10-08 WordPress scores 64.8 (B) on agent readiness against Payload's 55.2 (C), and leads in 5 of 7 scored categories. Payload leads on schema & documentation. Both do cms content. - Payload: grade C, 55.2/100, rank #516 of 722. Markdown https://www.anchorterminal.com/tools/payload.md · JSON https://www.anchorterminal.com/api/v1/tools/payload.json - WordPress: grade B, 64.8/100, rank #272 of 722. Markdown https://www.anchorterminal.com/tools/wordpress.md · JSON https://www.anchorterminal.com/api/v1/tools/wordpress.json ## Which one, for what ### Payload (C) Good for: Teams that build on Next.js and want the content model in TypeScript, with drafts, versions and localisation in the free core. Ahead on: - Schema & documentation, 70 against 65 Watch for: 49 security advisories in the 12 months to 8 October 2026, 8 critical, 38 of them published since 18 September 2026 ### WordPress (B) Good for: Sites that already run WordPress, where an agent drafts posts and uploads media under a Contributor or Author account and a person publishes. Ahead on: - Agent ergonomics, 74 against 64 - Security & auth, 62 against 57 - Payments & pricing, 60 against 45 - Maintenance & community, 83 against 78 - Transparency & trust, 68 against 62 Also in its favour: - Runs on your own machine Watch for: Application Passwords have no scopes or expiry. Each one carries every capability of its user ## Score by category | Category | Weight | Payload | WordPress | Edge | | --- | --- | --- | --- | --- | | Reliability | 16% (20 this run) | 78 | 78 | even | | Performance | 10%, pending | pending | pending | not scored in this run | | Schema & documentation | 13% (16.2 this run) | 70 | 65 | Payload +5 | | Agent ergonomics | 13% (16.2 this run) | 64 | 74 | WordPress +10 | | Security & auth | 14% (17.5 this run) | 57 | 62 | WordPress +5 | | Payments & pricing | 10% (12.5 this run) | 45 | 60 | WordPress +15 | | Task success | 10%, pending | pending | pending | not scored in this run | | Maintenance & community | 7% (8.8 this run) | 78 | 83 | WordPress +5 | | Transparency & trust | 7% (8.8 this run) | 62 | 68 | WordPress +6 | | Negative events | ≤15 | -10 | -5 | | | **Total** | | **55.2 · C** | **64.8 · B** | | ## Facts side by side | Fact | Payload | WordPress | | --- | --- | --- | | Kind | HTTP API | HTTP API | | Vendor | Payload CMS, Inc. (Figma) | WordPress.org (open-source project) | | Hosted endpoint | no (local only) | no (local only) | | Transports | HTTP, Streamable HTTP | HTTP, stdio | | Auth | API key | API key | | Pricing | Free | Free | | x402 | no | no | | Licence | MIT for the core and the official packages. Enterprise add-ons are sold separately through sales | GPL-2.0-or-later. The MCP Adapter plugin is GPL-2.0-or-later too | | Read-only variant documented | no | no | | llms.txt | yes | yes | | Last release | 2026-09-23 | 2026-10-06 | | Terms last updated | no document linked | no document linked | | Privacy policy last updated | 2024-03-28 | no date given | | Customer content may train models | | | | Terms restrict automated access | | | | Terms restrict benchmarking | | | | Terms or service can change without notice | | | | Arbitration or class-action waiver | | | | Popularity | 45k stars, 1.1M npm/wk | 21k stars | ## Verdicts **Payload.** Payload generates REST, GraphQL and MCP interfaces from one typed config, with drafts, restorable versions and per-key MCP permissions in the free MIT core. The security record is the limit. The vendor published 49 advisories in 12 months, 8 of them critical, so an install older than 3.90.0 is exposed. No OpenAPI file is published. **WordPress.** The REST API is part of core, and a post created without a status is saved as a draft with revisions kept on the owner's server. Application Passwords carry no scopes, so limits come only from the user's role. Revisions can be read and deleted but not restored over REST, and a critical flaw was fixed on 22 September 2026. ## Before you call either ### Payload 1. Check the installed version first. Anything below 3.90.0 carries published critical advisories, so ask the owner to upgrade before writing 2. Send REST keys as `Authorization: {collection-slug} API-Key {key}` and MCP keys as `Authorization: Bearer {key}`. The two key kinds are separate 3. To publish, set `_status: 'published'` in the data. The `draft` parameter only relaxes validation and chooses where an update is written 4. Upload files with multipart POST to the upload collection, with other fields as JSON in `_payload`. No MCP upload tool is documented 5. Roll back with `POST /api/{collection-slug}/versions/:id` after listing versions. Versions exist only where the collection config enables them ### WordPress 1. Ask the owner for a dedicated user with the lowest role that fits. A Contributor can draft and edit its own posts but can't publish them 2. Send the Application Password as Basic auth over HTTPS only. Core disables Application Passwords on plain HTTP outside a local environment 3. Upload a file with POST `/wp-json/wp/v2/media` first, then set `featured_media` or reference the returned URL in the post content 4. To roll back, GET `/wp/v2/posts//revisions/?context=edit` and POST its title and content to the post. There's no restore route 5. Pass `_fields=id,status,link,modified` on lists and read X-WP-TotalPages. `per_page` stops at 100 ## Questions ### Which is better for AI agents, Payload or WordPress? WordPress scores 64.8 (B) on agent readiness against Payload's 55.2 (C), and leads in 5 of 7 scored categories. Payload leads on schema & documentation. ### Do Payload and WordPress need an API key? Both need an API key. ### Can an agent call Payload and WordPress without installing anything? No hosted endpoint is listed for Payload. WordPress runs on your own machine, with no hosted endpoint listed. ### Are Payload and WordPress open source? Yes. Payload is open source (MIT for the core and the official packages. Enterprise add-ons are sold separately through sales). WordPress is open source (GPL-2.0-or-later. The MCP Adapter plugin is GPL-2.0-or-later too). ## For agents - This comparison as JSON: https://www.anchorterminal.com/compare/payload-vs-wordpress.json, and with the fewest tokens: https://www.anchorterminal.com/compare/payload-vs-wordpress.min.md - Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {"a": "payload", "b": "wordpress"}`. From a terminal: `anchor compare payload wordpress` - Each listing in full: https://www.anchorterminal.com/api/v1/tools/payload.json and https://www.anchorterminal.com/api/v1/tools/wordpress.json ## Other comparisons with Payload or WordPress - [Contentstack vs Payload](https://www.anchorterminal.com/compare/contentstack-vs-payload.md) - [Contentstack vs WordPress](https://www.anchorterminal.com/compare/contentstack-vs-wordpress.md) - [DatoCMS vs Payload](https://www.anchorterminal.com/compare/datocms-vs-payload.md) - [DatoCMS vs WordPress](https://www.anchorterminal.com/compare/datocms-vs-wordpress.md) - [Directus vs Payload](https://www.anchorterminal.com/compare/directus-vs-payload.md) - [Directus vs WordPress](https://www.anchorterminal.com/compare/directus-vs-wordpress.md) - [Ghost vs Payload](https://www.anchorterminal.com/compare/ghost-vs-payload.md) - [Ghost vs WordPress](https://www.anchorterminal.com/compare/ghost-vs-wordpress.md) - [Payload vs Sanity](https://www.anchorterminal.com/compare/payload-vs-sanity.md) - [Payload vs Storyblok](https://www.anchorterminal.com/compare/payload-vs-storyblok.md) - [Payload vs Strapi](https://www.anchorterminal.com/compare/payload-vs-strapi.md) - [Payload vs Webflow](https://www.anchorterminal.com/compare/payload-vs-webflow.md) - [Sanity vs WordPress](https://www.anchorterminal.com/compare/sanity-vs-wordpress.md) - [Storyblok vs WordPress](https://www.anchorterminal.com/compare/storyblok-vs-wordpress.md) - [Strapi vs WordPress](https://www.anchorterminal.com/compare/strapi-vs-wordpress.md) - [Webflow vs WordPress](https://www.anchorterminal.com/compare/webflow-vs-wordpress.md)