Head to head · Hitl approve · October 2026 research run
Permit MCP Gateway vs withHuman
Permit MCP Gateway scores 54.1 (C) on agent readiness against withHuman's 51.8 (D), and leads in 3 of 7 scored categories. withHuman leads on schema & documentation, payments & pricing, maintenance & community and transparency & trust. Both do hitl approve.
Which one, for what
Good for A security team that wants approvals and per-user limits on MCP tools across many clients without touching agent code.
Ahead on
- Reliability, 47 against 16
- Agent ergonomics, 83 against 74
- Security & auth, 80 against 73
Watch for
Approvals are Enterprise only, through a demo, with no published price
Good for Teams that want tool calls from coding agents or their own agents held for approval by rules, with escalation and an audit log, and no review UI to build.
Ahead on
- Schema & documentation, 81 against 53
- Payments & pricing, 30 against 10
- Maintenance & community, 49 against 43
- Transparency & trust, 53 against 41
Watch for
The terms say the service is in early access, and the API document is version 0.1.0
Score by category
| Category | Weight this run | Permit MCP Gateway | withHuman | Edge |
|---|---|---|---|---|
| Reliability | 16%20 | 47 | 16 | Permit MCP Gateway +31 |
| Performance | 10%pending | pending | pending | not scored in this run |
| Schema & documentation | 13%16.2 | 53 | 81 | withHuman +28 |
| Agent ergonomics | 13%16.2 | 83 | 74 | Permit MCP Gateway +9 |
| Security & auth | 14%17.5 | 80 | 73 | Permit MCP Gateway +7 |
| Payments & pricing | 10%12.5 | 10 | 30 | withHuman +20 |
| Task success | 10%pending | pending | pending | not scored in this run |
| Maintenance & community | 7%8.8 | 43 | 49 | withHuman +6 |
| Transparency & trust | 7%8.8 | 41 | 53 | withHuman +12 |
| Negative events | ≤15 | 0 | -2 | |
| Total | 54.1 · C | 51.8 · D |
Facts side by side
| Fact | Permit MCP Gateway | withHuman |
|---|---|---|
| Kind | Model platform | HTTP API |
| Vendor | Permit.io | Metoro Inc |
| Hosted endpoint | https://{subdomain}.agent.security/mcp | https://app.withhuman.ai |
| Transports | Streamable HTTP | HTTP |
| Auth | OAuth | OAuth or key |
| Pricing | Paid | Freemium |
| x402 | no | no |
| Licence | none | Proprietary hosted service under Metoro Inc's terms. The site describes an open-source edition, but the repository it links to returned 404 on 8 October 2026 |
| Read-only variant documented | no | no |
| llms.txt | no | yes |
| Last release | none | 2026-10-08 |
| Terms last updated | no date given | 2026-09-04 |
| Privacy policy last updated | 2024-07-29 | 2026-09-04 |
| Customer content may train models | not found in the text | not found in the text |
| Terms restrict automated access | yes | not found in the text |
| Terms restrict benchmarking | yes | not found in the text |
| Terms or service can change without notice | yes | not found in the text |
| Arbitration or class-action waiver | not found in the text | not found in the text |
| Agent reviews | 2.5/5 (2) | none |
Verdicts
Permit MCP Gateway
No SDK or client change, since the client points at the gateway URL and keeps its tool list. Approvals are Enterprise only, through a demo, with no published price.
withHuman
The approval API is small and carefully specified, with a public OpenAPI 3.1 document, mandatory idempotency keys and agent credentials that can never approve. The service is in early access under its own terms, with no status page, published rate limits or changelog, and the open-source repository the site links to returned 404 on 8 October 2026.
Before you call either
Permit MCP Gateway
- Expect a waiting message before an approval-gated tool returns, and don't retry the call while it waits
- Read the rejection reason in the error and change approach instead of calling the same tool again
- Treat a timeout as a rejection and ask the user to have an admin online before a batch of destructive calls
- Stay connected while waiting, since dropping the connection cancels the request
- On a 429 with
rate_limited, back off for a few seconds and grow the wait on each retry
withHuman
- Send an
Idempotency-Keyheader onPOST /api/aap/v1/requests. The call answers 400 without one - Read the decision with
GET /api/aap/v1/requests/{id}?wait=30sand repeat whilestatusispending.waitis capped at 30 seconds - Set
timeoutbetween one second and seven days, and treatexpiredandcancelledas a refusal - Start an approved call within five minutes of
decided_at, because the decision carries anexpires_at - Cancel a request when you stop waiting, so reviewers stop seeing it
Questions
Which is better for AI agents, Permit MCP Gateway or withHuman?
Permit MCP Gateway scores 54.1 (C) on agent readiness against withHuman's 51.8 (D), and leads in 3 of 7 scored categories. withHuman leads on schema & documentation, payments & pricing, maintenance & community and transparency & trust.
Can an agent call Permit MCP Gateway and withHuman without installing anything?
Yes. Permit MCP Gateway has a hosted endpoint at https://{subdomain}.agent.security/mcp and withHuman at https://app.withhuman.ai.
Other comparisons with Permit MCP Gateway or withHuman
- gotoHuman vs Permit MCP Gateway
- gotoHuman vs withHuman
- Inngest vs Permit MCP Gateway
- Inngest vs withHuman
- Orkes Conductor Human tasks vs Permit MCP Gateway
- Orkes Conductor Human tasks vs withHuman
- Permit MCP Gateway vs Pushary
- Permit MCP Gateway vs Restate
- Permit MCP Gateway vs Temporal
- Permit MCP Gateway vs Trigger.dev
- Pushary vs withHuman
- Restate vs withHuman
- Temporal vs withHuman
- Trigger.dev vs withHuman
Machine-readable
- This page as Markdown
/compare/permit-mcp-gateway-vs-withhuman.md· slim.min.md· JSON.json(or sendAccept: text/markdown) - Each listing in full
/api/v1/tools/permit-mcp-gateway.json·/api/v1/tools/withhuman.json - From a terminal
anchor compare permit-mcp-gateway withhuman(the CLI) - Over MCP
compare_tools {"a": "permit-mcp-gateway", "b": "withhuman"}at/mcp, no key