Head to head · Kyc identity · October 2026 research run

Persona vs Veriff

Persona scores 69.5 (B) on agent readiness against Veriff's 61.1 (C), and leads in 6 of 7 scored categories. Veriff leads on payments & pricing. Both do kyc identity.

Which one, for what

Persona B

Good for A company that already runs Persona and wants an agent to create inquiries from templates, read verification and report results, screen against watchlists and work review cases with a permission-limited key.

Ahead on

  • Reliability, 70 against 62
  • Agent ergonomics, 74 against 43
  • Security & auth, 73 against 63

Also in its favour

  • A hosted endpoint, with nothing to install

Watch for

Production access needs Persona's approval and a 12-month plan from $250 a month, and API-only integration is limited to Enterprise plans

Veriff C

Good for A team that needs document and selfie verification with public per-verification prices and a trial, and that can run a webhook receiver and HMAC signing.

Ahead on

  • Payments & pricing, 40 against 35

Watch for

No server-side SDK and no MCP server. Official packages cover only browser and mobile capture

Score by category

CategoryWeight this runPersonaVeriffEdge
Reliability16%207062Persona +8
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28582Persona +3
Agent ergonomics13%16.27443Persona +31
Security & auth14%17.57363Persona +10
Payments & pricing10%12.53540Veriff +5
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.87574Persona +1
Transparency & trust7%8.86867Persona +1
Negative events≤1500
Total69.5 · B61.1 · C

Facts side by side

FactPersonaVeriff
KindHTTP APIHTTP API
VendorPersona Identities, Inc.Veriff OÜ
Hosted endpointhttps://mcp.withpersona.comno (local only)
TransportsHTTPHTTP
AuthAPI keyAPI key
PricingPaidPay per use
x402nono
LicenceProprietary service under Persona's terms of service. The persona JavaScript client on npm is MITProprietary service. The npm capture SDKs are ISC (@veriff/js-sdk, @veriff/incontext-sdk) and MIT (@veriff/react-native-sdk)
Tools exposed190none
Read-only variant documentednono
llms.txtyesyes
Last release2026-09-292026-10-02
Terms last updatedcouldn't be readcouldn't be read
Privacy policy last updatedcouldn't be read2026-04-16
Customer content may train modelscouldn't be readyes
Terms restrict automated accesscouldn't be readcouldn't be read
Terms restrict benchmarkingcouldn't be readcouldn't be read
Terms or service can change without noticecouldn't be readcouldn't be read
Arbitration or class-action waivercouldn't be readcouldn't be read
Popularity570k npm/wk32 stars, 110k npm/wk

Verdicts

Persona

The REST API has a public OpenAPI 3.1 file, llms.txt, API keys with per-resource permissions, idempotency keys on every POST and a 60-day sandbox trial with no card. Production needs a business review and a 12-month plan from $250 a month. The status page lists 11 incidents since 10 July 2026, including 70 minutes of timeouts across all products.

Veriff

Per-verification prices are public from $0.80, with a 15-day trial of 50 sessions and no card. Each endpoint page is Markdown with an OpenAPI 3.0 fragment. There is no server SDK, MCP server or idempotency key, most calls need an HMAC signature, and the status page shows nine incidents between 20 July and 7 October 2026.

Before you call either

Persona

  1. Ask for a dedicated key limited to the permissions the task needs. A new key has every standard permission until it's limited
  2. Send Persona-Version on every call and an Idempotency-Key on every POST. A replayed key returns the first result, including a 500
  3. Treat redact calls as irreversible. They permanently delete personal data and cascade to downstream objects
  4. Stay under 300 requests a minute in production, read RateLimit-Remaining and Quota-Remaining, and back off on 429 because rejected requests still count
  5. Use fields and include to cut response size. Through MCP these parameters aren't exposed, and only 14 tools take filter

Veriff

  1. Take the base URL from the integration's API keys page. Send X-AUTH-CLIENT on every call and store verification.id from POST /v1/sessions
  2. Sign POST and PATCH bodies, and the session ID on GET and DELETE, with HMAC-SHA256 in X-HMAC-SIGNATURE. POST /v1/sessions needs no signature
  3. Stay under 30 session creations a minute on Self-Serve, 600 on Enterprise. A 429 carries code 1004
  4. Don't blindly retry POST /v1/sessions. Each call makes a new session, which is billed on a live integration
  5. Poll GET /v1/sessions/{id}/decision until verification is not null, or accept webhooks within 5 seconds and treat duplicates as normal

Questions

Which is better for AI agents, Persona or Veriff?

Persona scores 69.5 (B) on agent readiness against Veriff's 61.1 (C), and leads in 6 of 7 scored categories. Veriff leads on payments & pricing.

Do Persona and Veriff need an API key?

Both need an API key.

Can an agent call Persona and Veriff without installing anything?

Persona has a hosted endpoint at https://mcp.withpersona.com. No hosted endpoint is listed for Veriff.

Other comparisons with Persona or Veriff

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.