# Braze (slim) > Braze is a hosted engagement platform that stores customer profiles and events, builds segments and sends campaigns and Canvas journeys by email, SMS, push and in-app message. Agents reach it through a REST API and an official remote MCP server. - Full: https://www.anchorterminal.com/tools/braze.md (~7,900 tokens) · this version ~2,030 tokens · JSON https://www.anchorterminal.com/tools/braze.json · canonical https://www.anchorterminal.com/tools/braze - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-08 **C · 61.2/100 · rank #330 of 629 · #3 in Lifecycle marketing & customer engagement · not agent-ready · confidence medium** Assessment: The REST API covers profiles, events, sends and exports with keys limited to named endpoints, and the remote MCP server adds 71 tools under OAuth with PKCE that return no user-level personal data. No OpenAPI document, idempotency keys, published price or SLA were found, and MCP writes run without a confirmation step. ## Facts - Kind: HTTP API · vendor: Braze, Inc. · category: Lifecycle marketing & customer engagement · legal entity: Braze, Inc. · provenance 96/100 - Endpoint: `https://mcp.braze.com/mcp` (HTTP, Streamable HTTP) - Auth: OAuth or key · pricing: Paid · x402: no · licence: Proprietary service under Braze's Main Subscription Agreement. The deprecated local MCP server on PyPI is MIT - Probe metrics: not measured yet (probes haven't run) - REST API: Twelve collections (catalogues, Cloud Data Ingestion, email lists, export, media library, messages, preference centre, SCIM, SMS, subscription groups, templates, user data), served from the instance's own host such as https://rest.iad-01.braze.com. No version scheme - MCP server: Remote, https://mcp.braze.com/mcp (US) or https://mcp.braze.eu/mcp (EU), 71 tools in 16 groups. Generally available since 17 September 2026. No user-level personal data. Not available to companies that use IP allowlisting - MCP tools: Workspaces 1, campaigns 19, Canvases 4, catalogues 13, custom attributes 1, custom events 3, Cloud Data Ingestion 3, KPIs 4, media library 1, purchases 3, segments 6, sends 1, sessions 1, email templates 4, Content Blocks 4, Operator 3. 21 are limited to beta programmes - Credentials: REST API key per workspace with per-endpoint permissions and optional IP allowlist, fixed at creation. MCP by OAuth with PKCE S256, dynamic client registration and scopes mcp:tools, mcp:resources, mcp:operator - Access: Contract or 14-day trial. A dashboard user creates REST keys. For MCP a company admin turns on MCP OAuth access and grants Use MCP Server per workspace - Rate limits: 250,000 requests an hour shared by most endpoints, reset on the clock hour. Broadcast sends 250 a minute and 10 a minute per unique audience. /users/track 3,000 requests per three seconds for customers priced on data points, otherwise by contract. /sends/id/create 100 a day. None found for MCP - Batching: /users/track takes up to 75 objects a request, messaging endpoints up to 50 external ids, catalogue item calls up to 50 items. Most request bodies up to 4 MB - Errors: HTTP status with a message string and an errors array. 429 with X-RateLimit-Limit, -Remaining and -Reset headers. Exponential backoff advised on 5XX. A success response means queued, not delivered - Segments: REST lists segments, reads details and size series and exports members to a file. Creating and editing segments is an MCP beta tool - Audit: Security event report (CSV, last 10,000 events, or export to S3) records OAuth connections and REST key creation and removal. Operator Connect edits appear in campaign edit history, individual MCP update tools don't - Docs for agents: llms.txt on www.braze.com, a Markdown copy of each docs page at /index.md, a public Postman collection and the docs on Context7. No OpenAPI found - SDKs: No current REST SDK. A Ruby client library marked beta, last pushed January 2022, covers the user endpoints. Mobile and web SDKs are public on GitHub - Certifications: ISO 27001 and SOC 2 Type II per braze.com/product/trust, HIPAA-compliant per the security datasheet of 14 April 2026, annual third-party penetration test, HackerOne programme - Data retention: Profile data for the life of the account. Up to 90 days in internal systems, personal data removed from the Data Lake after two years, backups kept six months (page revised 1 April 2024) - Hosting: AWS in the US, Frankfurt, Sydney, Jakarta, Tokyo and Seoul, with 15 instances (nine US, two EU, and one each in Australia, Indonesia, Japan and South Korea) - Scores: Reliability 70, Performance pending, Schema & documentation 68, Agent ergonomics 50, Security & auth 77, Payments & pricing 10, Task success pending, Maintenance & community 69, Transparency & trust 83 · total over the 7 assessed categories - Why: Reliability, Read with the hosted lines and scored on the REST API first, with the remote MCP server beside it. · Schema & documentation, No OpenAPI document was found in the docs or the braze-inc GitHub organisation. · Agent ergonomics, 71 MCP tools is over the 30 line, with no toolsets or dynamic loading documented. · Security & auth, The MCP server uses OAuth with PKCE S256, dynamic client registration, short-lived access tokens with refresh and the scopes `mcp:tools`… · Payments & pricing, Read with the hosted rubric. · Maintenance & community, The newest release notes are dated 17 September 2026 and move the remote MCP server to general availability (30). · Transparency & trust, Closed service under a Main Subscription Agreement last updated 13 October 2025, with SDK source public (15). - Sources: 28, open questions: 7, both in the full twin - Capabilities: marketing.profiles, marketing.events, marketing.campaigns, marketing.journeys, marketing.segments - JSON: https://www.anchorterminal.com/api/v1/tools/braze.json - Verify (for the vendor): the badge `https://www.anchorterminal.com/badges/braze.svg` or a link to https://www.anchorterminal.com/tools/braze from a page on braze.com or one of its subdomains, then `POST https://www.anchorterminal.com/api/v1/verify` `{"slug", "url"}` or `verify_listing` at /mcp; re-checked weekly, no effect on the grade. Snippets in the full twin. ## Before you call it 1. Use the REST host for the customer's instance, such as https://rest.iad-01.braze.com or https://rest.fra-01.braze.eu. A key sent to the wrong instance returns 401 2. Create a REST key with only the permissions the task needs. Scope and IP allowlist can't be edited later, so a change means a new key 3. Call `get_workspaces` first on MCP. Every other tool needs the returned workspace id as `app_group_id`, and the wrong workspace is a documented failure 4. Use REST for profiles, events and sends. The MCP server has no user-level tools and can't trigger a message to a named user 5. Treat `"message": "success"` as queued, not delivered. Add a `group_id` to `/users/track` and poll `/users/track/status`, and don't resend a trigger call blindly ## Connect ```bash curl --location -g --request GET 'https://rest.iad-01.braze.com/campaigns/list?page=0&include_archived=false&sort_direction=desc' \ --header 'Authorization: Bearer YOUR-REST-API-KEY' ``` Full config and headless snippets are in the full page. Through letme (picks today, calling later): https://letme.dev/braze ## Similar tools | Tool | Grade | Score | Shared capabilities | Slim | | --- | --- | --- | --- | --- | | Customer.io | BB | 74.5 | marketing.profiles, marketing.events, marketing.segments, marketing.campaigns, marketing.journeys | https://www.anchorterminal.com/tools/customer-io.min.md | | Klaviyo API + MCP | BB | 71.7 | marketing.profiles, marketing.events, marketing.segments, marketing.campaigns, marketing.journeys | https://www.anchorterminal.com/tools/klaviyo.min.md | | Iterable | C | 55.2 | marketing.profiles, marketing.events, marketing.segments, marketing.campaigns, marketing.journeys | https://www.anchorterminal.com/tools/iterable.min.md | | ActiveCampaign | D | 50.5 | marketing.profiles, marketing.events, marketing.segments, marketing.campaigns, marketing.journeys | https://www.anchorterminal.com/tools/activecampaign.min.md | ## Panel reviews (0, desk reviews from public material, no calls made)