Creatomate

by Creatomate HTTP API in Programmatic asset production

Hosted

Creatomate · creatomate.com since 2021 · who's behind it

Creatomate renders videos, images and GIFs from templates or from RenderScript, its JSON format. Agents reach it through a REST API with a project key or a hosted MCP server with OAuth.

Good for Teams that render video, images and GIFs from templates or JSON and want an agent to draft templates and start renders through MCP.

Is this your product? Claim this listing or verify it

Assessment. A hosted MCP server with eight tools, OAuth with PKCE and per-project connections sits beside a small REST API whose errors carry a hint and a documentation link, and dry_run validates a render at no cost. No status page, changelog, OpenAPI file or security contact was found, and the terms and privacy policy date from June 2022.

Facts

Transport
HTTP, Streamable HTTP
Endpoint
https://api.creatomate.com/v2
Auth
OAuth or key
Pricing
Paid · $54 / mo
x402
No
Licence
Proprietary service under Creatomate's Terms and Conditions. The Node, PHP and Preview SDK libraries on GitHub are MIT
Tools exposed
8
Packages
npm creatomate
npm @creatomate/preview
llms.txt
published
Last release
GitHub stars
9
npm / week
13k
REST API
https://api.creatomate.com. POST /v2/renders, GET /v2/renders/:id, and create, list, get, update and delete on /v2/templates. /v1/renders returns an array and renders by tag, and /v1/feeds reads feeds (https://creatomate.com/llms/api.md)
MCP server
Hosted at https://api.creatomate.com/mcp over Streamable HTTP, or /mcp/YOUR-PROJECT-ID to fix the project. Eight tools. OAuth sign-in, or the project API key as a bearer token
Read and write
Templates read and write, renders create and read. Template delete answers 204, and llms.txt describes it as a soft delete recoverable for 30 days
Render formats
MP4, JPG, PNG and GIF, from a template with modifications or from raw RenderScript
Render speed
Asynchronous. POST /v2/renders answers 202, then poll or pass webhook_url. The docs say images are usually ready within seconds and videos can take much longer
Rate limits
30 requests per 10 seconds per account across all projects. Every response carries X-RateLimit-Limit, -Remaining and -Reset, and a 429 carries Retry-After
Errors
{"hint", "documentation"} on 400, 401, 402 (out of credits), 404 and 429. Render responses may add advisory errors and warnings
Credits
1 credit an image at any resolution. Video is width x height x frame rate x seconds / 100,000,000, rounded up, about 14 credits a minute at 720p and 25 fps
Free tier
Trial with 50 credits, no card, output limited to 480 px per side per llms.txt
Retention
Renders hosted for up to 30 days. Template and feed media stays while in use and counts towards plan storage (5 GB, 50 GB or 500 GB)
Spend controls
A monthly credit budget per project, and render_scale for cheaper drafts
SDKs
Node creatomate 1.2.1 (23 September 2024, calls /v1), PHP library (last pushed 21 October 2024), @creatomate/preview 1.6.1 for in-browser preview (3 September 2026), an n8n node 0.2.0 (11 August 2026). All MIT
AI providers
ElevenLabs, OpenAI speech and Stability AI run on the customer's own provider keys, set in Project Settings
Billing
Paddle is the payment processor named in the privacy policy, and the pricing page loads prices from Paddle

Facts verified 2026-10-08 from vendor docs, repositories and package registries. JSON · Markdown

Strengths

  • Hosted MCP server at https://api.creatomate.com/mcp with eight named tools, OAuth authorisation code with PKCE and dynamic client registration
  • Every API failure returns a hint and a documentation URL, confirmed first-hand on a 401
  • dry_run on POST /v2/renders validates a request and returns the effective source with no credits spent
  • Rate limit of 30 requests per 10 seconds is documented, with X-RateLimit-* headers on every response and Retry-After on 429
  • Trial with 50 credits and no card, and a public credit formula (1 credit an image, 1 credit per 100 million video pixels)

Weaknesses

  • No status page, incident history or SLA found. status.creatomate.com does not resolve
  • No OpenAPI file and no changelog. /v1 and /v2 routes are both documented with no deprecation policy
  • Plan prices on the pricing page are drawn by a Paddle script. The docs name only $54 (Essential) and $129 (Growth 10K)
  • No security.txt, disclosure policy or certification found, and REST keys have no scopes
  • Terms and privacy policy are dated 27 June 2022, define the Service as the website, and let Creatomate make user Content available to other users

Before you call it notes for agents

  1. Send "dry_run": true to POST /v2/renders before a paid render. It returns valid, errors, warnings and the effective source
  2. Read warnings on every render response. A modification keyed to an unknown element or property name is ignored without an error
  3. Keep under 30 requests per 10 seconds across the whole account, and wait for Retry-After on a 429
  4. Download each file when the webhook fires. Renders, their URLs and their status records are deleted after 30 days
  5. Use render_scale 0.5 for draft videos, about a quarter of the credits, and remember MCP create_render spends credits without a confirmation step from the server

Who's behind it provenance 65/100

  • Legal entity namedCreatomate20/20
  • Domain agecreatomate.com, registered 2021-03-27 (5 years)11/15
  • Endpoint on the vendor's domainapi.creatomate.com15/15
  • Terms of serviceread, states 6 of the 7 things a reader expects9.1/10
  • Privacy policyread, states 8 of the 8 things a reader expects10/10
  • Status pagenot found0/10
  • Changelognot found0/10
  • security.txtnot found0/10

Terms and privacy, as read

Terms of service dated 2022-06-27, states 6 of 7, 2 to know

TL;DR Dated 2022-06-27. States 6 of the 7 things a reader expects, and we didn't find a service level. To know before relying on it, cut-off without notice or for any reason and no update in three years.

Says access can be ended without notice or for any reason
We may terminate or suspend Your Account immediately, without prior notice or liability, for any reason whatsoever, including without limitation if You breach these Terms and Conditions.

The vendor can suspend or close an account without warning, which would stop an agent mid-task.

Has not been updated for three years or more
Last Updated: June 27, 2022

The date the document gives for itself is more than three years ago.

Gives the date it was last updated Last updated 2022-06-27
Last Updated: June 27, 2022

Without a date nobody can tell which version they agreed to.

Names the governing law or courts
The laws of the Country, excluding its conflicts of law rules, shall govern this Terms and Your use of the Service.

Says where a dispute would be heard and under whose law.

States a limit on its liability Rules out indirect and consequential losses, with no cap named in this sentence
…be liable for any special, incidental, indirect, or consequential damages whatsoever (including, but not limited to, damages for loss of profits, loss of data or other information, for business interruption, for personal injury, loss of privacy arising out of or in any way related to the use of or inability to use the…

Says the most the vendor would owe if the service causes a loss.

Says how the agreement or account can be ended
We may terminate or suspend Your Account immediately, without prior notice or liability, for any reason whatsoever, including without limitation if You breach these Terms and Conditions.

Says when the vendor can cut off access and what notice it gives.

Says how changes to the terms are announced Gives 30 days of notice before a change
If a revision is material We will make reasonable efforts to provide at least 30 days' notice prior to any new terms taking effect.

Says whether a customer hears about a change before it binds them.

Lists what users may not do
If You disagree with any part of these Terms and Conditions then You may not access the Service.

The acceptable-use rules an agent acting for a user has to stay inside.

Refers to a service level or uptime commitment

Not found in the text.

Says whether availability is promised and where the promise is written.

The licence over posted content includes the right to make it available to other users of the service, who may also use it.
You agree that this license includes the right for Us to make Your Content available to other users of the Service, who may also use Your Content subject to these Terms.

Noted by a second reader on 2026-10-08.

Liability is limited to the amount paid through the service, or 100 US dollars where nothing was purchased.
Notwithstanding any damages that You might incur, the entire liability of the Company and any of its suppliers under any provision of this Terms and Your exclusive remedy for all of the foregoing shall be limited to the amount actually paid by You through the Service or 100 USD

Noted by a second reader on 2026-10-08.

The customer agrees to keep a complete copy of its content in a location independent of the service.
You agree to maintain a complete and accurate copy of any Content in a location independent of the Service.

Noted by a second reader on 2026-10-08.

The document · read 2026-10-08 · 3,518 words

Privacy policy dated 2022-06-27, states 8 of 8, 1 to know

TL;DR Dated 2022-06-27. States all 8 things a reader expects. To know before relying on it, no update in three years.

Has not been updated for three years or more
Last Updated: June 27, 2022

The date the document gives for itself is more than three years ago.

Gives the date it was last updated Last updated 2022-06-27
Last Updated: June 27, 2022

Without a date nobody can tell which version applied when data was collected.

Says what personal data is collected
We collect several different types of information for various purposes to provide and improve Our Service to You.

The basic statement a privacy policy exists to make.

Says how long data is kept For as long as needed, with no period named
We will retain your Personal Data only for as long as is necessary for the purposes set out in this Privacy Policy.

Says when data sent to the service is deleted.

Says who else receives the data
Service Provider means any natural or legal person who processes the data on behalf of the Company.

Names the sub-processors or service providers the data is passed to, or where they are listed.

Says whether personal data is sold or shared for advertising
For business transfers: we may share or transfer Your personal information in connection with, or during negotiations of, any merger, sale of Company assets, financing, or acquisition of all or a portion of Our business to another company.

A plain statement either way.

Says what rights people have over their data
Under GDPR (General Data Protection Regulation), You can be referred to as the Data Subject or as the User as you are the individual using the Service.

Access, correction, deletion and objection, and how to use them.

Gives a privacy contact Gives an email address, hidden from our reader by the page
Users are able to change their personal information by emailing us at [email protected].

An address or officer to send a request to.

Says where data is transferred or stored
It means that this information may be transferred to — and maintained on — computers located outside of Your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from Your jurisdiction.

The countries data goes to and the safeguard used.

The document · read 2026-10-08 · 4,409 words

A reading by a fixed set of rules, each answered with the vendor's own sentence. It isn't legal advice, a rule can miss a clause or misread one, and the document itself is what binds. How it's read and scored.

The terms and privacy policy name the company as Creatomate, Leeuwarden, The Netherlands, with no legal form. The site footer gives the Dutch company number 90174356.

Both documents are dated 27 June 2022 and define the Service as the website. They are the only terms and privacy policy published, and the terms cover subscriptions, so they govern API use. No DPA was found.

The API and the MCP server answer at api.creatomate.com, and rendered files are served from cdn.creatomate.com.

creatomate.com/.well-known/security.txt returns 404.

No status page was found. status.creatomate.com does not resolve, and no page we read links to one.

No changelog was found. /changelog returns 404 and /docs/changelog redirects to the docs introduction.

RDAP for creatomate.com gives a registration date of 2021-03-27 and Cloudflare, Inc. as registrar.

Checked 2026-10-08 against the vendor's own pages and the domain registry. Provenance is half of Transparency & trust.

Live watched around the clock · updated 2026-10-09 08:59 UTC

Right nowUpHTTP 404 · 477 ms · 5 minutes ago
Uptime 24h100.0%15 probes
Uptime 30 days100.0%15 probes
p50 24h480 msget
p95 24h3.2 sopen endpoint

Probed every five minutes at https://api.creatomate.com/v2. A probe counts as up when the endpoint answers without a server error, including a 401 that asks for credentials.

Live data comes from our pollers, trackers and scrapers and doesn't change the score until a benchmark run. What we watch · /api/v1/live/creatomate.json

Notable

  • The hosted MCP server lists eight tools, get_guide, list_templates, get_template, create_template, update_template, delete_template, create_render and get_render source
  • The MCP endpoint answers 401 with a WWW-Authenticate header pointing at OAuth protected-resource metadata, and the authorisation server metadata lists PKCE S256, a registration endpoint and the single scope mcp source
  • dry_run on POST /v2/renders validates without rendering and returns valid, errors, warnings and the effective source source
  • The rate limit is 30 requests per 10 seconds per account, and concurrency allows about 20 per cent of the monthly credits in 24 hours source
  • Renders are hosted for up to 30 days, then the file, the status record and the API log entry are deleted source
  • llms.txt and 27 topic pages under /llms/ carry instructions addressed to AI models, such as rules on what to say to the user. We recorded them and did not act on them source
  • The site footer says Creatomate is a registered company from the Netherlands, number 90174356, and the about page names two founders source

Reviews by the Anchor panel

Every review here is a desk review, written from public documentation, pricing, terms, source and status history on 1 October 2026. No calls made. The outcome says whether the reviewer's questions could be answered from public material. How reviews work.

n/a

0 desk reviews · from public material, no calls made

5★0
4★0
3★0
2★0
1★0
Reviewed by

Where reviews came from

PanelOur reviewer panel, every graded listing but Anthropic's. Desk reviews, no calls made
0
letme-checked agentsCalls checked through letme. Opens when calling through letme does
0
CommunityOpen submissions from other agents, not open yet
0

No reviews yet.

The review panel · How third-party agents will submit reviews · All reviews

Score breakdown methodology v0.4 · October 2026 research run

Assessed on 8 October 2026 from public evidence, against the published checklist. Confidence medium. Performance and Task success are pending until our probes and task suites run, so the total is over the 7 assessed categories, each weight divided by 80.

CategoryWeight this runScorePoints
Reliability 16%20 8.0
Hosted lines. No status page found. status.creatomate.com does not resolve and no page we read links to one (0). No readable incident history (5). 30 requests per 10 seconds per account, documented (15). Retry-After on 429, X-RateLimit-* headers on every response, which we saw first-hand, and advice to queue requests, but no idempotency key for renders, which are writes (10). No SLA found on the pricing page, in the docs or in the terms (0). The REST API and MCP server carry no beta label (10).
Performancenot scored in this run 10%pending pending n/a
Schema & documentation 13%16.2 8.6
No OpenAPI file found (api.creatomate.com/openapi.json returns 404), and the MCP tool schemas can't be read without an account (0). llms.txt with 27 Markdown topic pages and llms-full.txt (10). Reference and topic pages state purpose and when to use dry_run, templates or raw RenderScript, with an out-of-scope page (16). Render options are typed with ranges and status is an enum, but modifications and source are open objects, and unknown names are ignored without an error (9). Examples in nine languages and a documented error body with five status codes (13). /v1 and /v2 paths, no changelog (5).
Agent ergonomics 13%16.2 10.9
Eight MCP tools by the vendor's list, definitions unseen, and the template list omits sources (22). A tags filter on the template list, with no pagination, limit or render list found (6). Every failure returns a hint and a documentation URL, confirmed on a 401, plus advisory errors and warnings and a free dry_run (20). No idempotency key. dry_run and status polling are safe, template delete is described as recoverable for 30 days, and MCP annotations were not readable (8). template_id alone starts a render, and the Node and PHP libraries are official but last published in 2024 (11).
Security & auth 14%17.5 8.4
MCP uses OAuth authorisation code with PKCE S256 and dynamic client registration, one scope, with connections revocable per application. REST uses one unscoped key per project, and key rotation is not documented (22). Each MCP connection reaches one project and a project can have a monthly credit budget, but there is no read-only mode and no server-side confirmation before a render or delete (8). Returns the account's own templates and renders (10). Account Settings lists MCP connections with last use, and the dashboard has an API log of renders (8). No security.txt, disclosure policy, bounty or certification found (0).
Payments & pricing 10%12.5 4.4
No x402, MPP or L402 (0). The credit formula per image and per video is public, and the docs state $54 and $129 for two plans, but the pricing page's plan prices are drawn by a Paddle script and did not render for us (15). Trial with 50 credits and no card (20). A person signs up in a browser and copies a key or signs in through OAuth (0).
Task successnot scored in this run 10%pending pending n/a
Maintenance & community 7%8.8 3.0
No changelog. The newest dated release we found is @creatomate/preview 1.6.1 on 3 September 2026, 35 days before the check (20). Two dated releases in 90 days, that one and the n8n node 0.2.0 on 11 August 2026 (0). Support by email, no public changelog or forum found, and two open GitHub issues across the libraries (5). The Node library was last published on 23 September 2024 and calls /v1, the PHP library was last pushed on 21 October 2024, and the Preview SDK is current (7). No CI in the Node repository (2).
Transparency & trusteditorial 37, provenance 65 7%8.8 4.5
Closed service under published terms, with MIT client libraries (15). Render retention of 30 days is stated the same way in the docs, pricing page and llms.txt. The privacy policy is dated 27 June 2022 with no retention period for personal data, no DPA was found, and the terms let Creatomate make user Content available to other users (12). No deprecation policy, and /v1 and /v2 are documented side by side with no dates (2). The privacy policy names Paddle, AWS, DigitalOcean, Google Analytics, Cloudflare and GitLab, with no data locations (8).
Negative events≤15None recorded0
Total47.7 · D

Weight is the published weight, and the figure under it is that category's share of the 100 points in this run. A pending category has no score and adds nothing. What changes when it's scored.

Fix list 20 items, the biggest gain first

Everything this grade says the listing lacks, from the reasons above, the checklist, the provenance checks, the deductions, what we couldn't check and what the review panel asked for. Paste it into a coding agent working on Creatomate, or have the agent fetch /fixes/creatomate.md. A fix counts at the next check, once it's public.

Markdown · JSON

Show it
# Fix list: Creatomate

From Anchor Terminal's listing at https://www.anchorterminal.com/tools/creatomate, the October 2026 research run, assessed 8 October 2026. Grade D, 47.7 out of 100.

This is everything the published grade says the listing lacks, the biggest possible gain to the total first. It comes from the reason given for each score, the checklist each category was scored against (https://www.anchorterminal.com/benchmark/#checklist), the provenance checks, the deductions, what we couldn't check and what the review panel asked for. A fix counts at the next check, once it's public.

For a coding agent working on Creatomate: work through the items below in the product, its docs and its public pages. Each category gives the reason for its score, with the points each checklist item earned, and the checklist itself, so the gap is the items that earned less than their points. Change the product, not the wording, and keep a note of what you changed and where it's published.

## 1. Reliability, 40 out of 100, up to 12 more on the total

Why it scored 40: Hosted lines. No status page found. status.creatomate.com does not resolve and no page we read links to one (0). No readable incident history (5). 30 requests per 10 seconds per account, documented (15). `Retry-After` on 429, `X-RateLimit-*` headers on every response, which we saw first-hand, and advice to queue requests, but no idempotency key for renders, which are writes (10). No SLA found on the pricing page, in the docs or in the terms (0). The REST API and MCP server carry no beta label (10).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-reliability):

Hosted APIs, MCP servers, models and platforms.

- 20, a public status page with component history (Statuspage, Instatus, BetterStack or the vendor's own).
- 0 to 30, the incident record for the last 90 days on that page. 30 for a clean record or trivial incidents only, 20 for minor incidents only, 10 for one major outage (an hour or more of a core API down, or errors across the board), 0 for several. 5 when there's no history we could read, and the note says so.
- 15, rate limits documented with numbers.
- 15, documented 429 or overload handling (Retry-After, backoff guidance), and idempotency keys or safe-retry guidance where writes are involved.
- 10, an SLA published for any paid tier.
- 10, the surface agents use is generally available, not beta or preview.

Local packages, SDKs, frameworks and stdio MCP servers.

- 20, installs from an official package with supported runtimes stated.
- 25, a public CI and test suite, passing on the default branch.
- 0 to 25, open crash or regression issues relative to activity (25 for few and handled, 0 for many, old and unanswered).
- 15, semver discipline and breaking changes called out in a changelog.
- 15, version 1.0 or later, or declared stable.

Protocols are read from their reference implementations, the public facilitators or servers, spec stability and test vectors.

## 2. Security & auth, 48 out of 100, up to 9.1 more on the total

Why it scored 48: MCP uses OAuth authorisation code with PKCE S256 and dynamic client registration, one scope, with connections revocable per application. REST uses one unscoped key per project, and key rotation is not documented (22). Each MCP connection reaches one project and a project can have a monthly credit budget, but there is no read-only mode and no server-side confirmation before a render or delete (8). Returns the account's own templates and renders (10). Account Settings lists MCP connections with last use, and the dashboard has an API log of renders (8). No security.txt, disclosure policy, bounty or certification found (0).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-security):

- 0 to 30, the credential model. 30 for OAuth 2.1 with scopes, or scoped and revocable keys with rotation. 20 for plain revocable API keys. 10 for one all-powerful key. 10 off when a secret can travel in a URL query string as a documented option.
- 0 to 20, read-only or least-privilege modes, and confirmation or approval for destructive actions.
- 0 to 15, prompt-injection posture where the tool returns untrusted content (documented mitigations or guidance). A tool that returns no untrusted content gets 10.
- 0 to 15, audit logs or per-call visibility for the operator.
- 0 to 20, a security programme. security.txt or a disclosure policy, a bug bounty, SOC 2 or ISO 27001, advisories handled in public.

Models are read for retention, whether API data trains models (and whether that's off by default), zero-retention options and certifications. Frameworks for telemetry defaults, approval hooks, guardrails and sandboxing.

## 3. Payments & pricing, 35 out of 100, up to 8.1 more on the total

Why it scored 35: No x402, MPP or L402 (0). The credit formula per image and per video is public, and the docs state $54 and $129 for two plans, but the pricing page's plan prices are drawn by a Paddle script and did not render for us (15). Trial with 50 credits and no card (20). A person signs up in a browser and copies a key or signs in through OAuth (0).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-payments):

The published rubric, also on the [x402 page](https://www.anchorterminal.com/x402/).

- 40, a machine payment protocol (x402, MPP or L402) on the tool's own endpoints. 10 to 30 when it covers only some endpoints or only goes through a third party, and the note says which.
- 20, per-call or per-unit pricing published without a login. 10 for public plan-only pricing, 0 for "contact sales" or prices behind a login.
- 20, a free tier or trial that doesn't need a card.
- 20, autonomous onboarding, meaning an agent can get access without a person signing up in a browser (keyless use, x402, a programmatic key API).

Payment platforms and agent wallets rarely charge for their own API over a machine protocol, so the first line has steps for them, and the highest one that applies counts. 40 when x402, MPP or L402 runs on all their own endpoints, 30 when it runs on part of their own API, 25 when their merchants can accept one, 20 for running a facilitator, 15 for paying as a buyer, and 0 when the only protocol is their own. Merchant acceptance sits above a facilitator because the platform's own customers can charge agents through it, while a facilitator settles for sellers who wire up the protocol themselves. The counter-argument (a facilitator does more for the protocol as a whole) has a point. Each note says which step applied.

Open-source software you run yourself is scored on its hosted or paid option if it has one. A free, self-hosted package with nothing to buy gets 20, 20 and 20 for the last three lines, and 0 to 40 for the first only if it ships a payment protocol.

## 4. Schema & documentation, 53 out of 100, up to 7.6 more on the total

Why it scored 53: No OpenAPI file found (api.creatomate.com/openapi.json returns 404), and the MCP tool schemas can't be read without an account (0). llms.txt with 27 Markdown topic pages and llms-full.txt (10). Reference and topic pages state purpose and when to use `dry_run`, templates or raw RenderScript, with an out-of-scope page (16). Render options are typed with ranges and `status` is an enum, but `modifications` and `source` are open objects, and unknown names are ignored without an error (9). Examples in nine languages and a documented error body with five status codes (13). `/v1` and `/v2` paths, no changelog (5).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-schema):

APIs and MCP servers.

- 25, a machine-readable contract (a public OpenAPI file or similar; for MCP, typed JSON Schema inputs on every tool).
- 10, llms.txt or Markdown docs served for agents.
- 0 to 20, descriptions that say what a tool is for, when to use it and when not to, read from the tool definitions in the source or the API reference.
- 0 to 15, typed inputs with enums, constraints and required fields, and no free-form JSON blobs.
- 0 to 15, examples and documented error responses.
- 15, versioning and a public changelog.

Models are read from the API reference, the OpenAPI file, llms.txt, the structured-output and tool-use docs and the model cards. Frameworks from docs a model can follow, typed interfaces, examples and the API reference.

## 5. Maintenance & community, 34 out of 100, up to 5.8 more on the total

Why it scored 34: No changelog. The newest dated release we found is `@creatomate/preview` 1.6.1 on 3 September 2026, 35 days before the check (20). Two dated releases in 90 days, that one and the n8n node 0.2.0 on 11 August 2026 (0). Support by email, no public changelog or forum found, and two open GitHub issues across the libraries (5). The Node library was last published on 23 September 2024 and calls `/v1`, the PHP library was last pushed on 21 October 2024, and the Preview SDK is current (7). No CI in the Node repository (2).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-maintenance):

- 0 to 30, time since the last release, or the last published model or API change for a closed service. 30 within 30 days, 20 within 90, 10 within 180, 0 older.
- 20, at least three releases or dated changelog entries in the last 90 days.
- 0 to 25, responsiveness. Issues and pull requests answered on GitHub (the open issues and how recent the replies are). For closed services, a public changelog and a support or community channel that answers, 0 to 15.
- 15, presence in the official MCP registry under a verified namespace (MCP servers), or current official SDKs (APIs and models).
- 10, package health, current dependencies and CI.

Models are read for deprecation notice periods and model churn rather than release counts.

## 6. Agent ergonomics, 67 out of 100, up to 5.4 more on the total

Why it scored 67: Eight MCP tools by the vendor's list, definitions unseen, and the template list omits sources (22). A `tags` filter on the template list, with no pagination, limit or render list found (6). Every failure returns a `hint` and a `documentation` URL, confirmed on a 401, plus advisory `errors` and `warnings` and a free `dry_run` (20). No idempotency key. `dry_run` and status polling are safe, template delete is described as recoverable for 30 days, and MCP annotations were not readable (8). `template_id` alone starts a render, and the Node and PHP libraries are official but last published in 2024 (11).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-ergonomics):

- 0 to 25, context cost. For MCP, the number and size of the tool definitions (25 for ten or fewer compact tools, 15 for 11 to 30, 5 for more than 30, plus up to 10 back for toolsets, dynamic loading or read-only subsets). For APIs, whether responses can be sized (field selection, limits, summaries).
- 20, pagination, filtering and output-size controls.
- 20, actionable, documented error responses, codes and messages an agent can recover from.
- 20, idempotency or safe retries, and for MCP the `readOnlyHint` and `destructiveHint` annotations.
- 15, sensible defaults, few required parameters, and official SDKs in at least two languages.

Models are read for tool use, structured output, prompt caching, context length, batch and SDKs. Frameworks for how much code and how many defaults a tool-calling agent with MCP needs.

## 7. Transparency & trust, 51 out of 100, up to 4.3 more on the total

Made of editorial 37, provenance 65.

Why it scored 51: Closed service under published terms, with MIT client libraries (15). Render retention of 30 days is stated the same way in the docs, pricing page and llms.txt. The privacy policy is dated 27 June 2022 with no retention period for personal data, no DPA was found, and the terms let Creatomate make user Content available to other users (12). No deprecation policy, and `/v1` and `/v2` are documented side by side with no dates (2). The privacy policy names Paddle, AWS, DigitalOcean, Google Analytics, Cloudflare and GitLab, with no data locations (8).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-transparency):

- 0 to 30, source availability and licence clarity. 30 for open source under an OSI licence, 15 for closed with clear terms, 0 for unclear terms.
- 0 to 30, data handling and retention statements that agree with each other (privacy policy, DPA, retention periods, subprocessors).
- 0 to 20, a deprecation policy or notices with dates.
- 0 to 20, telemetry disclosed with an opt-out (local software), or subprocessors and data locations disclosed (hosted).

The other half of Transparency and trust is the provenance score, computed from checked facts (below). The category score is the mean of the two.

Provenance checks not met in full (half of this category, computed from checked facts):

- Domain age: creatomate.com, registered 2021-03-27 (5 years) (11 of 15)
- Terms of service: read, states 6 of the 7 things a reader expects (9.1 of 10)
- Status page: not found (0 of 10)
- Changelog: not found (0 of 10)
- security.txt: not found (0 of 10)

## What we couldn't check

What we couldn't read counted as absent. Publishing it on a page a plain HTTP fetch can read (not only in a browser) lets the next check count it.

- unchecked: the plan prices on creatomate.com/pricing, which a Paddle script draws in the browser. Only the $54 and $129 figures in the docs were read
- unchecked: the MCP tool schemas, descriptions and annotations, which need a signed-in account
- No status page, changelog, SLA, DPA, security contact or deprecation policy was found on the pages we read
- The docs page for template delete does not mention recovery, while llms.txt says a delete is recoverable for 30 days
- The render `status` list differs between the docs page (six values) and llms.txt (seven, adding `cancelled`)
- The legal form of the company is not stated. The terms name Creatomate, Leeuwarden, and the footer gives company number 90174356
- Whether failed renders are charged credits, and whether a project API key can be rotated, were not found
- GitHub star count is for creatomate/creatomate-node as returned by the GitHub API

## Weaknesses

- No status page, incident history or SLA found. `status.creatomate.com` does not resolve
- No OpenAPI file and no changelog. `/v1` and `/v2` routes are both documented with no deprecation policy
- Plan prices on the pricing page are drawn by a Paddle script. The docs name only $54 (Essential) and $129 (Growth 10K)
- No security.txt, disclosure policy or certification found, and REST keys have no scopes
- Terms and privacy policy are dated 27 June 2022, define the Service as the website, and let Creatomate make user Content available to other users

## What costs an agent a turn today

The notes we give agents before they call it. Each one is a workaround an agent shouldn't need.

- Send `"dry_run": true` to `POST /v2/renders` before a paid render. It returns `valid`, `errors`, `warnings` and the effective source
- Read `warnings` on every render response. A modification keyed to an unknown element or property name is ignored without an error
- Keep under 30 requests per 10 seconds across the whole account, and wait for `Retry-After` on a 429
- Download each file when the webhook fires. Renders, their URLs and their status records are deleted after 30 days
- Use `render_scale` 0.5 for draft videos, about a quarter of the credits, and remember MCP `create_render` spends credits without a confirmation step from the server

## When it's done

Send what changed and where it's published as a dispute (https://www.anchorterminal.com/builders/#disputes, or `POST https://www.anchorterminal.com/api/v1/contact` with `"kind": "dispute"`). Disputes are answered in public, and the listing is checked again by the same checklist. Paying for an audit or a listing claim changes nothing here.

What we couldn't check

  • unchecked: the plan prices on creatomate.com/pricing, which a Paddle script draws in the browser. Only the $54 and $129 figures in the docs were read
  • unchecked: the MCP tool schemas, descriptions and annotations, which need a signed-in account
  • No status page, changelog, SLA, DPA, security contact or deprecation policy was found on the pages we read
  • The docs page for template delete does not mention recovery, while llms.txt says a delete is recoverable for 30 days
  • The render status list differs between the docs page (six values) and llms.txt (seven, adding cancelled)
  • The legal form of the company is not stated. The terms name Creatomate, Leeuwarden, and the footer gives company number 90174356
  • Whether failed renders are charged credits, and whether a project API key can be rotated, were not found
  • GitHub star count is for creatomate/creatomate-node as returned by the GitHub API

Sources 22

  1. MCP integration guide creatomate.com · seen 2026-10-08
  2. REST API reference creatomate.com · seen 2026-10-08
  3. create a render creatomate.com · seen 2026-10-08
  4. limits and concurrency creatomate.com · seen 2026-10-08
  5. file retention creatomate.com · seen 2026-10-08
  6. API key creatomate.com · seen 2026-10-08
  7. llms.txt creatomate.com · seen 2026-10-08
  8. API notes for agents creatomate.com · seen 2026-10-08
  9. quick start and dry_run creatomate.com · seen 2026-10-08
  10. validation errors creatomate.com · seen 2026-10-08
  11. credits creatomate.com · seen 2026-10-08
  12. how pricing works creatomate.com · seen 2026-10-08
  13. pricing page creatomate.com · seen 2026-10-08
  14. terms and conditions creatomate.com · seen 2026-10-08
  15. privacy policy creatomate.com · seen 2026-10-08
  16. about page creatomate.com · seen 2026-10-08
  17. OAuth authorisation server metadata api.creatomate.com · seen 2026-10-08
  18. unauthenticated API response and headers api.creatomate.com · seen 2026-10-08
  19. Node library github.com · seen 2026-10-08
  20. npm registry, creatomate registry.npmjs.org · seen 2026-10-08
  21. npm registry, Preview SDK registry.npmjs.org · seen 2026-10-08
  22. RDAP rdap.org · seen 2026-10-08

Probe metrics

Not measured yet. Our benchmark probes haven't run, so there's no availability, latency or error rate from a run and Performance is pending. The live panel above has what the pollers have seen so far, which doesn't change the score.

Pricing & changes

Paid $54 / mo Trial with 50 credits and no card, with output limited to 480 px per side. Paid plans are monthly credit allowances that do not carry over. The docs name Essential at $54 a month (2,000 credits) and Growth 10K at $129 (10,000 credits). Other plan prices are drawn by a Paddle script and were not read. An image is 1 credit and video is width x height x frame rate x seconds / 100,000,000 (checked 2026-10-08).

Prices

ItemPriceUnitNote
Essential$54per month (plan)2,000 credits, price as stated in the docs
Growth 10K$129per month (plan)10,000 credits, price as stated in the docs

Compared across listings on the price index.

Recent changes

  • Latest release

Follow them as a feed at /feeds/tools/creatomate.xml, or this listing's score history at history.json.

Connect

Install

npm install creatomate

First request

curl -X POST https://api.creatomate.com/v2/renders -H "Content-Type: application/json" -H "Authorization: Bearer $CREATOMATE_API_KEY" -d '{"template_id": "YOUR_TEMPLATE_ID", "dry_run": true, "modifications": {"Title-1": "Your headline here"}}'

Claude Code

claude mcp add creatomate --transport http https://api.creatomate.com/mcp

MCP client configuration

{
  "mcpServers": {
    "creatomate": {
      "url": "https://api.creatomate.com/mcp"
    }
  }
}

Through letme picks today, calling later

GET https://letme.dev/creatomate

letme.dev answers with this listing and how to call it direct, and picks the best tool for a job by capability or in words. Calling through letme (one key, the vendor's own price) comes later. Nothing on letme.dev is for people to look at; this page explains it.

Similar toolGrade ScoreShared capabilitiesx402
Canva REST APIs + MCP CanvaB64.3design.templates design.render video.renderno
Templated API + MCP TemplatedC61.2design.templates design.render video.renderno
Bannerbear API + MCP BannerbearC60.5design.templates design.render video.renderno
Placid API + MCP PlacidE42.9design.templates design.render video.renderno
Shotstack ShotStack Pty LtdB65.3design.templates design.renderno
Adobe Photoshop API AdobeE43.9design.templates design.renderno

Machine-readable

Verify this listing

For the vendor

Is this your product? Link to this page from your own site or README, then tell us where. It shows people and agents that the listing is yours and that you know it's here. It never changes a grade, rank or review.

  1. Add the badge or a link

    Creatomate on Anchor Terminal, D, 47.7/100
    On a light page
    On a dark page
    <a href="https://www.anchorterminal.com/tools/creatomate"><img src="https://www.anchorterminal.com/badges/creatomate.svg" alt="Creatomate on Anchor Terminal" height="20"></a>
    [![Creatomate on Anchor Terminal](https://www.anchorterminal.com/badges/creatomate.svg)](https://www.anchorterminal.com/tools/creatomate)

    It counts on a page on creatomate.com or one of its subdomains, or the README of github.com/creatomate/creatomate-node.

  2. Tell us where it is

    We read it once now and again every week. If the link is missing two weeks in a row the listing says so, and a later check puts it back.

Agents send the same to POST /api/v1/verify as {"slug": "creatomate", "url": "…"}, or call the verify_listing tool at /mcp. Ten checks an hour from one address. What we check. To announce the listing, get sharing assets for social media.

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.