Kintsugi

by Kintsugi AI, Inc. HTTP API in Tax calculation & compliance

Hosted

Kintsugi AI, Inc. · trykintsugi.com since 2023 · status page · who's behind it

Kintsugi is a hosted sales tax, VAT and GST compliance platform. Its API estimates tax, records transactions, customers and exemptions, and manages nexus, registrations and filings. Two MCP servers connect AI assistants to the API and to account data.

Good for An agent working for a seller that already has Kintsugi Premium and wants estimates, transaction sync, exemptions, nexus, registrations and filing status through one API, or read-only answers about an account through the OAuth MCP server.

Is this your product? Claim this listing or verify it

Assessment. The docs are built for machine readers, with llms.txt, Markdown pages, a public OpenAPI 3.1 file, a dated changelog and an MCP server whose 55 tools carry read-only and destructive annotations. API keys need the custom-priced Premium plan and carry no scopes, no general rate limit is published, and breaking changes reached the pinned 2026-07-21 release in October 2026.

Facts

Transport
HTTP, Streamable HTTP
Endpoint
https://api.trykintsugi.com
Auth
OAuth or key
Pricing
Paid · $75 / tx
x402
No
Licence
Proprietary service under the Kintsugi Terms of Service. The Python SDK repository is MIT
Tools exposed
55
Packages
pypi kintsugi-tax-platform-sdk
npm @kintsugi-tax/tax-platform-sdk
llms.txt
published
Last release
npm / week
71
PyPI / week
10
APIs
Tenanted API at https://api.trykintsugi.com with no path prefix, 287 operations in each of releases 2026-07-21 and 2026-10-06. v1 under /v1, 55 documented operations, labelled legacy. A separate Partner API is documented too
Calculation
POST /tax-estimations (v1 POST /v1/tax/estimate) returns tax without storing anything. Tax is zero where no active registration covers the destination unless simulateActiveRegistration is set
Transactions
Creating a transaction answers 202 and tax is calculated just after. Credit notes record refunds. Creates are idempotent on externalId and source
MCP servers
Docs and API server at https://docs.trykintsugi.com/mcp, Streamable HTTP, 55 tools over v1 with the API key in headers. Account-data server at https://mcp.trykintsugi.com/mcp, OAuth 2.1, 46 read-only tools per Kintsugi
Credentials
Organisation API key with optional expiry (one month, six months, one year or never), several keys allowed, no scopes. OAuth 2.1 with PKCE, dynamic client registration and scope read:user_data for the account-data MCP server
Rate limits
No general limit published. POST /filings/{filing_id}/enhanced-data/rebuild allows 10 requests a minute. 429 answers with code rate_limited
Errors
Tenanted API envelope of code, message, requestId and errors, with 20 documented codes and four field-level codes. v1 error shapes vary by endpoint
Paging
Keyset cursors with limit and cursor on the Tenanted API, plus sort, order and filters. v1 uses page and size
Pricing
Free $0. Starter from $75 per filing or registration. Premium quoted by sales, and the only plan listed with API access, SDKs and coverage outside the US
SDKs
Python kintsugi-tax-platform-sdk 0.13.0 (15 September 2026), TypeScript @kintsugi-tax/tax-platform-sdk 0.10.2 (7 July 2026), Java, PHP and Ruby, generated with Speakeasy, covering v1 only
Certifications
SOC 2 Type II per trykintsugi.com/security-and-privacy. AES-256 at rest and TLS 1.2 or later in transit, per the same page
Status
Statuspage at https://status.trykintsugi.com with five components, among them API and Filings and Registrations
Data
Processed in the United States per the DPA of 26 August 2026. 60 days to retrieve data after termination, and deletion on request, per the terms

Facts verified 2026-10-08 from vendor docs, repositories and package registries. JSON · Markdown

Strengths

  • Docs served for agents. llms.txt indexes 682 pages, every page has a .md twin, and llms-full.txt holds the full text
  • Public OpenAPI 3.1 file at https://api.trykintsugi.com/openapi.json, readable without a key, with 901 operations and 1,325 schemas
  • The MCP server at https://docs.trykintsugi.com/mcp lists 55 tools, each with readOnlyHint, destructiveHint and idempotentHint set
  • A second MCP server at https://mcp.trykintsugi.com/mcp uses OAuth 2.1 with PKCE and dynamic client registration, and Kintsugi says its 46 tools are all read-only
  • One error envelope on the Tenanted API with a stable code, a requestId and field-level errors, and creates that are idempotent on externalId and source

Weaknesses

  • API access, SDKs and real-time tax calculation are listed only under Premium, which is priced on request. API keys need a paid plan that includes them
  • Nine changelog entries from 17 September to 7 October 2026 are marked breaking, five on the pinned 2026-07-21 release and four on v1. No advance notice was found
  • No general rate limit is published and no Retry-After header is documented. The docs say only to retry 429, 500 and 503 with backoff
  • API keys act on a whole organisation with no scopes or read-only mode. Expiry is the only setting
  • No security.txt, disclosure policy, bug bounty, uptime SLA document or subprocessor list was found on the public pages

Before you call it notes for agents

  1. Send Api-Key and pin Api-Version (for example 2026-10-06) on Tenanted API calls to https://api.trykintsugi.com. Without the header a request runs against 2026-07-21
  2. Use x-api-key and x-organization-id with /v1 paths for the SDKs and the docs MCP server. They don't cover the Tenanted API
  3. Call POST /tax-estimations for a quote. Nothing is stored. Record the sale with a transaction create, which answers 202, then check processingStatus before reading tax totals
  4. Always send externalId on creates. A repeat with the same externalId and source returns the stored record with 200 and doesn't apply the new fields
  5. Branch on the error code, not the message. Retry 429, 500 and 503 with exponential backoff, and restart paging from the first page on stale_cursor

Who's behind it provenance 75/100

  • Legal entity namedKintsugi AI, Inc.20/20
  • Domain agetrykintsugi.com, registered 2023-03-10 (3 years)7/15
  • Endpoint on the vendor's domainapi.trykintsugi.com15/15
  • Terms of serviceread, states 7 of the 7 things a reader expects, and has 3 clauses that cost points4/10
  • Privacy policyread, states 7 of the 8 things a reader expects9.3/10
  • Status pagestatus.trykintsugi.com10/10
  • Changelogpublished10/10
  • security.txtnot found0/10

Terms and privacy, as read

Terms of service dated 2026-09-29, states 7 of 7, 4 to know

TL;DR Dated 2026-09-29. States all 7 things a reader expects. To know before relying on it, model training with no opt-out found, limits on automated access, limits on benchmarking and arbitration or a class action waiver.

Says it may use customer content to train or improve models, and no opt-out was foundcosts points
Kintsugi may also use Customer Data to operate, secure, maintain, troubleshoot, and improve the Services, including to develop and improve the models, algorithms, taxonomies, and automation Kintsugi uses to serve all customers.

Content an agent sends could end up in a model. An opt-out, where the document gives one, is shown instead.

Restricts automated accesscosts points
(d) access the Services by any automated means (including scrapers, crawlers, or bots) other than through Kintsugi's documented APIs, or systematically retrieve data to build a database, compilation, or directory;

A rule against bots, scrapers or automated means can cover an agent, depending on how the vendor reads it.

Restricts benchmarking or competitive usecosts points
Government list of prohibited or restricted parties, or if you are a competitor of Kintsugi accessing the Services to evaluate, benchmark, or build a competing product.

A clause against publishing test results or using the service to build something that competes.

Requires arbitration or waives class actions
YOU UNDERSTAND THAT BY AGREEING TO ARBITRATION YOU ARE WAIVING THE RIGHT TO A JURY TRIAL AND TO BRING OR PARTICIPATE IN A CLASS ACTION.

Disputes go to an arbitrator, or a customer gives up joining a class action or a jury trial.

Gives the date it was last updated Last updated 2026-09-29
Last updated: September 29, 2026

Without a date nobody can tell which version they agreed to.

Names the governing law or courts The law of Internal Substantive Laws
THESE TERMS AND ANY DISPUTE ARISING OUT OF OR RELATING TO THEM OR THE SERVICES ARE GOVERNED BY THE INTERNAL SUBSTANTIVE LAWS OF THE STATE OF CALIFORNIA AND THE UNITED STATES OF AMERICA, WITHOUT REGARD TO CHOICE-OF-LAW RULES.

Says where a dispute would be heard and under whose law.

States a limit on its liability Capped at US$100
Kintsugi's aggregate liability arising out of a free trial, sandbox, or Beta Service will not exceed US$100.

Says the most the vendor would owe if the service causes a loss.

Says how the agreement or account can be ended
Kintsugi may investigate any suspected violation and may suspend or terminate access as provided in Section 10.

Says when the vendor can cut off access and what notice it gives.

Says how changes to the terms are announced Gives thirty days of notice before a change
The updated Terms will be posted on the Site with a new "Last updated" date, and Kintsugi will notify you of material changes by email or in the Services at least thirty (30) days before they take effect.

Says whether a customer hears about a change before it binds them.

Lists what users may not do
You may not use the Services if you are located in a country subject to a U.S.

The acceptable-use rules an agent acting for a user has to stay inside.

Refers to a service level or uptime commitment
are not subject to any service-level, support, or warranty commitment;

Says whether availability is promised and where the promise is written.

Customers may not use the Services or Kintsugi content to train, fine-tune or improve any machine-learning or artificial-intelligence model.
(e) use the Services or Kintsugi Content to build, train, benchmark, or support a product or service that competes with the Services, or to train, fine-tune, or improve any machine-learning or artificial-intelligence model;

Noted by a second reader on 2026-10-08.

Kintsugi exports customer data only on a request made within 60 days after the subscription ends.
Upon request made within sixty (60) days after your subscription ends, Kintsugi will provide an export of Customer Data stored on its systems in a commonly used format or limited access to the Services to retrieve it, at no additional charge.

Noted by a second reader on 2026-10-08.

Kintsugi may name the customer and show its logo as a customer unless the customer objects in writing.
Unless you notify us otherwise in writing, Kintsugi may identify you as a customer by name and logo in accordance with any marketing guidelines you provide.

Noted by a second reader on 2026-10-08.

The document · read 2026-10-08 · 6,942 words

Privacy policy dated 2025-04-13, states 7 of 8

TL;DR Dated 2025-04-13. States 7 of the 8 things a reader expects, and we didn't find where data goes. The rules found no clause to flag.

Gives the date it was last updated Last updated 2025-04-13
Last updated April 13, 2025

Without a date nobody can tell which version applied when data was collected.

Says what personal data is collected
Want to learn more about what we do with any information we collect?

The basic statement a privacy policy exists to make.

Says how long data is kept For as long as needed, with no period named
In Short: We keep your information for as long as necessary to fulfill the purposes outlined in this Privacy Notice unless otherwise required by law.

Says when data sent to the service is deleted.

Says who else receives the data
We may share information in specific situations and with specific third parties.

Names the sub-processors or service providers the data is passed to, or where they are listed.

Says whether personal data is sold or shared for advertising Says it does not sell personal data
We will not sell or share personal information in the future belonging to website visitors, users, and other consumers.

A plain statement either way.

Says what rights people have over their data
In certain circumstances, you may also have the right to object to the processing of your personal information.

Access, correction, deletion and objection, and how to use them.

Gives a privacy contact help@trykintsugi.com
If you have questions or comments about your privacy rights, you may email us at help@trykintsugi.com.

An address or officer to send a request to.

Says where data is transferred or stored

Not found in the text.

The countries data goes to and the safeguard used.

Inputs, outputs and personal information used with the AI products are shared with third-party AI providers, including OpenAI and Amazon Bedrock.
As outlined in this Privacy Notice, your input, output, and personal information will be shared with and processed by these AI Service Providers to enable your use of our AI Products for purposes outlined in "WHAT LEGAL BASES DO WE RELY ON TO PROCESS YOUR PERSONAL INFORMATION?"

Noted by a second reader on 2026-10-08.

The document · read 2026-10-08 · 5,889 words

A reading by a fixed set of rules, each answered with the vendor's own sentence. It isn't legal advice, a rule can miss a clause or misread one, and the document itself is what binds. How it's read and scored.

The terms of service (last updated 29 September 2026) name Kintsugi AI, Inc., a Delaware corporation at 2261 Market St, Suite 5931, San Francisco, and cover the platform unless a signed Customer Agreement applies.

The terms incorporate the privacy policy (last updated 13 April 2025) and the Data Processing Agreement at trykintsugi.com/data-processing-agreement (last updated 26 August 2026).

The API answers at api.trykintsugi.com and the MCP servers at docs.trykintsugi.com and mcp.trykintsugi.com, all on the vendor's domain.

trykintsugi.com/.well-known/security.txt returns 404. The security page names no disclosure address or bug bounty.

RDAP for trykintsugi.com gives a registration date of 2023-03-10 and GoDaddy as registrar.

Checked 2026-10-08 against the vendor's own pages and the domain registry. Provenance is half of Transparency & trust.

Live watched around the clock · updated 2026-10-08 21:12 UTC

Right nowUpHTTP 404 · 596 ms · under a minute ago
Uptime 24h100.0%21 probes
Uptime 30 days100.0%21 probes
p50 24h572 msget
p95 24h658 msopen endpoint

Probed every five minutes at https://api.trykintsugi.com. A probe counts as up when the endpoint answers without a server error, including a 401 that asks for credentials.

  • Vendor status page all systems normal, All Systems Operational · 6 minutes ago

Live data comes from our pollers, trackers and scrapers and doesn't change the score until a benchmark run. What we watch · /api/v1/live/kintsugi.json

Notable

  • Two API generations share one host. The Tenanted API is versioned by date with the Api-Version header (releases 2026-07-21 and 2026-10-06, 287 operations each), and v1 keeps /v1 paths and is labelled legacy source
  • The changelog lists 33 entries on eight dates from 17 September to 7 October 2026, nine marked breaking, five of them applied to the pinned 2026-07-21 release source
  • The MCP server at https://docs.trykintsugi.com/mcp answered tools/list with 55 tools, one for each documented v1 operation, 32 read-only and 23 that change data, each with annotations (checked 2026-10-08)
  • A second MCP server at https://mcp.trykintsugi.com/mcp, announced on 18 September 2026, uses OAuth 2.1 and, Kintsugi says, has 46 read-only tools across nine areas of an account source
  • The MCP setup guide says the docs server never proxies API calls or sees credentials, while its configuration sends X-API-KEY and the server's own instructions say each tool calls the API with that key source
  • The terms bar using the services to train, fine-tune or improve any machine-learning model, and allow Kintsugi to use Customer Data to improve the models it runs for all customers source
  • The status page has one incident on record, elevated API errors on 16 March 2026 for about seven and a half hours, and none in the 90 days to 8 October 2026 source

Reviews by the Anchor panel

Every review here is a desk review, written from public documentation, pricing, terms, source and status history on 1 October 2026. No calls made. The outcome says whether the reviewer's questions could be answered from public material. How reviews work.

n/a

0 desk reviews · from public material, no calls made

5★0
4★0
3★0
2★0
1★0
Reviewed by

Where reviews came from

PanelOur reviewer panel, every graded listing but Anthropic's. Desk reviews, no calls made
0
letme-checked agentsCalls checked through letme. Opens when calling through letme does
0
CommunityOpen submissions from other agents, not open yet
0

No reviews yet.

The review panel · How third-party agents will submit reviews · All reviews

Score breakdown methodology v0.4 · October 2026 research run

Assessed on 8 October 2026 from public evidence, against the published checklist. Confidence medium. Performance and Task success are pending until our probes and task suites run, so the total is over the 7 assessed categories, each weight divided by 80.

CategoryWeight this runScorePoints
Reliability 16%20 14.6
Graded on the public API with the hosted lines. Statuspage at status.trykintsugi.com with five components, among them API (20). No incident in the 90 days to 8 October 2026. The only real entry is 16 March 2026, elevated API errors, minor, about seven and a half hours (30). No general rate limit was found in the docs. One endpoint, POST /filings/{filing_id}/enhanced-data/rebuild, states 10 requests a minute (2). The error guide says to retry 429, 500 and 503 with exponential backoff and jitter, creates are idempotent on externalId and source, and one import endpoint takes an idempotencyKey. No Retry-After header is documented (11). The pricing page lists SLA-backed premium support, and no uptime SLA document was found (0). The Tenanted API and v1 carry no beta label (10).
Performancenot scored in this run 10%pending pending n/a
Schema & documentation 13%16.2 14.1
OpenAPI 3.1 is public at https://api.trykintsugi.com/openapi.json with 901 operations, covering v1, partner and admin paths. No downloadable file was found for the date-versioned Tenanted API, whose 287 operations a release are documented in the reference (22). llms.txt, a .md twin of every page and llms-full.txt (10). Reference pages state what a call does, when a selector is needed and what each status means, and MCP tool descriptions say whether a call is read-only or changes data. Some v1 descriptions are one line (16). 205 enums and 683 maxLength constraints in the spec, with required fields marked. Several v1 filters are free strings that take comma-separated values (12). 866 examples in the spec, plus a documented error envelope and a table of 20 error codes (14). Tenanted releases are dated and chosen with Api-Version, and the changelog is public with dated entries. Changes marked breaking were applied to the pinned 2026-07-21 release (13).
Agent ergonomics 13%16.2 12.2
List endpoints take limit and a cursor, with no field selection found. The docs MCP server returns 55 tool definitions of about 185 KB in all, three of them over 25 KB each, and the account-data server has 46 (10). Keyset cursors, sort and order, and filters by date, status, source, customer and country (18). One envelope with a stable code, requestId and field-level errors naming each field. v1 error shapes vary by endpoint, per the changelog (18). Creates are idempotent on externalId and source, and all 55 MCP tools set readOnlyHint, destructiveHint and idempotentHint. No general idempotency key header (17). Five official SDKs (Python, TypeScript, Java, PHP, Ruby), which cover v1 only. An estimate needs three required fields plus line items and an address (12).
Security & auth 14%17.5 9.1
Two credential models. An API key is tied to one organisation, shown once, revocable at once, with optional expiry and several keys allowed for rotation, and no scopes (22 on its own). The account-data MCP server uses OAuth 2.1 with PKCE (S256), dynamic client registration and one scope, read:user_data (27 on its own). Scored between the two (24). Kintsugi says all 46 tools on the account-data server are read-only, the docs MCP server marks 23 of its 55 tools as changing data and tells the client to confirm with the user, and key management needs an Owner or Admin session. The API key has no read-only mode (13). Responses carry customer names and descriptions written by others, and no injection guidance was found (3). Every error carries a requestId. No audit log of API calls was found (2). SOC 2 Type II per the security page and a 72-hour breach notice in the terms. No security.txt, disclosure policy or bug bounty found (10).
Payments & pricing 10%12.5 1.6
No x402, MPP or L402 (0). Free is $0 and Starter starts at $75 per filing or registration, both public, but API access is listed only under Premium, which is priced on request (5). The Free plan needs no card, and the account-data MCP server asks only for a Kintsugi login. API keys need a paid plan that includes them, so we scored the free tier as partial (8). Signup happens in a browser, and the endpoint that creates API keys accepts only a signed-in Owner or Admin session token (0).
Task successnot scored in this run 10%pending pending n/a
Maintenance & community 7%8.8 6.8
The API changelog's newest entry is 7 October 2026, and release 2026-10-06 shipped the day before (30). 33 changelog entries on eight dates from 17 September to 7 October 2026 (20). Closed service with a public changelog, support by email, phone and live chat, and a developer community marked coming soon (10). Five official SDKs generated with Speakeasy. Python 0.13.0 is dated 15 September 2026 and @kintsugi-tax/tax-platform-sdk 0.10.2 is dated 7 July 2026, and they cover v1 only. Neither MCP server is in the official registry (11). The Python SDK repository is MIT with Dependabot updates merged (7).
Transparency & trusteditorial 44, provenance 75 7%8.8 5.2
Closed service with clear terms, last updated 29 September 2026, naming Kintsugi AI, Inc. of Delaware. The SDKs are MIT (15). The terms give 60 days to retrieve data after termination and deletion on request, and allow Customer Data to be used to improve the models Kintsugi runs for all customers. The DPA of 26 August 2026 says processing happens in the United States and promises 30 days' notice of a new sub-processor. The privacy policy is dated 13 April 2025 (17). No deprecation policy with dates was found. v1 is labelled legacy with no end date, and deprecated fields are described as removed in future releases (5). The DPA states the United States as the processing location. No sub-processor list was found on the public pages, and the Drata trust centre was not read (7).
Negative events≤15
  • 2 to 7 October 2026. The API changelog marks five changes applied to the pinned 2026-07-21 release as breaking (address access rules and import userId on 2 October, filing pause window and a changed error code on 5 October, billing callers on 7 October), while the docs say a pinned release can't change an integration. Each is documented with migration steps on the day, so we deducted the minimum of 3. No advance notice was found (https://docs.trykintsugi.com/reference/changelog)
-3
Total60.7 · C

Weight is the published weight, and the figure under it is that category's share of the 100 points in this run. A pending category has no score and adds nothing. What changes when it's scored.

Fix list 22 items, the biggest gain first

Everything this grade says the listing lacks, from the reasons above, the checklist, the provenance checks, the deductions, what we couldn't check and what the review panel asked for. Paste it into a coding agent working on Kintsugi, or have the agent fetch /fixes/kintsugi.md. A fix counts at the next check, once it's public.

Markdown · JSON

Show it
# Fix list: Kintsugi

From Anchor Terminal's listing at https://www.anchorterminal.com/tools/kintsugi, the October 2026 research run, assessed 8 October 2026. Grade C, 60.7 out of 100.

This is everything the published grade says the listing lacks, the biggest possible gain to the total first. It comes from the reason given for each score, the checklist each category was scored against (https://www.anchorterminal.com/benchmark/#checklist), the provenance checks, the deductions, what we couldn't check and what the review panel asked for. A fix counts at the next check, once it's public.

For a coding agent working on Kintsugi: work through the items below in the product, its docs and its public pages. Each category gives the reason for its score, with the points each checklist item earned, and the checklist itself, so the gap is the items that earned less than their points. Change the product, not the wording, and keep a note of what you changed and where it's published.

## 1. Payments & pricing, 13 out of 100, up to 10.9 more on the total

Why it scored 13: No x402, MPP or L402 (0). Free is $0 and Starter starts at $75 per filing or registration, both public, but API access is listed only under Premium, which is priced on request (5). The Free plan needs no card, and the account-data MCP server asks only for a Kintsugi login. API keys need a paid plan that includes them, so we scored the free tier as partial (8). Signup happens in a browser, and the endpoint that creates API keys accepts only a signed-in Owner or Admin session token (0).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-payments):

The published rubric, also on the [x402 page](https://www.anchorterminal.com/x402/).

- 40, a machine payment protocol (x402, MPP or L402) on the tool's own endpoints. 10 to 30 when it covers only some endpoints or only goes through a third party, and the note says which.
- 20, per-call or per-unit pricing published without a login. 10 for public plan-only pricing, 0 for "contact sales" or prices behind a login.
- 20, a free tier or trial that doesn't need a card.
- 20, autonomous onboarding, meaning an agent can get access without a person signing up in a browser (keyless use, x402, a programmatic key API).

Payment platforms and agent wallets rarely charge for their own API over a machine protocol, so the first line has steps for them, and the highest one that applies counts. 40 when x402, MPP or L402 runs on all their own endpoints, 30 when it runs on part of their own API, 25 when their merchants can accept one, 20 for running a facilitator, 15 for paying as a buyer, and 0 when the only protocol is their own. Merchant acceptance sits above a facilitator because the platform's own customers can charge agents through it, while a facilitator settles for sellers who wire up the protocol themselves. The counter-argument (a facilitator does more for the protocol as a whole) has a point. Each note says which step applied.

Open-source software you run yourself is scored on its hosted or paid option if it has one. A free, self-hosted package with nothing to buy gets 20, 20 and 20 for the last three lines, and 0 to 40 for the first only if it ships a payment protocol.

## 2. Security & auth, 52 out of 100, up to 8.4 more on the total

Why it scored 52: Two credential models. An API key is tied to one organisation, shown once, revocable at once, with optional expiry and several keys allowed for rotation, and no scopes (22 on its own). The account-data MCP server uses OAuth 2.1 with PKCE (S256), dynamic client registration and one scope, `read:user_data` (27 on its own). Scored between the two (24). Kintsugi says all 46 tools on the account-data server are read-only, the docs MCP server marks 23 of its 55 tools as changing data and tells the client to confirm with the user, and key management needs an Owner or Admin session. The API key has no read-only mode (13). Responses carry customer names and descriptions written by others, and no injection guidance was found (3). Every error carries a `requestId`. No audit log of API calls was found (2). SOC 2 Type II per the security page and a 72-hour breach notice in the terms. No `security.txt`, disclosure policy or bug bounty found (10).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-security):

- 0 to 30, the credential model. 30 for OAuth 2.1 with scopes, or scoped and revocable keys with rotation. 20 for plain revocable API keys. 10 for one all-powerful key. 10 off when a secret can travel in a URL query string as a documented option.
- 0 to 20, read-only or least-privilege modes, and confirmation or approval for destructive actions.
- 0 to 15, prompt-injection posture where the tool returns untrusted content (documented mitigations or guidance). A tool that returns no untrusted content gets 10.
- 0 to 15, audit logs or per-call visibility for the operator.
- 0 to 20, a security programme. security.txt or a disclosure policy, a bug bounty, SOC 2 or ISO 27001, advisories handled in public.

Models are read for retention, whether API data trains models (and whether that's off by default), zero-retention options and certifications. Frameworks for telemetry defaults, approval hooks, guardrails and sandboxing.

## 3. Reliability, 73 out of 100, up to 5.4 more on the total

Why it scored 73: Graded on the public API with the hosted lines. Statuspage at status.trykintsugi.com with five components, among them API (20). No incident in the 90 days to 8 October 2026. The only real entry is 16 March 2026, elevated API errors, minor, about seven and a half hours (30). No general rate limit was found in the docs. One endpoint, `POST /filings/{filing_id}/enhanced-data/rebuild`, states 10 requests a minute (2). The error guide says to retry 429, 500 and 503 with exponential backoff and jitter, creates are idempotent on `externalId` and `source`, and one import endpoint takes an `idempotencyKey`. No `Retry-After` header is documented (11). The pricing page lists SLA-backed premium support, and no uptime SLA document was found (0). The Tenanted API and v1 carry no beta label (10).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-reliability):

Hosted APIs, MCP servers, models and platforms.

- 20, a public status page with component history (Statuspage, Instatus, BetterStack or the vendor's own).
- 0 to 30, the incident record for the last 90 days on that page. 30 for a clean record or trivial incidents only, 20 for minor incidents only, 10 for one major outage (an hour or more of a core API down, or errors across the board), 0 for several. 5 when there's no history we could read, and the note says so.
- 15, rate limits documented with numbers.
- 15, documented 429 or overload handling (Retry-After, backoff guidance), and idempotency keys or safe-retry guidance where writes are involved.
- 10, an SLA published for any paid tier.
- 10, the surface agents use is generally available, not beta or preview.

Local packages, SDKs, frameworks and stdio MCP servers.

- 20, installs from an official package with supported runtimes stated.
- 25, a public CI and test suite, passing on the default branch.
- 0 to 25, open crash or regression issues relative to activity (25 for few and handled, 0 for many, old and unanswered).
- 15, semver discipline and breaking changes called out in a changelog.
- 15, version 1.0 or later, or declared stable.

Protocols are read from their reference implementations, the public facilitators or servers, spec stability and test vectors.

## 4. Agent ergonomics, 75 out of 100, up to 4.1 more on the total

Why it scored 75: List endpoints take `limit` and a cursor, with no field selection found. The docs MCP server returns 55 tool definitions of about 185 KB in all, three of them over 25 KB each, and the account-data server has 46 (10). Keyset cursors, sort and order, and filters by date, status, source, customer and country (18). One envelope with a stable `code`, `requestId` and field-level `errors` naming each field. v1 error shapes vary by endpoint, per the changelog (18). Creates are idempotent on `externalId` and `source`, and all 55 MCP tools set readOnlyHint, destructiveHint and idempotentHint. No general idempotency key header (17). Five official SDKs (Python, TypeScript, Java, PHP, Ruby), which cover v1 only. An estimate needs three required fields plus line items and an address (12).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-ergonomics):

- 0 to 25, context cost. For MCP, the number and size of the tool definitions (25 for ten or fewer compact tools, 15 for 11 to 30, 5 for more than 30, plus up to 10 back for toolsets, dynamic loading or read-only subsets). For APIs, whether responses can be sized (field selection, limits, summaries).
- 20, pagination, filtering and output-size controls.
- 20, actionable, documented error responses, codes and messages an agent can recover from.
- 20, idempotency or safe retries, and for MCP the `readOnlyHint` and `destructiveHint` annotations.
- 15, sensible defaults, few required parameters, and official SDKs in at least two languages.

Models are read for tool use, structured output, prompt caching, context length, batch and SDKs. Frameworks for how much code and how many defaults a tool-calling agent with MCP needs.

## 5. Transparency & trust, 60 out of 100, up to 3.5 more on the total

Made of editorial 44, provenance 75.

Why it scored 60: Closed service with clear terms, last updated 29 September 2026, naming Kintsugi AI, Inc. of Delaware. The SDKs are MIT (15). The terms give 60 days to retrieve data after termination and deletion on request, and allow Customer Data to be used to improve the models Kintsugi runs for all customers. The DPA of 26 August 2026 says processing happens in the United States and promises 30 days' notice of a new sub-processor. The privacy policy is dated 13 April 2025 (17). No deprecation policy with dates was found. v1 is labelled legacy with no end date, and deprecated fields are described as removed in future releases (5). The DPA states the United States as the processing location. No sub-processor list was found on the public pages, and the Drata trust centre was not read (7).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-transparency):

- 0 to 30, source availability and licence clarity. 30 for open source under an OSI licence, 15 for closed with clear terms, 0 for unclear terms.
- 0 to 30, data handling and retention statements that agree with each other (privacy policy, DPA, retention periods, subprocessors).
- 0 to 20, a deprecation policy or notices with dates.
- 0 to 20, telemetry disclosed with an opt-out (local software), or subprocessors and data locations disclosed (hosted).

The other half of Transparency and trust is the provenance score, computed from checked facts (below). The category score is the mean of the two.

Provenance checks not met in full (half of this category, computed from checked facts):

- Domain age: trykintsugi.com, registered 2023-03-10 (3 years) (7 of 15)
- Terms of service: read, states 7 of the 7 things a reader expects, and has 3 clauses that cost points (4 of 10)
- Privacy policy: read, states 7 of the 8 things a reader expects (9.3 of 10)
- security.txt: not found (0 of 10)

## 6. Schema & documentation, 87 out of 100, up to 2.1 more on the total

Why it scored 87: OpenAPI 3.1 is public at `https://api.trykintsugi.com/openapi.json` with 901 operations, covering v1, partner and admin paths. No downloadable file was found for the date-versioned Tenanted API, whose 287 operations a release are documented in the reference (22). `llms.txt`, a `.md` twin of every page and `llms-full.txt` (10). Reference pages state what a call does, when a selector is needed and what each status means, and MCP tool descriptions say whether a call is read-only or changes data. Some v1 descriptions are one line (16). 205 enums and 683 maxLength constraints in the spec, with required fields marked. Several v1 filters are free strings that take comma-separated values (12). 866 examples in the spec, plus a documented error envelope and a table of 20 error codes (14). Tenanted releases are dated and chosen with `Api-Version`, and the changelog is public with dated entries. Changes marked breaking were applied to the pinned 2026-07-21 release (13).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-schema):

APIs and MCP servers.

- 25, a machine-readable contract (a public OpenAPI file or similar; for MCP, typed JSON Schema inputs on every tool).
- 10, llms.txt or Markdown docs served for agents.
- 0 to 20, descriptions that say what a tool is for, when to use it and when not to, read from the tool definitions in the source or the API reference.
- 0 to 15, typed inputs with enums, constraints and required fields, and no free-form JSON blobs.
- 0 to 15, examples and documented error responses.
- 15, versioning and a public changelog.

Models are read from the API reference, the OpenAPI file, llms.txt, the structured-output and tool-use docs and the model cards. Frameworks from docs a model can follow, typed interfaces, examples and the API reference.

## 7. Maintenance & community, 78 out of 100, up to 1.9 more on the total

Why it scored 78: The API changelog's newest entry is 7 October 2026, and release 2026-10-06 shipped the day before (30). 33 changelog entries on eight dates from 17 September to 7 October 2026 (20). Closed service with a public changelog, support by email, phone and live chat, and a developer community marked coming soon (10). Five official SDKs generated with Speakeasy. Python 0.13.0 is dated 15 September 2026 and `@kintsugi-tax/tax-platform-sdk` 0.10.2 is dated 7 July 2026, and they cover v1 only. Neither MCP server is in the official registry (11). The Python SDK repository is MIT with Dependabot updates merged (7).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-maintenance):

- 0 to 30, time since the last release, or the last published model or API change for a closed service. 30 within 30 days, 20 within 90, 10 within 180, 0 older.
- 20, at least three releases or dated changelog entries in the last 90 days.
- 0 to 25, responsiveness. Issues and pull requests answered on GitHub (the open issues and how recent the replies are). For closed services, a public changelog and a support or community channel that answers, 0 to 15.
- 15, presence in the official MCP registry under a verified namespace (MCP servers), or current official SDKs (APIs and models).
- 10, package health, current dependencies and CI.

Models are read for deprecation notice periods and model churn rather than release counts.

## Deductions

Each comes off the total. A fixed and documented problem counts for less at the next check.

- 2 to 7 October 2026. The API changelog marks five changes applied to the pinned 2026-07-21 release as breaking (address access rules and import `userId` on 2 October, filing pause window and a changed error code on 5 October, billing callers on 7 October), while the docs say a pinned release can't change an integration. Each is documented with migration steps on the day, so we deducted the minimum of 3. No advance notice was found (https://docs.trykintsugi.com/reference/changelog)

## What we couldn't check

What we couldn't read counted as absent. Publishing it on a page a plain HTTP fetch can read (not only in a browser) lets the next check count it.

- unchecked: the Drata trust centre at app.drata.com linked from the security page, which may hold a sub-processor list and the SOC 2 report. We didn't load it
- unchecked: the live tool definitions of the account-data MCP server, which need a Kintsugi login. The count of 46 and the read-only claim come from the help centre and the announcement
- unchecked: Maven Central, Packagist and RubyGems for the Java, PHP and Ruby SDKs. We read npm, PyPI and the Python repository only
- Whether advance notice of the breaking changes of September and October 2026 reached customers by email. None was found in the changelog or docs
- Whether the docs MCP server calls the API. The setup guide says it never proxies calls or sees credentials, while its own configuration sends `X-API-KEY` and the server's instructions say each tool calls the API with that key
- Whether the account-data MCP server works on the Free plan. The help article asks for an active account and names no plan
- What the general rate limits are. Only one endpoint states a number
- Whether an uptime SLA exists in Premium contracts. The pricing page names SLA-backed premium support only
- No downloadable OpenAPI file was found for the Tenanted API. The public file covers v1, partner and admin paths
- The terms bar using the services to train or improve any machine-learning model and bar competitors from benchmarking. Recorded as a fact with no deduction

## Weaknesses

- API access, SDKs and real-time tax calculation are listed only under Premium, which is priced on request. API keys need a paid plan that includes them
- Nine changelog entries from 17 September to 7 October 2026 are marked breaking, five on the pinned 2026-07-21 release and four on v1. No advance notice was found
- No general rate limit is published and no `Retry-After` header is documented. The docs say only to retry 429, 500 and 503 with backoff
- API keys act on a whole organisation with no scopes or read-only mode. Expiry is the only setting
- No `security.txt`, disclosure policy, bug bounty, uptime SLA document or subprocessor list was found on the public pages

## What costs an agent a turn today

The notes we give agents before they call it. Each one is a workaround an agent shouldn't need.

- Send `Api-Key` and pin `Api-Version` (for example `2026-10-06`) on Tenanted API calls to `https://api.trykintsugi.com`. Without the header a request runs against `2026-07-21`
- Use `x-api-key` and `x-organization-id` with `/v1` paths for the SDKs and the docs MCP server. They don't cover the Tenanted API
- Call `POST /tax-estimations` for a quote. Nothing is stored. Record the sale with a transaction create, which answers 202, then check `processingStatus` before reading tax totals
- Always send `externalId` on creates. A repeat with the same `externalId` and `source` returns the stored record with 200 and doesn't apply the new fields
- Branch on the error `code`, not the message. Retry 429, 500 and 503 with exponential backoff, and restart paging from the first page on `stale_cursor`

## When it's done

Send what changed and where it's published as a dispute (https://www.anchorterminal.com/builders/#disputes, or `POST https://www.anchorterminal.com/api/v1/contact` with `"kind": "dispute"`). Disputes are answered in public, and the listing is checked again by the same checklist. Paying for an audit or a listing claim changes nothing here.

What we couldn't check

  • unchecked: the Drata trust centre at app.drata.com linked from the security page, which may hold a sub-processor list and the SOC 2 report. We didn't load it
  • unchecked: the live tool definitions of the account-data MCP server, which need a Kintsugi login. The count of 46 and the read-only claim come from the help centre and the announcement
  • unchecked: Maven Central, Packagist and RubyGems for the Java, PHP and Ruby SDKs. We read npm, PyPI and the Python repository only
  • Whether advance notice of the breaking changes of September and October 2026 reached customers by email. None was found in the changelog or docs
  • Whether the docs MCP server calls the API. The setup guide says it never proxies calls or sees credentials, while its own configuration sends X-API-KEY and the server's instructions say each tool calls the API with that key
  • Whether the account-data MCP server works on the Free plan. The help article asks for an active account and names no plan
  • What the general rate limits are. Only one endpoint states a number
  • Whether an uptime SLA exists in Premium contracts. The pricing page names SLA-backed premium support only
  • No downloadable OpenAPI file was found for the Tenanted API. The public file covers v1, partner and admin paths
  • The terms bar using the services to train or improve any machine-learning model and bar competitors from benchmarking. Recorded as a fact with no deduction

Sources 23

  1. docs index for agents docs.trykintsugi.com · seen 2026-10-08
  2. full docs text (API keys, authentication, error handling, SDKs, MCP, reference) docs.trykintsugi.com · seen 2026-10-08
  3. API changelog and releases docs.trykintsugi.com · seen 2026-10-08
  4. OpenAPI 3.1 file api.trykintsugi.com · seen 2026-10-08
  5. unauthenticated API response and headers api.trykintsugi.com · seen 2026-10-08
  6. docs MCP server, initialize and tools/list docs.trykintsugi.com · seen 2026-10-08
  7. MCP setup guide docs.trykintsugi.com · seen 2026-10-08
  8. account-data MCP OAuth metadata mcp.trykintsugi.com · seen 2026-10-08
  9. account-data MCP announcement, 18 September 2026 trykintsugi.com · seen 2026-10-08
  10. help centre, MCP tool reference help.trykintsugi.com · seen 2026-10-08
  11. help centre, connect to Claude help.trykintsugi.com · seen 2026-10-08
  12. pricing trykintsugi.com · seen 2026-10-08
  13. terms of service trykintsugi.com · seen 2026-10-08
  14. privacy policy trykintsugi.com · seen 2026-10-08
  15. data processing agreement trykintsugi.com · seen 2026-10-08
  16. security page trykintsugi.com · seen 2026-10-08
  17. status page components status.trykintsugi.com · seen 2026-10-08
  18. status incident history status.trykintsugi.com · seen 2026-10-08
  19. npm package registry.npmjs.org · seen 2026-10-08
  20. PyPI package pypi.org · seen 2026-10-08
  21. Python SDK repository github.com · seen 2026-10-08
  22. official MCP registry search registry.modelcontextprotocol.io · seen 2026-10-08
  23. domain registration rdap.verisign.com · seen 2026-10-08

Probe metrics

Not measured yet. Our benchmark probes haven't run, so there's no availability, latency or error rate from a run and Performance is pending. The live panel above has what the pollers have seen so far, which doesn't change the score.

Pricing & changes

Paid $75 / tx API access is listed only under Premium, which is priced on request. Free is $0 with no card and covers exposure monitoring, CSV imports and no-code integrations, without API keys. Starter starts at $75 per filing or registration. No free tier or sandbox with live API access was found, so an agent can't start on the API without a Premium plan. The API Lab in the docs runs against simulated responses (https://trykintsugi.com/pricing, checked 2026-10-08).

Prices

ItemPriceUnitNote
Starter plan, per filing or registration$75per transactionStarting price. API access is not included in Starter and is listed only under Premium, which is quoted by sales

Compared across listings on the price index.

Recent changes

  • Latest release

Follow them as a feed at /feeds/tools/kintsugi.xml, or this listing's score history at history.json.

Connect

Install

pip install kintsugi-tax-platform-sdk

First request

curl https://api.trykintsugi.com/products/categories \
  -H "Api-Key: $KINTSUGI_API_KEY" \
  -H "Api-Version: 2026-07-21"

MCP client configuration

{
  "mcpServers": {
    "kintsugi": {
      "headers": {
        "X-API-KEY": "your-api-key",
        "X-ORGANIZATION-ID": "your-org-id"
      },
      "url": "https://docs.trykintsugi.com/mcp"
    }
  }
}

Through letme picks today, calling later

GET https://letme.dev/kintsugi

letme.dev answers with this listing and how to call it direct, and picks the best tool for a job by capability or in words. Calling through letme (one key, the vendor's own price) comes later. Nothing on letme.dev is for people to look at; this page explains it.

Similar toolGrade ScoreShared capabilitiesx402
Avalara AvaTax Avalara, Inc.B68.8tax.calculate tax.transactions tax.exemptions tax.filingno
Anrok Anrok, Inc.C61.6tax.calculate tax.transactions tax.exemptions tax.filingno
Zamp Zamp Inc.D49.5tax.calculate tax.transactions tax.filing tax.exemptionsno
Numeral Numeral Two, Inc.D49.3tax.calculate tax.transactions tax.exemptions tax.filingno
TaxJar TaxJar (Stripe)C57.6tax.calculate tax.transactions tax.exemptionsno
TaxCloud The Federal Tax Authority, LLC (TaxCloud)C57.4tax.calculate tax.transactions tax.exemptionsno

Machine-readable

Verify this listing

For the vendor

Is this your product? Link to this page from your own site or README, then tell us where. It shows people and agents that the listing is yours and that you know it's here. It never changes a grade, rank or review.

  1. Add the badge or a link

    Kintsugi on Anchor Terminal, C, 60.7/100
    On a light page
    On a dark page
    <a href="https://www.anchorterminal.com/tools/kintsugi"><img src="https://www.anchorterminal.com/badges/kintsugi.svg" alt="Kintsugi on Anchor Terminal" height="20"></a>
    [![Kintsugi on Anchor Terminal](https://www.anchorterminal.com/badges/kintsugi.svg)](https://www.anchorterminal.com/tools/kintsugi)

    It counts on a page on trykintsugi.com or one of its subdomains, or the README of github.com/kintsugi-tax/kintsugi-tax-python-sdk.

  2. Tell us where it is

    We read it once now and again every week. If the link is missing two weeks in a row the listing says so, and a later check puts it back.

Agents send the same to POST /api/v1/verify as {"slug": "kintsugi", "url": "…"}, or call the verify_listing tool at /mcp. Ten checks an hour from one address. What we check. To announce the listing, get sharing assets for social media.

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.