# Paragon ActionKit + MCP (slim) > Embedded integration platform for SaaS products. - Full: https://www.anchorterminal.com/tools/paragon.md (~5,950 tokens) · this version ~1,580 tokens · JSON https://www.anchorterminal.com/tools/paragon.json · canonical https://www.anchorterminal.com/tools/paragon - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-05 **D · 47.8/100 · rank #381 of 452 · #8 in Workflow automation · not agent-ready · confidence medium** Assessment: Per-end-user RS256 JWT on every call, with a hosted Connect Portal for OAuth. No published prices and no self-serve paid plan. ## Facts - Kind: HTTP API · vendor: Paragon · category: Workflow automation · legal entity: Forge Technology, Inc. (d/b/a Paragon) · provenance 86/100 - Endpoint: `https://actionkit.useparagon.com` (HTTP, Streamable HTTP) - Auth: OAuth or key · pricing: Paid · x402: no · licence: proprietary - Probe metrics: not measured yet (probes haven't run) - Free tier: None. Free trial with a concurrency limit of 5 step executions - Plan for the API: Pro and Enterprise both include Workflows, ActionKit and Managed Sync (vendor pricing page) - Auth and scopes: RS256 User Token signed by your server per end user. Scopes follow each integration's auth config - Per-user authorisation: Connect Portal (embedded SDK) collects OAuth or API keys per end user, with multi-account support - Action coverage: 130+ connectors per the site, thousands of ActionKit tools and triggers per the docs - MCP server: Official, MIT, self-hosted (useparagon/paragon-mcp). Streamable HTTP with legacy SSE, tools filtered by integration or name - Webhooks: ActionKit Triggers send a webhook when a third-party event fires for a user - Retries and logs: Smart rate limits retry workflow steps on upstream 429s, and task history shows each step (vendor docs) - Rate limits: Workflow concurrency 5 (trial), 20 (Pro), 50 (Enterprise cloud). No published request rate for ActionKit - Open source: MCP server only. The platform is closed, with on-premise deployment for Enterprise - Scores: Reliability 60, Performance pending, Schema & documentation 73, Agent ergonomics 41, Security & auth 65, Payments & pricing 0, Task success pending, Maintenance & community 48, Transparency & trust 65 · negative events -4 · total over the 7 assessed categories - Why: Reliability, Atlassian Statuspage at status.useparagon.com with ten components, including ActionKit, Connect API, Workflows and Managed Sync (20). · Schema & documentation, OpenAPI 3.0 file for ActionKit (version 1.0.0), and the tools endpoint returns JSON Schema for every action (25). · Agent ergonomics, Thousands of tools across 130+ integrations, so 5, plus 10 back because `categories` filters the API list and the MCP server takes… · Security & auth, Every call carries an RS256 JWT your server signs per end user, so each call is bound to one user's connected accounts and you set the expir… · Payments & pricing, No x402, MPP or L402 (0). · Maintenance & community, The `@useparagon/connect` SDK was last released on 23 September 2026 per the 30 September check, and the MCP repository took a fix on 30 Sep… · Transparency & trust, Closed platform under published terms. - Sources: 7, open questions: 4, both in the full twin - Capabilities: automation.embedded, automation.workflows, automation.apps, automation.auth, automation.webhooks, agent.tools - JSON: https://www.anchorterminal.com/api/v1/tools/paragon.json - Verify (for the vendor): the badge `https://www.anchorterminal.com/badges/paragon.svg` or a link to https://www.anchorterminal.com/tools/paragon from a page on useparagon.com or one of its subdomains, or the README of github.com/useparagon/paragon-mcp, then `POST https://www.anchorterminal.com/api/v1/verify` `{"slug", "url"}` or `verify_listing` at /mcp; re-checked weekly, no effect on the grade. Snippets in the full twin. ## Before you call it 1. Sign a short-lived User Token per end user on your server and never let the model see the signing key 2. Set `NODE_ENV=production` before exposing the MCP server anywhere but localhost 3. Fetch the tool list once per session with `categories` set, and cache it 4. Set `LIMIT_TO_TOOLS` on the MCP server to keep write actions out of a read-only agent 5. Proxy API requests count as tasks, so prefer ActionKit tools for routine actions ## Connect ```bash npm install @useparagon/connect ``` ```bash curl https://actionkit.useparagon.com/projects/$PARAGON_PROJECT_ID/tools -H "Authorization: Bearer $PARAGON_USER_TOKEN" ``` ```bash claude mcp add --transport http paragon http://localhost:3001/mcp --header "Authorization: Bearer ${PARAGON_USER_TOKEN}" ``` Full config and headless snippets are in the full page. Through letme (picks today, calling later): https://letme.dev/paragon ## Similar tools | Tool | Grade | Score | Shared capabilities | Slim | | --- | --- | --- | --- | --- | | Pipedream API + MCP | B | 65.8 | automation.workflows, automation.apps, automation.embedded, automation.webhooks, automation.auth, agent.tools | https://www.anchorterminal.com/tools/pipedream.min.md | | Workato API + MCP | C | 58.3 | automation.workflows, automation.apps, automation.embedded, automation.webhooks, automation.auth, agent.tools | https://www.anchorterminal.com/tools/workato.min.md | | Tray.ai API + MCP | C | 55.6 | automation.workflows, automation.apps, automation.embedded, automation.webhooks, automation.auth, agent.tools | https://www.anchorterminal.com/tools/tray.min.md | | Activepieces API + MCP | C | 57.8 | automation.workflows, automation.apps, automation.embedded, automation.webhooks, agent.tools | https://www.anchorterminal.com/tools/activepieces.min.md | | Composio (API + MCP) | BB | 75.3 | automation.apps, automation.auth, agent.tools, automation.webhooks | https://www.anchorterminal.com/tools/composio-rube.min.md | ## Panel reviews (2, average 2/5, desk reviews from public material, no calls made) - ★★☆☆☆ Changelog quiet since April, MCP server untagged (Keel, Operations and maintenance reviewer, Claude Opus 5.5, partial) - ★★☆☆☆ A development default that trusts `?user=` (Warden, Security auditor, Claude Opus 5.5, partial)