# Persona (slim) > Persona is an identity verification platform from Persona Identities, Inc. Its REST API and hosted MCP server create inquiries, run government ID, selfie, document and database verifications, screen people and businesses against watchlists, and manage review cases. - Full: https://www.anchorterminal.com/tools/persona.md (~7,900 tokens) · this version ~2,080 tokens · JSON https://www.anchorterminal.com/tools/persona.json · canonical https://www.anchorterminal.com/tools/persona - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-08 **B · 69.5/100 · rank #148 of 629 · #1 in Identity & business verification · not agent-ready · confidence medium** Assessment: The REST API has a public OpenAPI 3.1 file, llms.txt, API keys with per-resource permissions, idempotency keys on every POST and a 60-day sandbox trial with no card. Production needs a business review and a 12-month plan from $250 a month. The status page lists 11 incidents since 10 July 2026, including 70 minutes of timeouts across all products. ## Facts - Kind: HTTP API · vendor: Persona Identities, Inc. · category: Identity & business verification · legal entity: Persona Identities, Inc. · provenance 90/100 - Endpoint: `https://mcp.withpersona.com` (HTTP) - Auth: API key · pricing: Paid · x402: no · licence: Proprietary service under Persona's terms of service. The `persona` JavaScript client on npm is MIT - Probe metrics: not measured yet (probes haven't run) - API: REST with JSON API responses at https://api.withpersona.com/api/v1. OpenAPI 3.1 for version 2025-12-08 with 191 paths and 231 operations (117 POST, 85 GET, 19 DELETE, 10 PATCH) and 141 webhook definitions - MCP server: Hosted and stateless at https://mcp.withpersona.com, 190 tools generated from the API, same API key in the `Authorization` header, same rate limits. No annotations, no toolsets, OAuth not yet available - Checks: Government ID (with NFC and AAMVA), selfie, document, database (many countries, eCBSV, TIN, phone carrier), email and phone verifications. Reports include watchlist, politically exposed person, adverse media, business watchlist, business lookup, business registrations and associated persons, crypto address watchlist, phone risk and email address - Credentials: Bearer API key per environment (`persona_sandbox_...`, `persona_production_...`), about 50 permissions such as `inquiry.read` and `report.write`, IP allowlist, per-key rate limit, expiry endpoint. Payload filters that restrict visible records are Enterprise only - Rate limits: 300 requests a minute per production environment by default, shared by all keys, plus per-product creation quotas. `RateLimit-Limit`, `RateLimit-Remaining`, `RateLimit-Reset` and `Quota-*` headers on responses. Environments above 1,000 a minute may have a ramp-up limit - Retries: `Idempotency-Key` on every POST, stored for at least 24 hours. 429 with exponential backoff advised, starting at 5 seconds - Response size: `fields` on 213 operations and `include` on 181, cursor pagination with `page[after]`, `page[before]` and `page[size]` from 1 to 100 (default 10), search endpoints for inquiries, accounts, cases and webhook events - Errors: HTTP status plus an `errors` list with `title` and `details`. Every operation documents 400, 401, 403 and 429. `Request-Id` header on each response - Versioning: Dated versions set per key or with `Persona-Version`. The docs name 2025-12-08 as the latest and keep seven versions back to 2020-05-18. Breaking changes ship only in a new version - Webhooks: HMAC SHA-256 in a `Persona-Signature` header with a timestamp, secret rotation through the API, event filters, attribute allowlists and blocklists, optional OAuth client credentials on deliveries - Audit: API logs with request and response kept for up to two weeks, user audit logs for up to six months through a production key - Retention: Data is kept until the customer redacts it through the API, the dashboard or a Workflow step. Organisation-wide redaction policies run from 2 days to 2 years and are switched on by Persona on request - Sandbox: Free 60-day trial with no card and up to 50 services. Sandbox runs no real verifications and has a pass or fail toggle. Watchlist and politically exposed person hits can be triggered with test names - Certifications: SOC 2 Type II and ISO 27001 per the help centre. security.txt valid until 17 February 2027, with disclosure through a Bugcrowd form - Status: status.withpersona.com, Persona's own page, ten components (API, Dashboard, Reports, Verifications, Database Verifications, Workflows, Graph, Inquiries and Collections, Webhooks, Cases) with incident history back to October 2024 - Prices: Essential plan $250 per month (plan); Additional verification or report on the Essential plan $1.50 per transaction - Scores: Reliability 70, Performance pending, Schema & documentation 85, Agent ergonomics 74, Security & auth 73, Payments & pricing 35, Task success pending, Maintenance & community 75, Transparency & trust 68 · total over the 7 assessed categories - Why: Reliability, Read with the hosted lines and scored on the REST API, with the MCP server noted. · Schema & documentation, A public OpenAPI 3.1 file for version 2025-12-08 has 191 paths, 231 operations and 141 webhook definitions, and the MCP server returns typed… · Agent ergonomics, Scored on the REST API. · Security & auth, Bearer API keys per environment, each limited to about 50 read and write permissions per resource, with an IP allowlist, a per-key rate limi… · Payments & pricing, Read with the hosted rubric. · Maintenance & community, The latest API changelog entry is 29 September 2026 (30). · Transparency & trust, The service is closed. - Sources: 33, open questions: 8, both in the full twin - Capabilities: kyc.identity, kyc.business, kyc.documents, kyc.screening, kyc.cases - JSON: https://www.anchorterminal.com/api/v1/tools/persona.json - Verify (for the vendor): the badge `https://www.anchorterminal.com/badges/persona.svg` or a link to https://www.anchorterminal.com/tools/persona from a page on withpersona.com or one of its subdomains, then `POST https://www.anchorterminal.com/api/v1/verify` `{"slug", "url"}` or `verify_listing` at /mcp; re-checked weekly, no effect on the grade. Snippets in the full twin. ## Before you call it 1. Ask for a dedicated key limited to the permissions the task needs. A new key has every standard permission until it's limited 2. Send `Persona-Version` on every call and an `Idempotency-Key` on every POST. A replayed key returns the first result, including a 500 3. Treat redact calls as irreversible. They permanently delete personal data and cascade to downstream objects 4. Stay under 300 requests a minute in production, read `RateLimit-Remaining` and `Quota-Remaining`, and back off on 429 because rejected requests still count 5. Use `fields` and `include` to cut response size. Through MCP these parameters aren't exposed, and only 14 tools take `filter` ## Connect ```bash curl --request POST \ --url https://api.withpersona.com/api/v1/inquiries \ --header 'Persona-Version: 2023-01-05' \ --header 'accept: application/json' \ --header 'authorization: Bearer persona_sandbox_YOURAPIKEY' \ --header 'content-type: application/json' \ --data '{"data":{"attributes":{"inquiry-template-id":"itmpl_YOURTEMPLATEID","fields":{"name-first":"Jane","name-last":"Doe","birthdate":"1994-04-12"}}}}' ``` Full config and headless snippets are in the full page. Through letme (picks today, calling later): https://letme.dev/persona ## Similar tools | Tool | Grade | Score | Shared capabilities | Slim | | --- | --- | --- | --- | --- | | Sumsub | B | 68.5 | kyc.identity, kyc.business, kyc.documents, kyc.screening, kyc.cases | https://www.anchorterminal.com/tools/sumsub.min.md | | Middesk | C | 59 | kyc.business, kyc.screening, kyc.cases, kyc.identity | https://www.anchorterminal.com/tools/middesk.min.md | | Trulioo | C | 58.2 | kyc.identity, kyc.business, kyc.documents, kyc.screening | https://www.anchorterminal.com/tools/trulioo.min.md | | Grep AI | B | 64.4 | kyc.business, kyc.screening, kyc.documents | https://www.anchorterminal.com/tools/grep-ai.min.md | | Veriff | C | 61.1 | kyc.identity, kyc.documents, kyc.screening | https://www.anchorterminal.com/tools/veriff.min.md | ## Panel reviews (0, desk reviews from public material, no calls made)