# Microsoft Power Automate > Microsoft's workflow builder for cloud flows across Microsoft 365, Dataverse and third-party connectors. Outside agents list, create, update and delete solution-aware flows through the Dataverse Web API, and start a flow through its HTTP request trigger. - Canonical: https://www.anchorterminal.com/tools/power-automate - Markdown: https://www.anchorterminal.com/tools/power-automate.md (~9,600 tokens) - Slim: https://www.anchorterminal.com/tools/power-automate.min.md (~2,280 tokens, same facts, less prose, for token-sensitive contexts) - JSON: https://www.anchorterminal.com/tools/power-automate.json (this page as data, same URL with Accept: application/json) - Site index for agents: https://www.anchorterminal.com/llms.txt (full text: https://www.anchorterminal.com/llms-full.txt) - API: https://www.anchorterminal.com/api/v1/index.json - Updated: 2026-10-08 ## Overview **Grade B · 62/100 · rank #350 of 722 · #2 in Workflow automation · not agent-ready · confidence medium** More from Microsoft, listed separately because each is its own product: [Microsoft Foundry fine-tuning (Azure OpenAI)](https://www.anchorterminal.com/tools/azure-foundry-fine-tuning.md) (Fine-tuning), [Azure AI Content Safety (Prompt Shields)](https://www.anchorterminal.com/tools/azure-ai-content-safety.md) (Guardrails & safety filters), [Azure AI Speech speech-to-text](https://www.anchorterminal.com/tools/azure-speech-to-text.md) (Speech-to-text), [Azure AI Speech text-to-speech](https://www.anchorterminal.com/tools/azure-text-to-speech.md) (Text-to-speech), [Microsoft Agent Framework](https://www.anchorterminal.com/tools/microsoft-agent-framework.md) (Agent frameworks & SDKs), [Microsoft Execution Containers](https://www.anchorterminal.com/tools/microsoft-execution-containers.md) (Code execution sandboxes), [Microsoft Entra Agent ID](https://www.anchorterminal.com/tools/microsoft-entra-agent-id.md) (Agent auth & delegated access), [Azure Key Vault](https://www.anchorterminal.com/tools/azure-key-vault.md) (Secrets & credential vaults), [Azure DevOps MCP Server](https://www.anchorterminal.com/tools/azure-devops-mcp.md) (Code & developer platforms), [Microsoft Learn MCP Server](https://www.anchorterminal.com/tools/microsoft-learn-mcp.md) (Code & developer platforms), [Playwright MCP](https://www.anchorterminal.com/tools/playwright-mcp.md) (Browser automation), [Azure MCP Server](https://www.anchorterminal.com/tools/azure-mcp.md) (Cloud & infrastructure), [Azure Maps](https://www.anchorterminal.com/tools/azure-maps.md) (Maps, geocoding & places), [Azure Translator](https://www.anchorterminal.com/tools/azure-translator.md) (Translation), [Microsoft Graph Calendar API](https://www.anchorterminal.com/tools/microsoft-graph-calendar.md) (Calendars & scheduling), [Microsoft Teams (Microsoft Graph)](https://www.anchorterminal.com/tools/microsoft-teams.md) (Work & productivity), [Microsoft Dynamics 365 Sales](https://www.anchorterminal.com/tools/dynamics-365-sales.md) (CRM & customer platforms), [Microsoft Advertising API](https://www.anchorterminal.com/tools/microsoft-advertising-api.md) (Advertising & campaign operations), [Microsoft Excel (Microsoft Graph workbook API)](https://www.anchorterminal.com/tools/microsoft-excel-graph.md) (Spreadsheets & operational tables), [Outlook Mail (Microsoft Graph)](https://www.anchorterminal.com/tools/outlook-mail-graph.md) (Mailbox access). ## Assessment Cloud flows in a solution are rows an agent can read and write through the Dataverse Web API under Entra ID OAuth and security roles, with published limits and a 99.9 per cent SLA. Flows under My flows can't be managed in code, a flow's body is one hand-built JSON string, and setup needs a tenant administrator. ## Facts | Field | Value | | --- | --- | | Vendor | Microsoft (https://www.microsoft.com/power-platform/products/power-automate) | | Kind | HTTP API | | Category | Workflow automation (https://www.anchorterminal.com/categories/workflow-automation) | | Transport | HTTP | | Auth | OAuth or key · OAuth 2.0 through Microsoft Entra ID for flow management. A person registers an app in the tenant and an administrator creates an application user with a Dataverse security role, or a user signs in with delegated access. The read-only Power Platform API takes a token for `https://api.powerplatform.com` with `.default`. A flow's HTTP request trigger has three modes. Any user in my tenant (the default for new flows) and Specific users in my tenant take an Entra bearer token with audience `https://service.flow.microsoft.com/`, and the second can name service principal object IDs. The legacy Anyone mode needs only the trigger URL, which carries a shared access signature as `sig=`. No API-key path for management. | | Pricing | Freemium ($15 / seat-mo) · Power Automate Premium is $15 a user a month, Process $150 a bot a month and Hosted Process $215 a bot a month, all paid yearly, per the pricing page. API calls carry no separate charge and count against daily Power Platform request allowances (40,000 per Premium user, 250,000 per Process licence, a 25,000 tenant pool for unlicensed service principals). A flow owned by a service principal that uses premium connectors needs a Process licence or a designated licensed co-owner. To start without a contract there is a Free licence limited to standard connectors, a self-serve 90-day trial, and the Power Apps Developer Plan with a free Dataverse environment and 750 flow runs a month. Card requirements were not stated (checked 2026-10-08). | | x402 | No · No x402, MPP or L402 in the Power Automate code docs, the Power Platform API reference or the pricing page (checked 2026-10-08). | | Licence | Proprietary service under the Microsoft Product Terms for Microsoft Power Platform | | Packages | nuget: `Microsoft.PowerPlatform.Dataverse.Client`; pypi: `PowerPlatform-Dataverse-Client` | | Docs | https://learn.microsoft.com/en-us/power-automate/manage-flows-with-code | | llms.txt | not found | | Last release | 2026-10-02 | | PyPI downloads / week | 10,702 | | Management API | Dataverse Web API, OData v4, at https://.api.crm.dynamics.com/api/data/v9.2/workflows. GET, POST, PATCH and DELETE on cloud flows in solutions (`category` 5). `GrantAccess`, `ModifyAccess` and `RevokeAccess` share a flow. `ExportSolution` and `ImportSolution` move flows as solution ZIP files (https://learn.microsoft.com/en-us/power-automate/manage-flows-with-code) | | Not covered | Flows under My flows that are not in a solution. The API at `api.flow.microsoft.com` is unsupported and Microsoft says breaking changes could occur. No documented run, cancel or resubmit call | | Flow definition | `clientdata`, a string of encoded JSON holding `connectionReferences` and a definition in the Azure Logic Apps workflow definition language. Required on create with `category`, `name`, `type` and `primaryentity` | | Read-only inventory API | Power Platform API version 2024-10-01 at https://api.powerplatform.com/powerautomate/environments/{environmentId}/, with `cloudFlows`, `flowRuns` and flow actions list calls added in June 2025 (https://learn.microsoft.com/en-us/rest/api/power-platform/powerautomate/cloud-flows/list-cloud-flows) | | Starting a flow | The When an HTTP request is received trigger gives each flow its own URL on a logic.azure.com host. Entra bearer token for tenant or named users, or a legacy signed URL (https://learn.microsoft.com/en-us/power-automate/oauth-authentication) | | Run history | `flowruns` rows in Dataverse for solution flows, with start and end time, status, error code and message. Kept 28 days by default, settable. Microsoft says the feed is not lossless and that `flowevents` rows signal skipped runs (https://learn.microsoft.com/en-us/power-automate/dataverse/cloud-flow-run-metadata) | | Credentials | OAuth 2.0 through Microsoft Entra ID. Delegated sign-in or an application user with a security role. A service principal can own flows but can't be a co-owner | | Rate limits | Dataverse service protection of 6,000 requests per user in a five-minute window, with `Retry-After` on 429. Flow runtime endpoints allow 4,500 invoke calls in five minutes on the Low profile and 45,000 on the others, and about 1,000 concurrent inbound calls (https://learn.microsoft.com/en-us/power-automate/limits-and-config) | | Flow limits | A run lasts at most 30 days and its history is kept 30 days. Outbound synchronous requests time out at 120 seconds. Default retry policy of 2 retries on the Low profile and 12 on Medium and High | | SLA | Service credit of 25 per cent below 99.9 per cent uptime, 50 below 99 and 100 below 95, per the SLA for Microsoft Online Services dated 1 October 2026. Downtime is counted when users' flows have no connectivity to Microsoft's internet gateway | | SDKs | Dataverse clients, not specific to flows. .NET `Microsoft.PowerPlatform.Dataverse.Client` 1.2.27 and Python `PowerPlatform-Dataverse-Client` 1.1.0 (7 October 2026). The Power Automate docs give samples for .NET and raw HTTP only | | MCP server | None for cloud flows found in the Power Automate docs. The Process Mining MCP server (nine tools) is a preview and covers process analytics, not flows (https://learn.microsoft.com/en-us/power-automate/process-mining-mcp-server-reference) | | Audit | Microsoft Purview logs flow created, edited and deleted events and permission changes once auditing is turned on, readable through the Office 365 Management API. Runs are not in Purview (https://learn.microsoft.com/en-us/power-platform/admin/activity-logging-auditing/activity-logs-power-automate) | | Free tier | Free licence with standard connectors only, a self-serve 90-day trial, 30-day admin trials, and the Power Apps Developer Plan (free Dataverse environment, 750 flow runs a month) | | Regions | A flow runs in the region of its Power Platform environment. The region table includes Europe, France, Germany, Switzerland, Norway, India, Japan and Australia (https://learn.microsoft.com/en-us/power-automate/regions-overview) | | Capabilities | automation.workflows, automation.apps, automation.webhooks | | Tags | hosted, official, oauth, enterprise, odata, dotnet, python, closed-source, sla, audit-log, freemium, webhooks | | JSON | https://www.anchorterminal.com/api/v1/tools/power-automate.json | ## Score breakdown (methodology v0.4, October 2026 research run) Assessed 2026-10-08 from public evidence against the published checklist (https://www.anchorterminal.com/benchmark/#checklist). Confidence: medium. Performance and Task success pending (no score, not in the total); the total is Σ(score × weight) ÷ 80 over the 7 assessed categories. "This run" is each category's share of the 100 points. | Category | Weight | This run | Score (0–100) | Points | | --- | --- | --- | --- | --- | | Reliability | 16% | 20 | 63 | 12.6 | | Performance | 10% | pending | pending | n/a | | Schema & documentation | 13% | 16.2 | 68 | 11.1 | | Agent ergonomics | 13% | 16.2 | 69 | 11.2 | | Security & auth | 14% | 17.5 | 61 | 10.7 | | Payments & pricing | 10% | 12.5 | 25 | 3.1 | | Task success | 10% | pending | pending | n/a | | Maintenance & community | 7% | 8.8 | 76 | 6.7 | | Transparency & trust (editorial 62, provenance 89) | 7% | 8.8 | 76 | 6.7 | | Negative events | up to −15 | up to −15 | none recorded | 0 | | **Total** | | | | **62 → B** | ### Why each score - Reliability 63: Graded on the Dataverse Web API for solution-aware cloud flows, with the HTTP request trigger noted. Tenant service health is in the Power Platform and Microsoft 365 admin centres behind an admin sign-in. The unauthenticated page at status.cloud.microsoft exists but rendered only a title for our reader (10 of 20, because the page with history needs a login). No readable incident history (5). Limits are published with numbers, 6,000 Dataverse requests per user in five minutes, 4,500 or 45,000 trigger invoke calls in five minutes by performance profile and about 1,000 concurrent inbound calls (15). Dataverse 429 responses carry `Retry-After` with retry guidance, `If-Match` guards updates, and flows have a documented retry policy. No idempotency key was found for trigger calls (13 of 15). The SLA of 1 October 2026 pays a 25 per cent credit below 99.9 per cent uptime for Power Automate (10). Web API v9.2 is generally available. OAuth on HTTP triggers is described as still rolling out (10). - Performance: Pending. Latency is measured per call by our probes, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until the first probe window closes. - Schema & documentation 68: Each environment serves a CSDL `$metadata` document and Learn has a reference page for the `workflow` entity type. The flow body is `clientdata`, a string in the Logic Apps workflow definition language. No public OpenAPI document was found for flow management (15 of 25). learn.microsoft.com/llms.txt returns 404, but Learn returns Markdown for requests with `Accept: text/markdown`, which is how we read every page (10). The code page states scope and limits, such as solution flows only and the unsupported `api.flow.microsoft.com`, and describes 14 columns (13 of 20). Columns are typed with enumerated choices, but the definition and connection references are one free-form JSON string (7 of 15). Request and response examples for .NET and HTTP on each operation, with the Dataverse status code table (12 of 15). The version is in the URL (v9.2) with weekly Dataverse release notes and a monthly Power Platform API change list. Power Automate's own released versions page stops at 2508.2 of August 2025 (11 of 15). - Agent ergonomics 69: `$select` and `$top` size responses, which matters because `clientdata` holds a whole flow. No MCP server for cloud flows was found (18 of 25). `$filter` on category and state, `@odata.nextLink` paging, and date and owner filters on the Power Platform API list call (18 of 20). Errors are JSON with a documented status code table, and each `flowruns` row has an error code and message (16 of 20). `If-Match` and `If-None-Match` guard writes. No documented call runs, cancels or resubmits a flow, and trigger calls have no idempotency key (9 of 20). Creating a flow needs five properties, one of them a hand-built definition with connection references, and flows start switched off. Dataverse SDKs for .NET and Python exist, with flow samples for .NET only (8 of 15). - Security & auth 61: OAuth 2.0 through Microsoft Entra ID with coarse scopes, limited by Dataverse security roles (26 of 30). The legacy Anyone mode of the HTTP trigger carries a shared access signature in the URL query string, a documented option, so 10 comes off (16). Security roles, record sharing through `GrantAccess`, data policies that restrict connectors, and trigger modes that name allowed users or service principals. No approval step before an API delete was found (14 of 20). Flow runs carry third-party data from connectors, and the pages we read give no injection guidance (3 of 15). Purview logs flow creation, edits, deletions and permission changes once auditing is on, and runs are `flowruns` rows, which Microsoft says are not lossless (13 of 15). The Azure SOC 2 Type 2 report lists Power Automate, and security.txt points to MSRC and the bounty policy, but its Expires date of 23 September 2026 has passed (15 of 20). - Payments & pricing 25: No x402, MPP or L402 (0). Plan prices are public at $15 a user a month and $150 or $215 a bot a month, paid yearly, with no per-run price (10). A Free licence with standard connectors, a self-serve 90-day trial and the Power Apps Developer Plan with a free Dataverse environment and 750 flow runs a month. None of the pages says whether a card is needed (15 of 20). A person registers an app in Entra ID and an administrator creates the application user (0). - Task success: Pending. Task success needs the category task suites run through each tool, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until then. A data provider's data-quality score is published on its listing now and becomes half of this category when it's scored. - Maintenance & community 76: Dataverse service update 9.2.26094 went to early release on 2 October 2026, and the Python Dataverse client 1.1.0 was published on 7 October 2026 (30). Service updates are weekly, nine listed since 7 August 2026 (20). Public release notes, a dated deprecations page and a community forum. Power Automate's own released versions page has no entry after August 2025, and we did not test support (8 of 15). Current Dataverse SDKs for .NET (1.2.27) and Python, and a monthly Power Platform management SDK (2.0.3503.299, 5 August 2026). None is specific to flows and no MCP server for cloud flows was found (12 of 15). The Python client is marked Production/Stable. CI was not checked (6 of 10). - Transparency & trust 76: Closed service under the Microsoft Product Terms for Microsoft Power Platform (15). The privacy statement, last updated September 2026, says customer agreements control for enterprise products and points to the Data Protection Addendum, which we did not read. Retention is stated for run history (30 days), `flowruns` rows (28 days by default) and Purview audit data (90 days). The statement's line on training AI models is not reconciled with the enterprise terms in what we read (18 of 30). The deprecations page was updated on 6 October 2026 with dated notices, the Power Platform API promises 12 months between deprecation and retirement, and the docs say plainly that `api.flow.microsoft.com` is unsupported (17 of 20). A flow runs in its environment's region, with a published region list and data kept inside the geography. We did not read a subprocessor list (12 of 20). Fix list for a coding agent, everything this grade says the listing lacks, the biggest gain first (19 items): https://www.anchorterminal.com/fixes/power-automate.md (JSON https://www.anchorterminal.com/fixes/power-automate.json) ### What we couldn't check - unchecked: incident history, because status.cloud.microsoft rendered only a title and tenant service health needs an admin sign-in - unchecked: whether the Free licence, the 90-day trial or the Power Apps Developer Plan needs a card - unchecked: the text of the Products and Services Data Protection Addendum and the subprocessor list - unchecked: CI and issue handling on the Dataverse client repositories. No GitHub page was read - unchecked: whether the Python Dataverse client can write the `workflows` table. The Power Automate docs show .NET and raw HTTP only - Whether setting `statecode` to 1 through the Web API is the supported way to turn a flow on. The code page lists the values and says a new flow must be enabled, without an example - Whether a public OpenAPI file exists for the Power Platform API. The reference pages were read, not a spec file - Whether the Dataverse MCP server can read or write `workflows` rows. Its docs were not read for this listing and no Power Automate page mentions it - The lead was right on the interface and on solution-aware flows only. It did not mention the read-only Power Platform API calls for flows and runs, or the HTTP request trigger ### Sources - work with cloud flows using code: (seen 2026-10-08) - cloud flow limits: (seen 2026-10-08) - OAuth for HTTP request triggers: (seen 2026-10-08) - regenerate the trigger SAS key: (seen 2026-10-08) - cloud flow run history in Dataverse: (seen 2026-10-08) - service principal owned flows: (seen 2026-10-08) - user licence for a service principal flow: (seen 2026-10-08) - Power Platform API, list cloud flows: (seen 2026-10-08) - Power Platform API, list flow runs: (seen 2026-10-08) - Power Platform API changes by month: (seen 2026-10-08) - Power Platform API versioning and support: (seen 2026-10-08) - Dataverse service protection limits: (seen 2026-10-08) - request limits and allocations: (seen 2026-10-08) - Dataverse status codes and errors: (seen 2026-10-08) - workflow entity type reference: (seen 2026-10-08) - licence types: (seen 2026-10-08) - licensing FAQ: (seen 2026-10-08) - Free and trial licences: (seen 2026-10-08) - Power Apps Developer Plan: (seen 2026-10-08) - Power Automate activity logs in Purview: (seen 2026-10-08) - data policies: (seen 2026-10-08) - compliance and data privacy: (seen 2026-10-08) - service health guidance: (seen 2026-10-08) - Dataverse released versions: (seen 2026-10-08) - Power Automate released versions: (seen 2026-10-08) - Power Platform deprecations: (seen 2026-10-08) - regions: (seen 2026-10-08) - SOC 2 Type 2 scope: (seen 2026-10-08) - Process Mining MCP server (preview): (seen 2026-10-08) - pricing: (seen 2026-10-08) - SLA for Microsoft Online Services, 1 October 2026: (seen 2026-10-08) - Product Terms for Microsoft Power Platform: (seen 2026-10-08) - privacy statement: (seen 2026-10-08) - security.txt: (seen 2026-10-08) - public status page: (seen 2026-10-08) - Python Dataverse client on PyPI: (seen 2026-10-08) - .NET Dataverse client on NuGet: (seen 2026-10-08) ## Who's behind it (provenance 89/100, checked 2026-10-08) | Check | Finding | Points | | --- | --- | --- | | Legal entity named | Microsoft Corporation | 20/20 | | Domain age | microsoft.com, registered 1991-05-02 (35 years) | 15/15 | | Endpoint on the vendor's domain | microsoft.com | 15/15 | | Terms of service | read, states 2 of the 7 things a reader expects | 5.7/10 | | Privacy policy | read, states 8 of the 8 things a reader expects, and has 1 clause that costs points | 8/10 | | Status page | status.cloud.microsoft | 10/10 | | Changelog | published | 10/10 | | security.txt | published but past its Expires date | 5/10 | The management API answers on a dynamics.com host such as https://.api.crm.dynamics.com, flow trigger URLs on logic.azure.com and the inventory API on api.powerplatform.com, all Microsoft domains. microsoft.com publishes a security.txt, but it passed its Expires date on 2026-09-23. The terms link is the Microsoft Product Terms page for Microsoft Power Platform under the Microsoft Customer Agreement, which names Power Automate Premium, Process and Hosted Process. It showed no effective date. The Microsoft privacy statement was last updated in September 2026 and says customer agreements control for enterprise and developer products. Customer data is governed by the Products and Services Data Protection Addendum, published as a .docx download, which we did not read. www.microsoft.com/.well-known/security.txt carries Expires 2026-09-23T16:00:00.000Z when read on 2026-10-08, with MSRC as the contact. status.cloud.microsoft rendered only a title for our reader. Tenant service health is in the Power Platform and Microsoft 365 admin centres behind an admin sign-in. The changelog link is the weekly Dataverse service update page, because flow management runs on Dataverse. Power Automate's own released versions page (https://learn.microsoft.com/en-us/power-platform/released-versions/power-automate) lists nothing after version 2508.2 of August 2025. RDAP for microsoft.com gives a registration date of 1991-05-02. dynamics.com, azure.com and powerplatform.com were not looked up. ### Terms and privacy, as read A reading by a fixed set of rules, each answered with the vendor's own sentence. Not legal advice. **Terms of service** (https://www.microsoft.com/licensing/terms/productoffering/MicrosoftPowerPlatform/MCA), read 2026-10-08, gives no date, states 2 of the 7 things a reader expects. - Not found in the text. Gives the date it was last updated. - Not found in the text. Names the governing law or courts. - Not found in the text. States a limit on its liability. - Not found in the text. Says how the agreement or account can be ended. - Not found in the text. Says how changes to the terms are announced. - Also in the text (2026-10-08). Microsoft may disable a Dataverse instance supplied with Microsoft 365 licences and delete its data once the instance has been inactive for 90 days. "If a Customer allows its Dataverse instance that is provided with Microsoft 365 licenses to go inactive, Microsoft may, at its discretion, disable the inactive instance and delete the Customer Data and Personal Data within it." - Also in the text (2026-10-08). Grounding with Bing in Microsoft Copilot Studio falls outside the Data Protection Addendum and is governed by separate Bing terms and the Microsoft Privacy Statement. "The Data Protection Addendum does not apply to the use of Grounding with Bing Search and Grounding with Bing Custom Search." - Also in the text (2026-10-08). Microsoft may show content shared through the Power BI publish to web function on a public website or gallery. "Microsoft may display content published through the publish to web functionality on a public website or gallery." **Privacy policy** (https://www.microsoft.com/en-us/privacy/privacystatement), read 2026-10-08, dated 2026-09-01, states 8 of the 8 things a reader expects. - To know. Says it may use customer content to train or improve models, and no opt-out was found (costs points). "As part of our efforts to improve and develop our products, we may use your data to develop and train our AI models." - To know. Says it sells personal data or shares it for advertising. "We also disclose personal data for digital advertising purposes." - Gives the date it was last updated. Last updated 2026-09-01. - Says how long data is kept. Names a period of 7 days. - Gives a privacy contact. Names a data protection officer. - Says where data is transferred or stored. Relies on standard contractual clauses. - Also in the text (2026-10-08). For enterprise and developer products, the customer's agreement with Microsoft takes precedence over this privacy statement where the two conflict. "In the event of a conflict between our privacy statement and the terms of any agreement(s) between a customer and Microsoft for Enterprise and Developer Products, the terms of those agreement(s) will control." - Also in the text (2026-10-08). Prompts and related data sent to the consumer Microsoft Copilot are used to improve services and for relevant advertising. "Microsoft Copilot also uses prompts and related data to provide and improve services, including relevant advertising." - Also in the text (2026-10-08). Microsoft staff manually review some results of its automated systems, including AI, against the source data. "For example, to build, train, and improve the accuracy of our automated systems – such as AI - we manually review some of the results against the underlying data." ## Probe metrics Not measured yet. Our benchmark probes haven't run, so there's no availability, latency or error rate from a run and Performance is pending. Live uptime, where we poll the endpoint, is under Live and doesn't change the score. ## Prices | Item | Price | Unit | Note | | --- | --- | --- | --- | | Power Automate Premium | $15 | per seat per month | paid yearly, 40,000 Power Platform requests a day | | Power Automate Process | $150 | per month (plan) | per bot, paid yearly, 250,000 actions a day for one flow or a flow group | | Power Automate Hosted Process | $215 | per month (plan) | per bot, paid yearly, with a Microsoft-hosted virtual machine | Across all listings: https://www.anchorterminal.com/prices/index.md ## Strengths - Solution-aware cloud flows are rows in the Dataverse `workflows` table, with documented list, create, update, delete, share, export and import calls - Service protection limits are published (6,000 requests per user in five minutes) and 429 responses carry `Retry-After` - The SLA of 1 October 2026 pays a 25 per cent credit below 99.9 per cent uptime for Power Automate - Each run of a solution flow is a `flowruns` row with status, error code and message, kept 28 days by default - A service principal can own flows, and new HTTP request triggers default to callers signed in to the tenant ## Weaknesses - Flows under My flows can't be managed in code, and Microsoft calls the `api.flow.microsoft.com` API unsupported - A flow's definition travels as `clientdata`, one string of encoded JSON with connection references the caller builds by hand - No documented call runs, cancels or resubmits a flow. Starting one means an HTTP request trigger built into the flow - The legacy Anyone trigger mode carries its signature in the URL query string as `sig=` - Power Automate's own released versions page stops at version 2508.2 of August 2025, and service health needs an admin sign-in ## Before you call it (notes for agents) 1. Filter `workflows` on `category eq 5` for cloud flows, and add `$select`, because `clientdata` holds the whole definition 2. Flows created through the API start with `statecode` 0 (off). The docs say to turn the flow on before use 3. Put the flow in a solution first. Flows that sit only under My flows are outside the supported API 4. On 429 wait the `Retry-After` seconds. Reads of `flowruns` count against the daily Power Platform request allowance 5. Treat an HTTP trigger URL with `sig=` as a secret, and prefer the tenant or named-user trigger modes with a bearer token for `https://service.flow.microsoft.com/` ## Connect First request: ```bash curl "https://$DATAVERSE_ORG.api.crm.dynamics.com/api/data/v9.2/workflows?\$filter=category%20eq%205%20and%20statecode%20eq%201&\$select=name,workflowid,statecode&\$top=5" \ -H "Authorization: Bearer $DATAVERSE_ACCESS_TOKEN" \ -H "Accept: application/json" \ -H "OData-MaxVersion: 4.0" \ -H "OData-Version: 4.0" ``` Through letme (picks today, calling later): https://letme.dev/power-automate. letme answers with the pick and how to call it direct; calling through letme (one key, the vendor's own price) comes later. How it works: https://www.anchorterminal.com/letme/index.md ## Similar tools Ranked by shared capabilities, then score. Same-category tools with no shared capability key are listed last. | Tool | Grade | Score | Rank | Shared capabilities | x402 | Markdown | | --- | --- | --- | --- | --- | --- | --- | | Pipedream API + MCP | B | 65.5 | 255 | automation.workflows, automation.apps, automation.webhooks | no | https://www.anchorterminal.com/tools/pipedream.md | | Make API + MCP | C | 58.7 | 446 | automation.workflows, automation.apps, automation.webhooks | no | https://www.anchorterminal.com/tools/make.md | | Workato API + MCP | C | 58 | 460 | automation.workflows, automation.apps, automation.webhooks | no | https://www.anchorterminal.com/tools/workato.md | | Activepieces API + MCP | C | 57.5 | 471 | automation.workflows, automation.apps, automation.webhooks | no | https://www.anchorterminal.com/tools/activepieces.md | | Tray.ai API + MCP | C | 55.5 | 508 | automation.workflows, automation.apps, automation.webhooks | no | https://www.anchorterminal.com/tools/tray.md | | n8n API + MCP | D | 53.1 | 551 | automation.workflows, automation.apps, automation.webhooks | no | https://www.anchorterminal.com/tools/n8n.md | ## Panel reviews (0) Reviewed by the Anchor panel (https://www.anchorterminal.com/reviewers/index.md): . Desk reviews, written from public documentation, pricing, terms, source and status history on 1 October 2026. No calls made. For a desk review, the outcome says whether the reviewer's questions could be answered from public material: success, partial or failure. How reviews work: https://www.anchorterminal.com/reviews/how-it-works.md ## Notable - The supported code route covers only flows on the Solutions tab. The docs state that managing flows under My flows isn't supported with code (source: ) - Microsoft's FAQ says the API at `api.flow.microsoft.com` isn't supported and that customers use it at their own risk (source: ) - The documented way to regenerate a trigger's signing key goes through the browser's developer tools and a call to that unsupported API (source: ) - OAuth for HTTP request triggers is described as still rolling out and possibly unavailable in some regions (page dated 29 April 2026, https://learn.microsoft.com/en-us/power-automate/oauth-authentication) - A consistently throttled flow is turned off after 14 days, and a flow with no trigger activity for 90 days might be turned off unless its owner holds a premium licence (source: ) - The Power Automate mobile app was deprecated on 31 August 2026. Cloud flows were not affected (source: ) ## Compare - [Activepieces API + MCP vs Microsoft Power Automate](https://www.anchorterminal.com/compare/activepieces-vs-power-automate.md): C 57.5 vs B 62 - [Make API + MCP vs Microsoft Power Automate](https://www.anchorterminal.com/compare/make-vs-power-automate.md): C 58.7 vs B 62 - [n8n API + MCP vs Microsoft Power Automate](https://www.anchorterminal.com/compare/n8n-vs-power-automate.md): D 53.1 vs B 62 - [Paragon ActionKit + MCP vs Microsoft Power Automate](https://www.anchorterminal.com/compare/paragon-vs-power-automate.md): D 47.5 vs B 62 - [Pipedream API + MCP vs Microsoft Power Automate](https://www.anchorterminal.com/compare/pipedream-vs-power-automate.md): B 65.5 vs B 62 - [Microsoft Power Automate vs Tray.ai API + MCP](https://www.anchorterminal.com/compare/power-automate-vs-tray.md): B 62 vs C 55.5 - [Microsoft Power Automate vs Windmill API + MCP](https://www.anchorterminal.com/compare/power-automate-vs-windmill.md): B 62 vs C 55.9 - [Microsoft Power Automate vs Workato API + MCP](https://www.anchorterminal.com/compare/power-automate-vs-workato.md): B 62 vs C 58 ## Verify this listing For the vendor. The badge or a plain link to this page verifies the listing, from a page on microsoft.com or one of its subdomains. It shows the listing is the vendor's and that the vendor knows it's here, and it never changes a grade, rank or review. The vendor sends the page's address to `POST https://www.anchorterminal.com/api/v1/verify` as `{"slug": "power-automate", "url": "…"}`, or calls the `verify_listing` tool at https://www.anchorterminal.com/mcp. We fetch the page once, then again every week; two failed checks in a row and the verification lapses, and a later pass restores it. What we check: https://www.anchorterminal.com/builders/index.md#verify HTML badge: ```html Microsoft Power Automate on Anchor Terminal ``` Markdown badge, for a README: ```markdown [![Microsoft Power Automate on Anchor Terminal](https://www.anchorterminal.com/badges/power-automate.svg)](https://www.anchorterminal.com/tools/power-automate) ``` Plain link: ```html Microsoft Power Automate on Anchor Terminal ``` ## Share this listing For the vendor. Sharing assets for social media, two PNGs of 1200 × 630 that say Microsoft Power Automate is listed on Anchor Terminal, with the vendor's logo and this page's address and no grade or score. - Dark: https://www.anchorterminal.com/assets/share/power-automate-dark.png - Light: https://www.anchorterminal.com/assets/share/power-automate-light.png