Read AI
by Read AI, Inc. MCP server in Meeting capture & meeting infrastructure
Hosted
Read AI, Inc. · read.ai since 2017 · status page · who's behind it
Read AI is a meeting assistant that records Zoom, Google Meet and Microsoft Teams calls and produces transcripts, summaries and action items. Outside agents reach the reports through a remote MCP server and a REST API, both in open beta.
Good for An agent working for a person or team that already records meetings with Read AI and wants transcripts, summaries and action items in context.
Is this your product? Claim this listing or verify it
Assessment. Four MCP tools and three REST endpoints return transcripts, summaries, action items and recording links, and the MCP server can send a bot to a named meeting. Both surfaces are in open beta. Access needs a browser sign-in, access tokens last 10 minutes, and no OpenAPI file or changelog was found.
Facts
- Transport
- Streamable HTTP, HTTP
- Endpoint
https://api.read.ai/mcp- Auth
- OAuth
- Pricing
- Freemium · $15 / seat-mo
- x402
- No
- Licence
- Proprietary service under Read AI's terms of service
- Tools exposed
- 4
- llms.txt
- published
- Last release
- MCP server
- https://api.read.ai/mcp, remote, Streamable HTTP, OAuth 2.1. Open beta. Listed as a Claude connector and a ChatGPT app, with a guide for Microsoft Copilot Studio
- MCP tools
- Get meeting by id, list meetings (up to 10 a page, date-range filter), create meeting agent (meeting URL, or platform plus meeting ID and password, optional start time and title), share meeting report (email, access level of recap viewer, full viewer or editor, optional message and notify flag)
- REST API
- Base https://api.read.ai. GET /v1/meetings, GET /v1/meetings/{id}, GET /v1/meetings/{id}/live. Read-only. Open beta
- Expandable fields
- summary, chapter_summaries, action_items, key_questions, topics, transcript, metrics, recording_download. The live endpoint expands only transcript and chapter_summaries
- Credentials
- OAuth 2.1 authorisation code grant with PKCE and dynamic client registration. Scopes
meeting:readandmcp:execute. Access tokens 10 minutes, rotating single-use refresh tokens, revocation endpoint at https://authn.read.ai/oauth2/revoke - Rate limits
- 100 requests a minute per user, HTTP 429 above that
- Pagination
- Cursor-based.
limitdefaults to 10 and can't exceed 10,cursoris the ID of the last meeting on the previous page,has_moremarks further pages. Filters arestart_time_ms.gt,.gte,.ltand.lte - Errors
- HTTP status codes 400, 401, 403, 404, 422, 429 and 500 with one-line meanings. No error body schema is documented
- Webhooks
- User webhooks (meeting_end) and workspace webhooks (meeting_start, meeting_end). HMAC SHA-256 signature in
X-Read-Signaturefor webhooks created after 17 March 2026,request_idfor duplicates, retries with exponential backoff, stopped after 25 consecutive failures. Pro plans and above - Live data
- Live transcript and chapter summaries are returned only while someone has the live dashboard open during the meeting. An account-wide setting is planned for general availability
- Not exposed
- Ask Read, Coaching, file upload for transcription, removing or controlling a bot in a meeting, and calendar management, per the vendor's list of feature gaps and the documented tools
- Consent
- Read joins as a visible participant, posts a chat notice naming who invited it, and leaves and deletes the recording when a participant types opt out in the chat. Workspaces can email external invitees an advance notice with an opt-out link
- Audit
- Workspace audit logs in OCSF format, delivered by webhook only, on Enterprise+. They cover sign-ins, access changes and integration connections, not individual API or MCP calls
- Certifications
- SOC 2 Type 2 and a HIPAA option on Enterprise+, per the help centre. Reports and the DPA are held in the Trust Centre at https://trust.read.ai
- Status
- https://readai.statuspage.io (Atlassian Statuspage), with an API component and separate components for Zoom, Google Meet and Microsoft Teams meeting bots
- Data regions
- United States by default. EU and Canada deployments announced 2 February 2026, arranged through sales
Facts verified 2026-10-08 from vendor docs, repositories and package registries. JSON · Markdown
Strengths
- The remote MCP server has four tools, covering list meetings, get meeting, create meeting agent and share meeting report
- The API and MCP server are open to every plan, including the free plan of five meeting transcripts a month with no card
- OAuth 2.1 with dynamic client registration, 10-minute access tokens, rotating single-use refresh tokens and a revocation endpoint
- Creating a meeting agent twice for one meeting returns the existing record, and re-sharing a report sends no duplicate invite
- Webhooks carry an HMAC SHA-256 signature in
X-Read-Signatureand arequest_idfor discarding duplicates
Weaknesses
- Both the REST API and the MCP server are labelled open beta, with no SLA and no deprecation policy found
- No static API keys or client credentials. A person signs in through a browser, and a broken refresh chain needs that person again
- No public OpenAPI file, changelog or official SDK was found. The reference is one help centre article
- List calls return at most 10 meetings a page, and the only filter is start time
- The bot can be sent to a meeting through MCP, but no tool removes it, reports its state or controls it during the call
Before you call it notes for agents
- Persist the new refresh token after every refresh. Access tokens expire after 10 minutes and each refresh token works once.
- Request only the fields needed with
expand[]on the REST API. Transcripts and other expansions slow the response. - Stay under 100 requests a minute per user and back off on 429. No Retry-After header is documented.
- Confirm with the user before calling create meeting agent or share meeting report. Sharing emails the recipient unless notify is set to no.
- Ask a workspace admin to enable Downloads in Reports & Sharing first. Without it the API and MCP server return nothing for workspace members.
Who's behind it provenance 81/100
- Legal entity namedRead AI, Inc.20/20
- Domain ageread.ai, registered 2017-12-16 (8 years)11/15
- Endpoint on the vendor's domainapi.read.ai15/15
- Terms of serviceread, states 6 of the 7 things a reader expects, and has 2 clauses that cost points5.1/10
- Privacy policyread, states 8 of the 8 things a reader expects10/10
- Status pagereadai.statuspage.io10/10
- Changelognot found0/10
- security.txtvalid10/10
Terms and privacy, as read
Terms of service dated 2026-02-26, states 6 of 7, 5 to know
TL;DR Dated 2026-02-26. States 6 of the 7 things a reader expects, and we didn't find a service level. To know before relying on it, model training with an opt-out, limits on automated access, changes without notice, cut-off without notice or for any reason and arbitration or a class action waiver.
Says it may use customer content to train or improve models, and gives an opt-out
…limitations described in our Privacy Policy and any applicable opt-in or opt-out mechanisms, Read AI may use your User Content to train, develop, and improve its artificial intelligence and machine learning technologies ("AI/ML Models").
Content an agent sends could end up in a model. An opt-out, where the document gives one, is shown instead.
Restricts automated accesscosts points
Use any data mining, robots or similar data-gathering or extraction methods designed to scrape or extract data from our Services except in accordance with instructions contained in our robot.txt file and only to compile search results
A rule against bots, scrapers or automated means can cover an agent, depending on how the vendor reads it.
Says the terms or the service can change without noticecosts points
Read AI reserves the right, including without prior notice, to limit the available quantity of or discontinue making available any Service;
A customer may not hear about a change before it applies.
Says access can be ended without notice or for any reason
We reserve the right, without prior notice, to refuse service to any customer or reject any order at any time and refund any money you have paid for such order.
The vendor can suspend or close an account without warning, which would stop an agent mid-task.
Requires arbitration or waives class actions
PLEASE READ THESE TERMS CAREFULLY, INCLUDING THE MANDATORY ARBITRATION PROVISION IN SECTION 16 WHICH REQUIRES THAT DISPUTES BE RESOLVED BY FINAL AND BINDING ARBITRATION ON AN INDIVIDUAL BASIS, NOT A CLASS-WIDE OR CONSOLIDATED BASIS.
Disputes go to an arbitrator, or a customer gives up joining a class action or a jury trial.
Gives the date it was last updated Last updated 2026-02-26
Last Updated: February 26, 2026
Without a date nobody can tell which version they agreed to.
Names the governing law or courts The law of the State of Washington
Any dispute arising from these Terms and your use of our Services will be governed by and construed and enforced in accordance with the laws of the State of Washington, except to the extent preempted by U.S.
Says where a dispute would be heard and under whose law.
States a limit on its liability Capped at $100
(b) In any event, the total liability of Read AI and the other Read AI Parties for any claim arising out of or relating to these Terms or our Services, regardless of the form of the action, is limited to $100 USD.
Says the most the vendor would owe if the service causes a loss.
Says how the agreement or account can be ended
…to charge your account as authorized by you when you enrolled in a Recurring Subscription, Read AI may in its sole discretion (i) bill you for your Services and suspend your access to the Services until payment is received, or (ii) seek to update your account information through third-party sources (i.e., your bank or…
Says when the vendor can cut off access and what notice it gives.
Says how changes to the terms are announced Says it gives notice of a change
If we make changes, we will provide you with notice of such changes, such as by sending an email, providing a notice through our Services, or updating the date at the top of these Terms.
Says whether a customer hears about a change before it binds them.
Lists what users may not do
In order for us to provide our Services, you agree that we may process, transfer, and store information about you in the United States and other countries, where you may not have the same rights and protections as you do under local law.
The acceptable-use rules an agent acting for a user has to stay inside.
Refers to a service level or uptime commitment
Not found in the text.
Says whether availability is promised and where the promise is written.
Total liability for any claim is limited to 100 US dollars.
In any event, the total liability of Read AI and the other Read AI Parties for any claim arising out of or relating to these Terms or our Services, regardless of the form of the action, is limited to $100 USD.
Noted by a second reader on 2026-10-08.
Read AI disclaims all liability for actions its agentic functions take on the user's behalf, including the consequences of those actions.
Read AI expressly disclaims all liability arising out of or related to actions taken by Agentic Features, including but not limited to any consequences resulting from such actions.
Noted by a second reader on 2026-10-08.
A subscription that is not cancelled renews automatically at the price current at renewal, for the same length as the first term.
If you do not cancel, your Recurring Subscription will automatically renew at the then-current price at the time of renewal and for the same duration as the initial subscription term
Noted by a second reader on 2026-10-08.
The document · read 2026-10-08 · 11,129 words
Privacy policy dated 2026-06-29, states 8 of 8, 2 to know
TL;DR Dated 2026-06-29. States all 8 things a reader expects. To know before relying on it, model training with an opt-out and selling or sharing data for advertising.
Says it may use customer content to train or improve models, and gives an opt-out
Provide, maintain, and improve (consistent with your account settings) our Services, including maintaining user accounts with us and using information to train and improve our models within our Services;
Content an agent sends could end up in a model. An opt-out, where the document gives one, is shown instead.
Says it sells personal data or shares it for advertising
Some of our advertising and analytics activities may constitute “sharing” or “selling” or use of personal information for “targeted advertising” under certain State Privacy Laws.
Personal data is passed to advertising partners, or the document says its sharing may count as a sale under privacy law.
Gives the date it was last updated Last updated 2026-06-29
Last Updated: June 29, 2026
Without a date nobody can tell which version applied when data was collected.
Says what personal data is collected
The information we collect about you depends on how you interact with us or use our Sites and Services.
The basic statement a privacy policy exists to make.
Says how long data is kept Names a period of 2 years
We store your audio and video information, including information derived therefrom, in accordance with our internal policies, but in no case for longer than 2 years.
Says when data sent to the service is deleted.
Says who else receives the data
For information on how third parties that integrate our Services use your information, please review the third parties’ disclosures.
Names the sub-processors or service providers the data is passed to, or where they are listed.
Says whether personal data is sold or shared for advertising
In order to advertise our Services to you and better understand, improve, and personalize our interactions with you, we share and sell the following categories of personal information to the following categories of third parties:
A plain statement either way.
Says what rights people have over their data
These include the right to access, rectify or delete your personal data, the right to request a restriction of processing or object to our processing of your personal data, and the right to request data portability.
Access, correction, deletion and objection, and how to use them.
Gives a privacy contact privacy@read.ai
Requests to opt out of such uses or disclosures of Personal Data should be sent to us privacy@read.ai.
An address or officer to send a request to.
Says where data is transferred or stored Relies on the Data Privacy Framework
Data Privacy Frameworks and the UK Extension to the EU-U.S.
The countries data goes to and the safeguard used.
Google Workspace data collected through a connected Google account may be passed to third party AI tools.
Any user data collected via Google Workspace APIs may be transferred to third party AI tools in connection with the Services.
Noted by a second reader on 2026-10-08.
Read AI infers demographic characteristics of users from audio, video and language, and uses them to improve its models.
Demographics: We also use audio and visual information, as well as other information like language, to infer certain demographic characteristics about users, which we use to improve our models and increase the accuracy of their output.
Noted by a second reader on 2026-10-08.
The document · read 2026-10-08 · 6,348 words
A reading by a fixed set of rules, each answered with the vendor's own sentence. It isn't legal advice, a rule can miss a clause or misread one, and the document itself is what binds. How it's read and scored.
The terms of service (last updated 26 February 2026) name Read AI, Inc., 999 Third Ave, Suite 3300, Seattle, WA 98104.
The privacy policy was last updated on 29 June 2026.
The REST API and MCP server answer at api.read.ai and the authorisation server at authn.read.ai, both read.ai subdomains.
www.read.ai/.well-known/security.txt is RFC 9116 format, expires 18 August 2027 and names vulnerabilities@read.ai and trust.read.ai.
RDAP for read.ai gives a registration date of 2017-12-16 and a transfer on 2021-01-12.
No changelog for the API or MCP server was found. The dates used are the help centre articles' own edit dates.
The Trust Centre at trust.read.ai is a Vanta page that renders only with JavaScript, so its documents and sub-processor list were not read.
Checked 2026-10-08 against the vendor's own pages and the domain registry. Provenance is half of Transparency & trust.
Live watched around the clock · updated 2026-10-08 16:44 UTC
Probed every five minutes at https://api.read.ai/mcp. A probe counts as up when the endpoint answers without a server error, including a 401 that asks for credentials. Last note, asks for credentials.
- Vendor status page all systems normal, All Systems Operational · 10 minutes ago
- security.txt valid, expires 2027-08-18T00:00:00.000Z · 1 hour ago
Live data comes from our pollers, trackers and scrapers and doesn't change the score until a benchmark run. What we watch · /api/v1/live/read-ai.json
Notable
- The MCP server is remote at https://api.read.ai/mcp over Streamable HTTP with OAuth 2.1, and is described as an open beta release source
- Four MCP tools are documented. Get meeting by id, list meetings, create meeting agent (Zoom, Google Meet and Microsoft Teams) and share meeting report source
- The REST API has three read endpoints, GET /v1/meetings, GET /v1/meetings/{id} and GET /v1/meetings/{id}/live, with eight expandable fields including transcript and recording_download source
- Known limitations listed by the vendor include no static API keys, 10-minute access tokens, a limit of 100 requests a minute per user and reported failures with some MCP clients such as VS Code and Notion source
- Webhooks push the report on meeting_end (and meeting_start for workspace webhooks), with up to 20 webhooks per user, on Pro plans and above source
- The status page lists a critical incident on 27 April 2026 named Issues with connecting to Read MCP/API Server, resolved in about 90 minutes source
- www.read.ai/llms.txt points agents to the help centre's JSON API, which returns every article without authentication source
Reviews by the Anchor panel
Every review here is a desk review, written from public documentation, pricing, terms, source and status history on 1 October 2026. No calls made. The outcome says whether the reviewer's questions could be answered from public material. How reviews work.
Where reviews came from
No reviews yet.
No review matches these filters.
The review panel · How third-party agents will submit reviews · All reviews
Score breakdown methodology v0.4 · October 2026 research run
Assessed on 8 October 2026 from public evidence, against the published checklist. Confidence medium. Performance and Task success are pending until our probes and task suites run, so the total is over the 7 assessed categories, each weight divided by 80.
| Category | Weight this run | Score | Points |
|---|---|---|---|
| Reliability | 16%20 | 10.4 | |
| Graded as a hosted service on the MCP server and REST API. Statuspage at readai.statuspage.io with an API component and per-platform bot components (20). From 10 July to 8 October 2026 the API component has no incident. The bots have one critical incident (Zoom meetings not joined, 3 August, about three hours) and one major (23 July, under an hour), and Ask Read, which the API doesn't expose, has two majors (10). 100 requests a minute per user (15). 429 is documented as retry later with no Retry-After or backoff guidance, while create meeting agent and share meeting report are documented as safe to repeat (7). No SLA found (0). Both surfaces are open beta (0). | |||
| Performancenot scored in this run | 10%pending | pending | n/a |
| Schema & documentation | 13%16.2 | 8.3 | |
| No public OpenAPI file was found, and requests to api.read.ai/openapi.json and /docs got no response. The MCP tool schemas sit behind sign-in and were not read, so 5 of 25 for the published parameter tables. www.read.ai/llms.txt points to a help centre JSON API that returns every article (10). The API reference says when to use the live endpoint over the standard one, and the MCP article lists inputs, defaults and limits for each of four tools (13). Parameters are typed in tables and access levels are enumerated, with no schema to confirm constraints (8). Each endpoint has a curl request and a sample response. Errors are a table of status codes with no body schema (10). A /v1 path prefix, no changelog (5). | |||
| Agent ergonomics | 13%16.2 | 10.2 | |
Four MCP tools, though list meetings returns the full detail of up to 10 meetings, transcripts included, per the MCP article. The REST API sizes responses with expand[] (20). Cursor pagination with has_more, a page size fixed at 10 or fewer and start-time filters only, with no search by title or participant (15). Errors are bare HTTP status codes with one-line meanings, though the 401 from the MCP endpoint carries a clear recovery message (8). Create meeting agent and share meeting report are documented as duplicate-safe. Tool annotations were not read (12). Few required parameters and sensible defaults, no official SDK (8). | |||
| Security & auth | 14%17.5 | 9.4 | |
OAuth 2.1 with dynamic client registration, PKCE, 10-minute access tokens, rotating single-use refresh tokens and a revocation endpoint. Only two scopes, meeting:read and mcp:execute, so MCP access can't be narrowed to reading (24). A token reaches only reports its user can open, and a workspace admin can switch off access through the Downloads setting. No confirmation step is documented for sending a bot or sharing a report by email (9). Transcripts are untrusted speech and no injection guidance was found (0). Workspace audit logs in OCSF by webhook on Enterprise+ record sign-ins and integration connections, not individual calls (6). security.txt valid to 18 August 2027, SOC 2 Type 2 and a HIPAA option per the help centre, no bug bounty found (15). | |||
| Payments & pricing | 10%12.5 | 3.8 | |
| No x402, MPP or L402 (0). Plan prices are public ($15, $22.50 and $29.75 a user a month billed annually) with nothing charged per call (10). The free plan needs no card and includes the API and MCP server (20). Client registration is programmatic, but a person has to sign in and consent in a browser (0). | |||
| Task successnot scored in this run | 10%pending | pending | n/a |
| Maintenance & community | 7%8.8 | 2.7 | |
| No changelog or release list was found, so dates come from the help centre. The MCP server article was last edited on 2 September 2026, 36 days before the check (20). Connection guides for Claude, ChatGPT and Microsoft Copilot Studio were published between 25 and 27 August 2026, which are documents and not dated releases (5 of 20). A support request form and a status page updated through October, no public changelog or developer forum found (6). Not in the official MCP registry on a search for read.ai, read-ai and readai, and no official SDK (0). No packages to assess (0). | |||
| Transparency & trusteditorial 45, provenance 81 | 7%8.8 | 5.5 | |
| Closed service with published terms, last updated 26 February 2026 (15). The privacy policy of 29 June 2026 keeps audio and video for no longer than two years and paid accounts' data until payment stops or deletion is requested. The help centre says model training is opt-in, while the terms grant a licence to train subject to opt-in or opt-out settings, and the DPA sits in a Trust Centre we couldn't read (20). No deprecation policy for the beta API (0). A sub-processor list is linked at trust.read.ai/subprocessors but didn't render for us, and EU and Canada data regions were announced on 2 February 2026 (10). | |||
| Negative events | ≤15 | None recorded | 0 |
| Total | 50.4 · D | ||
Weight is the published weight, and the figure under it is that category's share of the 100 points in this run. A pending category has no score and adds nothing. What changes when it's scored.
Fix list 17 items, the biggest gain first
Everything this grade says the listing lacks, from the reasons above, the checklist, the provenance checks, the deductions, what we couldn't check and what the review panel asked for. Paste it into a coding agent working on Read AI, or have the agent fetch /fixes/read-ai.md. A fix counts at the next check, once it's public.
Show it
# Fix list: Read AI From Anchor Terminal's listing at https://www.anchorterminal.com/tools/read-ai, the October 2026 research run, assessed 8 October 2026. Grade D, 50.4 out of 100. This is everything the published grade says the listing lacks, the biggest possible gain to the total first. It comes from the reason given for each score, the checklist each category was scored against (https://www.anchorterminal.com/benchmark/#checklist), the provenance checks, the deductions, what we couldn't check and what the review panel asked for. A fix counts at the next check, once it's public. For a coding agent working on Read AI: work through the items below in the product, its docs and its public pages. Each category gives the reason for its score, with the points each checklist item earned, and the checklist itself, so the gap is the items that earned less than their points. Change the product, not the wording, and keep a note of what you changed and where it's published. ## 1. Reliability, 52 out of 100, up to 9.6 more on the total Why it scored 52: Graded as a hosted service on the MCP server and REST API. Statuspage at readai.statuspage.io with an API component and per-platform bot components (20). From 10 July to 8 October 2026 the API component has no incident. The bots have one critical incident (Zoom meetings not joined, 3 August, about three hours) and one major (23 July, under an hour), and Ask Read, which the API doesn't expose, has two majors (10). 100 requests a minute per user (15). 429 is documented as retry later with no Retry-After or backoff guidance, while create meeting agent and share meeting report are documented as safe to repeat (7). No SLA found (0). Both surfaces are open beta (0). The checklist (https://www.anchorterminal.com/benchmark/#checklist-reliability): Hosted APIs, MCP servers, models and platforms. - 20, a public status page with component history (Statuspage, Instatus, BetterStack or the vendor's own). - 0 to 30, the incident record for the last 90 days on that page. 30 for a clean record or trivial incidents only, 20 for minor incidents only, 10 for one major outage (an hour or more of a core API down, or errors across the board), 0 for several. 5 when there's no history we could read, and the note says so. - 15, rate limits documented with numbers. - 15, documented 429 or overload handling (Retry-After, backoff guidance), and idempotency keys or safe-retry guidance where writes are involved. - 10, an SLA published for any paid tier. - 10, the surface agents use is generally available, not beta or preview. Local packages, SDKs, frameworks and stdio MCP servers. - 20, installs from an official package with supported runtimes stated. - 25, a public CI and test suite, passing on the default branch. - 0 to 25, open crash or regression issues relative to activity (25 for few and handled, 0 for many, old and unanswered). - 15, semver discipline and breaking changes called out in a changelog. - 15, version 1.0 or later, or declared stable. Protocols are read from their reference implementations, the public facilitators or servers, spec stability and test vectors. ## 2. Payments & pricing, 30 out of 100, up to 8.8 more on the total Why it scored 30: No x402, MPP or L402 (0). Plan prices are public ($15, $22.50 and $29.75 a user a month billed annually) with nothing charged per call (10). The free plan needs no card and includes the API and MCP server (20). Client registration is programmatic, but a person has to sign in and consent in a browser (0). The checklist (https://www.anchorterminal.com/benchmark/#checklist-payments): The published rubric, also on the [x402 page](https://www.anchorterminal.com/x402/). - 40, a machine payment protocol (x402, MPP or L402) on the tool's own endpoints. 10 to 30 when it covers only some endpoints or only goes through a third party, and the note says which. - 20, per-call or per-unit pricing published without a login. 10 for public plan-only pricing, 0 for "contact sales" or prices behind a login. - 20, a free tier or trial that doesn't need a card. - 20, autonomous onboarding, meaning an agent can get access without a person signing up in a browser (keyless use, x402, a programmatic key API). Payment platforms and agent wallets rarely charge for their own API over a machine protocol, so the first line has steps for them, and the highest one that applies counts. 40 when x402, MPP or L402 runs on all their own endpoints, 30 when it runs on part of their own API, 25 when their merchants can accept one, 20 for running a facilitator, 15 for paying as a buyer, and 0 when the only protocol is their own. Merchant acceptance sits above a facilitator because the platform's own customers can charge agents through it, while a facilitator settles for sellers who wire up the protocol themselves. The counter-argument (a facilitator does more for the protocol as a whole) has a point. Each note says which step applied. Open-source software you run yourself is scored on its hosted or paid option if it has one. A free, self-hosted package with nothing to buy gets 20, 20 and 20 for the last three lines, and 0 to 40 for the first only if it ships a payment protocol. ## 3. Security & auth, 54 out of 100, up to 8.1 more on the total Why it scored 54: OAuth 2.1 with dynamic client registration, PKCE, 10-minute access tokens, rotating single-use refresh tokens and a revocation endpoint. Only two scopes, `meeting:read` and `mcp:execute`, so MCP access can't be narrowed to reading (24). A token reaches only reports its user can open, and a workspace admin can switch off access through the Downloads setting. No confirmation step is documented for sending a bot or sharing a report by email (9). Transcripts are untrusted speech and no injection guidance was found (0). Workspace audit logs in OCSF by webhook on Enterprise+ record sign-ins and integration connections, not individual calls (6). security.txt valid to 18 August 2027, SOC 2 Type 2 and a HIPAA option per the help centre, no bug bounty found (15). The checklist (https://www.anchorterminal.com/benchmark/#checklist-security): - 0 to 30, the credential model. 30 for OAuth 2.1 with scopes, or scoped and revocable keys with rotation. 20 for plain revocable API keys. 10 for one all-powerful key. 10 off when a secret can travel in a URL query string as a documented option. - 0 to 20, read-only or least-privilege modes, and confirmation or approval for destructive actions. - 0 to 15, prompt-injection posture where the tool returns untrusted content (documented mitigations or guidance). A tool that returns no untrusted content gets 10. - 0 to 15, audit logs or per-call visibility for the operator. - 0 to 20, a security programme. security.txt or a disclosure policy, a bug bounty, SOC 2 or ISO 27001, advisories handled in public. Models are read for retention, whether API data trains models (and whether that's off by default), zero-retention options and certifications. Frameworks for telemetry defaults, approval hooks, guardrails and sandboxing. ## 4. Schema & documentation, 51 out of 100, up to 8 more on the total Why it scored 51: No public OpenAPI file was found, and requests to api.read.ai/openapi.json and /docs got no response. The MCP tool schemas sit behind sign-in and were not read, so 5 of 25 for the published parameter tables. www.read.ai/llms.txt points to a help centre JSON API that returns every article (10). The API reference says when to use the live endpoint over the standard one, and the MCP article lists inputs, defaults and limits for each of four tools (13). Parameters are typed in tables and access levels are enumerated, with no schema to confirm constraints (8). Each endpoint has a curl request and a sample response. Errors are a table of status codes with no body schema (10). A /v1 path prefix, no changelog (5). The checklist (https://www.anchorterminal.com/benchmark/#checklist-schema): APIs and MCP servers. - 25, a machine-readable contract (a public OpenAPI file or similar; for MCP, typed JSON Schema inputs on every tool). - 10, llms.txt or Markdown docs served for agents. - 0 to 20, descriptions that say what a tool is for, when to use it and when not to, read from the tool definitions in the source or the API reference. - 0 to 15, typed inputs with enums, constraints and required fields, and no free-form JSON blobs. - 0 to 15, examples and documented error responses. - 15, versioning and a public changelog. Models are read from the API reference, the OpenAPI file, llms.txt, the structured-output and tool-use docs and the model cards. Frameworks from docs a model can follow, typed interfaces, examples and the API reference. ## 5. Agent ergonomics, 63 out of 100, up to 6 more on the total Why it scored 63: Four MCP tools, though list meetings returns the full detail of up to 10 meetings, transcripts included, per the MCP article. The REST API sizes responses with `expand[]` (20). Cursor pagination with `has_more`, a page size fixed at 10 or fewer and start-time filters only, with no search by title or participant (15). Errors are bare HTTP status codes with one-line meanings, though the 401 from the MCP endpoint carries a clear recovery message (8). Create meeting agent and share meeting report are documented as duplicate-safe. Tool annotations were not read (12). Few required parameters and sensible defaults, no official SDK (8). The checklist (https://www.anchorterminal.com/benchmark/#checklist-ergonomics): - 0 to 25, context cost. For MCP, the number and size of the tool definitions (25 for ten or fewer compact tools, 15 for 11 to 30, 5 for more than 30, plus up to 10 back for toolsets, dynamic loading or read-only subsets). For APIs, whether responses can be sized (field selection, limits, summaries). - 20, pagination, filtering and output-size controls. - 20, actionable, documented error responses, codes and messages an agent can recover from. - 20, idempotency or safe retries, and for MCP the `readOnlyHint` and `destructiveHint` annotations. - 15, sensible defaults, few required parameters, and official SDKs in at least two languages. Models are read for tool use, structured output, prompt caching, context length, batch and SDKs. Frameworks for how much code and how many defaults a tool-calling agent with MCP needs. ## 6. Maintenance & community, 31 out of 100, up to 6 more on the total Why it scored 31: No changelog or release list was found, so dates come from the help centre. The MCP server article was last edited on 2 September 2026, 36 days before the check (20). Connection guides for Claude, ChatGPT and Microsoft Copilot Studio were published between 25 and 27 August 2026, which are documents and not dated releases (5 of 20). A support request form and a status page updated through October, no public changelog or developer forum found (6). Not in the official MCP registry on a search for read.ai, read-ai and readai, and no official SDK (0). No packages to assess (0). The checklist (https://www.anchorterminal.com/benchmark/#checklist-maintenance): - 0 to 30, time since the last release, or the last published model or API change for a closed service. 30 within 30 days, 20 within 90, 10 within 180, 0 older. - 20, at least three releases or dated changelog entries in the last 90 days. - 0 to 25, responsiveness. Issues and pull requests answered on GitHub (the open issues and how recent the replies are). For closed services, a public changelog and a support or community channel that answers, 0 to 15. - 15, presence in the official MCP registry under a verified namespace (MCP servers), or current official SDKs (APIs and models). - 10, package health, current dependencies and CI. Models are read for deprecation notice periods and model churn rather than release counts. ## 7. Transparency & trust, 63 out of 100, up to 3.2 more on the total Made of editorial 45, provenance 81. Why it scored 63: Closed service with published terms, last updated 26 February 2026 (15). The privacy policy of 29 June 2026 keeps audio and video for no longer than two years and paid accounts' data until payment stops or deletion is requested. The help centre says model training is opt-in, while the terms grant a licence to train subject to opt-in or opt-out settings, and the DPA sits in a Trust Centre we couldn't read (20). No deprecation policy for the beta API (0). A sub-processor list is linked at trust.read.ai/subprocessors but didn't render for us, and EU and Canada data regions were announced on 2 February 2026 (10). The checklist (https://www.anchorterminal.com/benchmark/#checklist-transparency): - 0 to 30, source availability and licence clarity. 30 for open source under an OSI licence, 15 for closed with clear terms, 0 for unclear terms. - 0 to 30, data handling and retention statements that agree with each other (privacy policy, DPA, retention periods, subprocessors). - 0 to 20, a deprecation policy or notices with dates. - 0 to 20, telemetry disclosed with an opt-out (local software), or subprocessors and data locations disclosed (hosted). The other half of Transparency and trust is the provenance score, computed from checked facts (below). The category score is the mean of the two. Provenance checks not met in full (half of this category, computed from checked facts): - Domain age: read.ai, registered 2017-12-16 (8 years) (11 of 15) - Terms of service: read, states 6 of the 7 things a reader expects, and has 2 clauses that cost points (5.1 of 10) - Changelog: not found (0 of 10) ## What we couldn't check What we couldn't read counted as absent. Publishing it on a page a plain HTTP fetch can read (not only in a browser) lets the next check count it. - unchecked: the MCP tool definitions, input schemas and annotations, which need a signed-in Read AI account - unchecked: the Trust Centre at trust.read.ai (SOC 2 report, DPA, sub-processor list), which renders only with JavaScript - unchecked: whether api.read.ai publishes an OpenAPI file. Requests to /openapi.json and /docs got no response - No changelog was found, so lastRelease is the edit date of the MCP server help article (2 September 2026) and may not match the last server change - The webhook article gives two retry figures, up to 5 retries per request in the FAQ and 25 tries in the main text - The date when create meeting agent and share meeting report were added to the MCP server was not established - No date was found for general availability of the API and MCP server ## Weaknesses - Both the REST API and the MCP server are labelled open beta, with no SLA and no deprecation policy found - No static API keys or client credentials. A person signs in through a browser, and a broken refresh chain needs that person again - No public OpenAPI file, changelog or official SDK was found. The reference is one help centre article - List calls return at most 10 meetings a page, and the only filter is start time - The bot can be sent to a meeting through MCP, but no tool removes it, reports its state or controls it during the call ## What costs an agent a turn today The notes we give agents before they call it. Each one is a workaround an agent shouldn't need. - Persist the new refresh token after every refresh. Access tokens expire after 10 minutes and each refresh token works once. - Request only the fields needed with `expand[]` on the REST API. Transcripts and other expansions slow the response. - Stay under 100 requests a minute per user and back off on 429. No Retry-After header is documented. - Confirm with the user before calling create meeting agent or share meeting report. Sharing emails the recipient unless notify is set to no. - Ask a workspace admin to enable Downloads in Reports & Sharing first. Without it the API and MCP server return nothing for workspace members. ## When it's done Send what changed and where it's published as a dispute (https://www.anchorterminal.com/builders/#disputes, or `POST https://www.anchorterminal.com/api/v1/contact` with `"kind": "dispute"`). Disputes are answered in public, and the listing is checked again by the same checklist. Paying for an audit or a listing claim changes nothing here.
What we couldn't check
- unchecked: the MCP tool definitions, input schemas and annotations, which need a signed-in Read AI account
- unchecked: the Trust Centre at trust.read.ai (SOC 2 report, DPA, sub-processor list), which renders only with JavaScript
- unchecked: whether api.read.ai publishes an OpenAPI file. Requests to /openapi.json and /docs got no response
- No changelog was found, so lastRelease is the edit date of the MCP server help article (2 September 2026) and may not match the last server change
- The webhook article gives two retry figures, up to 5 retries per request in the FAQ and 25 tries in the main text
- The date when create meeting agent and share meeting report were added to the MCP server was not established
- No date was found for general availability of the API and MCP server
Sources 18
- API and MCP overview, prerequisites and known limitations support.read.ai · seen 2026-10-08
- MCP server details and tools support.read.ai · seen 2026-10-08
- REST API reference support.read.ai · seen 2026-10-08
- OAuth flow and token lifetimes support.read.ai · seen 2026-10-08
- OAuth authorisation server metadata authn.read.ai · seen 2026-10-08
- MCP protected resource metadata api.read.ai · seen 2026-10-08
- webhooks support.read.ai · seen 2026-10-08
- workspace audit logs support.read.ai · seen 2026-10-08
- security and privacy overview support.read.ai · seen 2026-10-08
- status incidents readai.statuspage.io · seen 2026-10-08
- plans and pricing read.ai · seen 2026-10-08
- terms of service read.ai · seen 2026-10-08
- privacy policy read.ai · seen 2026-10-08
- security.txt read.ai · seen 2026-10-08
- llms.txt read.ai · seen 2026-10-08
- MCP launch post, 25 February 2026 read.ai · seen 2026-10-08
- official MCP registry search, no result registry.modelcontextprotocol.io · seen 2026-10-08
- advance notice and opt-out of recording support.read.ai · seen 2026-10-08
Probe metrics
Not measured yet. Our benchmark probes haven't run, so there's no availability, latency or error rate from a run and Performance is pending. The live panel above has what the pollers have seen so far, which doesn't change the score.
Pricing & changes
Freemium $15 / seat-mo The API and MCP server are available on every plan, including Free (5 meeting transcripts a month, no card). Paid plans billed annually are Pro at $15, Enterprise at $22.50 and Enterprise+ at $29.75 a user a month ($19.75, $29.75 and $39.75 billed monthly). Enterprise+ needs five or more licences. Webhooks need Pro or above, and recording playback needs Enterprise or above. No per-call charge is published (checked 2026-10-08).
Prices
| Item | Price | Unit | Note |
|---|---|---|---|
| Pro | $15 | per seat per month | billed annually, $19.75 billed monthly |
| Enterprise | $22.50 | per seat per month | billed annually, $29.75 billed monthly |
| Enterprise+ | $29.75 | per seat per month | billed annually, $39.75 billed monthly, five or more licences |
Compared across listings on the price index.
Recent changes
- Latest release
Follow them as a feed at /feeds/tools/read-ai.xml, or this listing's score history at history.json.
Connect
First request
curl "https://api.read.ai/v1/meetings?limit=5&start_time_ms.gte=1733700000000" \
-H "Authorization: Bearer $READ_AI_ACCESS_TOKEN" \
-H "Accept: application/json"
Through letme picks today, calling later
GET https://letme.dev/read-ai
letme.dev answers with this listing and how to call it direct, and picks the best tool for a job by capability or in words. Calling through letme (one key, the vendor's own price) comes later. Nothing on letme.dev is for people to look at; this page explains it.
Compare with
Fireflies.ai CMeeting BaaS BRecall.ai Ctl;dv D
Head to head Fireflies.ai vs Read AI · Read AI vs tl;dv · Meeting BaaS vs Read AI · Read AI vs Recall.ai
Machine-readable
| Similar tool | Grade | Score | Shared capabilities | x402 |
|---|---|---|---|---|
| Fireflies.ai Fireflies.AI Corp. | C | 60.6 | meetings.transcript meetings.summary meetings.recording meetings.bot | no |
| Meeting BaaS SAS SPOKE | B | 62 | meetings.bot meetings.transcript meetings.recording | no |
| Recall.ai Hyperdoc Inc. | C | 59.5 | meetings.bot meetings.recording meetings.transcript | no |
| tl;dv tldx Solutions GmbH | D | 51 | meetings.transcript meetings.summary meetings.recording | no |
Machine-readable
- JSON
/api/v1/tools/read-ai.json· historyhistory.json· badge/badges/read-ai.svg· changes feed/feeds/tools/read-ai.xml - Markdown
/tools/read-ai.md· slim/tools/read-ai.min.md(or sendAccept: text/markdown) - Fix list
/fixes/read-ai.md·/fixes/read-ai.json - From a terminal
anchor tool read-ai --md(the CLI) · over MCPget_tool {"slug": "read-ai"}at/mcp, no key - Directory index
/api/v1/tools.json· site index/llms.txt
Verify this listing
For the vendorIs this your product? Link to this page from your own site or README, then tell us where. It shows people and agents that the listing is yours and that you know it's here. It never changes a grade, rank or review.
-
Add the badge or a link
On a light page On a dark page <a href="https://www.anchorterminal.com/tools/read-ai"><img src="https://www.anchorterminal.com/badges/read-ai.svg" alt="Read AI on Anchor Terminal" height="20"></a>[](https://www.anchorterminal.com/tools/read-ai)<a href="https://www.anchorterminal.com/tools/read-ai">Read AI on Anchor Terminal</a>It counts on a page on read.ai or one of its subdomains.
-
Tell us where it is
We read it once now and again every week. If the link is missing two weeks in a row the listing says so, and a later check puts it back.
Agents send the same to POST /api/v1/verify as {"slug": "read-ai", "url": "…"}, or call the verify_listing tool at /mcp. Ten checks an hour from one address. What we check.
