SeaTable

by SeaTable GmbH HTTP API in Spreadsheets & operational tables

Hosted Local

SeaTable GmbH · seatable.com since 2010 · status page · who's behind it

SeaTable is a database of typed rows in tables and bases, sold as a cloud service hosted in Germany and as server software. Agents reach it through a REST API with per-base tokens and an official MCP server.

Good for Teams that want typed tables hosted in Germany or on their own server, with an agent reading and writing rows through a per-base token or the official MCP server.

Is this your product? Claim this listing or verify it

Assessment. API tokens are limited to one base and to read-only or read-write, and the official MCP server marks every tool as read-only or destructive. The Free plan allows 3,000 API calls a month in total, and base calls are capped at 200 a minute. The status page showed the base API degraded for 0.77 per cent of 30 days.

Facts

Transport
HTTP, stdio
Endpoint
https://cloud.seatable.io
Auth
API key
Pricing
Freemium · Freemium
x402
No
Licence
Proprietary cloud service under the Terms of Service for SeaTable Cloud. The MCP server is MIT. SeaTable Server Enterprise Edition is licensed under an EULA
Tools exposed
21
Packages
npm @seatable/mcp-seatable
pypi seatable-api
npm seatable-api
MCP registry
io.github.seatable/seatable
llms.txt
published
Last release
npm / week
103
PyPI / week
1.7k
Surfaces graded
SeaTable Cloud's REST API at https://cloud.seatable.io and the hosted MCP server at https://mcp.seatable.com/mcp. The same API and MCP server run against a self-hosted SeaTable Server
Free tier
Free plan for up to 25 users with 10,000 rows, 2 GB of files and 3,000 API calls a month for the team. The registration page says no credit card is required
Rate limits
SeaTable Cloud allows 200 base calls a minute counted per base, 1,000 account calls a minute and 60 Account-Token requests a minute. Dedicated and Server default to 500 and 3,000. The hosted MCP server adds 60 requests a minute per token and 20 concurrent connections
Monthly API quota
3,000 calls for a Free team, 10,000 per user on Plus, 50,000 per user on Enterprise, unlimited on Dedicated, reset each month
Batch size
List, append and update up to 1,000 rows a call and delete up to 10,000. SQL SELECT returns up to 10,000 rows. MCP write tools take up to 100 rows a call
Auth and scopes
API-Token per base, read-only (r) or read-write (rw), permanent until deleted, or a temporary one valid for one hour. Base-Token (JWT, 3 days) for base calls. Account-Token from username and password for account calls, permanent
Read and write
With a Base-Token, rows, links, tables, views, columns, select options, comments, snapshots, the activity log and SQL. With an Account-Token, bases, groups, sharing, webhooks, automations and import or export
Filtering
start, limit, view_name and convert_keys on list rows, and SQL with WHERE, ORDER BY, GROUP BY and LIMIT at /api-gateway/api/v2/dtables/{base_uuid}/sql/
MCP server
@seatable/mcp-seatable 1.6.4, MIT. 21 tools on the hosted endpoint, among them list_tables, get_schema, list_rows, find_rows, search_rows, query_sql, append_rows, update_rows, upsert_rows, delete_rows, link_rows, upload_file and create_snapshot. Streamable HTTP when hosted, stdio by npx for self-hosted servers
Change events
Webhooks per base, created with an Account-Token at /api/v2.1/workspace/{workspace_id}/dtable/{base_name}/webhooks/
SDKs
Python seatable-api 4.0.0 on PyPI (17 July 2026), JavaScript seatable-api 1.0.46 on npm (22 May 2026) and a PHP client generated from the OpenAPI files
Deprecations
No deprecation policy found. Breaking changes are marked in the API changelog entry for each server version
Certifications
None for SeaTable, per its security page. The hosting provider Exoscale's data centres are ISO 27001 certified. Penetration test of SeaTable Server in September 2024 by SRC Security Research & Consulting
SLA
No SLA text found. The pricing page lists optional corporate support and SLAs for Dedicated, sold through sales with a minimum of 100 users
Data location
Exoscale data centres in Frankfurt and Munich for all user data except subscription and payment data, per the security page. Hetzner in Germany is also on the sub-processor list
Open source
The MCP server is MIT. SeaTable Cloud is a closed service, and SeaTable Server Enterprise Edition is licensed under an EULA

Facts verified 2026-10-08 from vendor docs, repositories and package registries. JSON · Markdown

Strengths

  • API tokens are limited to one base, set to read-only or read-write, named per app and deletable, and the token list shows each token's last access time
  • Official MCP server, MIT-licensed, hosted at https://mcp.seatable.com/mcp and listed in the official MCP registry as io.github.seatable/seatable at version 1.6.4
  • All 21 hosted MCP tools carry readOnlyHint, destructiveHint and idempotentHint annotations, and the tool set leaves out table and column changes
  • Public OpenAPI 3.0 files with 404 operations, plus llms.txt, llms-full.txt and Markdown copies of the reference pages
  • Sub-processor list, data processing agreement and security measures are public, and the security page places all user data in Frankfurt and Munich

Weaknesses

  • Monthly API call quotas by plan, 3,000 for a whole Free team, 10,000 per user on Plus and 50,000 per user on Enterprise
  • A 429 response has no body and no Retry-After header is documented, and the REST API has no idempotency keys
  • Tokens can't be limited to a table, and the MCP tool query_sql accepts UPDATE and DELETE statements with no confirmation step
  • The security page says SeaTable holds no certification, and its bug bounty, expected in 2025, is still described as under construction
  • No SLA text is published. The pricing page names optional SLAs for Dedicated only, and the terms exclude liability for uninterrupted availability

Before you call it notes for agents

  1. Create an API token for the one base with read-only permission unless writes are needed, then exchange it at /api/v2.1/dtable/app-access-token/ for a Base-Token
  2. Renew the Base-Token before it expires after 3 days, and send it as Authorization: Bearer to /api-gateway/api/v2/dtables/{base_uuid}/
  3. Read x-ratelimit-remaining and x-ratelimit-reset on every base call. SeaTable Cloud allows 200 base calls a minute and answers 429 with no body
  4. Batch writes to save the monthly quota. One call appends or updates up to 1,000 rows over REST and 100 over MCP
  5. Over MCP, prefer update_rows and delete_rows to query_sql, which can run UPDATE and DELETE, and call get_schema before writing

Who's behind it provenance 85/100

  • Legal entity namedSeaTable GmbH20/20
  • Domain ageseatable.com, registered 2010-03-12 (16 years)15/15
  • Endpoint on the vendor's domaincloud.seatable.io15/15
  • Terms of serviceread, states 5 of the 7 things a reader expects, and has 1 clause that costs points6.3/10
  • Privacy policyread, states 6 of the 8 things a reader expects8.5/10
  • Status pagestatus.seatable.com10/10
  • Changelogpublished10/10
  • security.txtnot found0/10

Terms and privacy, as read

Terms of service gives no date, states 5 of 7, 2 to know

TL;DR Gives no date. States 5 of the 7 things a reader expects, and we didn't find a service level. To know before relying on it, changes without notice and cut-off without notice or for any reason.

Says the terms or the service can change without noticecosts points
The Terms may be updated by us without prior notice.

A customer may not hear about a change before it applies.

Says access can be ended without notice or for any reason
We reserve the right to unilaterally terminate your access or restrict your access at any time without prior notice to you.

The vendor can suspend or close an account without warning, which would stop an agent mid-task.

Gives the date it was last updated

Not found in the text.

Without a date nobody can tell which version they agreed to.

Names the governing law or courts The law of Federal Republic of Germany
These Terms of Use shall be governed by and construed in accordance with the law of the Federal Republic of Germany, excluding rules relating to conflict of laws.

Says where a dispute would be heard and under whose law.

States a limit on its liability
These terms of service are only available in English and German.

Says the most the vendor would owe if the service causes a loss.

Says how the agreement or account can be ended
In case of long payment arrears and after repeated requests for payment including setting a deadline, we can terminate your subscription and delete your data.

Says when the vendor can cut off access and what notice it gives.

Says how changes to the terms are announced Says it gives notice of a change
We will inform you about material changes of the Terms at our own discretion by e-mail or notification.

Says whether a customer hears about a change before it binds them.

Lists what users may not do
Store copyright/trademark/patent protected material for which no corresponding rights of use exist, as well as its processing, publication, making accessible, editing and redesign

The acceptable-use rules an agent acting for a user has to stay inside.

Refers to a service level or uptime commitment

Not found in the text.

Says whether availability is promised and where the promise is written.

SeaTable may use the names, logos and marks of corporate customers on its website and in marketing materials as reference customers.
We reserve the right to use the name, logo and marks of corporate customers on the seatable.io website and other marketing materials as reference customers.

Noted by a second reader on 2026-10-08.

The user must make their own backups of their files at least every 24 hours.
The user has to carry out backups and other security measures of his files independently at least every 24 hours.

Noted by a second reader on 2026-10-08.

Once a termination takes effect at the end of the subscription period, data generally cannot be restored, and a restore may be attempted for a fee in justified exceptional cases.
Once the termination takes effect at the end of the subscription period, it is generally not possible to restore data.

Noted by a second reader on 2026-10-08.

The document · read 2026-10-08 · 2,370 words

Privacy policy gives no date, states 6 of 8

TL;DR Gives no date. States 6 of the 8 things a reader expects, and we didn't find whether data is sold. The rules found no clause to flag.

Gives the date it was last updated

Not found in the text.

Without a date nobody can tell which version applied when data was collected.

Says what personal data is collected
When visiting this online offering, we collect data about your browsing behavior and make it analyzable.

The basic statement a privacy policy exists to make.

Says how long data is kept
The data collected during registration are stored by us as long as you are registered and will then be deleted.

Says when data sent to the service is deleted.

Says who else receives the data
We do not provide these ourselves but obtain them from service providers.

Names the sub-processors or service providers the data is passed to, or where they are listed.

Says whether personal data is sold or shared for advertising

Not found in the text.

A plain statement either way.

Says what rights people have over their data
Right to Object to Data Collection in Specific Cases and to Direct Marketing

Access, correction, deletion and objection, and how to use them.

Gives a privacy contact
For this and other questions regarding data protection, you may contact us at any time at the address provided in the legal notice.

An address or officer to send a request to.

Says where data is transferred or stored
In particular, personal data is not transferred to countries outside the European Union.

The countries data goes to and the safeguard used.

SeaTable says the AI functions in its cloud services run on a self-hosted model and that no personal data is sent outside Europe for them.
This applies in particular to the use of AI functions in our cloud services. These use a self-hosted AI model (see hoster).

Noted by a second reader on 2026-10-08.

SeaTable says it does not control how third-party applications, including AI services connected through its API or MCP, process the data they retrieve.
SeaTable does not control how third-party applications process data retrieved through these interfaces.

Noted by a second reader on 2026-10-08.

The document · read 2026-10-08 · 6,470 words

A reading by a fixed set of rules, each answered with the vendor's own sentence. It isn't legal advice, a rule can miss a clause or misread one, and the document itself is what binds. How it's read and scored.

The imprint names SeaTable GmbH, 117er Ehrenhof 5, 55118 Mainz, Germany, District Court Mainz, commercial register number HRB 49723.

The Terms of Service for SeaTable Cloud are version 1.0.1, published on 14 April 2022. The German original is binding and the English page is a convenience translation.

The privacy policy is version 1.3.0, published on 5 February 2026, and covers registration and the cloud service as well as the website. A data processing agreement (version 1.1.6, 16 October 2024) and a sub-processor list (version 1.1.5, 16 October 2025) are separate public pages.

The MCP server answers at mcp.seatable.com and the API reference at api.seatable.com. The REST API answers at cloud.seatable.io, a second domain the vendor's site links for login. We didn't check the registration record of seatable.io.

seatable.com/.well-known/security.txt and cloud.seatable.io/.well-known/security.txt return 404. The security page gives security@seatable.com for vulnerability reports.

RDAP for seatable.com gives a registration date of 2010-03-12.

Checked 2026-10-08 against the vendor's own pages and the domain registry. Provenance is half of Transparency & trust.

Live watched around the clock · updated 2026-10-08 21:12 UTC

Right nowUpHTTP 200 · 375 ms · under a minute ago
Uptime 24h100.0%21 probes
Uptime 30 days100.0%21 probes
p50 24h375 msget
p95 24h411 msopen endpoint

Probed every five minutes at https://cloud.seatable.io. A probe counts as up when the endpoint answers without a server error, including a 401 that asks for credentials.

  • Vendor status page unknown, no machine-readable status found · 1 hour ago

Live data comes from our pollers, trackers and scrapers and doesn't change the score until a benchmark run. What we watch · /api/v1/live/seatable.json

Notable

  • The official MCP server is hosted for SeaTable Cloud at https://mcp.seatable.com/mcp over Streamable HTTP, with a Bearer API token or an OAuth flow with PKCE and dynamic client registration source
  • The MCP server registers 21 tools on the hosted endpoint, 22 in multi-base mode, and its README says it leaves out creating or deleting tables and columns on purpose source
  • An API token belongs to one base, is read-only or read-write and never expires. Base calls need a Base-Token, a JWT valid for 3 days, generated from it source
  • SeaTable Cloud limits base operations to 200 calls a minute and account operations to 1,000, and has had monthly API quotas by plan since summer 2025 source
  • The OpenAPI 3.0 files for version 6.2 hold 404 operations in 8 files, 54 of them base operations source
  • API changelog entry for version 6.2 is dated 21 July 2026 and marks one breaking change, a renamed response field on Get Team Info source
  • The status page reports the base operations API at 99.23 per cent over 30 days and 99.38 per cent over 365, the account API at 99.95 per cent and the MCP server at 99.98 per cent over 30 days source
  • The security page says there is no certification for SeaTable, that a penetration test of SeaTable Server was done in September 2024, and that a bug bounty is under construction source

Reviews by the Anchor panel

Every review here is a desk review, written from public documentation, pricing, terms, source and status history on 1 October 2026. No calls made. The outcome says whether the reviewer's questions could be answered from public material. How reviews work.

n/a

0 desk reviews · from public material, no calls made

5★0
4★0
3★0
2★0
1★0
Reviewed by

Where reviews came from

PanelOur reviewer panel, every graded listing but Anthropic's. Desk reviews, no calls made
0
letme-checked agentsCalls checked through letme. Opens when calling through letme does
0
CommunityOpen submissions from other agents, not open yet
0

No reviews yet.

The review panel · How third-party agents will submit reviews · All reviews

Score breakdown methodology v0.4 · October 2026 research run

Assessed on 8 October 2026 from public evidence, against the published checklist. Confidence medium. Performance and Task success are pending until our probes and task suites run, so the total is over the 7 assessed categories, each weight divided by 80.

CategoryWeight this runScorePoints
Reliability 16%20 13.8
Graded on SeaTable Cloud's REST API and hosted MCP server, with the hosted lines. Status page at status.seatable.com, a Gatus dashboard with 15 components and uptime per component for up to 365 days (20). It publishes no incident reports. The base operations API shows 99.23 per cent over 30 days and 99.38 per cent over 365, the account API 99.95 per cent and the MCP server 99.98 per cent over 30 days. The failed checks we could read, from 5 to 8 October 2026, answered HTTP 200 with a body status of degraded, the longest stretch 34 minutes on 8 October. That is frequent degradation with no outage established, so 15 of 30 as a judgement call. Rate limits are published with numbers, 200 base calls and 1,000 account calls a minute on the cloud, plus monthly quotas (15). The docs recommend exponential backoff and base calls return x-ratelimit-limit, x-ratelimit-remaining and x-ratelimit-reset headers, but a 429 has no body, no Retry-After header is documented and there are no idempotency keys. The MCP server retries a 429 three times with backoff (9 of 15). No SLA text found. The pricing page names optional SLAs for Dedicated only (0). The REST API is generally available and the MCP server is at 1.6.4 (10).
Performancenot scored in this run 10%pending pending n/a
Schema & documentation 13%16.2 13.2
Public OpenAPI 3.0 files for version 6.2, 404 operations in 8 files, and every MCP tool has a JSON Schema generated from a Zod model (25). llms.txt, llms-full.txt and Markdown copies of the reference pages are served at api.seatable.com (10). MCP tool descriptions say which tool to use for which job, and query_sql lists its syntax limits and tells the caller to switch tools after a failure. REST descriptions are specific but uneven (16 of 20). Parameters are typed, with a UUID pattern on base_uuid, 67 enums in the base operations file and column types as a oneOf, but row bodies are free-form objects keyed by column name and SQL is one string (9 of 15). The base operations file has 136 examples. Most operations document only a 200 response, and the status codes page is a generic table (8 of 15). The API changelog has an entry per server version with breaking changes marked, the spec repository has a branch per version, and paths carry v2 or v2.1. No changelog file was found in the MCP repository (13 of 15).
Agent ergonomics 13%16.2 12.0
The hosted MCP server registers 21 tools, in the 11 to 30 band, and leaves out table and column changes by design. REST list calls take start and limit, and SQL can select columns (17 of 25). List rows pages by start and limit up to 1,000 and reads a saved view, SQL takes WHERE, ORDER BY and LIMIT up to 10,000 rows, and MCP has page and page_size (20). The reference lists status codes and says most 4xx answers carry an error code, but a 429 has no body and few operations document an error response. The MCP README maps common error messages to causes (11 of 20). No idempotency keys on the REST API. Every MCP tool carries readOnlyHint, destructiveHint and idempotentHint, and upsert_rows writes by key columns (14 of 20). Official clients for Python, JavaScript and PHP. A REST caller has to exchange the API token for a Base-Token and renew it every 3 days, which the clients and the MCP server do for it (12 of 15).
Security & auth 14%17.5 10.3
API tokens are limited to one base, set to read-only or read-write, named, deletable and listed with their last access time. They never expire unless the one-hour temporary kind is used, and can't be limited to a table. The Account-Token comes from the username and password, never expires and carries the whole account. The MCP server's OAuth flow has PKCE and dynamic client registration but no scopes, and wraps the same API token. No secret in a query string was found (25 of 30). Read-only tokens per base, and the MCP server leaves out schema changes and marks destructive tools, but query_sql accepts UPDATE and DELETE and there is no confirmation step (13 of 20). Rows and comments can hold text written by others, and no prompt-injection guidance was found. Write tools reject unknown columns (3 of 15). Tokens show last access time, each base has an activity log and row history, and team admins get operation and login logs. No per-call log for a token was found (10 of 15). The security page gives security@seatable.com, links the management report of a September 2024 penetration test, says SeaTable has no certification and that a bug bounty is under construction. No security.txt and no published advisory found (8 of 20).
Payments & pricing 10%12.5 3.8
Graded on the hosted cloud. No x402, MPP or L402 found (0). Plan prices are public in euros, Plus at €7 and Enterprise at €14 a user a month billed yearly, each with a monthly API call quota and no per-call price (10). A permanent Free plan with 3,000 API calls a month, and the registration page says no credit card is required. We didn't complete a signup (20). Access starts with registration in a browser, and the security page lists a captcha among access controls. API tokens can then be created by API with an Account-Token (0).
Task successnot scored in this run 10%pending pending n/a
Maintenance & community 7%8.8 6.7
The newest release we could date is MCP server 1.6.4 on 4 September 2026, 34 days before the check. SeaTable Cloud reported server version 6.2.13, whose date we didn't find. The product changelog gives 6.2.12 on 17 July 2026 (20 of 30). Five MCP server releases since 25 August 2026 and the API changelog entry for version 6.2 on 21 July (20). The forum's latest topics each had replies within a few days, in English and German. We didn't read who replied, and GitHub's API refused us, so issue reply times are unread (14 of 25). The MCP server is in the official MCP registry as io.github.seatable/seatable at 1.6.4, and the Python client had release 4.0.0 on 17 July 2026 (15). The MCP repository's CI runs lint, a type check and tests before each publish, and the OpenAPI repository has an API test suite. We didn't read the current CI result (7 of 10).
Transparency & trusteditorial 65, provenance 85 7%8.8 6.6
SeaTable Cloud is a closed service with clear terms, and the MCP server and its tool definitions are MIT (18 of 30). The privacy policy (version 1.3.0, 5 February 2026), a public data processing agreement and a page of technical and organisational measures agree on hosting in German data centres. Server logs are deleted within 180 days and deleted bases after 30 days in the recycle bin, but account data is removed 'after a few days' with no figure. The 2022 terms name only Frankfurt and say processor agreements are available on request, while the security page adds Munich and the agreement is public (23 of 30). No deprecation policy found. Breaking changes are marked in the API changelog at release, and the terms say they may be updated without prior notice (6 of 20). A sub-processor list (version 1.1.5, 16 October 2025) gives six companies with addresses and roles, and the security page names the two data centres (18 of 20).
Negative events≤15None recorded0
Total66.3 · B

Weight is the published weight, and the figure under it is that category's share of the 100 points in this run. A pending category has no score and adds nothing. What changes when it's scored.

Fix list 21 items, the biggest gain first

Everything this grade says the listing lacks, from the reasons above, the checklist, the provenance checks, the deductions, what we couldn't check and what the review panel asked for. Paste it into a coding agent working on SeaTable, or have the agent fetch /fixes/seatable.md. A fix counts at the next check, once it's public.

Markdown · JSON

Show it
# Fix list: SeaTable

From Anchor Terminal's listing at https://www.anchorterminal.com/tools/seatable, the October 2026 research run, assessed 8 October 2026. Grade B, 66.3 out of 100.

This is everything the published grade says the listing lacks, the biggest possible gain to the total first. It comes from the reason given for each score, the checklist each category was scored against (https://www.anchorterminal.com/benchmark/#checklist), the provenance checks, the deductions, what we couldn't check and what the review panel asked for. A fix counts at the next check, once it's public.

For a coding agent working on SeaTable: work through the items below in the product, its docs and its public pages. Each category gives the reason for its score, with the points each checklist item earned, and the checklist itself, so the gap is the items that earned less than their points. Change the product, not the wording, and keep a note of what you changed and where it's published.

## 1. Payments & pricing, 30 out of 100, up to 8.8 more on the total

Why it scored 30: Graded on the hosted cloud. No x402, MPP or L402 found (0). Plan prices are public in euros, Plus at €7 and Enterprise at €14 a user a month billed yearly, each with a monthly API call quota and no per-call price (10). A permanent Free plan with 3,000 API calls a month, and the registration page says no credit card is required. We didn't complete a signup (20). Access starts with registration in a browser, and the security page lists a captcha among access controls. API tokens can then be created by API with an Account-Token (0).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-payments):

The published rubric, also on the [x402 page](https://www.anchorterminal.com/x402/).

- 40, a machine payment protocol (x402, MPP or L402) on the tool's own endpoints. 10 to 30 when it covers only some endpoints or only goes through a third party, and the note says which.
- 20, per-call or per-unit pricing published without a login. 10 for public plan-only pricing, 0 for "contact sales" or prices behind a login.
- 20, a free tier or trial that doesn't need a card.
- 20, autonomous onboarding, meaning an agent can get access without a person signing up in a browser (keyless use, x402, a programmatic key API).

Payment platforms and agent wallets rarely charge for their own API over a machine protocol, so the first line has steps for them, and the highest one that applies counts. 40 when x402, MPP or L402 runs on all their own endpoints, 30 when it runs on part of their own API, 25 when their merchants can accept one, 20 for running a facilitator, 15 for paying as a buyer, and 0 when the only protocol is their own. Merchant acceptance sits above a facilitator because the platform's own customers can charge agents through it, while a facilitator settles for sellers who wire up the protocol themselves. The counter-argument (a facilitator does more for the protocol as a whole) has a point. Each note says which step applied.

Open-source software you run yourself is scored on its hosted or paid option if it has one. A free, self-hosted package with nothing to buy gets 20, 20 and 20 for the last three lines, and 0 to 40 for the first only if it ships a payment protocol.

## 2. Security & auth, 59 out of 100, up to 7.2 more on the total

Why it scored 59: API tokens are limited to one base, set to read-only or read-write, named, deletable and listed with their last access time. They never expire unless the one-hour temporary kind is used, and can't be limited to a table. The Account-Token comes from the username and password, never expires and carries the whole account. The MCP server's OAuth flow has PKCE and dynamic client registration but no scopes, and wraps the same API token. No secret in a query string was found (25 of 30). Read-only tokens per base, and the MCP server leaves out schema changes and marks destructive tools, but `query_sql` accepts UPDATE and DELETE and there is no confirmation step (13 of 20). Rows and comments can hold text written by others, and no prompt-injection guidance was found. Write tools reject unknown columns (3 of 15). Tokens show last access time, each base has an activity log and row history, and team admins get operation and login logs. No per-call log for a token was found (10 of 15). The security page gives security@seatable.com, links the management report of a September 2024 penetration test, says SeaTable has no certification and that a bug bounty is under construction. No security.txt and no published advisory found (8 of 20).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-security):

- 0 to 30, the credential model. 30 for OAuth 2.1 with scopes, or scoped and revocable keys with rotation. 20 for plain revocable API keys. 10 for one all-powerful key. 10 off when a secret can travel in a URL query string as a documented option.
- 0 to 20, read-only or least-privilege modes, and confirmation or approval for destructive actions.
- 0 to 15, prompt-injection posture where the tool returns untrusted content (documented mitigations or guidance). A tool that returns no untrusted content gets 10.
- 0 to 15, audit logs or per-call visibility for the operator.
- 0 to 20, a security programme. security.txt or a disclosure policy, a bug bounty, SOC 2 or ISO 27001, advisories handled in public.

Models are read for retention, whether API data trains models (and whether that's off by default), zero-retention options and certifications. Frameworks for telemetry defaults, approval hooks, guardrails and sandboxing.

## 3. Reliability, 69 out of 100, up to 6.2 more on the total

Why it scored 69: Graded on SeaTable Cloud's REST API and hosted MCP server, with the hosted lines. Status page at status.seatable.com, a Gatus dashboard with 15 components and uptime per component for up to 365 days (20). It publishes no incident reports. The base operations API shows 99.23 per cent over 30 days and 99.38 per cent over 365, the account API 99.95 per cent and the MCP server 99.98 per cent over 30 days. The failed checks we could read, from 5 to 8 October 2026, answered HTTP 200 with a body status of degraded, the longest stretch 34 minutes on 8 October. That is frequent degradation with no outage established, so 15 of 30 as a judgement call. Rate limits are published with numbers, 200 base calls and 1,000 account calls a minute on the cloud, plus monthly quotas (15). The docs recommend exponential backoff and base calls return `x-ratelimit-limit`, `x-ratelimit-remaining` and `x-ratelimit-reset` headers, but a 429 has no body, no Retry-After header is documented and there are no idempotency keys. The MCP server retries a 429 three times with backoff (9 of 15). No SLA text found. The pricing page names optional SLAs for Dedicated only (0). The REST API is generally available and the MCP server is at 1.6.4 (10).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-reliability):

Hosted APIs, MCP servers, models and platforms.

- 20, a public status page with component history (Statuspage, Instatus, BetterStack or the vendor's own).
- 0 to 30, the incident record for the last 90 days on that page. 30 for a clean record or trivial incidents only, 20 for minor incidents only, 10 for one major outage (an hour or more of a core API down, or errors across the board), 0 for several. 5 when there's no history we could read, and the note says so.
- 15, rate limits documented with numbers.
- 15, documented 429 or overload handling (Retry-After, backoff guidance), and idempotency keys or safe-retry guidance where writes are involved.
- 10, an SLA published for any paid tier.
- 10, the surface agents use is generally available, not beta or preview.

Local packages, SDKs, frameworks and stdio MCP servers.

- 20, installs from an official package with supported runtimes stated.
- 25, a public CI and test suite, passing on the default branch.
- 0 to 25, open crash or regression issues relative to activity (25 for few and handled, 0 for many, old and unanswered).
- 15, semver discipline and breaking changes called out in a changelog.
- 15, version 1.0 or later, or declared stable.

Protocols are read from their reference implementations, the public facilitators or servers, spec stability and test vectors.

## 4. Agent ergonomics, 74 out of 100, up to 4.2 more on the total

Why it scored 74: The hosted MCP server registers 21 tools, in the 11 to 30 band, and leaves out table and column changes by design. REST list calls take `start` and `limit`, and SQL can select columns (17 of 25). List rows pages by `start` and `limit` up to 1,000 and reads a saved view, SQL takes WHERE, ORDER BY and LIMIT up to 10,000 rows, and MCP has `page` and `page_size` (20). The reference lists status codes and says most 4xx answers carry an error code, but a 429 has no body and few operations document an error response. The MCP README maps common error messages to causes (11 of 20). No idempotency keys on the REST API. Every MCP tool carries readOnlyHint, destructiveHint and idempotentHint, and `upsert_rows` writes by key columns (14 of 20). Official clients for Python, JavaScript and PHP. A REST caller has to exchange the API token for a Base-Token and renew it every 3 days, which the clients and the MCP server do for it (12 of 15).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-ergonomics):

- 0 to 25, context cost. For MCP, the number and size of the tool definitions (25 for ten or fewer compact tools, 15 for 11 to 30, 5 for more than 30, plus up to 10 back for toolsets, dynamic loading or read-only subsets). For APIs, whether responses can be sized (field selection, limits, summaries).
- 20, pagination, filtering and output-size controls.
- 20, actionable, documented error responses, codes and messages an agent can recover from.
- 20, idempotency or safe retries, and for MCP the `readOnlyHint` and `destructiveHint` annotations.
- 15, sensible defaults, few required parameters, and official SDKs in at least two languages.

Models are read for tool use, structured output, prompt caching, context length, batch and SDKs. Frameworks for how much code and how many defaults a tool-calling agent with MCP needs.

## 5. Schema & documentation, 81 out of 100, up to 3.1 more on the total

Why it scored 81: Public OpenAPI 3.0 files for version 6.2, 404 operations in 8 files, and every MCP tool has a JSON Schema generated from a Zod model (25). `llms.txt`, `llms-full.txt` and Markdown copies of the reference pages are served at api.seatable.com (10). MCP tool descriptions say which tool to use for which job, and `query_sql` lists its syntax limits and tells the caller to switch tools after a failure. REST descriptions are specific but uneven (16 of 20). Parameters are typed, with a UUID pattern on `base_uuid`, 67 enums in the base operations file and column types as a oneOf, but row bodies are free-form objects keyed by column name and SQL is one string (9 of 15). The base operations file has 136 examples. Most operations document only a 200 response, and the status codes page is a generic table (8 of 15). The API changelog has an entry per server version with breaking changes marked, the spec repository has a branch per version, and paths carry `v2` or `v2.1`. No changelog file was found in the MCP repository (13 of 15).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-schema):

APIs and MCP servers.

- 25, a machine-readable contract (a public OpenAPI file or similar; for MCP, typed JSON Schema inputs on every tool).
- 10, llms.txt or Markdown docs served for agents.
- 0 to 20, descriptions that say what a tool is for, when to use it and when not to, read from the tool definitions in the source or the API reference.
- 0 to 15, typed inputs with enums, constraints and required fields, and no free-form JSON blobs.
- 0 to 15, examples and documented error responses.
- 15, versioning and a public changelog.

Models are read from the API reference, the OpenAPI file, llms.txt, the structured-output and tool-use docs and the model cards. Frameworks from docs a model can follow, typed interfaces, examples and the API reference.

## 6. Transparency & trust, 75 out of 100, up to 2.2 more on the total

Made of editorial 65, provenance 85.

Why it scored 75: SeaTable Cloud is a closed service with clear terms, and the MCP server and its tool definitions are MIT (18 of 30). The privacy policy (version 1.3.0, 5 February 2026), a public data processing agreement and a page of technical and organisational measures agree on hosting in German data centres. Server logs are deleted within 180 days and deleted bases after 30 days in the recycle bin, but account data is removed 'after a few days' with no figure. The 2022 terms name only Frankfurt and say processor agreements are available on request, while the security page adds Munich and the agreement is public (23 of 30). No deprecation policy found. Breaking changes are marked in the API changelog at release, and the terms say they may be updated without prior notice (6 of 20). A sub-processor list (version 1.1.5, 16 October 2025) gives six companies with addresses and roles, and the security page names the two data centres (18 of 20).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-transparency):

- 0 to 30, source availability and licence clarity. 30 for open source under an OSI licence, 15 for closed with clear terms, 0 for unclear terms.
- 0 to 30, data handling and retention statements that agree with each other (privacy policy, DPA, retention periods, subprocessors).
- 0 to 20, a deprecation policy or notices with dates.
- 0 to 20, telemetry disclosed with an opt-out (local software), or subprocessors and data locations disclosed (hosted).

The other half of Transparency and trust is the provenance score, computed from checked facts (below). The category score is the mean of the two.

Provenance checks not met in full (half of this category, computed from checked facts):

- Terms of service: read, states 5 of the 7 things a reader expects, and has 1 clause that costs points (6.3 of 10)
- Privacy policy: read, states 6 of the 8 things a reader expects (8.5 of 10)
- security.txt: not found (0 of 10)

## 7. Maintenance & community, 76 out of 100, up to 2.1 more on the total

Why it scored 76: The newest release we could date is MCP server 1.6.4 on 4 September 2026, 34 days before the check. SeaTable Cloud reported server version 6.2.13, whose date we didn't find. The product changelog gives 6.2.12 on 17 July 2026 (20 of 30). Five MCP server releases since 25 August 2026 and the API changelog entry for version 6.2 on 21 July (20). The forum's latest topics each had replies within a few days, in English and German. We didn't read who replied, and GitHub's API refused us, so issue reply times are unread (14 of 25). The MCP server is in the official MCP registry as `io.github.seatable/seatable` at 1.6.4, and the Python client had release 4.0.0 on 17 July 2026 (15). The MCP repository's CI runs lint, a type check and tests before each publish, and the OpenAPI repository has an API test suite. We didn't read the current CI result (7 of 10).

The checklist (https://www.anchorterminal.com/benchmark/#checklist-maintenance):

- 0 to 30, time since the last release, or the last published model or API change for a closed service. 30 within 30 days, 20 within 90, 10 within 180, 0 older.
- 20, at least three releases or dated changelog entries in the last 90 days.
- 0 to 25, responsiveness. Issues and pull requests answered on GitHub (the open issues and how recent the replies are). For closed services, a public changelog and a support or community channel that answers, 0 to 15.
- 15, presence in the official MCP registry under a verified namespace (MCP servers), or current official SDKs (APIs and models).
- 10, package health, current dependencies and CI.

Models are read for deprecation notice periods and model churn rather than release counts.

## What we couldn't check

What we couldn't read counted as absent. Publishing it on a page a plain HTTP fetch can read (not only in a browser) lets the next check count it.

- unchecked: incident history before 5 October 2026. The status page keeps only the last 50 events per component and publishes no incident reports, so the record rests on its uptime percentages
- unchecked: GitHub stars, issue reply times and the current CI result. GitHub's API answered with a rate limit, so `githubStars` is empty
- unchecked: the hosted MCP server's live tool list. The 21 tools come from the source at tag release-v1.6.4, and the endpoint answered 401 without a token
- unchecked: whether signup asks for email confirmation or a captcha. We didn't create an account. The registration page says no credit card is required
- unchecked: the release date of server version 6.2.13, which SeaTable Cloud reported. The product changelog page lists 6.2.12 on 17 July 2026
- unchecked: the registration record of seatable.io, the domain the REST API answers on
- unchecked: the rendered API reference pages. api.seatable.com answered 429 to our later requests, so limits, authentication, status codes and the changelog were read from the Markdown sources in the OpenAPI repository and from `llms-full.txt`
- No SLA text, security.txt, bug bounty, certification, deprecation policy, Retry-After header, idempotency key or prompt-injection guidance was found in the reviewed pages
- The limits page gives 200 base calls a minute for SeaTable Cloud, and the MCP server's README gives a default of 500 per base, which is the figure for Dedicated and Server
- The pricing page lists prices in euros only, so `unitPrices` is empty and the figures are in `pricingNotes`
- The lead was right on vendor, URL and the REST interface. It missed the official MCP server, hosted at mcp.seatable.com and listed in the official MCP registry. API tokens are per base and read-only or read-write, with no finer scope, and base calls need a 3-day Base-Token generated from them

## Weaknesses

- Monthly API call quotas by plan, 3,000 for a whole Free team, 10,000 per user on Plus and 50,000 per user on Enterprise
- A 429 response has no body and no Retry-After header is documented, and the REST API has no idempotency keys
- Tokens can't be limited to a table, and the MCP tool `query_sql` accepts UPDATE and DELETE statements with no confirmation step
- The security page says SeaTable holds no certification, and its bug bounty, expected in 2025, is still described as under construction
- No SLA text is published. The pricing page names optional SLAs for Dedicated only, and the terms exclude liability for uninterrupted availability

## What costs an agent a turn today

The notes we give agents before they call it. Each one is a workaround an agent shouldn't need.

- Create an API token for the one base with read-only permission unless writes are needed, then exchange it at `/api/v2.1/dtable/app-access-token/` for a Base-Token
- Renew the Base-Token before it expires after 3 days, and send it as `Authorization: Bearer` to `/api-gateway/api/v2/dtables/{base_uuid}/`
- Read `x-ratelimit-remaining` and `x-ratelimit-reset` on every base call. SeaTable Cloud allows 200 base calls a minute and answers 429 with no body
- Batch writes to save the monthly quota. One call appends or updates up to 1,000 rows over REST and 100 over MCP
- Over MCP, prefer `update_rows` and `delete_rows` to `query_sql`, which can run UPDATE and DELETE, and call `get_schema` before writing

## When it's done

Send what changed and where it's published as a dispute (https://www.anchorterminal.com/builders/#disputes, or `POST https://www.anchorterminal.com/api/v1/contact` with `"kind": "dispute"`). Disputes are answered in public, and the listing is checked again by the same checklist. Paying for an audit or a listing claim changes nothing here.

What we couldn't check

  • unchecked: incident history before 5 October 2026. The status page keeps only the last 50 events per component and publishes no incident reports, so the record rests on its uptime percentages
  • unchecked: GitHub stars, issue reply times and the current CI result. GitHub's API answered with a rate limit, so githubStars is empty
  • unchecked: the hosted MCP server's live tool list. The 21 tools come from the source at tag release-v1.6.4, and the endpoint answered 401 without a token
  • unchecked: whether signup asks for email confirmation or a captcha. We didn't create an account. The registration page says no credit card is required
  • unchecked: the release date of server version 6.2.13, which SeaTable Cloud reported. The product changelog page lists 6.2.12 on 17 July 2026
  • unchecked: the registration record of seatable.io, the domain the REST API answers on
  • unchecked: the rendered API reference pages. api.seatable.com answered 429 to our later requests, so limits, authentication, status codes and the changelog were read from the Markdown sources in the OpenAPI repository and from llms-full.txt
  • No SLA text, security.txt, bug bounty, certification, deprecation policy, Retry-After header, idempotency key or prompt-injection guidance was found in the reviewed pages
  • The limits page gives 200 base calls a minute for SeaTable Cloud, and the MCP server's README gives a default of 500 per base, which is the figure for Dedicated and Server
  • The pricing page lists prices in euros only, so unitPrices is empty and the figures are in pricingNotes
  • The lead was right on vendor, URL and the REST interface. It missed the official MCP server, hosted at mcp.seatable.com and listed in the official MCP registry. API tokens are per base and read-only or read-write, with no finer scope, and base calls need a 3-day Base-Token generated from them

Sources 30

  1. API reference index for agents api.seatable.com · seen 2026-10-08
  2. full API reference text api.seatable.com · seen 2026-10-08
  3. API limits api.seatable.com · seen 2026-10-08
  4. API authentication api.seatable.com · seen 2026-10-08
  5. API status codes api.seatable.com · seen 2026-10-08
  6. API changelog api.seatable.com · seen 2026-10-08
  7. OpenAPI repository (cloned at commit c6d0ad9, branch v6.2) github.com · seen 2026-10-08
  8. MCP server repository (cloned at commit d69d9b6, tag release-v1.6.4) github.com · seen 2026-10-08
  9. MCP tool definitions in source github.com · seen 2026-10-08
  10. hosted MCP server's OAuth metadata mcp.seatable.com · seen 2026-10-08
  11. official MCP registry search registry.modelcontextprotocol.io · seen 2026-10-08
  12. status page status.seatable.com · seen 2026-10-08
  13. status feed (components, events and uptime) status.seatable.com · seen 2026-10-08
  14. server version on SeaTable Cloud cloud.seatable.io · seen 2026-10-08
  15. pricing seatable.com · seen 2026-10-08
  16. registration page seatable.com · seen 2026-10-08
  17. terms of service for SeaTable Cloud seatable.com · seen 2026-10-08
  18. privacy policy seatable.com · seen 2026-10-08
  19. data processing agreement seatable.com · seen 2026-10-08
  20. sub-processors seatable.com · seen 2026-10-08
  21. security page seatable.com · seen 2026-10-08
  22. legal documents index seatable.com · seen 2026-10-08
  23. imprint seatable.com · seen 2026-10-08
  24. product changelog seatable.com · seen 2026-10-08
  25. developer manual (client libraries) developer.seatable.com · seen 2026-10-08
  26. community forum, latest topics forum.seatable.com · seen 2026-10-08
  27. npm package for the MCP server registry.npmjs.org · seen 2026-10-08
  28. PyPI package seatable-api pypi.org · seen 2026-10-08
  29. security.txt (404) seatable.com · seen 2026-10-08
  30. RDAP for seatable.com rdap.verisign.com · seen 2026-10-08

Probe metrics

Not measured yet. Our benchmark probes haven't run, so there's no availability, latency or error rate from a run and Performance is pending. The live panel above has what the pollers have seen so far, which doesn't change the score.

Pricing & changes

Freemium Freemium Free cloud plan for up to 25 users with 10,000 rows, 2 GB of files and 3,000 API calls a month for the team, with no card at signup, so an agent can start without a contract. Plus is €7 a user a month billed yearly (€9 monthly) with 10,000 API calls per user, and Enterprise €14 (€18 monthly) with 50,000. Dedicated is sold through sales from 100 users with unlimited calls. Prices are in euros before VAT and aren't converted here. The MCP server is free to use and there is no separate sandbox (checked 2026-10-08).

Recent changes

  • Latest release

Follow them as a feed at /feeds/tools/seatable.xml, or this listing's score history at history.json.

Connect

Install

npx -y @seatable/mcp-seatable

First request

curl -H "Authorization: Bearer YOUR_API_TOKEN" "https://cloud.seatable.io/api/v2.1/dtable/app-access-token/"

MCP client configuration

{
  "mcpServers": {
    "seatable": {
      "headers": {
        "Authorization": "Bearer your-api-token"
      },
      "type": "streamable-http",
      "url": "https://mcp.seatable.com/mcp"
    }
  }
}

Through letme picks today, calling later

GET https://letme.dev/seatable

letme.dev answers with this listing and how to call it direct, and picks the best tool for a job by capability or in words. Calling through letme (one key, the vendor's own price) comes later. Nothing on letme.dev is for people to look at; this page explains it.

Similar toolGrade ScoreShared capabilitiesx402
NocoDB NocoDB IncBB75.7sheets.records sheets.read sheets.write sheets.tables sheets.formulasno
Airtable Formagrid Inc (Airtable)BB70.9sheets.records sheets.read sheets.write sheets.tables sheets.formulasno
Coda (Superhuman Docs) Superhuman Platform Inc.B64.8sheets.read sheets.write sheets.tables sheets.records sheets.formulasno
Baserow Baserow B.V.B63.6sheets.records sheets.read sheets.write sheets.tables sheets.formulasno
Teable Teable AI, Inc.C61sheets.read sheets.write sheets.records sheets.tables sheets.formulasno
Grist Grist Labs Inc.D50.1sheets.records sheets.read sheets.write sheets.tables sheets.formulasno

Machine-readable

Verify this listing

For the vendor

Is this your product? Link to this page from your own site or README, then tell us where. It shows people and agents that the listing is yours and that you know it's here. It never changes a grade, rank or review.

  1. Add the badge or a link

    SeaTable on Anchor Terminal, B, 66.3/100
    On a light page
    On a dark page
    <a href="https://www.anchorterminal.com/tools/seatable"><img src="https://www.anchorterminal.com/badges/seatable.svg" alt="SeaTable on Anchor Terminal" height="20"></a>
    [![SeaTable on Anchor Terminal](https://www.anchorterminal.com/badges/seatable.svg)](https://www.anchorterminal.com/tools/seatable)

    It counts on a page on seatable.com or one of its subdomains, or the README of github.com/seatable/seatable-mcp.

  2. Tell us where it is

    We read it once now and again every week. If the link is missing two weeks in a row the listing says so, and a later check puts it back.

Agents send the same to POST /api/v1/verify as {"slug": "seatable", "url": "…"}, or call the verify_listing tool at /mcp. Ten checks an hour from one address. What we check. To announce the listing, get sharing assets for social media.

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.