# Smartsheet API + MCP (slim) > Smartsheet is a hosted work management product built on sheets with typed columns, rows, formulas, reports and dashboards. Agents reach it through a REST API (187 operations) and a hosted MCP server, both limited to Business plans and above. - Full: https://www.anchorterminal.com/tools/smartsheet.md (~7,400 tokens) · this version ~1,730 tokens · JSON https://www.anchorterminal.com/tools/smartsheet.json · canonical https://www.anchorterminal.com/tools/smartsheet - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-08 **B · 67.6/100 · rank #190 of 629 · #4 in Spreadsheets & operational tables · not agent-ready · confidence medium** Assessment: The REST API has a public OpenAPI 3.0.3 spec with 187 operations, Markdown docs and llms.txt, and the hosted MCP server loads its 83 documented tools by toolset. API access needs a Business plan or higher, and the status page lists eight incidents marked major or critical between 15 July and 21 September 2026. ## Facts - Kind: HTTP API · vendor: Smartsheet Inc. · category: Spreadsheets & operational tables · legal entity: Smartsheet Inc. · provenance 92/100 - Endpoint: `https://api.smartsheet.com/2.0` (HTTP, Streamable HTTP) - Auth: OAuth or key · pricing: Paid · x402: no · licence: Proprietary service under Smartsheet's User Agreement and Developer Agreement. The SDKs on GitHub are Apache-2.0 - Probe metrics: not measured yet (probes haven't run) - API: REST, version 2.0, OpenAPI 3.0.3 with 187 operations and 472 schemas. Hosts api.smartsheet.com, api.smartsheet.eu, api.smartsheet.au and api.smartsheetgov.com - MCP server: Hosted, streamable HTTP at https://mcp.smartsheet.com (also .eu and .au). 83 documented tools, loaded by toolset through `search_tools` and read or write executors. Launched with the Claude integration on 2 March 2026 - Plan needed: Business, Enterprise or Advanced Work Management for the API and the MCP server. Portfolio and scenario planning tools need Enterprise or above - Credentials: OAuth 2.0 authorisation code grant with 17 scopes, access tokens lasting about 7 days and refresh tokens, or a raw API token made in Personal Settings that carries all of the user's access - Rate limits: 300 requests a minute per token. 30 a minute for file attachments and cell history, which count ten times - Batch limits: 500 rows per add or update call, 500,000 cells a sheet, 4,000 characters a cell, 10,000 report rows a request - Formulas: Read on every Cell object and written with Update Rows. Filters can be read but not created or changed through the API - Change events: Webhooks on sheets with event filtering and custom headers, signed with HMAC SHA-256 in the Smartsheet-Hmac-SHA256 header. An Event Reporting API for account activity - SDKs: Python 4.4.0, JavaScript 5.3.0, Java 4.4.0 and C# 7.4.0, all released 12 August 2026, with retry and backoff built in - SLA: 99.9 per cent monthly availability of the Core Application, Enterprise plans only, with fee credits of 10 to 50 per cent - Certifications: SOC 2, ISO 27001, ISO 27701 and FedRAMP per smartsheet.com/trust. A bug bounty with a report form at smartsheet.com/legal/bugbounty - Data: Customer content deleted within 180 days of termination per the User Agreement. Sub-processor list with locations and a revision history. US, EU and Australian regions - Prices: Business plan (lowest plan with API and MCP access) $19 per seat per month; Pro plan (no API calls) $9 per seat per month - Scores: Reliability 65, Performance pending, Schema & documentation 88, Agent ergonomics 74, Security & auth 66, Payments & pricing 20, Task success pending, Maintenance & community 80, Transparency & trust 82 · total over the 7 assessed categories - Why: Reliability, Graded on the hosted API and MCP server. · Schema & documentation, OpenAPI 3.0.3 spec with 187 operations, downloadable without login. · Agent ergonomics, The MCP reference lists 83 tools, which scores 5, plus 10 for toolsets with `search_tools` and a read or write filter. · Security & auth, OAuth 2.0 authorisation code grant with 17 scopes and tokens that expire in about 7 days. · Payments & pricing, No x402, MPP or L402 found in the docs, the OpenAPI spec or the pricing page (0). · Maintenance & community, API changelog entries on 2 and 6 October 2026 and MCP changelog entries on 2 October (30). · Transparency & trust, Closed service with a public User Agreement (3 April 2026) and Developer Agreement (1 July 2021). - Sources: 28, open questions: 6, both in the full twin - Capabilities: sheets.read, sheets.write, sheets.records, sheets.formulas, automation.workflows - JSON: https://www.anchorterminal.com/api/v1/tools/smartsheet.json - Verify (for the vendor): the badge `https://www.anchorterminal.com/badges/smartsheet.svg` or a link to https://www.anchorterminal.com/tools/smartsheet from a page on smartsheet.com or one of its subdomains, or the README of github.com/smartsheet/smartsheet-python-sdk, then `POST https://www.anchorterminal.com/api/v1/verify` `{"slug", "url"}` or `verify_listing` at /mcp; re-checked weekly, no effect on the grade. Snippets in the full twin. ## Before you call it 1. Send writes to one sheet one at a time. Parallel updates with the same token return error 4004 2. Batch row changes, up to 500 rows a call, and add `allowPartialSuccess=true` to get per-row failures instead of a failed batch 3. On error 4003 (HTTP 429) wait at least 60 seconds before retrying. The limit is 300 requests a minute per token, 30 for attachments and cell history 4. Through MCP, call `get_columns` before filtering or writing. Column names are case-sensitive and guesses fail validation 5. Use the regional host that matches the account (api.smartsheet.com, .eu or .au). Tokens don't work across regions ## Connect ```bash pip install smartsheet-python-sdk ``` ```bash curl "https://api.smartsheet.com/2.0/workspaces?maxItems=100" \ -H "Authorization: Bearer $SMARTSHEET_API_TOKEN" ``` ```bash claude mcp add --transport http smartsheet-mcp https://mcp.smartsheet.com -H "Authorization:Bearer ${SMARTSHEET_API_TOKEN}" ``` Full config and headless snippets are in the full page. Through letme (picks today, calling later): https://letme.dev/smartsheet ## Similar tools | Tool | Grade | Score | Shared capabilities | Slim | | --- | --- | --- | --- | --- | | NocoDB | BB | 75.7 | sheets.records, sheets.read, sheets.write, sheets.formulas | https://www.anchorterminal.com/tools/nocodb.min.md | | Airtable | BB | 70.9 | sheets.records, sheets.read, sheets.write, sheets.formulas | https://www.anchorterminal.com/tools/airtable.min.md | | Coda (Superhuman Docs) | B | 64.8 | sheets.read, sheets.write, sheets.records, sheets.formulas | https://www.anchorterminal.com/tools/coda.min.md | | Baserow | B | 63.6 | sheets.records, sheets.read, sheets.write, sheets.formulas | https://www.anchorterminal.com/tools/baserow.min.md | | Google Sheets API | BB | 76.3 | sheets.read, sheets.write, sheets.formulas | https://www.anchorterminal.com/tools/google-sheets-api.min.md | ## Panel reviews (0, desk reviews from public material, no calls made)