Field-by-field comparison

Compare the evidence before choosing an MCP.

Each signal stays separate, missing facts remain visible, and the column order follows your selection.

MCPs in this comparison

Uncheck an MCP to remove it. Comparing two or three keeps each signal in its own row.

Open canonical comparison link

Comparable alternatives

Shown only when capability or industry context overlaps.

Side-by-side MCP evidence comparison
Evidence fieldKlaviyoWatchlist candidateNotion MCPMCP100 Selected
Task fit
Best for
  • Klaviyo teams that need analytics/marketing workflows in an AI client and can use read-only/user-content restrictions where appropriate.
  • Reading and updating explicitly shared Notion pages
  • Markdown-oriented page workflows
  • Teams able to create a dedicated least-privilege integration
Not ideal for
  • Teams handling sensitive marketing/customer data without clear API scopes or prompt-injection controls.
  • Whole-workspace access without page scoping
  • Stable local-server APIs with no migration monitoring
  • Workflows that only need occasional manual Notion lookup
Avoid when
  • For exploratory use, prefer `read-only=true` and disable tools that expose user-generated content unless those features are specifically needed.
  • Sensitive workspace content cannot be exposed to the connected model/client
  • You cannot create a dedicated read-only integration or restrict page access
  • You depend on removed pre-2.0 database tool names
Provenance
Provenance details

First-party MCP

endpoint:https: · Publisher source ↗

First-party MCP

Notion · Publisher source ↗

Maintenance
Maintenance details

Stale

Repo: Not documented

Package: Not documented

Repo: Jul 25, 2026

Package: Jul 25, 2026

Popularity evidence
GitHub starsNot documented

4,594

GitHub stars · checked 2026-08-14T18:46:26.000Z

Package downloads / 30 daysNo reliable download data

624,402

package downloads / 30 days · checked 2026-07-29T17:30:00.000Z

Client coverage
Client coverage detailsNot documented
Claude CodeStreamable HTTP
Claude DesktopStreamable HTTP
CodexStreamable HTTP
VS CodeStreamable HTTP
CursorStreamable HTTP
OpenCodeStreamable HTTP
Client coverage noteLocal stdio runs on your computer. Streamable HTTP connects to a remotely hosted MCP server.
Access and data
AuthenticationHosted service uses OAuth/dynamic client registration; local server can use a scoped Klaviyo private API key.The supported hosted service uses OAuth. The documented local server uses NOTION_TOKEN or OPENAPI_MCP_HEADERS; HTTP transport has a separate bearer token and supports carefully configured per-request Notion token passthrough.
CostKlaviyo plan/API and model/provider costs apply.The local server is MIT licensed. A Notion account and workspace plan are required, and Notion plan/API limits apply; hosted MCP-specific charges were not established in the reviewed materials.
PermissionsPermissions follow OAuth/API scopes. Hosted read-only mode disables write tools; UGC-related tools can also be disabled.Local access is limited by the Notion integration capabilities and pages connected to that integration. Read-only capability is available; write-capable tools can create or update workspace content. Local HTTP transport requires bearer authentication unless an explicitly unsafe flag disables it.
Data handlingMarketing/customer/account data and potentially user-generated content can be exposed to the AI client/provider. Klaviyo explicitly provides a control to disable UGC tools.Page/database content accessible to the integration can be returned to the MCP client and model. The local server calls Notion APIs; hosted Notion MCP additionally processes requests through Notion's remote service.
Limitations
Tradeoffs
  • Promoted after strict re-audit: canonical identity and MCP-native/publisher-backed implementation are sufficiently evidenced, with real workflow value, usable documentation, understandable permissions, plausible maintenance, and no unresolved security veto. Still not strong enough for Selected.
  • Hosted OAuth is actively supported and easier; the local repository warns it may be sunset.
  • Write capability enables useful edits but raises deletion, overwrite, and prompt-injection risk.
  • Version 2 changed database operations to data-source tools, requiring updates to hardcoded prompts.
Risk contextSensitive customer/marketing data, mutating campaign operations and prompt-injection risk from user-generated content require explicit controls.Workspace content may be read or modified within the integration's reach. Use a dedicated integration, Read content only where possible, explicitly connect only needed pages, avoid unsafe HTTP auth disabling, and monitor hosted/local migration guidance.
Evidence date
Editorial review2026-09-13T00:00:00Z2026-07-24
Candidate evidence2026-09-13T00:00:00Z2026-08-14T18:46:26.000Z

Popularity, maintenance, fit, permissions, and client support are independent evidence fields.

Read the evidence method →