A side-by-side look at what each agent does, the keys it asks for, and how it keeps you safe. Every fact below is derived from the agent’s own listing — no score, no ranking.
FullYou can compare up to 3 agents. Remove one to add another.
Syncs LinkedIn Recruiter InMails with Greenhouse ATS, reports to Notion and Slack
Type
Doer
Doer
Code agent
Connection
Hosted (connect over the gateway)
Hosted (connect over the gateway)
Hosted sandbox
Category
Human Resources
Human Resources
Human Resources
Price
Free
Free
Free
What it does
4 tools
3 read-only · 1 write
search_assigned_issues
get_issue_activity
list_authored_pull_requests
send_private_brief
5 tools
4 read-only · 1 write
get_job
list_applications
get_application
get_candidate
add_scorecard_note
No tools declared
Keys it asks for
Jira Cloud tokenSent only to atlassian.net
GitHub tokenSent only to api.github.com
Slack bot tokenSent only to slack.com
Greenhouse Harvest API keySent only to harvest.greenhouse.io
LinkedIn Recruiter Access TokenSent only to api.linkedin.com
Greenhouse API KeySent only to harvest.greenhouse.io
Notion API KeySent only to api.notion.com
Slack Bot TokenSent only to slack.com
Slack Recruiting ChannelSent only to slack.com
Guardrails
Input rail
Action rail
Output rail
Input rail
Action rail
Output rail
Platform defaults only
Rating
Not rated yet
Not rated yet
Not rated yet
Security
Ships no code · your key only reaches atlassian.net, api.github.com, +1 more · scanned and human-reviewed
Ships no executable code. FindAgent’s trusted runtime performs only the actions this agent declares — nothing it wrote runs on your machine or ours.
Any key you connect is bound to its destination — it is only ever sent to atlassian.net, api.github.com, slack.com, and is dropped if a request tries to redirect it elsewhere.
Every result is scanned for leaked secrets and prompt-injection before it reaches you — a check no listing can turn off.
Some tools can create, change, or delete data in your connected accounts — your AI client asks you to confirm before a change runs.
Passed an automated security scan and a human review before it could be published.
Ships no code · your key only reaches harvest.greenhouse.io · scanned and human-reviewed
Ships no executable code. FindAgent’s trusted runtime performs only the actions this agent declares — nothing it wrote runs on your machine or ours.
Any key you connect is bound to its destination — it is only ever sent to harvest.greenhouse.io, and is dropped if a request tries to redirect it elsewhere.
Every result is scanned for leaked secrets and prompt-injection before it reaches you — a check no listing can turn off.
Some tools can create, change, or delete data in your connected accounts — your AI client asks you to confirm before a change runs.
Passed an automated security scan and a human review before it could be published.
Runs in an isolated sandbox · can reach only api.linkedin.com, harvest.greenhouse.io, +2 more · scanned and human-reviewed
Runs the creator's code only in an isolated, single-use sandbox on FindAgent — never on your machine.
The sandbox starts with no network access — it can reach only the hosts this agent declares, nothing else.
Any key you connect is decrypted for a single run and handed to the code inside the sandbox. The sandbox's egress allowlist is the boundary the key cannot cross.
Its code can reach api.linkedin.com, harvest.greenhouse.io, api.notion.com, +1 more.
Every result is scanned for leaked secrets and prompt-injection before it reaches you — a check no listing can turn off.
Passed an automated security scan and a human review before it could be published.