todoist.com
agent readiness score · scanned Aug 18, 2026 · 6s · Productivity
#59 of 979 · #5 in category
Todoist is a to-do list app designed to help individuals and teams organize their work and life through task management, project management, time management, and habit forming.
Discovery 16.9/20
Access 15.6/30
Usability 33.3/40
Payments 10/10
Top fixes
- +4.6
JSON-LD structured data
Embed Organization + WebSite JSON-LD on your homepage (name, url, logo, sameAs) and Product/Offer JSON-LD on pricing.
- +4.6
llms.txt
Add /llms.txt: an H1 with your name, a one-line blockquote summary, and H2 sections of curated links to docs, pricing, and API.
- +3.5
Markdown content negotiation
Serve text/markdown when clients send `Accept: text/markdown` (or expose .md twins of key pages) — agents get far more signal per token.
- +3.2
agents.md
Add /agents.md: what agents may do on your site, key URLs, auth, rate limits, and who to contact.
- +3.1
Sitemap present & fresh
Publish /sitemap.xml, reference it from robots.txt, and include <lastmod> dates so agents can tell what's current. Freshest lastmod seen: none.
- +2.7
MCP server discovery
Publish /.well-known/mcp/server-card.json describing your MCP endpoint so agents can autodiscover it. Evidence found: docs page (https://developer.todoist.com/).
1.Can an agent discover and trust you?
6/8
1.Can an agent discover and trust you?
Whether agents can crawl you, find you in the registries and searches they check, and trust what they find.
◐Sitemap present & fresh2/4
Sitemap at https://todoist.com/sitemap.xml is valid XML with 533 entries but contains no <lastmod> dates
fix → Publish /sitemap.xml, reference it from robots.txt, and include <lastmod> dates so agents can tell what's current. Freshest lastmod seen: none.
Resolved the sitemap from robots.txt or /sitemap.xml, validated XML, and checked lastmod freshness
spec ↗✓Brand search discoverability4/4
Both searches ("Todoist" and "Todoist productivity") cited todoist.com: https://www.todoist.com/help/articles/view-reporting-in-todoist-oOra6D, https://www.todoist.com/help/articles/view-completed-tasks-in-todoist-J19h2s, https://www.todoist.com/help/articles/use-the-productivity-view-in-todoist-6S63uAa9, https://www.todoist.com/help/articles/keep-your-team-aligned-in-todoist-VqLZ0eFtu
Ran clean brand-name web searches and checked whether your domain is cited in the results
—MCP registry listingsna
No MCP server detected for this product
Queried the official MCP registry, Smithery, Glama, and PulseMCP for servers matching your domain
spec ↗
2.Do you welcome agents?
11/16
2.Do you welcome agents?
Whether your robots policy, bot protection, and agent guidance actively admit AI agents instead of blocking them.
✓robots.txt present & parseable2/2
/robots.txt parses: 1 User-agent group(s), 1 Sitemap line(s)
Fetched /robots.txt and validated it parses as a robots policy
spec ↗✓AI crawler policy5/5
All 12 AI crawler user-agents (GPTBot, ClaudeBot, PerplexityBot, …) are allowed at / by robots.txt
Evaluated robots.txt groups for the major AI agent user-agents (GPTBot, ClaudeBot, PerplexityBot, …)
✗Content Signals directives0/2
No Content-Signal lines in robots.txt
fix → Declare Content Signals in robots.txt (e.g. `Content-Signal: search=yes, ai-train=no`) to express AI usage preferences machine-readably.
Looked for Content-Signal lines in robots.txt
spec ↗✓Agent user-agent parity4/4
All three UAs get HTTP 200; bot bodies are ClaudeBot 100%, GPTBot 100% of the browser response (365740 bytes)
Compared responses served to browser and AI-agent user-agents (informational while in beta)
✗agents.md0/3
No agents.md: https://todoist.com/agents.md → HTTP 404, https://todoist.com/AGENTS.md → HTTP 404
fix → Add /agents.md: what agents may do on your site, key URLs, auth, rate limits, and who to contact.
Fetched /agents.md and checked for substantive agent guidance
spec ↗
3.Does an agent understand who you are and what you do?
5/18
3.Does an agent understand who you are and what you do?
Whether your pages carry machine-readable identity: structured data, llms.txt, clear copy an agent can quote.
✓Homepage states what you are3/3
Homepage clarity rated 5/5 — an agent can confidently say what this company does (model's one-sentence read: "Todoist is a to-do list app designed to help individuals and teams organize their work and life through task management, project management, time management, and habit forming.")
An LLM read your homepage as an agent would and rated how confidently it could say what you do
✓OpenGraph / social metadata2/2
Homepage has og:title, og:description, and og:image (twitter:card="summary_large_image" present)
Parsed homepage og:title / og:description / og:image and twitter:card meta tags
spec ↗✗llms.txt0/4
GET /llms.txt returned HTTP 404
fix → Add /llms.txt: an H1 with your name, a one-line blockquote summary, and H2 sections of curated links to docs, pricing, and API.
Fetched /llms.txt and validated it against the llmstxt.org shape (H1, summary, curated links)
spec ↗✗llms-full.txt0/2
GET /llms-full.txt returned HTTP 404
fix → Add /llms-full.txt with expanded inline docs content so agents can load everything in one fetch.
Fetched /llms-full.txt and checked for substantial inline markdown content
spec ↗✗JSON-LD structured data0/4
No application/ld+json blocks found on homepage and pricing page
fix → Embed Organization + WebSite JSON-LD on your homepage (name, url, logo, sameAs) and Product/Offer JSON-LD on pricing.
Extracted and validated application/ld+json blocks on the homepage and pricing page
spec ↗✗Markdown content negotiation0/3
GET / with `Accept: text/markdown` returned HTTP 200 text/html; no .md twins found (1 probed)
fix → Serve text/markdown when clients send `Accept: text/markdown` (or expose .md twins of key pages) — agents get far more signal per token.
Requested key pages with Accept: text/markdown and probed .md twin URLs
4.Can an agent integrate with you?
watch →11.5/14
4.Can an agent integrate with you?
Whether the artifacts an agent needs to build on you — docs, API specs, SDKs, MCP servers — exist and are findable.
—Developer resource discoverabilityna
No public API detected
Searched for your brand with developer-keyword suffixes and checked which official resources are cited
✓OpenAPI spec discoverable5/5
OpenAPI spec found at https://developer.todoist.com/openapi.json (version 3.1.0)
Probed standard OpenAPI locations and docs links for a fetchable, parseable spec
spec ↗✓Docs discoverable4/4
Docs found at https://developer.todoist.com/ (via homepage link, 2433 chars of readable text)
Followed homepage nav/footer links and probed /docs, /developers, docs.{domain}
◐MCP server discovery2.5/5
MCP evidence found only as a mention in docs page (https://developer.todoist.com/): "https://ai.todoist.net/mcp" — no well-known server card
fix → Publish /.well-known/mcp/server-card.json describing your MCP endpoint so agents can autodiscover it. Evidence found: docs page (https://developer.todoist.com/).
Probed /.well-known/mcp/server-card.json, mcp.json, and docs mentions for an MCP endpoint
spec ↗—npm SDKna
No public developer API detected — API checks don't apply
Searched the npm registry for an official, domain-verified SDK package
—PyPI SDKna
No public developer API detected — API checks don't apply
Searched PyPI for an official, domain-verified SDK package
5.Is your integration well-built?
watch →7.3/8
5.Is your integration well-built?
Whether your specs, docs, and tools are complete and descriptive enough for an agent to use them without guessing.
✓OpenAPI validity & quality3/3
Spec at https://developer.todoist.com/openapi.json: 6/7 quality criteria passed (76 paths, 106 operations) — failing: components.securitySchemes present
Linted the spec: descriptions, operationIds, securitySchemes, servers
◐Docs quality2.3/3
Docs at https://developer.todoist.com/ scored clarity 4/5, completeness 3/5, runnable examples 4/5, agent-friendliness 4/5 (mean 3.8/5)
fix → Docs scored 3/5 on completeness. The documentation is truncated, so it's impossible to assess the full completeness and clarity of the API reference for all endpoints.
An LLM rated your docs for clarity, completeness, runnable examples, and agent-friendliness
✓Quickstart / getting started2/2
Quickstart section "Make your first call" found on https://developer.todoist.com/ with a code block
Looked for a quickstart/getting-started guide containing code blocks
—MCP tool qualityna
MCP endpoint is auth-gated — tools could not be listed unauthenticated
Linted listed tools for descriptions, typed input schemas, and naming
6.Can an agent use you reliably in production?
watch →4/4
6.Can an agent use you reliably in production?
Response hygiene, TLS and redirect discipline, and security contact channels agents depend on at runtime.
✓TLS & redirect hygiene2/2
http://todoist.com/ upgrades to https in 1 hop(s), 2 redirect(s) total, final HTTP 200; HSTS present
Checked http→https redirect behavior, chain length, and TLS health
✓Response speed & weight1/1
Homepage TTFB 29ms, payload 357KB, Content-Encoding: gzip
Measured homepage TTFB, payload size, and compression
✓security.txt1/1
Valid security.txt at https://todoist.com/.well-known/security.txt: Contact https://todoist.com/contact?area=bug_bounty, Expires 2026-12-31
Fetched /.well-known/security.txt and validated Contact + Expires
spec ↗
7.Can an agent authenticate to you?
watch →5/5
7.Can an agent authenticate to you?
Whether agents can discover your auth model machine-readably (OAuth metadata) and follow documented steps to credentials.
✓OAuth authorization server metadata3/3
Valid RFC 8414 metadata at https://todoist.com/.well-known/oauth-authorization-server: issuer https://todoist.com, PKCE S256, dynamic client registration at https://todoist.com/oauth/register
Fetched /.well-known/oauth-authorization-server (and openid-configuration fallback)
spec ↗—OAuth protected resource metadatana
No API or MCP server detected — OAuth metadata doesn't apply
Fetched /.well-known/oauth-protected-resource
spec ↗✓Auth documentation2/2
Auth documentation found at https://developer.todoist.com/api/v1/#tag/Authorization (linked from https://developer.todoist.com/) with code examples
Looked for /auth.md or an authentication docs page with code examples
8.Can an agent transact with you?
watch →10/15
8.Can an agent transact with you?
Whether pricing is discoverable and machine-readable, and whether you support agent payment protocols.
✓Pricing discoverable5/5
Pricing page found at https://www.todoist.com/pricing (via homepage link) with legible price signals ("free Plans and pricing 337K+ ★").
Followed nav/footer links and probed /pricing for a page with legible price signals
✓Machine-readable pricing5/5
LLM extracted 1 numerically-priced plan(s) from https://www.todoist.com/pricing at confidence 0.90: Beginner USD 0/month; Pro (no listed price); Business (no listed price).
Looked for Offer JSON-LD, then had an LLM attempt structured extraction of your plans
spec ↗✗x402 payment support0/2
/.well-known/x402 returned HTTP 404. API probe GET https://api.todoist.com/api/v1/workspaces/invitations/all returned HTTP 400 without x402 payment requirements. No x402 support detected (bonus check — absence costs nothing).
fix → Support x402: serve payment requirements at /.well-known/x402, or answer unauthenticated API calls with HTTP 402 plus an x402 payment-requirements payload (x402Version, accepts[]).
Probed /.well-known/x402 and API endpoints for HTTP 402 payment-required envelopes
spec ↗✗AP2 readiness0/1
No AP2 hints found — scanned docs page (https://developer.todoist.com/), OpenAPI spec (https://developer.todoist.com/openapi.json); /.well-known/ap2 returned HTTP 404.
fix → Adopt AP2 to accept delegated agent payments — see https://ap2-protocol.org.
Scanned fetched artifacts and well-known paths for AP2 hints
spec ↗✗Agentic Commerce Protocol0/1
No Agentic Commerce Protocol hints found — scanned docs page (https://developer.todoist.com/), OpenAPI spec (https://developer.todoist.com/openapi.json); /.well-known/acp returned HTTP 404.
fix → Adopt the Agentic Commerce Protocol so agent checkouts can complete against your store — see https://developers.openai.com/commerce.
Scanned docs and specs for agentic checkout endpoints
spec ↗✗Other agent payment protocols0/1
No UCP/MPP hints found — scanned docs page (https://developer.todoist.com/), OpenAPI spec (https://developer.todoist.com/openapi.json).
fix → Track emerging agent payment protocols (UCP, MPP) and adopt the ones your buyers' agents use.
Scanned fetched artifacts for UCP/MPP protocol hints
9.Can a user act through an agent?
4/4
9.Can a user act through an agent?
Whether an end user's agent can operate on their behalf: working MCP tools, published skills, agent configs.
—Agent skill publishedna
Requires the analysis phase — not yet evaluated
Checked /skill.md, /.well-known/skills/, and skills.sh for published agent skills
✓MCP handshake & tools list4/4
MCP endpoint https://ai.todoist.net/mcp is auth-gated (HTTP 401) and advertises resolvable RFC 9728 resource metadata in WWW-Authenticate — properly advertised auth gate
Performed a streamable-HTTP initialize + tools/list against the MCP endpoint
spec ↗—Agent configs in public repona
Requires the analysis phase — not yet evaluated
Checked your public GitHub org's main repos for AGENTS.md / .claude / .cursor configs
10.Can an agent operate your website directly?
5.5/9
10.Can an agent operate your website directly?
Whether the site itself is legible to non-rendering and browser agents: semantic HTML, no JS walls, accessibility.
✗NLWeb endpoint0/1
No NLWeb endpoint detected: /.well-known/nlweb.json returned HTTP 404 (text/html); GET /ask?query=hello returned HTTP 404 (text/html)
fix → Consider exposing an NLWeb /ask endpoint (and /.well-known/nlweb.json) for conversational access to your content.
Probed /.well-known/nlweb.json and the /ask endpoint
spec ↗◐Semantic HTML structure1.5/3
3/6 semantic signals present on the homepage (missing: <main> landmark, <header>/<footer>, text-to-markup ratio ≥ 0.10)
fix → Add the missing structure: <main> landmark, <header>/<footer>, text-to-markup ratio ≥ 0.10. Agents parse structure, not pixels.
Scored landmark elements, heading hierarchy, and text-to-markup ratio on the homepage
✓Content readable without JavaScript2/2
Homepage raw HTML contains 7081 chars of visible text without JavaScript
Measured visible text in the raw, unrendered homepage HTML
✓Accessibility basics2/2
Homepage accessibility: 5/5 checks passed
Static checks: lang attribute, title, alt coverage, labeled inputs, landmarks
✗WebMCP0/1
No WebMCP evidence on homepage: no application/webmcp script and no navigator.modelContext reference
fix → Consider WebMCP to expose page actions as tools to browser agents.
Looked for WebMCP script declarations on the homepage
spec ↗