Skip to content

How Proton Pass’s scores are calculated

The full audit trail, recomputed from the verdict data at build time through the same code that produced the leaderboard: verdict × quality × story weight per cell, cells sum to dimension scores, dimensions blend into the PA Score. Every number on the product page is reproducible from this page alone; for why the formula looks like this, see the methodology.

verdict factors: full ×1.0 · partial ×0.6 · disputed ×0.3 · none ×0.0 · n/a excluded from both sides · cell points = weight × quality × factor · cell max = weight × 10

PA Score16/100

Agent-ready 16.8 × 0.30 = 5.04

API quality 0.0 × 0.20 = 0.00

Openness 33.0 × 0.20 = 6.60

Built-in AI 0.0 × 0.15 = 0.00

Automation 30.0 × 0.15 = 4.50

(5.04 + 0.00 + 6.60 + 0.00 + 4.50) ÷ (0.30 + 0.20 + 0.20 + 0.15 + 0.15) = 16.14 ÷ 1.00 = 16.1

Scores are stored to 1 decimal; the product page’s pills round to whole numbers for display. Each dimension below shows the stories, verdicts, and cited evidence behind its number.

Agent-ready16.8/100×0.30 of the PA blend

Outside-in: can YOUR agent reach and drive this product — API, MCP, CLI, headless runs, agent docs.

Point an agent at llms.txt or agent-oriented docsweight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

  • [probe] https://proton.me/llms.txtPROBE llms.txt: HTTP 404 at https://proton.me/llms.txt
  • [probe] https://proton.me/support/pass.mdPROBE docs-md: HTTP 404 at https://proton.me/support/pass.md

Run the product headlessly / in CI for automationweight 2

2 (weight) × 6 (quality) × 0.6 (partial) = 7.2 of 20 max

  • [claimed-docs] https://proton.me/blog/proton-pass-clienables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines
  • [claimed-docs] https://proton.me/blog/proton-pass-clithe CLI enables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines.
  • [claimed-docs] https://proton.me/blog/proton-pass-cliView, create, update, and delete items including passwords, secure notes, credit cards, identities, WiFi entries, custom items, and stored SSH-key items
  • [probe] https://proton.me/blog/proton-pass-cliofficial CLI documented at https://proton.me/blog/proton-pass-cli

Plug MCP servers into this product so it can use their toolsweight 3

n/a — not applicable to this product: excluded from numerator and denominator

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Connect an agent via an official MCP serverweight 3

3 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 30 max

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Use an official CLIweight 2

2 (weight) × 7 (quality) × 1.0 (full) = 14.0 of 20 max

  • [claimed-docs] https://proton.me/blog/proton-pass-clienables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines
  • [claimed-docs] https://proton.me/blog/proton-pass-clithe CLI enables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines.
  • [claimed-docs] https://proton.me/blog/proton-pass-cliView, create, update, and delete items including passwords, secure notes, credit cards, identities, WiFi entries, custom items, and stored SSH-key items
  • [probe] https://proton.me/blog/proton-pass-cliofficial CLI documented at https://proton.me/blog/proton-pass-cli

Drive the product through a documented public APIweight 3

3 (weight) × 5 (quality) × 0.6 (partial) = 9.0 of 30 max

  • [claimed-docs] https://proton.me/blog/proton-pass-clienables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines
  • [claimed-docs] https://proton.me/blog/proton-pass-cliCreate, read, update, and delete vaults
  • [claimed-docs] https://proton.me/blog/proton-pass-clithe CLI enables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines.
  • [claimed-docs] https://proton.me/blog/proton-pass-cliView, create, update, and delete items including passwords, secure notes, credit cards, identities, WiFi entries, custom items, and stored SSH-key items
  • [probe] https://proton.me/llms.txtPROBE llms.txt: HTTP 404 at https://proton.me/llms.txt
  • [probe] https://proton.me/support/pass.mdPROBE docs-md: HTTP 404 at https://proton.me/support/pass.md
  • [probe] https://proton.me/blog/proton-pass-cliofficial CLI documented at https://proton.me/blog/proton-pass-cli

Issue scoped/least-privilege API credentials for an agentweight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

  • [claimed-docs] https://proton.me/blog/proton-pass-clienables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines
  • [claimed-docs] https://proton.me/blog/proton-pass-cliCreate, read, update, and delete vaults
  • [claimed-docs] https://proton.me/blog/proton-pass-clithe CLI enables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines.
  • [claimed-docs] https://proton.me/blog/proton-pass-cliView, create, update, and delete items including passwords, secure notes, credit cards, identities, WiFi entries, custom items, and stored SSH-key items

Build against official SDKsweight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Subscribe to events via webhooksweight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Agent-ready = 30.2 ÷ 180 × 100 = 16.8

API quality0.0/100×0.20 of the PA blend

The programmable surface once an agent is there — machine-readable spec, interactive docs, sandbox, versioning discipline.

Explore an interactive API reference with runnable examplesweight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

  • [probe] https://proton.me/llms.txtPROBE llms.txt: HTTP 404 at https://proton.me/llms.txt
  • [probe] https://proton.me/support/pass.mdPROBE docs-md: HTTP 404 at https://proton.me/support/pass.md
  • [probe] https://proton.me/blog/proton-pass-cliofficial CLI documented at https://proton.me/blog/proton-pass-cli

Download a machine-readable API spec (OpenAPI or equivalent)weight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

  • [probe] https://proton.me/llms.txtPROBE llms.txt: HTTP 404 at https://proton.me/llms.txt
  • [probe] https://proton.me/support/pass.mdPROBE docs-md: HTTP 404 at https://proton.me/support/pass.md
  • [claimed-docs] https://proton.me/blog/proton-pass-clienables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines

Test against a sandbox environment without touching production dataweight 1

n/a — not applicable to this product: excluded from numerator and denominator

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Rely on versioned APIs with a documented deprecation policyweight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

API quality = 0.0 ÷ 60 × 100 = 0.0

Openness33.0/100×0.20 of the PA blend

Can you leave, inspect, or self-host — data export, open source, portability.

Do everything through the API that I can do in the UIweight 2

2 (weight) × 5 (quality) × 0.6 (partial) = 6.0 of 20 max

  • [claimed-docs] https://proton.me/blog/proton-pass-clienables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines
  • [claimed-docs] https://proton.me/blog/proton-pass-cliCreate, read, update, and delete vaults
  • [claimed-docs] https://proton.me/blog/proton-pass-clithe CLI enables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines.
  • [claimed-docs] https://proton.me/blog/proton-pass-cliView, create, update, and delete items including passwords, secure notes, credit cards, identities, WiFi entries, custom items, and stored SSH-key items
  • [probe] https://proton.me/blog/proton-pass-cliofficial CLI documented at https://proton.me/blog/proton-pass-cli

Export all of my data in open formats and leaveweight 3

3 (weight) × 7 (quality) × 1.0 (full) = 21.0 of 30 max

  • [claimed-docs] https://proton.me/support/pass-exportIf you want to use your passwords elsewhere or create a separate hardcopy, you can easily export your data from Proton Pass.
  • [claimed-docs] https://proton.me/support/pass-exportYou have three options for export: 1. A ZIP file containing a PGP-encrypted JSON file 2. An unencrypted ZIP file 3. A CSV file
  • [claimed-docs] https://proton.me/support/pass-importWith our import tool, you can migrate passwords and other items from most major password managers in just a few minutes.

Read the product's source under an open licenseweight 2

2 (weight) × 5 (quality) × 0.6 (partial) = 6.0 of 20 max

  • [community] https://hn.algolia.com/api/v1/items/36784326It seems only the clients are open source? https://github.com/orgs/protonpass/repositories
  • [community] https://hn.algolia.com/api/v1/items/36507707Am I correct in believing that they haven't open-sourced Proton Pass yet?... Their official announcement post says it's now open source, however I haven't been able to find the repository.
  • [community] https://hn.algolia.com/api/v1/items/36507707Please note that we do have encrypted notes... And it is open source: https://github.com/protonpass

Self-host the core productweight 3

3 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 30 max

  • [community] https://hn.algolia.com/api/v1/items/36784326It seems only the clients are open source? https://github.com/orgs/protonpass/repositories
  • [community] https://hn.algolia.com/api/v1/items/36507707Am I correct in believing that they haven't open-sourced Proton Pass yet?... Their official announcement post says it's now open source, however I haven't been able to find the repository.

Openness = 33.0 ÷ 100 × 100 = 33.0

Built-in AI0.0/100×0.15 of the PA blend

Inside-out: how agentic the product itself is for its users — built-in assistants, autonomous features.

Get AI-generated insights and suggestions from my data inside the productweight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Set up automations that run autonomously in the backgroundweight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Delegate tasks to a built-in AI assistant inside the productweight 3

n/a — not applicable to this product: excluded from numerator and denominator

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Operate the product with natural-language commandsweight 2

2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Built-in AI = 0.0 ÷ 60 × 100 = 0.0

Automation30.0/100×0.15 of the PA blend

Depth of automation primitives — rules, scheduling, bulk operations, webhooks.

Perform bulk operations across many items at onceweight 2

2 (weight) × 5 (quality) × 0.6 (partial) = 6.0 of 20 max

  • [claimed-docs] https://proton.me/blog/proton-pass-clienables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines
  • [claimed-docs] https://proton.me/blog/proton-pass-clithe CLI enables you to securely retrieve secrets and other items across scripts, deployments, and continuous integration/ continuous delivery (CI/CD) pipelines.
  • [claimed-docs] https://proton.me/blog/proton-pass-cliView, create, update, and delete items including passwords, secure notes, credit cards, identities, WiFi entries, custom items, and stored SSH-key items
  • [claimed-docs] https://proton.me/blog/proton-pass-cliCreate, read, update, and delete vaults
  • [claimed-docs] https://proton.me/support/pass-importWith our import tool, you can migrate passwords and other items from most major password managers in just a few minutes.
  • [claimed-docs] https://proton.me/support/pass-exportYou have three options for export: 1. A ZIP file containing a PGP-encrypted JSON file 2. An unencrypted ZIP file 3. A CSV file

Define rules that trigger actions automatically on eventsweight 3

n/a — not applicable to this product: excluded from numerator and denominator

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Schedule recurring jobs or workflowsweight 2

n/a — not applicable to this product: excluded from numerator and denominator

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Version, review, and roll back my automationsweight 1

n/a — not applicable to this product: excluded from numerator and denominator

no evidence cited — the verdict rests on absence of evidence, re-checked on refresh

Automation = 6.0 ÷ 20 × 100 = 30.0