Skip to content

Blocks.ai vs MuleSoft Agent Fabric

Blocks.ai

Network for AI agents: a free public network, and a private network for each company

MuleSoft Agent Fabric

Control plane for agents, MCP servers, and APIs across platforms

Short answer

MuleSoft documents Agent Fabric as an AI control plane: it registers agents from supported platforms with scanners, enforces policy through a gateway in the request path, and orchestrates A2A-compliant agents.⁠Source 1, Source 2 Blocks.ai is a network agents join by connecting out, with no inbound ports; on the Pro tier, partners join as their own organizations.⁠Source 3, Source 4, Source 5, Source 6

Where each one sits

Six layers of running AI agents at a company, and what each product’s own public sources say it covers.

Public sources · checked 2 October 2026
  • Offered
  • Not included
  • Not publicly documented

Blocks.ai

  • Build agents: Not includedUse LangChain or CrewAI⁠Source 7
  • Host and run agents: Not includedYou run your agent⁠Source 8
  • Identity and access: OfferedMachine identity per agent⁠Source 9
  • Registry and governance: OfferedPrivate registry and Admin Console⁠Source 10
  • Traffic between agents, tools, and models: OfferedPrivate network for every agent⁠Source 10
  • Agents across organizations: OfferedPartners share only chosen agents⁠Source 11

MuleSoft Agent Fabric

  • Build agents: OfferedAgent brokers in Agent Script⁠Source 2
  • Host and run agents: OfferedAgent brokers on CloudHub 2.0⁠Source 2
  • Identity and access: OfferedOmni Gateway authentication and authorization⁠Source 2
  • Registry and governance: OfferedAgent Registry in Anypoint Exchange⁠Source 2
  • Traffic between agents, tools, and models: OfferedOmni Gateway in request path⁠Source 2
  • Agents across organizations: Not publicly documented

At a glance

TopicBlocks.aiMuleSoft Agent Fabric
How agents joinEach agent connects out through the Blocks.ai SDK and is registered with the CLI, whatever its framework or model.⁠Source 7, Source 12, Source 13, Source 14Scanners register agents from supported platforms.⁠Source 2 Others can be registered manually by uploading an agent card.⁠Source 15
How agents connectOutbound HTTPS on port 443.⁠Source 4 No inbound ports.⁠Source 4Omni Gateway sits in the request path of each managed agent, API, or MCP server.⁠Source 2
Agent identityEach agent gets its own identity from Blocks.ai.⁠Source 9 Pro-tier private instances support OIDC single sign-on for people.⁠Source 16MuleSoft says an agent calling another agent, MCP server, or API acts as a specific user, through your existing OAuth setup and identity provider.⁠Source 17 Omni Gateway can require authentication and authorization.⁠Source 2
Agents at other companiesOn the Pro tier, a partner company joins your private network as its own organization.⁠Source 5, Source 6 You can call only the agents it shares with you.⁠Source 11, Source 18Agent networks can use agents from elsewhere in your company, and an egress gateway enforces policy on their calls to agents outside the network.⁠Source 19, Source 20 Partner-held access controls: not publicly documented.
PricingThe public network is free.⁠Source 6 Pro pricing is set with each customer.⁠Source 6MuleSoft packages start at $2,000 a month, billed annually, with usage metered in Mule Credits.⁠Source 21 MuleSoft lists the Agent Fabric package with no price: contact sales.⁠Source 21

What each one is

Blocks.ai

Blocks.ai is a network: a free public network, and a private network for each company.⁠Source 6, Source 10 A company’s private network gives it one place to connect, govern, and audit its agents, whoever built them and wherever they run.⁠Source 10 Blocks.ai does not build, host, or orchestrate agents.⁠Source 7, Source 8

MuleSoft Agent Fabric

MuleSoft Agent Fabric is an AI control plane for agents, MCP servers, and APIs across platforms.⁠Source 1 MuleSoft says it discovers, governs, orchestrates, and observes agents, combining enhancements to existing MuleSoft products with new capabilities.⁠Source 22 MuleSoft says it is generally available.⁠Source 17

The differences that matter

  1. Agents at other companies

    Blocks.ai

    On the Pro tier, a partner company joins your private network as its own organization.⁠Source 5, Source 6 You can call only the agents it shares with you.⁠Source 11, Source 18

    MuleSoft Agent Fabric

    Agent networks can use agents from another network or elsewhere in your company.⁠Source 19 Their egress gateway enforces policy on calls to agents outside the network.⁠Source 20

    For Agent Fabric, partner-held access controls are not publicly documented. On Blocks.ai, your administrators can see a partner’s registered agents and, on the Pro tier, take one offline.⁠Source 11, Source 18

  2. How agents connect

    Blocks.ai

    Every Blocks.ai agent connects out over HTTPS on port 443, and its host needs no inbound ports, DNS records, or static IP.⁠Source 4

    MuleSoft Agent Fabric

    Omni Gateway sits in the request path of each managed agent, API, or MCP server, and enforces policy there.⁠Source 2

    A self-managed Omni Gateway can run in your own private cloud or data center.⁠Source 23 An outbound-only way for an agent to join Agent Fabric is not publicly documented.

  3. How agents get into the registry

    Blocks.ai

    Each agent joins by connecting out through the Blocks.ai SDK and registering with the CLI, whatever its framework, model, or cloud.⁠Source 7, Source 12, Source 13, Source 14

    MuleSoft Agent Fabric

    Scanners automatically register agents, APIs, and MCP servers on supported platforms.⁠Source 2 Agents they miss can be registered manually by uploading an agent card.⁠Source 15, Source 17

    Agent Fabric’s scanners run at most once a day.⁠Source 24 Blocks.ai does not publicly document a way to find agents that haven’t connected.

For security teams

What a security review asks, answered from each vendor’s public documentation.

TopicBlocks.aiMuleSoft Agent Fabric
Network exposureAgent hosts open no inbound ports, and all Blocks.ai traffic is TLS on port 443.⁠Source 4Omni Gateway sits in each managed instance’s request path.⁠Source 2 Agent network ingress gateways are configured with a public endpoint.⁠Source 20
IdentityEach agent gets its own identity.⁠Source 9 Handler code never sees a credential.⁠Source 25Omni Gateway can require authentication and authorization.⁠Source 2 MuleSoft says agents carry user context through your own identity provider.⁠Source 17
Access changes and revocationRevoked grants are rejected on the next request.⁠Source 25 A user removed from an organization is rejected within about 5 seconds.⁠Source 25After review, quarantine stops a flagged agent from acting and blocks it at model proxies with the Kill Switch policy.⁠Source 26
Audit trailThe Pro tier logs control-plane changes and grants.⁠Source 27 Log entries on your company’s private network are kept for 2,555 days.⁠Source 27Anypoint Platform keeps a queryable audit log, retained one year by default.⁠Source 28 Omni Gateway can keep a traffic audit trail.⁠Source 2
ComplianceIn scope under PubNub’s SOC 2 Type II (report under NDA) and ISO/IEC 27001.⁠Source 25, Source 29 Private-instance coverage: not publicly documented.MuleSoft says Anypoint Platform is certified to ISO 27001, SOC 2, PCI DSS, and HIPAA; Agent Fabric isn’t named.⁠Source 30

Full comparison

18 criteria in five groups. Every cell links to its source, or says no public source answers it.

Blocks.ai and MuleSoft Agent Fabric compared on 18 criteria
Blocks.aiMuleSoft Agent Fabric
What it is
What it is and who it’s forA network for AI agents: a free public network, and a private network for each company, with one place to connect, govern, and audit agents wherever they run.⁠Source 6, Source 10An AI control plane for agents, MCP servers, and APIs across platforms.⁠Source 1 MuleSoft says it discovers, governs, orchestrates, and observes agents.⁠Source 22
MaturitySDK and CLI 1.0 shipped on 16 June 2026.⁠Source 31 OIDC single sign-on, now on the Pro tier, shipped on 20 July 2026, per the release notes.⁠Source 16, Source 32Generally available, MuleSoft says, with monthly releases.⁠Source 17 First release notes 3 October 2025; rogue-agent containment and A2A bridges added 31 August 2026.⁠Source 33, Source 34
Control
Agent registry and discoveryOn your company’s private network, agents join your private registry.⁠Source 10, Source 12 Pro-tier admins see them all.⁠Source 10, Source 35 Others need a grant to find or call a private agent.⁠Source 18, Source 25Agent Registry inventories agents, MCP servers, and APIs from any platform.⁠Source 2 Scanners register what they find; the rest can be registered manually.⁠Source 2, Source 15
Identity and access controlEach agent gets its own identity.⁠Source 9 Only its owner and those granted access by invitation can use a private agent.⁠Source 13, Source 18, Source 25 The Pro tier supports OIDC single sign-on.⁠Source 16Omni Gateway can require authentication and authorization and limit which tools and APIs an agent can call.⁠Source 2 Roles come from Anypoint Access Management.⁠Source 1
Ownership, policy, and revocationPro-tier admins with the right permission can take an agent offline.⁠Source 18, Source 36 Revoked keys and sessions stop working within about 65 seconds.⁠Source 25Governance strategies set rules for in-scope agents, APIs, and MCP servers and can block or flag noncompliance.⁠Source 2 Admins can quarantine a flagged agent.⁠Source 26
Audit log and observabilityOn the Pro tier, an audit log of control-plane changes with who, what, when, and a before-and-after diff.⁠Source 27 Task activity is tracked separately.⁠Source 27A queryable Anypoint Platform audit log, kept one year by default.⁠Source 28 Omni Gateway can keep a traffic audit trail; Agent Visualizer shows live request flows.⁠Source 2
Connection
How agents connectOutbound only, over HTTPS on port 443.⁠Source 4 No inbound ports, DNS records, or static IP on the agent’s host.⁠Source 4Omni Gateway sits in the request path of each managed agent, API, or MCP server.⁠Source 2 Agent network ingress gateways get a public endpoint.⁠Source 20
Agents across organizationsOn the Pro tier, a partner company joins your private network as its own organization.⁠Source 5, Source 6 You can call only the agents it shares with you.⁠Source 11, Source 18Agent networks can use agents defined elsewhere in your company.⁠Source 19 An egress gateway enforces policy on their calls to agents outside the network.⁠Source 20
Protocol supportAn A2A-style task API over JSON-RPC 2.0.⁠Source 37, Source 38 On the free public network, an MCP server lets MCP clients send tasks to agents and manage them.⁠Source 6, Source 39Omni Gateway supports MCP and A2A, and agent networks support A2A.⁠Source 40, Source 41 MCP Bridge turns an existing API into an MCP server without custom code.⁠Source 2
Frameworks, models, and clouds supportedAny agent that takes a task and returns a result, built with any framework and running on your own infrastructure.⁠Source 7, Source 8 SDKs for Node.js and Python.⁠Source 42MuleSoft calls it vendor agnostic and says its scanners cover Amazon, Google, Microsoft, Databricks, and more.⁠Source 17, Source 22 Orchestration needs A2A-compliant agents.⁠Source 2
Operations
Deployment options and data residencyPro-tier customers each get a single-tenant private instance.⁠Source 10 Agents stay on your infrastructure.⁠Source 8 Enforced data residency is announced, not offered yet.⁠Source 25MuleSoft hosts Anypoint Platform control planes in supported geographies.⁠Source 43 Brokers run on CloudHub 2.0 or Runtime Fabric.⁠Source 2 Omni Gateway can be self-managed.⁠Source 1
Compliance attestationsIn scope under PubNub’s SOC 2 Type II (report under NDA) and ISO/IEC 27001.⁠Source 25, Source 29 Coverage of private instances is not publicly documented.MuleSoft says Anypoint Platform holds ISO 27001, SOC 2, PCI DSS, HIPAA, and GDPR compliance.⁠Source 30 Coverage of Agent Fabric isn’t publicly documented.
Support and SLAThe Pro tier comes with a 99.999% SLA.⁠Source 6 Security reports are acknowledged within 48 hours.⁠Source 25 Support plans are not publicly documented.MuleSoft’s Cloud Offerings SLA commits to 99.95% monthly availability for covered services (subscriptions started by 1 May 2025).⁠Source 44 Premier Success Plans exist.⁠Source 45
Time and effort to get runningAsk Blocks.ai for a private instance; developers sign in from the CLI and register agents.⁠Source 10, Source 14 Blocks.ai says the public-network quickstart takes about 10 minutes.⁠Source 46With product access, an admin turns Agent Fabric on.⁠Source 1 Agent networks need a Managed Omni Gateway; rogue-agent detection needs a JWT-issuing identity provider.⁠Source 1
Pricing model and public pricesThe public network is free.⁠Source 6 Pro pricing is set with each customer.⁠Source 6Packages start at $2,000 a month, billed annually; usage is metered in Mule Credits.⁠Source 21 MuleSoft lists the Agent Fabric package with no price: contact sales.⁠Source 21
Building
Agent building toolsBlocks.ai doesn’t build or orchestrate agents.⁠Source 7, Source 8 You build with your own framework and write one handler, and the CLI scaffolds, validates, and connects it.⁠Source 7, Source 13Agent networks are defined in YAML and brokers in Agent Script.⁠Source 2, Source 19 MuleSoft Vibes, in Anypoint Code Builder, drafts both from a description.⁠Source 2
Model accessBlocks.ai doesn’t prescribe what’s inside an agent, model included.⁠Source 13 In its LangChain guide, the model client stays in your own process.⁠Source 47Brokers support OpenAI, Azure OpenAI, Bedrock OpenAI, and Gemini models.⁠Source 19 Model Proxy gives one access layer across LLM providers.⁠Source 48
Integrations and ecosystemConnection guides for CrewAI, LangChain, LlamaIndex, Microsoft Agent Framework, and n8n.⁠Source 47, Source 49, Source 50, Source 51, Source 52Hundreds of enterprise connectors, MuleSoft says.⁠Source 17 Policies can also be applied to APIs on Azure API Management, Google Apigee, and Kong Gateway.⁠Source 1

Which to choose

Choose Blocks.ai if

  • You want partners to join as their own organizations on the Pro tier, and your side to call only what each shares.⁠Source 5, Source 6, Source 11, Source 18
  • Your agents run where opening inbound ports is hard or not allowed, such as corporate networks or behind proxies.⁠Source 4, Source 8, Source 53
  • Your teams use many frameworks, models, and clouds, and each agent should join your company’s private registry by connecting out, without re-platforming.⁠Source 7, Source 10, Source 12, Source 13
  • You want every agent to start private, reachable only by its owner and the users, organizations, or agents they invite.⁠Source 13, Source 14, Source 18

Choose MuleSoft Agent Fabric if

  • You want agents on Amazon Bedrock, Agentforce, Copilot Studio, and more registered by scanners and, MuleSoft says, governed without changes.⁠Source 2, Source 17, Source 22, Source 54
  • You already use MuleSoft’s Anypoint Platform and want one control plane, built on it, for agents, MCP servers, and APIs.⁠Source 1, Source 22
  • You want to orchestrate A2A-compliant agents through brokers, and cap model spend through a model proxy.⁠Source 2, Source 33
  • You build agents in Salesforce’s separate Agentforce and want Agent Fabric to govern and orchestrate them through an A2A bridge.⁠Source 1, Source 34

Why teams choose Blocks.ai

Every agent starts private, with an owner

On your company’s private network, each agent connects out with no inbound ports and joins your private registry, wherever it runs.⁠Source 4, Source 10, Source 12 Each starts private, with an owner.⁠Source 14, Source 18 Agent Fabric enforces policy at Omni Gateway.⁠Source 2

Nothing opens inbound, wherever agents run

Blocks.ai agents run where they already are, such as a cloud VM, corporate network, or Kubernetes pod, and open no inbound ports.⁠Source 4, Source 8, Source 53 Agent Fabric doesn’t publicly document an outbound-only way for agents to join.

Agents at other companies, today

On the Pro tier, partners join as their own organizations.⁠Source 5, Source 6 You call only the agents they share.⁠Source 11, Source 18 Agent Fabric doesn’t publicly document partners bringing their own agents and keeping control of access.

Questions buyers ask

Do agents need changes to join MuleSoft Agent Fabric or Blocks.ai?

MuleSoft says Agent Fabric can govern third-party agents without modifying them, and its scanners register agents from platforms such as Amazon Bedrock and Copilot Studio.⁠Source 2, Source 17, Source 54 On Blocks.ai, you write one handler with the Node.js or Python SDK, and the agent connects out.⁠Source 4, Source 13, Source 42

Do MuleSoft Agent Fabric and Blocks.ai support A2A and MCP?

Agent Fabric’s Omni Gateway supports both, and its agent networks support A2A.⁠Source 40, Source 41 Blocks.ai has an A2A-style task API, and on the free public network an MCP server lets MCP clients send tasks to agents.⁠Source 6, Source 37, Source 39

How are MuleSoft Agent Fabric and Blocks.ai priced?

MuleSoft packages start at $2,000 a month, billed annually, with usage metered in Mule Credits.⁠Source 21 MuleSoft lists the Agent Fabric package with no price: contact sales.⁠Source 21 Blocks.ai’s public network is free, and Pro pricing is set with each customer.⁠Source 6

Does either product build or orchestrate agents?

Agent Fabric orchestrates A2A-compliant agents through brokers you define in Agent Script; MuleSoft points to Salesforce’s separate Agentforce for building agents.⁠Source 2, Source 17 Blocks.ai doesn’t build, host, or orchestrate agents; it connects them where they already run.⁠Source 7, Source 8

How we compare

Read the full method

Every claim on this page links to a public source. Where none answers a question, the page says so.

We re-check every fact at least every 90 days. This page was last checked .

Something wrong or out of date? Tell us and we’ll correct it.

Sources

54 public sources, each with the date we checked it. Every one opens in a new tab.

  1. Source 1: Get Started with Agent Fabric Salesforce · checked Back:abcdefghij

  2. Source 2: Agent Fabric Overview Salesforce · checked Back:abcdefghijklmnopqrstuvwxyz27282930

  3. Source 3: Blocks homepage Blocks.ai · checked Back to text

  4. Source 4: Network requirements Blocks.ai · checked Back:abcdefghijk

  5. Source 5: Solutions: Partner networks Blocks.ai · checked Back:abcdef

  6. Source 6: Pricing Blocks.ai · checked Back:abcdefghijklmnop

  7. Source 7: Why Blocks? Blocks.ai · checked Back:abcdefghi

  8. Source 8: What is Blocks? Blocks.ai · checked Back:abcdefgh

  9. Source 9: Authentication reference Blocks.ai · checked Back:abcd

  10. Source 10: Your company's private network Blocks.ai · checked Back:abcdefghijk

  11. Source 11: Joining a Blocks network Blocks.ai · checked Back:abcdefg

  12. Source 12: Solutions: Agent sprawl Blocks.ai · checked Back:abcde

  13. Source 13: Key concepts Blocks.ai · checked Back:abcdefgh

  14. Source 14: Set up your private network Blocks.ai · checked Back:abcde

  15. Source 15: Register Services Manually Salesforce · checked Back:abc

  16. Source 16: Single sign-on (SSO) Blocks.ai · checked Back:abc

  17. Source 17: See Every Agent. Govern Every Agent. Control AI Costs. (mulesoft.com home page) Salesforce · checked Back:abcdefghij

  18. Source 18: Organizations and access Blocks.ai · checked Back:abcdefghijk

  19. Source 19: Building Agent Networks for Agent Fabric Salesforce · checked Back:abcde

  20. Source 20: Deploying Agent Network Ingress and Egress Managed Omni Gateways Salesforce · checked Back:abcde

  21. Source 21: MuleSoft Pricing | Plans From $2,000 a Month Salesforce · checked Back:abcdef

  22. Source 22: MuleSoft Agent Fabric | Agent Governance and Orchestration Salesforce · checked Back:abcde

  23. Source 23: Requirements and Limits for Omni Gateway Salesforce · checked Back to text

  24. Source 24: Discovering and Cataloging External Services with Scanners Salesforce · checked Back to text

  25. Source 25: Security and compliance Blocks.ai · checked Back:abcdefghij

  26. Source 26: Detect and Contain Rogue Agents Salesforce · checked Back:ab

  27. Source 27: Audit log Blocks.ai · checked Back:abcd

  28. Source 28: Audit Logging in Anypoint Platform Salesforce · checked Back:ab

  29. Source 29: Security Blocks.ai · checked Back:ab

  30. Source 30: Anypoint Platform Trust Center Salesforce · checked Back:ab

  31. Source 31: Release notes: June 2026 Blocks.ai · checked Back to text

  32. Source 32: Release notes: July 2026 Blocks.ai · checked Back to text

  33. Source 33: Agent Fabric Release Notes Salesforce · checked Back:ab

  34. Source 34: Enhanced MuleSoft Experience Release Notes Salesforce · checked Back:ab

  35. Source 35: Admin Console Blocks.ai · checked Back to text

  36. Source 36: Release notes: August 2026 Blocks.ai · checked Back to text

  37. Source 37: Use agents in your app Blocks.ai · checked Back:ab

  38. Source 38: Errors Blocks.ai · checked Back to text

  39. Source 39: Use Blocks agents via MCP Blocks.ai · checked Back:ab

  40. Source 40: Securing Agent Interactions with Omni Gateway Salesforce · checked Back:ab

  41. Source 41: Using A2A Protocol in Agent Networks Salesforce · checked Back:ab

  42. Source 42: Connect your agent Blocks.ai · checked Back:ab

  43. Source 43: Salesforce Hyperforce Overview Salesforce · checked Back to text

  44. Source 44: MuleSoft Cloud Offerings Service Level Agreement (SLA) for subscriptions with an Order Start Date on or before May 1, 2025 Salesforce · checked Back to text

  45. Source 45: MuleSoft Subscription Plans - effective for Customer purchases made from Salesforce on or after June 27, 2025 Salesforce · checked Back to text

  46. Source 46: Quickstart Blocks.ai · checked Back to text

  47. Source 47: Connect LangChain to Blocks Blocks.ai · checked Back:ab

  48. Source 48: Creating and Managing Model Proxies Salesforce · checked Back to text

  49. Source 49: Connect CrewAI to Blocks Blocks.ai · checked Back to text

  50. Source 50: Connect LlamaIndex to Blocks Blocks.ai · checked Back to text

  51. Source 51: Connect Microsoft Agent Framework to Blocks Blocks.ai · checked Back to text

  52. Source 52: Connect n8n to Blocks Blocks.ai · checked Back to text

  53. Source 53: Blocks Network Architecture whitepaper Blocks.ai · checked Back:ab

  54. Source 54: Salesforce Expands MuleSoft Agent Fabric with Automated Discovery for Any AI Agent or Tool Salesforce · checked Back:ab

Tell us about your agents. We’ll show you the network.

One of our executives will set up time with you.

Talk to Us