{
 "categories": [
  "documents",
  "knowledge-management",
  "enterprise"
 ],
 "deployment": "hybrid",
 "evidence": [
  {
   "date": "2026-08-28",
   "fact": "homepage",
   "note": "M-Files presents a metadata-driven document management system used by more than 6,000 organisations, with Microsoft 365, Teams, SharePoint, Outlook, and Copilot integration surfaces.",
   "source": "https://www.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "platforms",
   "note": "The COM/.NET API runs only on Windows. The M-Files Web Service and Classic Web are HTTPS surfaces usable from non-Windows HTTP clients.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "license",
   "note": "Development licences are available to resellers and Solution Partners. A 30-day trial download is published. The product is commercial.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.api.exists",
   "note": "M-Files documents two APIs: the COM/.NET API and the M-Files Web Service REST-like API.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.api.kinds[0]",
   "note": "The M-Files Web Service is a REST-like HTTP interface for reading and modifying objects and reading vault structures.",
   "source": "https://developer.m-files.com/APIs/REST-API/Reference/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.api.kinds[1]",
   "note": "The COM/.NET API is documented as the comprehensive Windows API for user and administrative functions.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.api.auth[0]",
   "note": "M-Files recommends authentication tokens: POST username, password, and vault GUID to /REST/server/authenticationtokens, then send the token in the X-Authentication header.",
   "source": "https://developer.m-files.com/APIs/REST-API/Authentication/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.api.auth[1]",
   "note": "M-Files documents OAuth via a bearer token when the vault or server is already configured for OAuth sign-in through M-Files Web.",
   "source": "https://developer.m-files.com/APIs/REST-API/Authentication/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.api.coverage",
   "note": "COM covers user and administrative functions on Windows. REST covers most user operations and cannot perform administrative functions.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.sdk.exists",
   "note": "The official COM/.NET API is the documented developer SDK for Windows client and server mode.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.sdk.languages[0]",
   "note": "The official API is COM/.NET. Vault Application Framework applications also use .NET.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.extensibility.scripting[0]",
   "note": "The User Interface Extensibility Framework creates client-side applications for M-Files Desktop and Classic Web.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.extensibility.scripting[1]",
   "note": "The Vault Application Framework executes .NET on vault and workflow events and is documented as the replacement for VBScript.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.extensibility.scripting[2]",
   "note": "M-Files still documents a scripting environment that can run VBScript on object, server, and workflow events.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.data_access.export[0]",
   "note": "The REST API reads objects and vault structures over HTTP.",
   "source": "https://developer.m-files.com/APIs/REST-API/Reference/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "modalities.data_access.import[0]",
   "note": "The REST API modifies objects, providing write access to vault content from HTTP clients.",
   "source": "https://developer.m-files.com/APIs/REST-API/Reference/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "verdict.scores.api",
   "note": "Two official APIs give useful production coverage. REST is user-scoped, COM is Windows-only, and fuller development licences are partner-gated.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "freshness.watch[0].url",
   "note": "Opened and verified as M-Files' current developer portal covering COM/.NET, REST, UIX, and VAF.",
   "source": "https://developer.m-files.com/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "freshness.watch[1].url",
   "note": "Opened and verified as the current M-Files Web Service authentication page for tokens and OAuth.",
   "source": "https://developer.m-files.com/APIs/REST-API/Authentication/",
   "tier": "declared"
  },
  {
   "date": "2026-08-28",
   "fact": "freshness.watch[2].url",
   "note": "Opened and verified as the current M-Files Web Service reference for REST-like object and structure access.",
   "source": "https://developer.m-files.com/APIs/REST-API/Reference/",
   "tier": "declared"
  }
 ],
 "freshness": {
  "last_verified": "2026-08-28",
  "volatility": "medium",
  "watch": [
   {
    "type": "docs",
    "url": "https://developer.m-files.com/"
   },
   {
    "type": "docs",
    "url": "https://developer.m-files.com/APIs/REST-API/Authentication/"
   },
   {
    "type": "docs",
    "url": "https://developer.m-files.com/APIs/REST-API/Reference/"
   }
  ]
 },
 "homepage": "https://www.m-files.com/",
 "id": "m-files",
 "license": "commercial",
 "modalities": {
  "agent_docs": {
   "llms_txt": "unknown"
  },
  "api": {
   "auth": [
    "authentication-token",
    "oauth2"
   ],
   "coverage": "partial",
   "docs": "https://developer.m-files.com/",
   "exists": true,
   "kinds": [
    "rest",
    "com"
   ]
  },
  "cli": {
   "exists": "unknown"
  },
  "computer_use": {
   "issues": [],
   "viability": "unknown"
  },
  "data_access": {
   "export": [
    "api-json"
   ],
   "import": [
    "api-json"
   ]
  },
  "extensibility": {
   "scripting": [
    "uix",
    "vault-application-framework",
    "vbscript"
   ],
   "webhooks": "unknown"
  },
  "integrations": {
   "make": "unknown",
   "n8n": "unknown",
   "power_automate": "unknown",
   "zapier": "unknown"
  },
  "mcp": {
   "first_party": "unknown",
   "third_party": [],
   "verdict": "unknown"
  },
  "rpa": {
   "drivability": "unknown",
   "notes": "No repeatable UI probe was run. The COM/.NET API, M-Files Web Service, UIX, and Vault Application Framework are the supported automation paths; desktop and Classic Web UI automation remain unassessed.\n",
   "ui_stack": [
    "windows-native",
    "web-dom"
   ],
   "vendor_support": []
  },
  "sdk": {
   "exists": true,
   "languages": [
    "dotnet"
   ],
   "official": true
  }
 },
 "name": "M-Files",
 "platforms": [
  "web",
  "windows"
 ],
 "related": {
  "alternatives": [
   "sharepoint",
   "documaster"
  ],
  "our_products": []
 },
 "schema_version": 1,
 "score_version": 1,
 "status": "active",
 "vendor": "M-Files",
 "verdict": {
  "best_path": "api",
  "scores": {
   "api": 7,
   "cli": null,
   "computer_use": null,
   "integrations": null,
   "mcp": null,
   "overall": 7,
   "rpa": null
  },
  "summary": "M-Files is automatable through two first-party APIs. The COM/.NET API is the comprehensive Windows surface for user and administrative operations and requires a matching M-Files client or server install. The M-Files Web Service is a REST-like HTTPS API for reading and modifying vault objects and reading vault structure from any HTTP client. REST coverage is user-operation scoped and does not include administrative functions. Recommended REST authentication is a token from /REST/server/authenticationtokens, sent in the X-Authentication header. OAuth bearer tokens are also documented when the vault already supports OAuth sign-in. Development licences are partner-gated; a 30-day trial is published. UIX extends the desktop and Classic Web clients. The Vault Application Framework runs .NET in response to vault and workflow events. No shipped first-party MCP server was established. iPaaS catalogs were not opened. Computer-use viability is unassessed.\n"
 }
}