RegistryCompare › MLflow vs Promptfoo

MLflow vs Promptfoo

An independent, evidence-based trust comparison of MLflow and Promptfoo, two Observability & Evaluation projects in the HVTracker registry. Scores come from public, checkable signals — supply-chain provenance, OSSF Scorecard, maintenance, and adoption — not popularity.

MLflow leads on trust — 89.8/100 (Grade A) vs 88.8/100 (Grade A), a 1.0-point gap. Full breakdown below.
Signal MLflowmlflow/mlflow Promptfoopromptfoo/promptfoo
HVTrust score 89.8 88.8
Evidence grade A A
Coverage grade A A
Overall rank #13 #19
Rank in Observability & Evaluation #1 #2
GitHub stars 27.6k 24.3k
Last updated today today
Build provenance Yes Yes
OSSF Scorecard 5.5 / 10 7.5 / 10
License Apache-2.0 MIT
Downloads 8.8M/wk 384k/wk
Trust dimensions (points earned)
Safety / integrity / 25 19.4 16.9
Identity & provenance / 18 18.0 18.0
Transparency / 17 13.2 14.9
Maintenance / 20 20.0 20.0
Adoption / 20 19.9 18.0
Runtime capability surface (full matrix)
MCP server Implemented Implemented
External providers 3 — Amazon Bedrock, Anthropic, Postgres 2 — Anthropic, OpenAI
Requires API keys No Yes
Plugin surface plugins plugins
Provenance drift Unknown Match
Open in the live compare tool → MLflow profile Promptfoo profile More Observability & Evaluation →

How to read this: HVTrust (0–100) weighs supply-chain signals (provenance, OSSF Scorecard, signed commits, open license) alongside real-world adoption, scaled by an evidence-confidence factor. Grade bands: A ≥ 80, B ≥ 65, C ≥ 50, D < 50. Signals refresh daily. Full methodology v4.3 →